Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 14-12-2020 Uruchomiony przez Użytkownik (administrator) DESKTOP-6772DMG (LENOVO 80TL) (22-12-2020 16:13:14) Uruchomiony z C:\Users\Użytkownik\Desktop\Nowy folder Załadowane profile: Użytkownik & postgres Platform: Windows 10 Pro Wersja 20H2 19042.685 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (bookingDesktopApp.) [Brak podpisu cyfrowego] C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe (CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe (Datronicsoft, Inc. -> ) C:\Windows\System32\spacedeskService.exe (Datronicsoft, Inc. -> ) C:\Windows\System32\spacedeskServiceTray.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b784bf8bbfb7663d\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b784bf8bbfb7663d\igfxEM.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_f222132bfa8270de\RstMwService.exe (Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (Intel(R) System Usage Report -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <8> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\logman.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe (PostgreSQL Global Development Group) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe (PostgreSQL Global Development Group) [Brak podpisu cyfrowego] C:\Program Files\PostgreSQL\9.5\bin\postgres.exe <7> (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (TeromonScethil -> BurlyWoodDev Co) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Common Files\MazecurityCloudforcePW\MazecurityCloudforcePW.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18384352 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1493984 2017-10-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2095672 2020-11-29] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [114824 2020-11-29] (Adobe Inc. -> ) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [266624 2020-10-09] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [SteamServerBrowser] => C:\Program Files (x86)\SteamServerBrowser\SteamServerBrowser.exe [228352 2017-02-26] () [Brak podpisu cyfrowego] HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [EpicGamesLauncher] => F:\Empic Games Launcher\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33138576 2020-12-08] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3424032 2020-10-29] (Valve -> Valve Corporation) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [GameCenter] => C:\Users\Użytkownik\AppData\Local\MyComGames\GameCenter.exe [223360 2019-05-01] (Mail.Ru, LLC -> MY.COM B.V.) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [ApowersoftScreenRecorder] => C:\Program Files (x86)\Apowersoft\Apowersoft Screen Recorder Pro 2\Apowersoft Screen Recorder Pro 2.exe [4066352 2019-04-19] (Apowersoft Ltd -> Apowersoft) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [CCXProcess] => C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [677512 2020-11-29] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91667312 2020-05-12] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Użytkownik\AppData\Local\Microsoft\Teams\Update.exe [2453688 2020-11-27] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [Discord] => C:\Users\Użytkownik\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-1440139967-2605993192-3197701665-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1440139967-2605993192-3197701665-1002\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-04] (Google LLC -> Google LLC) Startup: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2019-04-29] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Użytkownik\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook, Inc. -> Facebook) Startup: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Twitch.lnk [2019-04-29] ShortcutTarget: Twitch.lnk -> C:\Users\Użytkownik\AppData\Roaming\Twitch\Bin\Twitch.exe (Brak pliku) Startup: C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2020-10-27] ShortcutTarget: Wysyłanie do programu OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {03A100E6-5C08-49DC-A6A6-E264EB305C8A} - System32\Tasks\Microsoft\Windows\PLA\RPT1319.tmp => {FF679DA1-8FF2-4474-9C9E-52BBD409B557} C:\WINDOWS\system32\pla.dll [1493504 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {054B8B7B-F9D4-49AE-82FE-7A2494C34C2B} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {0B2F9CF5-AB66-4087-9035-FAFBA5135535} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe Task: {0B7E13D1-43BF-4146-935A-11B7F01167B8} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3402832 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {105E381F-3FB9-40EA-AFBE-079799AC2F82} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe Task: {137A5D52-BF4D-4493-B3A6-238D4F54A561} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) Task: {1E2FEA74-398E-4945-B731-76DFE7728218} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {20212256-F016-4D44-95A4-42FDC593EDA1} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation) Task: {2BCAD22B-1669-40D4-90E5-75FA7CAF8B45} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) Task: {2FC85713-4B75-41DB-9AA9-CBF99D64BEC2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2020-12-17] (Microsoft Corporation -> Microsoft Corporation) Task: {30F4F686-F8B3-4E63-B20C-27D285250F2D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-05-05] (Google Inc -> Google Inc.) Task: {34161D90-0896-4E36-A734-F2B747DF2F92} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation) Task: {376F5972-9009-4AEB-A309-18C4E4D2B9D7} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2020-12-17] (Adobe Inc. -> Adobe) Task: {3F69C6DF-C0EC-425A-A8C4-1877FE30DE0A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2019-05-05] (Google Inc -> Google Inc.) Task: {3FD0F4E4-5807-4267-A149-6582A04E1378} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe Task: {4004C121-2CC5-433D-ACDE-8DCBB413F2F0} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648 2019-04-16] () [Brak podpisu cyfrowego] Task: {43D90346-8B29-431B-9EC1-E20509E33E12} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation) Task: {54C05B84-029C-40A7-B100-F0FAA9384EA5} - \Lenovo\ImController\TimeBasedEvents\a77fb129-7b7b-44a2-947f-af9b52b99525 -> Brak pliku <==== UWAGA Task: {592DD14F-E8A2-4609-AD1A-FDD251261402} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5CB5E77F-54BD-4C6E-A70E-2C07CA416AA0} - System32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe Task: {5CDFF899-61F6-4D46-A225-0D945487B6E1} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe