Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 03-07-2021 Uruchomiony przez Patryk (administrator) DELL-VOSTRO3550 (Dell Inc. Vostro 3550) (04-07-2021 01:13:19) Uruchomiony z C:\Users\Patryk\Downloads Załadowane profile: Patryk Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Domyślna przeglądarka: IE Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files (x86)\WinXT\blog\dezember\winloading.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Andrea Electronics Corporation) [Brak podpisu cyfrowego] C:\Program Files\IDT\WDM\AESTSr64.exe (Iain Patterson) [Brak podpisu cyfrowego] C:\Program Files (x86)\WinXT\blog\nssm.exe (IDT, Inc.) [Brak podpisu cyfrowego] C:\Program Files\IDT\WDM\stacsv64.exe (IDT, Inc.) [Brak podpisu cyfrowego] C:\Program Files\IDT\WDM\sttray64.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation-Mobile Wireless Group -> Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\osk.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <6> (Realtek Semiconductor Corp. -> ) C:\Windows\runSW.exe (Realtek Semiconductor Corp. -> Realtek) C:\Windows\SwUSB.exe (Synaptics Inc. -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [MSC] => c:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [184112 2012-09-17] (Intel Corporation-Mobile Wireless Group -> Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7830328 2013-05-21] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1424896 2020-11-10] (IDT, Inc.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc. -> Apple Inc.) HKU\S-1-5-21-3725637032-4102558920-3925882777-1003\...\Run: [CubeDesktop] => [X] HKU\S-1-5-21-3725637032-4102558920-3925882777-1003\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize HKU\S-1-5-21-3725637032-4102558920-3925882777-1003\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2021-01-01] (Adobe Inc. -> Adobe) HKU\S-1-5-21-3725637032-4102558920-3925882777-1003\...\MountPoints2: {acc5441f-464c-11eb-9cbd-4c809385d8b9} - E:\HiSuiteDownLoader.exe HKU\S-1-5-18\...\Run: [] => [X] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\88.0.4324.150\Installer\chrmstp.exe [2021-02-04] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\$McRebootA5E6DEAA56$.lnk [2021-06-19] ShortcutTarget: $McRebootA5E6DEAA56$.lnk -> (Brak pliku) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {09B572F6-0A13-43E8-BCD0-C330BF54BD1E} - System32\Tasks\{BF8082B2-2A07-43AD-86CF-94B15450E06B} => C:\Windows\system32\pcalua.exe -a C:\Users\Patryk\Downloads\xsplit_5fef816b62342_5fef816b62344\xsplit_5fef816e9d4bd\FileSetup-v36.21.43\FileSetup-v36.21.43.exe -d C:\Users\Patryk\Downloads\xsplit_5fef816b62342_5fef816b62344\xsplit_5fef816e9d4bd\FileSetup-v36.21.43 Task: {0AE17C69-41B9-428A-B974-AC91D326B19D} - System32\Tasks\{8C4C2114-2C65-4EC2-B2DC-81926C769511} => C:\Windows\system32\pcalua.exe -a "C:\Users\Patryk\Downloads\Festo FluidSim V3.6 Full\Festo FluidSim V3.6 Full\FluidSim.English.Pack.by.CHEOPE.exe" -d "C:\Users\Patryk\Downloads\Festo FluidSim V3.6 Full\Festo FluidSim V3.6 Full" Task: {0E6E755C-3DC4-44B0-9631-BA03889AF8F2} - System32\Tasks\Opera scheduled assistant Autoupdate 1617867835 => C:\Users\Patryk\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Patryk\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {1BFC529E-5460-4CCF-A6A5-B2F19A7A47D6} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2021-01-01] (Adobe