Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-01-2021 Uruchomiony przez Ja (administrator) DESKTOP-7KO7647 (ASUSTeK COMPUTER INC. UX550VE) (22-01-2021 13:34:12) Uruchomiony z C:\Users\Ja\Desktop Załadowane profile: Ja Platform: Windows 10 Home Wersja 2004 19041.508 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AnchorFree Inc -> ) C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) pGFX 2020 -> ) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_cf129e457c51e71b\OneApp.IGCC.WinService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0ff9f497187b8bed\igfxCUIService.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_0ff9f497187b8bed\igfxEM.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_020c2c7d3ac4a7d3\IntelCpHDCPSvc.exe (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_020c2c7d3ac4a7d3\IntelCpHeciSvc.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_7fd3c1076ca83746\Intel_PIE_Service.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (Panda Security S.L. -> Panda Security S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_Tablet.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TabletUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\Wacom_TouchUser.exe (Wacom Co., Ltd. -> Wacom Co. Ltd.) C:\Program Files\Tablet\Wacom\WTabletServicePro.exe (Wacom Technology Corp. -> Wacom Technology) C:\Program Files\Tablet\Wacom\WacomHost.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [165120 2019-10-16] (Panda Security S.L. -> Panda Security, S.L.) HKLM\...\Winlogon: [Userinit] C:\WINDOWS\SysWOW64\userinit.exe, <==== UWAGA HKLM\...\Policies\Explorer: [HideSCAHealth] 0 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-112430691-1903889100-2400215175-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-112430691-1903889100-2400215175-1001\...\Run: [Opera Browser Assistant] => C:\Users\Ja\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3126296 2020-07-27] (Opera Software AS -> Opera Software) HKU\S-1-5-21-112430691-1903889100-2400215175-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {06D6A8D6-E51F-40A1-BBA6-2AA60E7C7E57} - System32\Tasks\Opera scheduled Autoupdate 1596008913 => C:\Users\Ja\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software) Task: {07376CD2-4371-4CDF-A2FA-A1221EEB073D} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) Task: {1F3D2FBD-7F9B-4B2A-B6B2-A6511F8E5A07} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506176 2019-11-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {254D2D6F-A6A1-4475-89D4-E38537826F94} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd) Task: {3D9FDA43-84D6-45F4-A1E8-1C0A197A057D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {467DE4FC-5529-4A5B-8F67-7E7344B0380C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4C094B69-F5DE-4799-92B5-1C8AB59AAD57} - System32\Tasks\Microsoft\Windows\WDI\SrvHost => rundll32.exe winscomrssrv.dll,SrvMainHost <==== UWAGA Task: {6B316AC1-5941-402A-8856-D2D029ED4A9C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {74ABEED5-6027-40C9-87C2-595121A5FA54} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\MpCmdRun.exe [533312 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7A5E95BF-B613-4328-A042-A63B438CAEE8} - System32\Tasks\Microsoft\Windows\Application Experience\StartupCheckLibrary => rundll32.exe StartupCheckLibrary.dll,DllMainRunLibrary <==== UWAGA Task: {7E797925-A953-4D8E-89CA-AEF18EEEBF3F} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\winrmsrv => winrmsrv.exe <==== UWAGA Task: {A04D117D-A882-4419-A109-5FF9AFC87556} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506176 2019-11-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {B814D288-BC64-4E2C-B76C-622E6C0B0BC0} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {C5C21255-4C47-465C-A800-C67A69AEFC57} - System32\Tasks\Microsoft\Windows\Wininet\Winlogui => winlogui.exe <==== UWAGA Task: {D5BF8F6A-AEAD-457C-9874-2E88DE0662BA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-06] (Mozilla Corporation -> Mozilla Foundation) Task: {EB78C65E-F23C-4A8A-8CBF-148CC01FB476} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe Task: {F80093C3-0818-46B2-9230-BB131EE6B603} - System32\Tasks\Opera scheduled assistant Autoupdate 1596008916 => C:\Users\Ja\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Ja\AppData\Local\Programs\Opera\assistant" $(Arg0) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{bfeb071a-7cc4-4628-a7c1-8428d78830e0}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{d449e741-ca99-4a74-8684-1e9bb1afcbb6}: [DhcpNameServer] 8.8.8.8 Edge: ======= Edge Profile: C:\Users\Ja\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-22] FireFox: ======== FF DefaultProfile: m9q1b0is.default FF ProfilePath: C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\m9q1b0is.default [2020-07-26] FF ProfilePath: C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\f66aczl0.default-release [2021-01-22] FF DownloadDir: C:\Users\Ja\Desktop FF Extension: (Prolific Assistant) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\f66aczl0.default-release\Extensions\{09993eda-1986-4e10-886e-5c63815338c5}.xpi [2020-12-01] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\f66aczl0.