Task: {613EFE15-EF72-4B2D-99FE-C43315F966CD} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {675CBAF1-E653-4D77-8FFC-F369221F2E5F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) Task: {6801B61E-DFD9-4197-ABC1-0029CA9F4615} - System32\Tasks\AVG Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVG\Browser\Application\AVGBrowser.exe Task: {6C319011-079F-46FE-A4C7-C761E29BB7B9} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe Task: {7A3B2B92-2F7E-415F-93C3-48B240BBD3CC} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-17] (Adobe Inc. -> Adobe) Task: {7B757E21-7771-4A53-902F-56863948043B} - \Lenovo\ImController\TimeBasedEvents\234ef230-6e21-479b-8c9e-fb28ea7eeb92 -> Brak pliku <==== UWAGA Task: {7D1BB82C-0E37-4C07-9AAA-D17418865733} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Użytkownik\Downloads\esetonlinescanner.exe [15012440 2020-12-21] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {832D1D1E-9CDA-4FD5-9644-835AB0665AE1} - System32\Tasks\PowerDirectorStyleAgent => C:\Program Files (x86)\CyberLink\Shared files\PDStyleAgent\PDStyleAgent.exe [100672 2020-03-17] (CyberLink Corp. -> CyberLink Corp.) Task: {88B56966-77BA-4F59-8C15-FAA09F9939C2} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> Brak pliku <==== UWAGA Task: {8E8D2771-708D-4007-A92C-2DF10E557983} - System32\Tasks\Opera scheduled Autoupdate 1584035682 => c:\users\użytkownik\appdata\local\programs\opera\launcher.exe [1776664 2020-12-16] (Opera Software AS -> Opera Software) Task: {8ECACE44-FE6F-4EC6-837E-086686328726} - System32\Tasks\Microsoft\Windows\PLA\spacedesk_log => {FF679DA1-8FF2-4474-9C9E-52BBD409B557} C:\WINDOWS\system32\pla.dll [1493504 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {97216458-0756-4611-8E9E-711CBD2D1BCF} - System32\Tasks\ApowerREC => C:\Program Files (x86)\Apowersoft\ApowerREC\ApowerREC.exe [11634224 2019-05-16] (Apowersoft Ltd -> Apowersoft) Task: {A457FB96-D8F7-4E7C-AD70-960171AD43AE} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Użytkownik\Downloads\esetonlinescanner.exe [15012440 2020-12-21] (ESET, spol. s r.o. -> ESET spol. s r.o.) Task: {B310DA10-B9CE-472E-AFD9-528D6BD5264F} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe Task: {B9A4C546-83AD-47F4-B1FD-D7BFFCDC7A76} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BE5D54EC-6746-4130-B39D-9AA2391E72B1} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143720 2020-12-17] (Microsoft Corporation -> Microsoft Corporation) Task: {C8D5FDA6-DD77-4BC3-BB0F-0E88CF6787FD} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> Brak pliku <==== UWAGA Task: {C9ACD1D3-AE8B-4957-B6F5-91B8C481F4A5} - \Lenovo\ImController\Lenovo iM Controller Monitor -> Brak pliku <==== UWAGA Task: {CDDCC5E7-91A0-4B27-AB30-85B6D8CA8800} - System32\Tasks\bookingDesktopAppUpdateTaskMachineCore => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] Task: {CE86031E-DF24-4558-B6E9-5382D84B3921} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CEF97EF2-B583-47B5-B8CD-AC9968731FDC} - System32\Tasks\BlueStacksHelper => C:\ProgramData\BlueStacks\Client\Helper\BlueStacksHelper.exe [752136 2020-10-16] (BlueStack Systems, Inc. -> BlueStack Systems, Inc.) Task: {DDB6C750-10EE-4CAE-9D10-36212EE5A2A2} - \Lenovo\ImController\TimeBasedEvents\75d756b9-fe90-4d9b-bbf2-afad6b826bc8 -> Brak pliku <==== UWAGA Task: {E0C1D44B-28D4-48C3-89B2-C581BB91C619} - System32\Tasks\bookingDesktopAppUpdateTaskMachineUA => C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] Task: {E402E672-C258-421F-91EF-BE7EFC2E6CE2} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3098912 2020-11-05] (Intel(R) System Usage Report -> Intel Corporation) Task: {E87607EF-108B-446E-9DF0-C744D29D3ADF} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe Task: {F291F4A9-37BC-48BD-8E29-7AF112CF3283} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe Task: {F55CDFCD-78D4-4DF6-A86D-9CFEE78CC673} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-1440139967-2605993192-3197701665-1001 => C:\Users\Użytkownik\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\..\Interfaces\{4275f895-ea1b-4412-9ae0-ceee80e7f5a5}: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{9c7784b8-d514-42d0-b69a-ebcc377ccfd3}: [DhcpNameServer] 192.168.100.1 Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-1440139967-2605993192-3197701665-1001 -> hxxp://www.global-pl.com/ Edge DefaultProfile: Default Edge Profile: C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-22] Edge HomePage: Default -> hxxp://www.global-pl.com/ Edge StartupUrls: Default -> "hxxp://www.google.com/" Edge Extension: (ConvertersSearch) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\epgodabnkbedmnglemnchlkdgfcnnceb [2020-08-12] Edge Extension: (Avast Online Security) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2020-08-04] Edge Extension: (McAfee® WebAdvisor) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdhgeoginicibhagdmblfikbgbkahibd [2020-12-21] Edge Extension: (PDFConverterHQ for Chrome) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hibgmofcigolmnnjcpooeaalafnnjflp [2020-08-12] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2020-12-21] Edge Extension: (GrynaPlus) - C:\Users\Użytkownik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lcnjckmddocgimkdinagkiaogdhffdgh [2020-08-12] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi => nie znaleziono FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2020-12-17] (Adobe Inc. -> ) FF Plugin: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2020-11-29] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2020-12-17] (Adobe Inc. -> ) FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=3 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] FF Plugin-x32: @bookingdesktopapp.com/bookingDesktopApp Update;version=9 -> C:\Program Files (x86)\bookingDesktopApp\Update\1.3.99.0\npbookingDesktopAppUpdate3.dll [2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-09-18] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2020-11-29] (Adobe Inc. -> Adobe Systems) FF Plugin HKU\S-1-5-21-1440139967-2605993192-3197701665-1001: @zoom.us/ZoomVideoPlugin -> C:\Users\Użytkownik\AppData\Roaming\Zoom\bin\npzoomplugin.dll [Brak pliku] Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default [2020-12-21] CHR HomePage: Default -> hxxp://www.global-pl.com/ CHR StartupUrls: Default -> "hxxp://www.global-pl.com/" CHR DefaultSearchURL: Default -> hxxp://www.global-pl.com/search?q={searchTerms} CHR DefaultSearchKeyword: Default -> szukaj CHR