Inc. -> Adobe) Task: {3716D836-C7EC-4976-A60B-7FF64FD01D07} - System32\Tasks\updater2 => C:\Program Files (x86)\WinXT\blog\updater.exe [593920 2021-07-02] (WinXT) [Brak podpisu cyfrowego] <==== UWAGA Task: {4417B143-FDB0-44DE-8CBE-581389A7A029} - System32\Tasks\{6FA8C712-99F7-4BB3-B798-2D44B4956EBD} => C:\Windows\system32\pcalua.exe -a "C:\Users\Patryk\Downloads\MONKEY ISLAND THE SECRET.exe" -d C:\Users\Patryk\Downloads Task: {51E0B39B-C61C-4ED6-93F1-8A62F8FD3C6C} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {7406B09C-9725-40E7-BB17-C85AB145E6D3} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [690616 2021-06-26] (Mozilla Corporation -> Mozilla Foundation) Task: {745C632E-46C1-4637-B65E-B54E601CEC70} - System32\Tasks\{AA15F915-B94A-4A61-A962-60526CA625A6} => C:\Windows\system32\pcalua.exe -a "C:\Program Files (x86)\SplitMediaLabs\XSplit\XSplit_Plugin_Installer.exe" -d "C:\Program Files (x86)\SplitMediaLabs\XSplit" Task: {9AE4A238-3459-4791-9AD8-C2980775BA09} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-01-01] (Adobe Inc. -> Adobe) Task: {A7CCDB80-5858-4CDE-91AC-8AA2BB556A25} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {D871A0E0-05A5-4077-8DA6-E07E07B597DD} - System32\Tasks\{69FF0014-B755-47E8-95A7-ECE035E474CB} => C:\Windows\system32\pcalua.exe -a C:\Users\Patryk\Downloads\CubeDesktop\CubeDesktopTryOut.exe -d C:\Users\Patryk\Downloads\CubeDesktop Task: {E3C0752A-70BE-4EC2-B679-A35BF8A96384} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {F576E1D0-412F-41AF-8B4E-8C4CBD23AE7E} - System32\Tasks\Opera scheduled Autoupdate 1617867827 => C:\Users\Patryk\AppData\Local\Programs\Opera\launcher.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\updater2.job => C:\Program Files (x86)\WinXT\blog\updater.exe <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{C6349143-EC6D-4B5E-A60D-75F7A9950247}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\Patryk\AppData\Local\Microsoft\Edge\User Data\Default [2021-06-26] FireFox: ======== FF DefaultProfile: oqzqupfm.default FF ProfilePath: C:\Users\Patryk\AppData\Roaming\Mozilla\Firefox\Profiles\oqzqupfm.default [2021-02-10] FF NewTab: Mozilla\Firefox\Profiles\oqzqupfm.default -> hxxps://securesearch.org/homepage?hp=2&pId=BC180101&iDate=2021-02-10 12:07:21&iid=dd3fccea-c12b-4ab4-a0f7-3f3931a0d5f4&bName= FF ProfilePath: C:\Users\Patryk\AppData\Roaming\Mozilla\Firefox\Profiles\bb786d85.default-release [2021-07-04] FF Homepage: Mozilla\Firefox\Profiles\bb786d85.default-release -> hxxps://duckduckgo.com/ FF NewTab: Mozilla\Firefox\Profiles\bb786d85.default-release -> hxxps://securesearch.org/homepage?hp=2&pId=BC180101&iDate=2021-02-10 12:07:21&iid=dd3fccea-c12b-4ab4-a0f7-3f3931a0d5f4&bName= FF Notifications: Mozilla\Firefox\Profiles\bb786d85.default-release -> hxxps://www.thesun.ie FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Patryk\AppData\Roaming\Mozilla\Firefox\Profiles\bb786d85.