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-07-27] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) Opera: ======= OPR Profile: C:\Users\Ja\AppData\Roaming\Opera Software\Opera Stable [2021-01-21] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Ja\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-10-28] OPR Extension: (Speed Translate) - C:\Users\Ja\AppData\Roaming\Opera Software\Opera Stable\Extensions\jggobmlojchhlngdhmmdghgganciigof [2020-08-08] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems Incorporated -> Adobe Systems, Incorporated) R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109536 2019-10-16] (Panda Security S.L. -> Panda Security, S.L.) R3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-19] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.) R2 pselamsvc; C:\Program Files (x86)\Panda Security\Panda Security Protection\pselamsvc.exe [189448 2018-07-25] (Panda Security S.L. -> Panda Security S.L.) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2019-10-16] (Panda Security S.L. -> Panda Security, S.L.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2009.7-0\NisSrv.exe [2372048 2020-10-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 wuauserv; C:\WINDOWS\system32\svchost.exe [57368 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) <==== UWAGA (Brak ServiceDLL) S3 wuauserv; C:\WINDOWS\SysWOW64\svchost.exe [47232 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) <==== UWAGA (Brak ServiceDLL) S3 edgeupdate; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /svc [X] S3 edgeupdatem; "C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe" /medsvc [X] S3 MicrosoftEdgeElevationService; "C:\Program Files (x86)\Microsoft\Edge\Application\81.0.416.62\elevation_service.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) R3 AmPeStor; C:\WINDOWS\system32\drivers\AmPeStor.sys [136152 2017-10-23] (Alcor Micro, Corp. -> Generic) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. -> ASUSTek COMPUTER INC.) R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32680 2019-08-07] (ASUSTek Computer Inc. -> ASUS) R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [111384 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSDNS; C:\WINDOWS\system32\DRIVERS\NNSDNS.sys [104728 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211736 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [125720 2019-03-06] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [132888 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [95472 2018-07-16] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [149784 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [95000 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135448 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [346392 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [290584 2019-05-30] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123160 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [295192 2019-05-30] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [132376 2019-03-05] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [198424 2019-06-12] (Panda Security S.L. -> Panda Security, S.L.) S0 psinelam; C:\WINDOWS\System32\DRIVERS\psinelam.sys [21952 2019-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Panda Security, S.L.) R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [160536 2019-06-12] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [215320 2019-03-04] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [147224 2019-06-12] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159512 2019-06-12] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129304 2019-06-12] (Panda Security S.L. -> Panda Security, S.L.) U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security S.L. -> Panda Security, S.L.) S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [48936 2020-07-24] (SteelSeries ApS -> SteelSeries ApS) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-10-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [428264 2020-10-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [69864 2020-10-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-22 13:19 - 2021-01-22 13:34 - 000018173 _____ C:\Users\Ja\Desktop\FRST.txt 2021-01-22 13:19 - 2021-01-22 13:34 - 000000000 ____D C:\FRST 2021-01-22 13:19 - 2021-01-22 13:20 - 000029928 _____ C:\Users\Ja\Desktop\Addition.txt 2021-01-22 13:17 - 2021-01-22 13:17 - 002296320 _____ (Farbar) C:\Users\Ja\Desktop\FRST64.exe 2021-01-22 12:39 - 2021-01-22 12:39 - 000000000 ____D C:\ProgramData\Hotspot Shield 2021-01-22 12:07 - 2021-01-22 12:08 - 000000000 ____D C:\Program Files (x86)\Panda Security 2021-01-22 12:07 - 2021-01-22 12:07 - 000002298 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome.lnk 2021-01-22 12:07 - 2021-01-22 12:07 - 000002281 _____ C:\Users\Public\Desktop\Panda Dome.lnk 2021-01-22 12:07 - 2021-01-22 12:07 - 000000000 ____D C:\Users\Ja\AppData\Roaming\Panda Security 2021-01-22 12:07 - 2021-01-22 12:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome 2021-01-22 12:07 - 2019-06-12 02:29 - 000198424 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys 2021-01-22 12:07 - 2019-06-12 02:29 - 000159512 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys 2021-01-22 12:07 - 2019-06-12 02:29 - 000129304 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys 2021-01-22 12:07 - 2019-05-30 05:57 - 000295192 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsstrm.sys 2021-01-22 12:07 - 2019-03-06 03:06 - 000125720 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttps.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000346392 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsprot.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000211736 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttp.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000149784 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspicc.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000135448 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspop3.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000132888 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsids.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000132376 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnstlsc.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000123160 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnssmtp.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000111384 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsalpc.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000104728 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsdns.sys 2021-01-22 12:07 - 2019-03-05 05:44 - 000095000 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys 2021-01-22 12:07 - 2019-03-04 13:20 - 000215320 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys 2021-01-22 12:07 - 2019-01-22 03:44 - 000021952 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\psinelam.sys 2021-01-22 12:07 - 2017-05-22 05:01 - 000072648 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys 2021-01-22 12:06 - 2021-01-22 12:08 - 000000000 ____D C:\ProgramData\Panda Security 2021-01-22 12:06 - 2021-01-22 12:06 - 003137320 _____ (Panda Security, S.L.) C:\Users\Ja\Desktop\PANDAFREEAV.exe 2021-01-22 11:51 - 2021-01-22 11:53 - 000430570 _____ C:\WINDOWS\ntbtlog.txt 2021-01-10 18:24 - 2021-01-10 18:24 - 000000000 ____T C:\WINDOWS\system32\Elan_FP_Image_20210110_182405.txt 2021-01-09 22:22 - 2021-01-09 22:22 - 000000000 ____T C:\WINDOWS\system32\Elan_FP_Image_20210109_222232.txt 2021-01-09 18:01 - 2021-01-09 18:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-01-09 17:47 - 2021-01-09 17:47 - 000000000 ____T C:\WINDOWS\system32\Elan_FP_Image_20210109_174731.txt 2021-01-08 23:05 - 2021-01-21 22:04 - 000000000 ____D C:\Users\Ja\Desktop\drag race 2021-01-06 23:29 - 2021-01-09 22:22 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-12-31 16:01 - 2020-12-31 16:01 - 000000000 ____T C:\WINDOWS\system32\Elan_FP_Image_20201231_160120.txt 2020-12-29 21:34 - 2020-12-29 21:34 - 000000000 ____T C:\WINDOWS\system32\Elan_FP_Image_20201229_213428.txt ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-22 13:15 - 2020-07-26 19:41 - 000750220 _____ C:\WINDOWS\system32\perfh015.dat 2021-01-22 13:15 - 2020-07-26 19:41 - 000144914 _____ C:\WINDOWS\system32\perfc015.dat 2021-01-22 13:15 - 2020-07-26 19:39 - 000000000 ____D C:\WINDOWS\INF 2021-01-22 13:15 - 2020-07-26 19:09 - 001678234 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-01-22 13:09 - 2020-07-29 17:54 - 000000000 ____D C:\Program Files\CCleaner 2021-01-22 13:09 - 2020-07-26 19:39 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-22 13:08 - 2020-07-26 19:59 - 000000000 ____D C:\ProgramData\Mozilla 2021-01-22 13:07 - 2020-08-16 09:56 - 000000000 ____D C:\Users\Ja\AppData\Roaming\WTablet 2021-01-22 13:07 - 2020-07-26 19:59 - 000000000 ____D C:\Users\Ja\AppData\LocalLow\Mozilla 2021-01-22 13:07 - 2020-07-26 19:39 - 000000000 ____D C:\WINDOWS\ServiceState 2021-01-22 13:07 - 2020-07-26 19:36 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-01-22 13:07 - 2020-07-26 19:16 - 000000000 __SHD C:\Users\Ja\IntelGraphicsProfiles 2021-01-22 13:07 - 2020-07-26 19:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-01-22 13:07 - 2020-07-26 19:03 - 000000000 ____D C:\ProgramData\NVIDIA 2021-01-22 13:07 - 2020-07-26 19:02 - 000008192 ___SH C:\DumpStack.log.tmp 2021-01-22 13:06 - 2020-07-26 19:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-01-22 12:39 - 2020-07-26 19:02 - 000511632 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-01-22 12:24 - 2020-10-16 15:53 - 000000000 ____D C:\Users\Ja\Desktop\grey lines studio 2021-01-22 12:07 - 2020-07-26 19:39 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-01-22 12:07 - 2020-07-26 19:16 - 000000000 ____D C:\Users\Ja\AppData\Local\Packages 2021-01-22 11:51 - 2020-10-13 19:56 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2021-01-22 11:43 - 2020-11-19 17:33 - 000000000 ____D C:\Users\Ja\AppData\Local\CrashDumps 2021-01-21 21:04 - 2020-07-26 19:02 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-01-20 23:02 - 2020-10-21 16:59 - 000000000 ____D C:\Users\Ja\Desktop\OGUNY 2020 2021-01-19 18:18 - 2020-11-28 20:24 - 000000000 ____D C:\Users\Ja\Desktop\materiały do nauki starsze roczniki 2021-01-19 18:18 - 2020-08-28 19:53 - 000000000 ____D C:\Users\Ja\Desktop\D01 EV61 2021-01-18 16:00 - 2020-07-29 07:48 - 000003596 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1596008913 2021-01-17 20:21 - 2020-07-29 07:48 - 000001396 _____ C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2021-01-11 15:24 - 2019-08-17 14:30 - 000000000 ____D C:\Users\Ja\Desktop\cv 2019 2021-01-09 22:22 - 2020-07-26 19:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-09 18:01 - 2020-07-26 19:59 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-12-27 14:05 - 2020-07-29 17:54 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-07-28 11:49 - 2020-09-02 16:52 - 000000028 _____ () C:\Users\Ja\AppData\Roaming\kulerdata.json 2020-07-26 20:24 - 2020-07-26 20:24 - 000000410 _____ () C:\Users\Ja\AppData\Local\oobelibMkey.log ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================