Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 29-05-2021 01 Uruchomiony przez reszk (administrator) LAPTOP-BIV5VBLA (HP HP Laptop 15s-eq1xxx) (31-05-2021 10:55:50) Uruchomiony z C:\Users\reszk\Downloads Załadowane profile: reszk Platform: Windows 10 Home Wersja 21H1 19043.985 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0359349.inf_amd64_14a932a498cb67e4\B359612\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0359349.inf_amd64_14a932a498cb67e4\B359612\atiesrxx.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_e0cb3d04adc61069\x64\TouchpointAnalyticsClientService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_e0cb3d04adc61069\x64\TouchpointGpuInfo.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\AppHelperCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\BridgeCommunication.exe <2> (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\DiagsCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\NetworkCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\SysInfoCap.exe (HP Inc.) C:\Program Files\WindowsApps\AD2F1837.HPJumpStarts_1.10.1627.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_1.1.21.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2105.19601.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.621.4222.0_x64__8wekyb3d8bbwe\GameBar.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.621.4222.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\NisSrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <8> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3e0257ced434aaba\RtkAudUService64.exe <3> (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3e0257ced434aaba\RtkAudUService64.exe [1179440 2020-09-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKU\S-1-5-21-2860177095-1218048626-368922273-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HPSEU\HpseuHostLauncher.exe [528392 2021-03-06] (HP Inc. -> HP Inc.) HKU\S-1-5-21-2860177095-1218048626-368922273-1001\...\Run: [GalaxyClient] => [X] HKU\S-1-5-21-2860177095-1218048626-368922273-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [14916448 2021-04-05] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-2860177095-1218048626-368922273-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4087528 2021-05-19] (Valve -> Valve Corporation) HKLM\...\Print\Monitors\HP be2a Status Monitor: C:\WINDOWS\system32\hpinkstsbe2aLM.dll [468576 2018-06-15] (Hewlett Packard -> HP Inc.) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {212A572F-0CE5-47BA-BD49-4611674D0142} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2216DD37-C517-4698-AD58-655F668A509A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => cmd /c start hpdiags://LaunchUI Task: {300FA143-38A4-46C4-8310-3946E6BF58D5} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696304 2021-05-06] (Mozilla Corporation -> Mozilla Foundation) Task: {328CCFBD-10BC-4E60-9083-AC2BA7975F33} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => cmd /c start hpdiags://BHM2 Task: {4C970CF6-06EE-4FA4-B415-A2BA08CAAA2A} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => cmd /c start hpdiags://SmartCheckTest Task: {4EB0B829-E96F-4359-AEF3-438EC52F5FF8} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => cmd /c start hpdiags://BHM1 Task: {4FD48F1F-84C2-40E6-AE1B-EA99E800BA0A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1137264 2021-05-18] (HP Inc. -> HP Inc.) Task: {5DC24A0A-E0E1-4770-B263-2E76703D8C0D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => cmd /c start hpdiags://BatteryStatusError Task: {672FF09E-AE1A-4875-BD9F-70010BB440DB} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [136304 2021-05-18] (HP Inc. -> HP Inc.) Task: {6AE518CF-7F2A-4F9A-8E02-85F84501E1B1} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice Task: {6CBEF361-EE00-46F9-B3B8-D803788F07C8} - \Microsoft\Windows\Management\Provisioning\PostResetBoot -> Brak pliku <==== UWAGA Task: {6D095393-E368-4087-96A9-282CB707268C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {884DF375-675D-433C-BEA5-C14C87CA7797} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => cmd /c start hpdiags://BCF Task: {8C414FEC-05D5-4D5E-865F-5E4084B3DBD6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9B1E6B97-BC97-4979-AA1E-D99FE27BBA14} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => cmd /c