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-05-20] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2021-01-01] (Adobe Inc. -> ) FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2021-01-01] (Adobe Inc. -> ) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-05-28] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3725637032-4102558920-3925882777-1003: @lightspark.github.com/Lightspark;version=1 -> C:\Program Files (x86)\Lightspark\nplightsparkplugin.dll [2021-02-10] () [Brak podpisu cyfrowego] Chrome: ======= CHR Profile: C:\Users\Patryk\AppData\Local\Google\Chrome\User Data\Default [2021-07-02] CHR DefaultSearchURL: Default -> hxxps://pl.search.yahoo.com/search?fr=mcafee_uninternational&type=E210PL91105G0&p={searchTerms} CHR DefaultSearchKeyword: Default -> mcafee CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Patryk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Chrome Media Router) - C:\Users\Patryk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-27] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] Opera: ======= OPR Profile: C:\Users\Patryk\AppData\Roaming\Opera Software\Opera Stable [2021-04-08] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Patryk\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-04-08] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-01-01] (Adobe Inc. -> Adobe) R2 AESTFilters; C:\Program Files\IDT\WDM\AESTSr64.exe [89600 2020-11-10] (Andrea Electronics Corporation) [Brak podpisu cyfrowego] R2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 RunSwUSB; C:\Windows\runSW.exe [59232 2020-11-10] (Realtek Semiconductor Corp. -> ) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [305152 2020-11-10] (IDT, Inc.) [Brak podpisu cyfrowego] S3 updater; C:\Program Files (x86)\WinXT\blog\nssm.exe [368640 2017-04-26] (Iain Patterson) [Brak podpisu cyfrowego] R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [95016 2020-11-10] (Synaptics Inc. -> Synaptics Incorporated) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 WinLoading; C:\Program Files (x86)\WinXT\blog\nssm.exe [368640 2017-04-26] (Iain Patterson) [Brak podpisu cyfrowego] R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [X] S2 RealtekWlanU; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RtlService.exe [X] S2 RTLDHCPService; C:\Program Files (x86)\Realtek\USB Wireless LAN Utility\RTLDHCP.exe [X] S2 tcsd_win32.exe; "C:\Program Files\Dell\Dell Data Protection\Drivers\TSS\bin\tcsd_win32.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 Acceler; C:\Windows\System32\DRIVERS\accelern.sys [27760 2011-07-22] (STMicroelectronics -> ST Microelectronics) R3 btmaudio; C:\Windows\System32\drivers\btmaud.sys [88376 2013-03-18] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [132920 2013-04-23] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [1419576 2020-11-10] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18528 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 ManyCam; C:\Windows\System32\DRIVERS\mcvidrv.sys [58280 2018-07-27] (ManyCam (VISICOM MÉDIA INC.) -> Visicom Media Inc.) S3 mcaudrv_simple; C:\Windows\System32\drivers\mcaudrv_x64.sys [35992 2014-12-29] (ManyCam LLC -> Visicom Media Inc.) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu_XP.sys [8006936 2020-11-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation) R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [23216 2015-01-09] (STMicroelectronics -> ST Microelectronics) R3 STHDA; C:\Windows\System32\DRIVERS\stwrt64.sys [535040 2020-11-10] (IDT, Inc.) [Brak podpisu cyfrowego] U3 aswbdisk; Brak ImagePath S3 MpKsl3090a9b1; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DC7417DE-B453-406D-94AC-47B94F3D2947}\MpKslDrv.sys [X] S3 MpKsla6fb2b65; \??