Extension: (Prezentacje) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-05] CHR Extension: (Dokumenty) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-05] CHR Extension: (Dysk Google) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-05] CHR Extension: (YouTube) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-05] CHR Extension: (Arkusze) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-05] CHR Extension: (Dokumenty Google offline) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-08-18] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-05] CHR Extension: (Chrome Media Router) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-08-18] CHR Profile: C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Guest Profile [2020-12-21] CHR Profile: C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1 [2020-12-21] CHR DefaultSearchURL: Profile 1 -> hxxps://www.eduelo.pl/img/homescreen/48.png CHR DefaultSearchKeyword: Profile 1 -> Awesome Music Search CHR DefaultSuggestURL: Profile 1 -> hxxps://sug.awesomesearch.net/search/index_sg.php?q={searchTerms} CHR Extension: (Prezentacje) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-10-12] CHR Extension: (Dokumenty) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-10-12] CHR Extension: (Dysk Google) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (YouTube) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-10-12] CHR Extension: (Arkusze) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-10-12] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2020-12-07] CHR Extension: (Eduelo) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fljfkbfoggkllhkmbgdgakepkkhijndp [2020-03-27] CHR Extension: (Dokumenty Google offline) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-13] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2020-12-19] CHR Extension: (Photopea) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\jdklklfpinionkgpmghaghehojplfjio [2020-11-17] CHR Extension: (GrynaPlus) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lcnjckmddocgimkdinagkiaogdhffdgh [2020-07-06] CHR Extension: (Awesome Music Search) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\llghpgbjbahdjbdemlognkcemgigdcpa [2020-01-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-12] CHR Extension: (Gmail) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-21] CHR Profile: C:\Users\Użytkownik\AppData\Local\Google\Chrome\User Data\System Profile [2020-12-21] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Opera: ======= OPR Extension: (Rich Hints Agent) - C:\Users\Użytkownik\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-12-17] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) "MazecurityCloudforcePW" => serwis został odblokowany. <==== UWAGA R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-17] (Adobe Inc. -> Adobe) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [852024 2020-11-29] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3739728 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3511376 2020-09-23] (Adobe Inc. -> Adobe Systems, Incorporated) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8615864 2020-07-11] (BattlEye Innovations e.K. -> ) S2 bookingdesktopapp; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] S3 bookingdesktopappm; C:\Program Files (x86)\bookingDesktopApp\Update\bookingDesktopAppUpdate.exe [102400 2019-10-26] (bookingDesktopApp.) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2019-05-03] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81744 2020-09-24] (Lenovo -> Lenovo Group Ltd.) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) R2 MazecurityCloudforcePW; C:\Program Files (x86)\Common Files\MazecurityCloudforcePW\MazecurityCloudforcePW.exe [2216584 2020-10-23] (TeromonScethil -> BurlyWoodDev Co) [Brak podpisu cyfrowego] [Plik w użyciu] S3 mracsvc; C:\WINDOWS\System32\mracsvc.exe [18953880 2019-10-05] (Mail.Ru LLC -> LLC Mail.Ru) R2 postgresql-x64-9.5; C:\Program Files\PostgreSQL\9.5\bin\pg_ctl.exe [94208 2016-08-09] (PostgreSQL Global Development Group) [Brak podpisu cyfrowego] R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [253776 2020-06-24] (Razer USA Ltd. -> Razer Inc) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [629056 2020-03-17] (CyberLink Corp. -> CyberLink) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [533376 2020-09-23] (Razer USA Ltd. -> Razer Inc.) R2 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [290864 2020-10-09] (Razer USA Ltd. -> Razer Inc.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5197552 2020-12-20] (Microsoft Windows Publisher -> Microsoft Corporation) R2 spacedeskService; C:\WINDOWS\system32\spacedeskService.exe [1078184 2020-07-10] (Datronicsoft, Inc. -> ) S3 uncheater_bgl; C:\Program Files\Common Files\Uncheater\uncheater_bgl.exe [2097008 2019-10-11] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-22] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv_bgp.sys [315976 2020-03-26] (Bluestack Systems, Inc -> Bluestack System Inc.) R3 DroidCam; C:\WINDOWS\System32\drivers\droidcam.sys [32240 2020-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Dev47Apps) R3 DroidCamVideo; C:\WINDOWS\System32\drivers\droidcamvideo.sys [33768 2020-04-18] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) R1 HWiNFO; C:\Windows\system32\drivers\HWiNFO64A.SYS [66336 2019-04-28] (Martin Malik - REALiX -> REALiX(tm)) R3 MpKsl1ab932bf; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{64A56546-7289-46E4-94DE-1139E9B845B6}\MpKslDrv.sys [91376 2020-12-22] (Microsoft Windows -> Microsoft Corporation) S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv.sys [18189864 2019-10-05] (Mail.Ru LLC -> LLC Mail.Ru) R3 spacedeskKtmInputKeybd; C:\WINDOWS\System32\drivers\spacedeskKtmInputKeybd.sys [35240 2018-10-12] (Datronicsoft, Inc. -> ) R3 spacedeskKtmInputMouse; C:\WINDOWS\System32\drivers\spacedeskKtmInputMouse.sys [35240 2018-10-12] (Datronicsoft, Inc. -> ) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> ) R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-12-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-12-22] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-22] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [74552 2020-01-19] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R1 YSDrv; C:\Program Files (x86)\Bignox\BigNoxVM\RT\YSDrv.sys [310536 2019-10-26] (Beijing Duodian Online Science and Technology Co.,Ltd -> BigNox Corporation) S1 TASANTIVIRUSKD; \??