start hpdiags://ABO Task: {A1AFBE7B-E479-4B43-9ECD-591FA962F782} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => cmd /c start hpdiags://BatteryStatusTest Task: {A565B31E-A7C9-4065-8FBC-AE8DA210FE0D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => cmd /c start hpdiags: Task: {BB773DC8-8F11-4FCC-96E4-BCB76EB18878} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MpCmdRun.exe [595288 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D1526E3D-20E3-4BF3-9C22-47FFF0BA884A} - \HPAudioSwitch -> Brak pliku <==== UWAGA Task: {D44DFA0F-1F5F-465D-AD3D-D6D8F1971CF5} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1137264 2021-05-18] (HP Inc. -> HP Inc.) Task: {E718D044-8F6E-48E7-953D-85D8F0FF19E2} - \OneDrive Standalone Update Task-S-1-5-21-1408412872-1553589681-2722440392-500 -> Brak pliku <==== UWAGA Task: {EB9BD688-8703-4AE9-A367-B61BF0C98BBB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => cmd /c start hpdiags://SmartCheckError (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 62.179.1.61 62.179.1.63 Tcpip\..\Interfaces\{6a6dfdc5-c306-4f95-b1f3-336cdaa719af}: [DhcpNameServer] 62.179.1.61 62.179.1.63 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Profile 10 Edge Profile: C:\Users\reszk\AppData\Local\Microsoft\Edge\User Data\Profile 10 [2021-05-31] FireFox: ======== FF DefaultProfile: at4yqw1m.default FF ProfilePath: C:\Users\reszk\AppData\Roaming\Mozilla\Firefox\Profiles\at4yqw1m.default [2021-03-27] FF ProfilePath: C:\Users\reszk\AppData\Roaming\Mozilla\Firefox\Profiles\lfgpddke.default-release [2021-05-31] FF Extension: (uBlock Origin) - C:\Users\reszk\AppData\Roaming\Mozilla\Firefox\Profiles\lfgpddke.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-05-07] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1874272 2021-04-05] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6840672 2021-04-05] (GOG Sp. z o.o. -> GOG.com) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [905080 2020-03-18] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\AppHelperCap.exe [733208 2021-04-20] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\DiagsCap.exe [731160 2021-04-20] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\NetworkCap.exe [731160 2021-04-20] (HP Inc. -> HP Inc.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [288360 2021-05-07] (HP Inc. -> HP Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bfd9ce614b7974c4\x64\SysInfoCap.exe [732184 2021-04-20] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_e0cb3d04adc61069\x64\TouchpointAnalyticsClientService.exe [489528 2021-04-21] (HP Inc. -> HP Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\NisSrv.exe [2599328 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2104.14-0\MsMpEng.exe [128376 2021-05-14] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AMDAfdAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\amdacpafd.inf_amd64_85886a102411a684\amdacpafd.sys [335056 2021-02-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices) R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [134784 2020-05-28] (Alcorlink Corp. -> ) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2021-01-24] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [24096 2020-04-08] (HP Inc. -> HP Inc.) R3 MpKsl3e5ba59b; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{9D73A7CA-EC8F-4AAB-B4E2-96C79D7F0353}\MpKslDrv.sys [107744 2021-05-31] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-05-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [421112 2021-05-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [73960 2021-05-14] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2020-06-08] (HP Inc. -> HP) U3 aspnet_state; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-05-31 10:03 - 2021-05-31 10:04 - 000033567 _____ C:\Users\reszk\Downloads\Addition.txt 2021-05-31 10:02 - 2021-05-31 10:56 - 000016113 _____ C:\Users\reszk\Downloads\FRST.txt 2021-05-31 10:02 - 2021-05-31 10:56 - 000000000 ____D C:\FRST 2021-05-31 10:02 - 2021-05-31 10:02 - 000000000 ____D C:\Users\reszk\Downloads\FRST-OlderVersion 2021-05-31 10:00 - 2021-05-31 10:02 - 002299904 _____ (Farbar) C:\Users\reszk\Downloads\FRST64.exe 2021-05-30 11:35 - 2021-05-30 11:44 - 000000000 ____D C:\Users\reszk\Documents\gothic3 2021-05-30 11:34 - 2021-05-30 11:34 - 000000000 ____D