\c:\ProgramData\Microsoft\Microsoft Antimalware\Definition Updates\{DC7417DE-B453-406D-94AC-47B94F3D2947}\MpKslDrv.sys [X] S1 UimBus; system32\DRIVERS\uimbus.sys [X] S1 Uim_DEVIM; system32\DRIVERS\uimdevim.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-07-04 01:13 - 2021-07-04 01:17 - 000018297 _____ C:\Users\Patryk\Downloads\FRST.txt 2021-07-04 01:13 - 2021-07-04 01:13 - 000000000 ____D C:\Users\Patryk\Downloads\FRST-OlderVersion 2021-07-02 23:48 - 2021-07-03 00:04 - 000037968 _____ C:\Users\Patryk\Desktop\Addition.txt 2021-07-02 23:37 - 2021-07-03 00:04 - 000022087 _____ C:\Users\Patryk\Desktop\FRST.txt 2021-07-02 22:54 - 2021-07-04 01:15 - 000000000 ____D C:\FRST 2021-07-02 22:50 - 2021-07-04 01:13 - 002300928 _____ (Farbar) C:\Users\Patryk\Downloads\FRST64.exe 2021-06-28 12:07 - 2021-06-28 12:07 - 000000000 ____D C:\ProgramData\WinXT 2021-06-27 11:56 - 2021-06-27 11:56 - 000000000 ____D C:\Users\Patryk\Downloads\others 2021-06-26 23:49 - 2021-07-02 22:16 - 000000000 ____D C:\Users\Patryk\Desktop\tv 2021-06-26 22:55 - 2021-06-26 23:08 - 000000000 ____D C:\Program Files (x86)\PassFab for ZIP 2021-06-26 22:46 - 2021-06-26 22:50 - 000000000 ____D C:\Program Files (x86)\RAR Password Unlocker 2021-06-26 22:20 - 2021-07-04 00:46 - 000000318 ____H C:\Windows\Tasks\updater2.job 2021-06-26 22:20 - 2021-07-04 00:45 - 000002540 _____ C:\Windows\system32\Tasks\updater2 2021-06-26 22:20 - 2021-06-26 22:20 - 000000000 ____D C:\Users\Patryk\AppData\Roaming\WinXT 2021-06-26 22:20 - 2021-06-26 22:20 - 000000000 ____D C:\Program Files (x86)\WinXT 2021-06-26 17:10 - 2021-06-26 17:10 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-06-26 10:42 - 2021-06-26 22:33 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-06-19 12:01 - 2021-06-19 12:02 - 010726974 _____ C:\Users\Patryk\Downloads\Alcohol 120% 2.0.2.391 Pełna Wersja crack.rar 2021-06-19 11:55 - 2021-06-19 11:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinCDEmu 2021-06-19 11:55 - 2021-06-19 11:55 - 000000000 ____D C:\Program Files (x86)\WinCDEmu 2021-06-19 11:49 - 2021-03-08 19:31 - 000000000 ____D C:\Users\Patryk\Downloads\The Incredibles ISO 2021-06-19 11:42 - 2021-06-19 11:49 - 576795546 _____ C:\Users\Patryk\Downloads\The-Incredibles_Win_EN_ISO-Version.zip 2021-06-19 11:37 - 2021-06-19 23:01 - 000000000 ____D C:\ProgramData\Avast Software 2021-06-19 11:36 - 2021-06-19 11:36 - 002452568 _____ ( ) C:\Users\Patryk\Downloads\the-incredibles_ZF-p891.exe 2021-06-18 15:47 - 2021-06-19 23:29 - 000000000 ____D C:\Users\Patryk\Desktop\Tor Browser 2021-06-18 15:47 - 2021-06-18 15:47 - 000000767 _____ C:\Users\Patryk\Desktop\Start Tor Browser.lnk 2021-06-18 08:12 - 2021-06-18 08:12 - 000002047 _____ C:\Users\Patryk\Downloads\Populous - The Beginning.lnk 2021-06-18 08:11 - 2013-11-16 22:19 - 000000000 ____D C:\Users\Patryk\Downloads\Populous The Beginning [GOG] 2021-06-18 08:09 - 2021-06-18 08:10 - 325552651 _____ C:\Users\Patryk\Downloads\Populous The Beginning [GOG].rar 2021-06-17 23:08 - 2021-06-17 23:08 - 000000000 ____D C:\Users\Patryk\Downloads\Bioforge 2021-06-17 09:30 - 2021-06-17 09:30 - 000002144 _____ C:\Users\Public\Desktop\Google Earth.lnk 2021-06-17 09:30 - 2021-06-17 09:30 - 000002144 _____ C:\ProgramData\Desktop\Google