\C:\Program Files (x86)\Digital Communications\SAntivirus\TASAntivirusKD.sys [X] <==== UWAGA ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-12-22 16:36 - 2020-12-22 16:36 - 000021760 _____ (RW-Everything) C:\WINDOWS\system32\Drivers\RwDrv.sys 2020-12-22 16:36 - 2020-12-22 16:36 - 000000852 _____ C:\Users\Public\Desktop\RW-Everything.lnk 2020-12-22 16:36 - 2020-12-22 16:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RW-Everything 2020-12-22 16:36 - 2020-12-22 16:36 - 000000000 ____D C:\Program Files\RW-Everything 2020-12-22 16:35 - 2020-12-22 16:35 - 002880679 _____ C:\Users\Użytkownik\Downloads\RwX64V1.7.zip 2020-12-22 16:29 - 2020-12-22 16:29 - 000259432 _____ (WinTools.Info) C:\Users\Użytkownik\Downloads\winkey.exe 2020-12-22 16:09 - 2020-12-22 16:27 - 000000000 ____D C:\FRST 2020-12-22 16:04 - 2020-12-22 16:13 - 000000000 ____D C:\Users\Użytkownik\Desktop\Nowy folder 2020-12-22 05:24 - 2020-12-22 05:24 - 000000000 ____D C:\Users\Public\spacedesk_logs 2020-12-22 05:21 - 2020-12-22 05:21 - 100663296 _____ C:\WINDOWS\system32\config\SOFTWARE 2020-12-22 05:21 - 2020-12-22 05:21 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2020-12-22 05:05 - 2020-12-22 05:05 - 000003834 _____ C:\WINDOWS\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2020-12-22 04:51 - 2020-12-22 04:51 - 000003824 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn 2020-12-22 04:51 - 2020-12-22 04:51 - 000003382 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime 2020-12-21 18:34 - 2020-12-21 18:34 - 000000783 _____ C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2020-12-21 18:34 - 2020-12-21 18:34 - 000000655 _____ C:\Users\Użytkownik\Desktop\ESET Online Scanner.lnk 2020-12-21 18:34 - 2020-12-21 18:34 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\ESET 2020-12-21 18:33 - 2020-12-21 18:33 - 015012440 _____ (ESET spol. s r.o.) C:\Users\Użytkownik\Downloads\esetonlinescanner.exe 2020-12-21 18:31 - 2020-12-21 18:31 - 008447152 _____ (Malwarebytes) C:\Users\Użytkownik\Downloads\adwcleaner_8.0.8 (1).exe 2020-12-21 18:30 - 2020-12-21 18:30 - 008447152 _____ (Malwarebytes) C:\Users\Użytkownik\Downloads\adwcleaner_8.0.8.exe 2020-12-21 18:16 - 2020-12-22 06:18 - 000000000 ____D C:\Program Files\CCleaner 2020-12-21 18:16 - 2020-12-21 18:16 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2020-12-21 18:16 - 2020-12-21 18:16 - 000002898 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC 2020-12-21 18:16 - 2020-12-21 18:16 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-12-21 18:16 - 2020-12-21 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-12-21 18:15 - 2020-12-21 18:15 - 000003762 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2020-12-21 18:15 - 2020-12-21 18:15 - 000003528 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2020-12-21 18:15 - 2020-11-06 12:42 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys 2020-12-21 18:14 - 2020-12-21 18:15 - 000002678 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2020-12-21 18:12 - 2020-12-22 05:29 - 000000000 ___HD C:\Users\Użytkownik\Downloads\.opera 2020-12-21 18:12 - 2020-12-22 05:29 - 000000000 ___HD C:\Users\Użytkownik\.opera 2020-12-21 18:12 - 2020-12-21 18:12 - 004986456 _____ (Intel) C:\Users\Użytkownik\Downloads\Intel-Driver-and-Support-Assistant-Installer.exe 2020-12-21 17:37 - 2020-12-21 17:37 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2020-12-21 17:04 - 2020-12-21 17:04 - 000000820 _____ C:\WINDOWS\system32\InstallUtil.InstallLog 2020-12-21 16:54 - 2020-12-21 16:54 - 030536752 _____ (Piriform Software Ltd) C:\Users\Użytkownik\Downloads\ccsetup575.exe 2020-12-21 14:52 - 2020-12-21 14:53 - 002086424 _____ (Malwarebytes) C:\Users\Użytkownik\Downloads\MBSetup.exe 2020-12-21 14:35 - 2020-12-21 14:35 - 000000000 ____D C:\Program Files\Intel Corporation 2020-12-20 18:49 - 2020-12-20 18:49 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-12-20 18:37 - 2020-12-20 18:37 - 000000020 ___SH C:\Users\Użytkownik\ntuser.ini 2020-12-20 18:35 - 2020-12-22 05:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-12-20 18:35 - 2020-12-22 04:52 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo 2020-12-20 18:35 - 2020-12-20 18:36 - 000003592 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineUA 2020-12-20 18:35 - 2020-12-20 18:36 - 000003564 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player Updater 2020-12-20 18:35 - 2020-12-20 18:36 - 000003536 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineUA 2020-12-20 18:35 - 2020-12-20 18:36 - 000003498 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2020-12-20 18:35 - 2020-12-20 18:36 - 000003178 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) 2020-12-20 18:35 - 2020-12-20 18:36 - 000003148 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Hourly) 2020-12-20 18:35 - 2020-12-20 18:36 - 000002966 _____ C:\WINDOWS\system32\Tasks\BlueStacksHelper 2020-12-20 18:35 - 2020-12-20 18:35 - 000003870 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-12-20 18:35 - 2020-12-20 18:35 - 000003676 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1584035682 2020-12-20 18:35 - 2020-12-20 18:35 - 000003556 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-12-20 18:35 - 2020-12-20 18:35 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-12-20 18:35 - 2020-12-20 18:35 - 000003368 _____ C:\WINDOWS\system32\Tasks\AvastUpdateTaskMachineCore 2020-12-20 18:35 - 2020-12-20 18:35 - 000003312 _____ C:\WINDOWS\system32\Tasks\bookingDesktopAppUpdateTaskMachineCore 2020-12-20 18:35 - 2020-12-20 18:35 - 000003310 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2020-12-20 18:35 - 2020-12-20 18:35 - 000003272 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-12-20 18:35 - 2020-12-20 18:35 - 000003242 _____ C:\WINDOWS\system32\Tasks\klcp_update 2020-12-20 18:35 - 2020-12-20 18:35 - 000003214 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2020-12-20 18:35 - 2020-12-20 18:35 - 000002696 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser Heartbeat Task (Logon) 2020-12-20 18:35 - 2020-12-20 18:35 - 000002672 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0 2020-12-20 18:35 - 2020-12-20 18:35 - 000002666 _____ C:\WINDOWS\system32\Tasks\AVG Secure Browser Heartbeat Task (Logon) 2020-12-20 18:35 - 2020-12-20 18:35 - 000002600 _____ C:\WINDOWS\system32\Tasks\PowerDirectorStyleAgent 2020-12-20 18:35 - 2020-12-20 18:35 - 000002544 _____ C:\WINDOWS\system32\Tasks\ApowerREC 2020-12-20 18:35 - 2020-12-20 18:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT 2020-12-20 18:35 - 2020-12-20 18:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\NCH Software 2020-12-20 18:35 - 2020-12-20 18:35 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG 2020-12-20 18:33 - 2020-12-20 18:35 - 000011433 _____ C:\WINDOWS\diagwrn.xml 2020-12-20 18:33 - 2020-12-20 18:35 - 000011433 _____ C:\WINDOWS\diagerr.xml 2020-12-20 18:15 - 2020-12-20 19:17 - 001767980 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-12-20 18:09 - 2020-12-20 18:09 - 000000020 ___SH C:\Users\postgres\ntuser.ini 2020-12-20 18:02 - 2020-12-21 18:12 - 000000000 ____D C:\Users\Użytkownik 2020-12-20 18:02 - 2020-12-20 18:13 - 000000000 ____D C:\Users\postgres 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Ustawienia lokalne 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Szablony 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Moje dokumenty 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Menu Start 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Documents\Moje wideo 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Documents\Moje obrazy 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Documents\Moja muzyka 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\Dane aplikacji 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\AppData\Local\Tymczasowe pliki internetowe 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\AppData\Local\Historia 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\Użytkownik\AppData\Local\Dane aplikacji 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Ustawienia lokalne 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Szablony 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Moje dokumenty 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Menu Start 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Documents\Moje wideo 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Documents\Moje obrazy 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Documents\Moja muzyka 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\Dane aplikacji 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\AppData\Local\Tymczasowe pliki internetowe 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\AppData\Local\Historia 2020-12-20 18:02 - 2020-12-20 18:02 - 000000000 _SHDL C:\Users\postgres\AppData\Local\Dane aplikacji 2020-12-20 18:02 - 2019-12-07 10:10 - 000001105 _____ C:\Users\postgres\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-12-20 17:59 - 2017-11-10 10:01 - 000113664 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2020-12-20 17:52 - 2020-12-22 15:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-12-20 17:52 - 2020-12-22 04:56 - 000540512 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-12-20 17:51 - 2020-12-22 05:22 - 000008192 ___SH C:\DumpStack.log.tmp 2020-12-20 17:50 - 2020-12-20 18:36 - 000000000 ____D C:\Windows.old 2020-12-20 17:44 - 2020-12-20 17:50 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2020-12-20 17:38 - 2020-12-20 17:44 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-12-20 17:38 - 2020-12-20 17:38 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-12-20 17:33 - 2020-12-20 17:33 - 000000000 ____D C:\ProgramData\ssh 2020-12-20 17:23 - 2020-12-20 17:23 - 000580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2020-12-20 17:23 - 2020-12-20 17:23 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2020-12-20 17:23 - 2020-12-20 17:23 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2020-12-20 17:23 - 2020-12-20 17:23 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax 2020-12-20 17:23 - 2020-12-20 17:23 - 000137016 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2020-12-20 17:23 - 2020-12-20 17:23 - 000111616 _____ C:\WINDOWS\system32\RDVGHelper.exe 2020-12-20 17:23 - 2020-12-20 17:23 - 000101688 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2020-12-20 17:22 - 2020-12-20 17:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2020-12-20 17:22 - 2020-12-20 17:22 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2020-12-20 17:22 - 2020-12-20 17:22 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2020-12-20 17:22 - 2020-12-20 17:22 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2020-12-20 17:22 - 2020-12-20 17:22 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax 2020-12-20 17:22 - 2020-12-20 17:22 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2020-12-20 17:22 - 2020-12-20 17:22 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2020-12-20 17:22 - 2020-12-20 17:22 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 001309504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2020-12-20 17:21 - 2020-12-20 17:21 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl 2020-12-20 17:21 - 2020-12-20 17:21 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2020-12-20 17:21 - 2020-12-20 17:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb 2020-12-20 17:21 - 2020-12-20 17:21 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2020-12-20 17:21 - 2020-12-20 17:21 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2020-12-20 17:21 - 2020-12-20 17:21 - 000010912 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2020-12-20 17:20 - 2020-12-20 17:20 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2020-12-20 17:20 - 2020-12-20 17:20 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000455168 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2020-12-20 17:20 - 2020-12-20 17:20 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-12-20 17:20 - 2020-12-20 17:20 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv 2020-12-20 17:20 - 2020-12-20 17:20 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2020-12-20 17:19 - 2020-12-20 17:19 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2020-12-20 17:19 - 2020-12-20 17:19 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2020-12-20 17:19 - 2020-12-20 17:19 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2020-12-20 17:18 - 2020-12-20 17:18 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-12-20 17:18 - 2020-12-20 17:18 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-12-20 17:18 - 2020-12-20 17:18 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl 2020-12-20 17:18 - 2020-12-20 17:18 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb 2020-12-20 17:18 - 2020-12-20 17:18 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2020-12-20 17:18 - 2020-12-20 17:18 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2020-12-20 17:17 - 2020-12-20 17:17 - 000152576 _____ C:\WINDOWS\system32\EoAExperiences.exe 2020-12-20 17:16 - 2020-12-20 17:16 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000707544 _____ C:\WINDOWS\system32\TextShaping.