C:\WINDOWS\SysWOW64\AGEIA 2021-05-30 11:34 - 2021-05-30 11:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2021-05-30 11:34 - 2021-05-30 11:34 - 000000000 ____D C:\Program Files (x86)\AGEIA Technologies 2021-05-30 11:25 - 2021-05-30 11:25 - 000002176 _____ C:\Users\reszk\Desktop\GothicStarter — skrót .lnk 2021-05-30 11:25 - 2021-05-30 11:25 - 000000221 _____ C:\Users\reszk\Desktop\Gothic 3.url 2021-05-30 06:30 - 2021-05-30 06:30 - 000000000 ____D C:\Users\reszk\Downloads\G2 classic 2021-05-30 06:28 - 2021-05-30 06:28 - 038302731 _____ C:\Users\reszk\Downloads\G2Classic_Mod_PL_V1.0.rar 2021-05-29 21:53 - 2021-05-29 21:53 - 000000221 _____ C:\Users\reszk\Desktop\Gothic II Gold Edition.url 2021-05-26 09:34 - 2021-05-26 09:35 - 000000000 ____D C:\Users\reszk\Downloads\Gothic2-GD3D11-17.7-dev17_avx 2021-05-26 09:34 - 2021-05-26 09:34 - 009315296 _____ C:\Users\reszk\Downloads\Gothic2-GD3D11-17.7-dev17_avx.zip 2021-05-22 20:27 - 2021-05-22 20:27 - 000000000 ____D C:\Users\reszk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\World of Gothic 2021-05-22 20:21 - 2021-05-22 20:21 - 003031183 _____ (${MOD_COMP}) C:\Users\reszk\Downloads\gothic2_fix-2.6.0.0-rev2.exe 2021-05-22 20:21 - 2021-05-22 20:21 - 001357016 _____ (theMODDERS ORG - Community © 2019) C:\Users\reszk\Downloads\G2NoTR-SystemPack-1.8.exe 2021-05-22 20:21 - 2021-05-22 20:21 - 000153074 _____ C:\Users\reszk\Downloads\Gothic2_PlayerKit-2.8.exe 2021-05-15 14:32 - 2021-05-15 14:32 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-05-15 14:32 - 2021-05-15 14:32 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-05-15 14:32 - 2021-05-15 14:32 - 001823816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-05-15 14:32 - 2021-05-15 14:32 - 001687040 _____ C:\WINDOWS\system32\libcrypto.dll 2021-05-15 14:32 - 2021-05-15 14:32 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-05-15 14:32 - 2021-05-15 14:32 - 001314120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2021-05-15 14:32 - 2021-05-15 14:32 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-05-15 14:32 - 2021-05-15 14:32 - 000700928 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2021-05-15 14:32 - 2021-05-15 14:32 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-05-15 14:32 - 2021-05-15 14:32 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-05-15 14:32 - 2021-05-15 14:32 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-05-15 14:32 - 2021-05-15 14:32 - 000011351 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-05-14 08:28 - 2021-05-14 08:31 - 000000000 ____D C:\Users\reszk\AppData\Local\BraveSoftware 2021-05-14 08:28 - 2021-05-14 08:28 - 001243504 _____ (BraveSoftware Inc.) C:\Users\reszk\Downloads\BraveBrowserSetup.exe 2021-05-13 20:59 - 2021-05-13 20:59 - 000000221 _____ C:\Users\reszk\Desktop\Gothic.url 2021-05-13 20:51 - 2021-05-13 20:52 - 000000000 ____D C:\Users\reszk\Downloads\Gothic1-GD3D11-17.7-dev17_avx 2021-05-13 09:59 - 2021-05-13 09:59 - 000182312 _____ C:\Users\reszk\Downloads\Certyfikat_polisy_OC_duplikat_5019.pdf 2021-05-13 09:52 - 2021-05-13 09:52 - 000400556 _____ C:\Users\reszk\Downloads\LINK4_files_95100741.zip 2021-05-13 09:52 - 2021-05-13 09:52 - 000000000 ____D C:\Users\reszk\Downloads\LINK4_files_95100741 2021-05-09 08:51 - 2021-05-09 08:51 - 000004096 _____ C:\WINDOWS\d3dx.dat 2021-05-09 08:44 - 2021-05-09 08:44 - 001821642 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2021-05-09 08:43 - 2021-05-09 08:43 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2021-05-09 08:43 - 2021-05-09 08:43 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-05-09 08:43 - 2021-05-09 08:43 - 000000000 ____D C:\Program Files\MSBuild 2021-05-09 08:43 - 2021-05-09 08:43 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-05-09 08:43 - 2021-05-09 08:43 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-05-07 21:31 - 2021-05-07 21:31 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2021-05-07 11:06 - 2021-05-07 11:06 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-05-06 22:18 - 2021-05-07 21:30 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-05-01 21:57 - 2021-05-30 11:25 - 000000000 ____D C:\Users\reszk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-05-01 21:46 - 2021-05-01 21:46 - 000000000 ____D C:\Users\reszk\AppData\Local\Steam 2021-05-01 21:45 - 