Earth.lnk 2021-06-17 09:30 - 2021-06-17 09:30 - 000000000 ____D C:\Users\Patryk\AppData\LocalLow\Google 2021-06-17 09:30 - 2021-06-17 09:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth 2021-06-17 09:29 - 2021-06-17 09:29 - 030589432 _____ C:\Users\Patryk\Downloads\googleearthwin.exe 2021-06-13 03:18 - 2021-06-13 03:19 - 000000000 ____D C:\Users\Patryk\Downloads\TombRaider 2021-06-13 03:16 - 2021-06-13 03:18 - 137411466 _____ C:\Users\Patryk\Downloads\tombraider_dos_win.7z ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-07-04 01:09 - 2020-11-23 12:59 - 000000000 ____D C:\Users\Patryk\AppData\LocalLow\Mozilla 2021-07-04 00:56 - 2009-07-14 06:45 - 000032080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-07-04 00:56 - 2009-07-14 06:45 - 000032080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-07-04 00:46 - 2020-11-10 14:23 - 000000000 ____D C:\ProgramData\Synaptics 2021-07-04 00:46 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-07-04 00:44 - 2020-12-14 12:46 - 000004016 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{9E9B2B9B-2029-4E38-94FA-CF0A0474DA37} 2021-07-02 23:14 - 2020-11-12 12:56 - 000002233 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-07-02 22:32 - 2011-02-04 19:38 - 000741608 _____ C:\Windows\system32\perfh015.dat 2021-07-02 22:32 - 2011-02-04 19:38 - 000156190 _____ C:\Windows\system32\perfc015.dat 2021-07-02 22:32 - 2009-07-14 07:13 - 001668226 _____ C:\Windows\system32\PerfStringBackup.INI 2021-07-02 22:32 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2021-07-02 22:17 - 2020-11-23 13:03 - 000000000 ____D C:\Users\Patryk 2021-07-02 22:15 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\registration 2021-06-29 20:29 - 2020-11-12 12:55 - 000003410 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-06-29 20:29 - 2020-11-12 12:55 - 000003282 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-06-27 19:17 - 2021-01-02 06:34 - 000000000 ____D C:\Users\Patryk\AppData\Local\CrashDumps 2021-06-26 22:33 - 2020-11-22 16:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-06-26 22:25 - 2020-11-16 21:40 - 000000000 ____D C:\Program Files (x86)\Steam 2021-06-19 12:19 - 2021-04-08 09:42 - 000000000 ____D C:\Program Files\McAfee 2021-06-18 08:12 - 2021-01-06 07:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com 2021-06-18 08:11 - 2021-01-06 07:00 - 000000000 ____D C:\Program Files (x86)\GOG.com 2021-06-17 09:30 - 2020-11-10 12:31 - 000000000 ____D C:\Program Files (x86)\Google 2021-06-08 21:34 - 2020-12-29 00:29 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-06-07 18:58 - 2020-11-22 16:43 - 000000000 ____D C:\ProgramData\Mozilla ==================== Pliki w katalogu głównym wybranych folderów ======== 2021-02-11 12:47 - 2021-02-11 12:53 - 000000004 _____ () C:\ProgramData\lock.dat 2021-02-11 12:48 - 2021-02-11 12:53 - 000000004 _____ () C:\ProgramData\rc.dat 2021-02-11 12:47 - 2021-02-11 12:47 - 000000008 _____ () C:\ProgramData\ts.dat 2021-01-06 03:49 - 2021-01-06 11:23 - 000000026 _____ () C:\Users\Patryk\AppData\Local\isoworkshop.ini 2020-12-14 13:41 - 2020-12-14 13:41 - 000000000 _____ () C:\Users\Patryk\AppData\Local\{370DA68D-0049-4B1F-B5E9-D52D7863588D} ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2021-06-24 12:44 ==================== Koniec FRST.txt ========================