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000645120 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000306176 _____ C:\WINDOWS\system32\HeatCore.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2020-12-20 17:16 - 2020-12-20 17:16 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll 2020-12-20 17:16 - 2020-12-20 17:16 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin 2020-12-20 17:15 - 2020-12-20 17:15 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2020-12-20 17:15 - 2020-12-20 17:15 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll 2020-12-20 17:15 - 2020-12-20 17:15 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv 2020-12-20 17:15 - 2020-12-20 17:15 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2020-12-20 16:57 - 2020-12-20 16:57 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2020-12-20 16:57 - 2020-12-20 16:57 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2020-12-20 16:50 - 2020-12-20 16:50 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2020-12-20 16:50 - 2020-12-20 16:50 - 000000000 ____D C:\Program Files\Reference Assemblies 2020-12-20 16:50 - 2020-12-20 16:50 - 000000000 ____D C:\Program Files\MSBuild 2020-12-20 16:50 - 2020-12-20 16:50 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2020-12-20 16:50 - 2020-12-20 16:50 - 000000000 ____D C:\Program Files (x86)\MSBuild 2020-12-20 13:14 - 2020-12-20 19:28 - 000000000 ___DC C:\WINDOWS\Panther 2020-12-20 12:47 - 2020-12-20 12:47 - 000000000 ___HD C:\$WinREAgent 2020-12-20 12:21 - 2020-12-20 12:25 - 000000000 ____D C:\AdwCleaner 2020-12-20 11:37 - 2020-12-20 11:37 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2020-12-20 11:33 - 2020-12-20 11:33 - 000030252 _____ C:\WINDOWS\system32\servers.def.lkg 2020-12-20 11:33 - 2020-12-20 11:33 - 000030252 _____ C:\WINDOWS\system32\servers.def 2020-12-20 11:33 - 2020-12-20 11:33 - 000009650 _____ C:\WINDOWS\system32\uat64.vpx 2020-12-20 11:33 - 2020-12-20 11:33 - 000003304 _____ C:\WINDOWS\system32\.tmp 2020-12-20 11:33 - 2020-12-20 11:33 - 000000602 _____ C:\WINDOWS\system32\prod-pgm.vpx 2020-12-20 11:33 - 2020-12-20 11:33 - 000000342 _____ C:\WINDOWS\system32\prod-vps.vpx 2020-12-20 11:32 - 2020-12-20 11:33 - 000003313 _____ C:\WINDOWS\system32\servers.def.vpx 2020-12-20 11:19 - 2020-12-21 17:45 - 000007604 _____ C:\Users\Użytkownik\AppData\Local\Resmon.ResmonCfg 2020-12-19 10:30 - 2020-12-19 16:49 - 000000000 __RHD C:\Users\Użytkownik\Creative Cloud Files 2020-12-19 08:25 - 2020-12-19 08:25 - 000000000 ____D C:\Users\Public\BlueStacks 2020-12-19 07:31 - 2020-12-19 07:31 - 000000000 ____D C:\Users\Użytkownik\Documents\Mobizen 2020-12-18 19:33 - 2020-12-19 10:10 - 000000000 __RHD C:\Users\Użytkownik\dekieleke@gmail.com Creative Cloud Files 2020-12-18 19:32 - 2020-12-19 11:13 - 000000000 ____D C:\Users\Użytkownik\Documents\Adobe 2020-12-17 18:53 - 2020-12-17 18:53 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\mbam 2020-12-17 16:07 - 2020-12-17 16:07 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\AVG 2020-12-17 15:17 - 2020-12-17 15:17 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Macromedia 2020-12-14 15:26 - 2020-12-14 15:26 - 000000000 ____D C:\Users\Użytkownik\Documents\My Games 2020-12-12 15:51 - 2020-12-13 08:24 - 000000000 __RHD C:\Users\Użytkownik\oponaolek@gmail.com Creative Cloud Files 2020-12-11 19:26 - 2020-12-11 19:26 - 000001130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Pro 2020.lnk 2020-12-11 19:21 - 2020-12-11 19:21 - 000000000 ____D C:\Users\Public\Documents\AdobeInstalledCodecs 2020-12-11 10:23 - 2020-12-12 18:05 - 000000016 _____ C:\Users\Użytkownik\AppData\Roaming\obs-virtualcam.txt 2020-12-10 09:43 - 2020-12-14 12:34 - 000000000 __RHD C:\Users\Użytkownik\ocenianie.valdrig@gmail.com Creative Cloud Files 2020-12-08 09:19 - 2020-12-10 13:52 - 000000000 ____D C:\Program Files\VEGAS 2020-12-08 08:03 - 2020-12-14 12:29 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Sony 2020-12-07 18:12 - 2020-12-10 09:32 - 000000000 __RHD C:\Users\Użytkownik\ytberyt89@gmail.com Creative Cloud Files 2020-12-07 17:44 - 2020-12-07 17:44 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\MAGIX 2020-12-07 16:42 - 2020-12-08 12:03 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\MPC-HC 2020-12-05 13:33 - 2020-12-20 17:50 - 000000000 ____D C:\Program Files\UNP 2020-12-05 09:10 - 2020-12-05 09:10 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\WinRAR 2020-12-05 07:49 - 2020-12-05 07:49 - 000000370 _____ C:\Users\Użytkownik\AppData\Local\{36C1485C-56A7-4207-90E9-889898EF9CF8} 2020-12-05 07:44 - 2020-12-05 07:44 - 000000000 ____D C:\Program Files\Microsoft Office 15 2020-12-04 14:53 - 2020-12-04 14:53 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Teams 2020-12-02 08:05 - 2020-12-02 08:05 - 000002857 _____ C:\Users\Użytkownik\AppData\Local\{8EBBDE54-1442-45DB-A5CC-168A68D6FEF7} 2020-11-29 08:13 - 2020-11-29 08:13 - 000000000 ____D C:\Users\UĹĽytkownik\AppData\Roaming\Adobe 2020-11-29 08:13 - 2020-11-29 08:13 - 000000000 ____D C:\Users\UĹĽytkownik 2020-11-29 07:59 - 2020-12-07 17:19 - 000000000 __RHD C:\Users\Użytkownik\damian.wloch12@gmail.com Creative Cloud Files 2020-11-26 17:39 - 2020-11-26 17:39 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\__SHARED 2020-11-23 19:47 - 2020-11-24 07:51 - 000000000 ____D C:\ProgramData\ReShade ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-12-22 16:06 - 2020-07-12 10:51 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\LogMeIn Hamachi 2020-12-22 05:34 - 2019-04-28 20:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2020-12-22 05:24 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-12-22 05:24 - 2019-04-28 13:38 - 000000000 __SHD C:\Users\Użytkownik\IntelGraphicsProfiles 2020-12-22 05:22 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2020-12-22 05:20 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-12-22 05:06 - 2019-04-28 16:16 - 000795000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2020-12-22 05:05 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2020-12-22 04:57 - 2019-04-29 14:50 - 000000000 ____D C:\ProgramData\Lenovo 2020-12-22 04:52 - 2019-04-29 15:35 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\Lenovo 2020-12-22 04:12 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2020-12-22 04:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-12-21 20:25 - 2020-11-01 19:23 - 000000000 ____D C:\Program Files (x86)\Multiboxing Software 2020-12-21 18:27 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2020-12-21 18:24 - 2019-04-29 16:03 - 000000000 ____D C:\ProgramData\Package Cache 2020-12-21 18:23 - 2019-04-28 13:38 - 000000000 ____D C:\Program Files (x86)\Intel 2020-12-21 18:20 - 2019-05-12 11:23 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\CrashDumps 2020-12-21 18:13 - 2019-04-29 16:02 - 000000000 ____D C:\ProgramData\Intel 2020-12-21 18:13 - 2019-04-28 13:37 - 000000000 ____D C:\Program Files\Intel 2020-12-21 17:57 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-12-21 17:57 - 2019-04-29 14:50 - 000000000 ____D C:\Program Files (x86)\Lenovo 2020-12-21 17:51 - 2019-04-28 13:30 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\Packages 2020-12-21 17:36 - 2020-04-20 17:40 - 000000000 ____D C:\WINDOWS\TempInst 2020-12-21 16:22 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-12-21 15:40 - 2020-11-01 19:24 - 000000000 ____D C:\Program Files (x86)\AnswerPCAP 2020-12-21 03:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2020-12-20 20:35 - 2019-12-14 20:35 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\PackageStaging 2020-12-20 19:45 - 2019-04-29 19:15 - 000000000 ____D C:\Program Files (x86)\Steam 2020-12-20 19:43 - 2019-05-12 11:28 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\chromium 2020-12-20 19:42 - 2020-04-24 08:09 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\BraveSoftware 2020-12-20 19:17 - 2019-12-07 16:09 - 000785530 _____ C:\WINDOWS\system32\perfh015.dat 2020-12-20 19:17 - 2019-12-07 16:09 - 000152390 _____ C:\WINDOWS\system32\perfc015.dat 2020-12-20 19:12 - 2019-04-29 15:58 - 000000410 __RSH C:\ProgramData\ntuser.pol 2020-12-20 19:03 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-12-20 19:03 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-12-20 18:45 - 2019-04-28 20:42 - 000000000 ____D C:\ProgramData\Packages 2020-12-20 18:43 - 2019-04-28 13:30 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-12-20 18:43 - 2019-04-28 13:30 - 000000000 ___RD C:\Users\Użytkownik\3D Objects 2020-12-20 18:39 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2020-12-20 18:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-12-20 18:36 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2020-12-20 18:35 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2020-12-20 18:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2020-12-20 18:19 - 2019-04-28 20:33 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat 2020-12-20 18:13 - 2020-06-09 06:51 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2020-12-20 18:13 - 2019-05-05 10:22 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-12-20 18:06 - 2020-05-03 13:04 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-12-20 18:06 - 2020-03-21 21:12 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-12-20 18:06 - 2020-01-25 10:02 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2020-12-20 18:06 - 2019-05-24 19:11 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World Of Warships 2020-12-20 18:06 - 2019-05-12 11:35 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Tanks 2020-12-20 18:06 - 2019-05-12 11:25 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goodgame Empire 2020-12-20 18:06 - 2019-05-12 11:09 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2020-12-20 18:06 - 2019-05-05 08:47 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2020-12-20 18:06 - 2019-04-30 16:24 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\My.com Games 2020-12-20 18:06 - 2019-04-29 19:44 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2020-12-20 18:04 - 2020-09-01 13:19 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2020-12-20 18:04 - 2020-07-19 09:37 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackmagic Design 2020-12-20 18:04 - 2020-03-27 21:22 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome 2020-12-20 18:04 - 2019-04-30 16:23 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2020-12-20 18:00 - 2019-04-29 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2020-12-20 18:00 - 2019-04-28 14:07 - 000337876 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip 2020-12-20 18:00 - 2019-04-28 13:57 - 000000000 ____D C:\Program Files\Elantech 2020-12-20 18:00 - 2019-04-28 13:39 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2020-12-20 17:59 - 2019-04-28 14:06 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2020-12-20 17:59 - 2019-04-28 14:06 - 000000000 ____D C:\WINDOWS\system32\DAX3 2020-12-20 17:59 - 2019-04-28 14:06 - 000000000 ____D C:\WINDOWS\system32\DAX2 2020-12-20 17:56 - 2020-03-13 18:55 - 000000000 ____D C:\WINDOWS\Lenovo 2020-12-20 17:51 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-12-20 17:50 - 2020-11-01 19:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnswerPCAP 2020-12-20 17:50 - 2020-10-11 09:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer Cortex 2020-12-20 17:50 - 2020-09-18 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-12-20 17:50 - 2020-07-12 10:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2020-12-20 17:50 - 2020-05-31 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Euro Truck Simulator 2 2020-12-20 17:50 - 2020-05-21 09:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClownfishVoiceChanger 2020-12-20 17:50 - 2020-05-21 08:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PostgreSQL 9.5 2020-12-20 17:50 - 2020-05-09 12:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ActivePresenter 2020-12-20 17:50 - 2020-05-03 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-12-20 17:50 - 2020-04-27 09:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-12-20 17:50 - 2020-01-19 10:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher 2020-12-20 17:50 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 __RHD C:\Users\Public\Libraries 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-12-20 17:50 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-12-20 17:50 - 2019-05-05 11:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2020-12-20 17:50 - 2019-05-03 08:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2020-12-20 17:50 - 2019-04-29 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicam 2020-12-20 17:50 - 2019-04-29 19:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2020-12-20 17:50 - 2019-04-29 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2020-12-20 