2021-05-31 10:21 - 000000000 ____D C:\Program Files (x86)\Steam 2021-05-01 21:45 - 2021-05-01 21:45 - 001770744 _____ C:\Users\reszk\Downloads\SteamSetup.exe 2021-05-01 21:45 - 2021-05-01 21:45 - 000001039 _____ C:\Users\Public\Desktop\Steam.lnk 2021-05-01 21:45 - 2021-05-01 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-05-31 10:51 - 2021-03-27 12:02 - 000000000 ____D C:\ProgramData\Mozilla 2021-05-31 10:51 - 2021-03-08 22:27 - 000000000 ____D C:\Users\reszk\AppData\LocalLow\Mozilla 2021-05-31 10:50 - 2021-03-09 04:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-05-31 10:34 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-05-31 10:25 - 2021-03-09 05:06 - 001888014 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-05-31 10:25 - 2021-03-09 04:47 - 000818918 _____ C:\WINDOWS\system32\perfh015.dat 2021-05-31 10:25 - 2021-03-09 04:47 - 000169602 _____ C:\WINDOWS\system32\perfc015.dat 2021-05-31 10:25 - 2021-03-09 04:45 - 000000000 ____D C:\WINDOWS\INF 2021-05-31 10:20 - 2021-03-09 04:48 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-05-31 10:20 - 2021-03-09 04:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-05-31 10:20 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-05-31 10:20 - 2021-03-09 04:42 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-05-31 10:20 - 2020-05-06 10:58 - 000008192 ___SH C:\DumpStack.log.tmp 2021-05-31 10:17 - 2021-03-09 04:43 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-05-30 07:19 - 2021-03-09 04:46 - 000000000 ___HD C:\Program Files\WindowsApps 2021-05-30 07:18 - 2021-03-09 05:06 - 000000000 ____D C:\Users\reszk\AppData\Local\D3DSCache 2021-05-30 06:29 - 2021-03-09 05:08 - 000000000 ____D C:\Users\reszk\AppData\Local\PlaceholderTileLogoFolder 2021-05-30 06:29 - 2021-03-09 05:06 - 000000000 ____D C:\Users\reszk\AppData\Local\Packages 2021-05-29 20:36 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-05-26 09:43 - 2021-03-08 21:51 - 000000000 ____D C:\Games 2021-05-25 23:46 - 2021-03-14 15:03 - 000000000 ____D C:\ProgramData\Innova 2021-05-25 23:46 - 2021-03-14 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Innova Co. SARL 2021-05-25 23:46 - 2021-03-14 15:02 - 000000000 ____D C:\Program Files (x86)\Innova 2021-05-22 19:11 - 2021-03-22 20:12 - 000000000 ____D C:\Users\reszk\Documents\Stronghold Crusader 2021-05-19 16:39 - 2021-03-09 05:41 - 000000000 ____D C:\Users\reszk\AppData\Local\HP_Inc 2021-05-15 16:28 - 2021-03-09 04:47 - 000000000 ____D C:\WINDOWS\HoloShell 2021-05-15 16:27 - 2021-03-09 04:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-05-15 16:25 - 2021-03-09 04:46 - 000750648 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-05-15 16:24 - 2021-03-09 04:47 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SystemResources 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\setup 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\Provisioning 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\DiagTrack 2021-05-15 16:24 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-05-15 14:35 - 2021-03-09 05:46 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-05-15 14:34 - 2021-03-09 05:46 - 132732536 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-05-15 14:34 - 2021-03-09 04:46 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2021-05-14 06:58 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-05-13 13:22 - 2021-03-07 11:05 - 000000000 ____D C:\SWSetup 2021-05-13 12:25 - 2021-03-09 05:08 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2860177095-1218048626-368922273-1001 2021-05-13 12:25 - 2021-03-09 04:57 - 000002414 _____ C:\Users\reszk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-13 12:25 - 2021-03-03 12:24 - 000000000 ___RD C:\Users\reszk\OneDrive 2021-05-09 08:43 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-05-09 08:43 - 2021-03-09 04:46 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-05-07 21:31 - 2021-03-09 05:06 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2021-05-07 21:30 - 2021-03-27 12:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-05-07 11:06 - 2021-03-27 12:02 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-05-04 23:26 - 2021-03-09 05:06 - 000000000 ____D C:\Users\reszk\AppData\Local\VirtualStore ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================