17:50 - 2019-04-29 19:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike 1.6 v43 2020-12-20 17:50 - 2019-04-28 16:30 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-12-20 17:50 - 2019-04-28 14:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64 2020-12-20 17:50 - 2019-04-28 13:45 - 000000000 ____D C:\Program Files\Realtek 2020-12-20 17:50 - 2019-04-28 13:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2020-12-20 17:50 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-12-20 17:50 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2020-12-20 17:50 - 2017-09-29 14:46 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2020-12-20 17:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2020-12-20 17:45 - 2020-05-20 08:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iZotope 2020-12-20 17:45 - 2020-05-15 19:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony 2020-12-20 17:45 - 2020-05-11 18:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS 2020-12-20 17:45 - 2020-05-03 13:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare 2020-12-20 17:45 - 2020-01-28 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RSUPPORT 2020-12-20 17:45 - 2019-12-22 10:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIANTS Software 2020-12-20 17:45 - 2019-12-20 17:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Techland 2020-12-20 17:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources 2020-12-20 17:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2020-12-20 17:45 - 2019-04-30 16:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Play 2020-12-20 17:44 - 2020-05-21 08:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blackmagic Design 2020-12-20 17:44 - 2020-02-21 08:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES 2020-12-20 17:44 - 2019-06-08 07:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\cdp.pl 2020-12-20 17:44 - 2019-05-12 09:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apowersoft 2020-12-20 17:33 - 2019-12-07 16:12 - 000000000 ___SD C:\WINDOWS\system32\AppV 2020-12-20 17:33 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2020-12-20 17:33 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2020-12-20 17:33 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2020-12-20 17:33 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2020-12-20 17:33 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2020-12-20 17:31 - 2019-12-07 16:12 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2020-12-20 17:31 - 2019-12-07 16:12 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2020-12-20 16:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2020-12-20 16:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2020-12-20 16:50 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2020-12-20 12:15 - 2019-04-28 20:46 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\D3DSCache 2020-12-19 18:24 - 2019-04-30 16:56 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\obs-studio 2020-12-19 17:01 - 2019-05-03 14:36 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\.minecraft 2020-12-19 16:50 - 2020-11-06 20:28 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\.tlauncher 2020-12-19 14:32 - 2020-04-11 11:16 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2020-12-17 17:18 - 2019-04-28 13:33 - 000000000 ___RD C:\Users\Użytkownik\OneDrive 2020-12-17 17:02 - 2019-04-29 20:14 - 000000000 ____D C:\ProgramData\Adobe 2020-12-17 16:59 - 2019-04-29 16:50 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\Adobe 2020-12-17 15:27 - 2020-05-03 13:04 - 000001110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk 2020-12-17 15:27 - 2020-05-03 13:04 - 000000000 ____D C:\Program Files\WinRAR 2020-12-17 15:27 - 2019-04-29 20:18 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-12-17 08:17 - 2020-02-04 18:34 - 000000000 ____D C:\Program Files\Microsoft Office 2020-12-14 18:34 - 2020-01-19 10:00 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher 2020-12-14 11:40 - 2020-09-01 13:19 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\discord 2020-12-12 14:56 - 2019-04-28 13:30 - 000000000 ____D C:\Users\Użytkownik\AppData\Roaming\Adobe 2020-12-11 19:26 - 2020-04-12 12:22 - 000000000 ____D C:\Users\Public\Documents\Adobe 2020-12-11 19:26 - 2020-04-11 11:17 - 000000000 ___HD C:\adobeTemp 2020-12-11 19:25 - 2020-04-11 11:02 - 000000000 ____D C:\Program Files\Adobe 2020-12-08 14:47 - 2020-09-01 13:18 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\Discord 2020-12-08 12:00 - 2020-08-05 07:56 - 000000000 ____D C:\Temp 2020-12-08 11:11 - 2020-05-11 18:38 - 000000000 ____D C:\ProgramData\VEGAS Pro 2020-12-08 11:11 - 2020-05-11 18:38 - 000000000 ____D C:\ProgramData\VEGAS 2020-12-04 14:08 - 2019-05-12 09:52 - 000000000 ____D C:\Program Files (x86)\Apowersoft 2020-12-01 13:38 - 2020-05-14 19:31 - 000000037 _____ C:\ProgramData\droidcam-settings 2020-11-29 18:07 - 2019-09-28 17:42 - 000000000 ____D C:\Users\Użytkownik\AppData\Local\ElevatedDiagnostics 2020-11-29 08:24 - 2020-04-11 11:02 - 000000000 ____D C:\Program Files\Common Files\Adobe 2020-11-29 08:13 - 2020-05-16 07:29 - 000001368 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2020-11-29 08:13 - 2019-04-29 20:16 - 000000000 ____D C:\Program Files (x86)\Adobe 2020-11-22 09:23 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\TextInput ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-09-22 19:30 - 2020-09-06 15:08 - 000000017 _____ () C:\Users\Użytkownik\AppData\Roaming\.cache3678791056.dat 2020-12-11 10:23 - 2020-12-12 18:05 - 000000016 _____ () C:\Users\Użytkownik\AppData\Roaming\obs-virtualcam.txt 2019-05-24 20:14 - 2020-06-20 09:51 - 000000038 _____ () C:\Users\Użytkownik\AppData\Roaming\WB.CFG 2020-12-20 11:19 - 2020-12-21 17:45 - 000007604 _____ () C:\Users\Użytkownik\AppData\Local\Resmon.ResmonCfg 2020-12-05 07:49 - 2020-12-05 07:49 - 000000370 _____ () C:\Users\Użytkownik\AppData\Local\{36C1485C-56A7-4207-90E9-889898EF9CF8} 2020-12-02 08:05 - 2020-12-02 08:05 - 000002857 _____ () C:\Users\Użytkownik\AppData\Local\{8EBBDE54-1442-45DB-A5CC-168A68D6FEF7} 2020-11-03 17:01 - 2020-11-03 17:01 - 000000000 _____ () C:\Users\Użytkownik\AppData\Local\{B7B37667-4044-4811-BE76-F3D867174F24} ==================== FCheck ================================ (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) FCheck: C:\WINDOWS\SysWOW64\lastpass_1337.exe [2020-07-12] <==== UWAGA (zerobajtowy plik/folder) ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================