Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 30-08-2022 Uruchomiony przez Da Grasso (administrator) OCHOTASERWER (Dell Inc. OptiPlex 7010) (25-09-2022 14:10:56) Uruchomiony z C:\Users\Da Grasso\Downloads Załadowane profile: Da Grasso & MSSQL$OCHOTA Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.2006 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Windows\Samsung\PanelMgr\SSMMgr.exe (C:\Program Files (x86)\Smart Professional Surveillance System\PC-NVR\PC-NVR.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\Smart Professional Surveillance System\PC-NVR\Challenge.exe (C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\SmartPSS.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\Smart Professional Surveillance System\PC-NVR\PC-NVR.exe (C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\SmartPSS.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\DSMessageNotify.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\AppVShNotify.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCopyAccelerator.exe (C:\Windows\Samsung\PanelMgr\SSMMgr.exe ->) () [Brak podpisu cyfrowego] C:\Windows\Samsung\PanelMgr\caller64.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <7> (explorer.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\SmartPSS.exe (explorer.exe ->) (Infscape UG (haftungsbeschränkt) -> ) C:\Program Files\UrBackup\UrBackupClient.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\lync.exe (explorer.exe ->) (QNAP Systems, Inc. -> QNAP) C:\Program Files (x86)\QNAP\Qfinder\QfinderPro.exe (explorer.exe ->) (S4H SP. Z O.O. Kołobrzeg) [Brak podpisu cyfrowego] C:\Program Files (x86)\S4H\StartS4HGastronomia.exe (explorer.exe ->) (Sony Corporation -> Sony) C:\Program Files\Sony\Imaging Edge Desktop\ied.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (Huawei Technologies Co., Ltd. -> ) C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <20> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Podatnik S.A. -> Podatnik S.A.) C:\Program Files (x86)\Podatnik.info\PIT pro 2018\Widget.exe (services.exe ->) () [Brak podpisu cyfrowego] D:\S4H_SYNCHRO\S4HSerwis.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (services.exe ->) (DUC FABULOUS CO.,LTD -> ) C:\Program Files (x86)\UltraViewer\UltraViewer_Service.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) C:\ProgramData\DatacardService\HWDeviceService64.exe (services.exe ->) (Infscape UG (haftungsbeschränkt) -> ) C:\Program Files\UrBackup\UrBackupClientBackend.exe (services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL11.OCHOTA\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (services.exe ->) (Podatnik S.A. -> Podatnik S.A.) C:\Program Files (x86)\Podatnik.info\PIT pro 2018\pproupd.exe (services.exe ->) (Pranas.NET Corp -> Pranas.Net) C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22072.207.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (QNAP Systems, Inc. -> ) C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [UrBackupClient] => C:\Program Files\UrBackup\UrBackupClient.exe [4971200 2020-12-04] (Infscape UG (haftungsbeschränkt) -> ) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [113656 2013-01-24] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [11186400 2022-09-15] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [Samsung PanelMgr] => C:\Windows\Samsung\PanelMgr\SSMMgr.exe [688128 2011-07-06] () [Brak podpisu cyfrowego] HKLM-x32\...\Run: [WidgetPodatnikInfo] => C:\Program Files (x86)\Podatnik.info\PIT pro 2018\Widget.exe [269056 2022-04-12] (Podatnik S.A. -> Podatnik S.A.) HKLM-x32\...\Run: [QfinderPro] => C:\Program Files (x86)\QNAP\Qfinder\QfinderPro.exe [5649272 2022-07-07] (QNAP Systems, Inc. -> QNAP) HKU\S-1-5-21-150121922-3317177034-1249720541-1000\...\Run: [MicrosoftEdgeAutoLaunch_23B25BFF751188246A3E3941CFCBD61C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3795360 2022-09-22] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-150121922-3317177034-1249720541-1000\...\Run: [Lync] => C:\Program Files\Microsoft Office 15\Root\Office15\lync.exe [28086696 2022-07-27] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-150121922-3317177034-1249720541-1000\...\MountPoints2: {098a8276-baa2-11eb-ae5c-90b11c8c8add} - "F:\Autorun.exe" HKU\S-1-5-80-2485010925-3604692538-2278733045-3636185238-561330613\...\Run: [Sidebar] => %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (Brak pliku) HKLM\...\Windows x64\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\x64\hpzpplhn.dll [99840 2008-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Windows x64\Print Processors\ssb7MPC: C:\Windows\System32\spool\prtprocs\x64\ssb7mpc.dll [37376 2012-04-10] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider) HKLM\...\Windows x64\Print Processors\SST3CPC: C:\Windows\System32\spool\prtprocs\x64\sst3cpc.dll [36864 2011-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider) HKLM\...\Print\Monitors\HP be2a Status Monitor: C:\Windows\system32\hpinkstsbe2aLM.dll [468576 2018-06-15] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\LIDIL hpzlllhn: C:\Windows\system32\hpzlllhn.dll [48640 2008-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Company) HKLM\...\Print\Monitors\ssb7M Langmon: C:\Windows\system32\ssb7mlm.dll [27648 2012-04-10] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\SST3C Langmon: C:\Windows\system32\sst3cl6.dll [34304 2011-06-21] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Imaging Edge Desktop.lnk [2021-12-05] ShortcutTarget: Imaging Edge Desktop.lnk -> C:\Program Files\Sony\Imaging Edge Desktop\ied.exe (Sony Corporation -> Sony) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0B15E966-71DB-4133-A708-84CC23089297} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [973744 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {0DB0CF2E-13F4-4592-A8B7-81397A6C3262} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [375232 2022-07-27] (Microsoft Corporation -> Microsoft Corporation) Task: {130F3BEA-096F-431E-B266-EF4D25FBA93E} - \Microsoft\Windows\Setup\EOSNotify2 -> Brak pliku <==== UWAGA Task: {190DF92A-9414-4A5D-9005-7C3CE79B762F} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [1542080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1A2D3650-7613-41C3-9FBF-0DF5024EF87D} - System32\Tasks\Microsoft\Windows\Media Center\SqlLiteRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -SqlLiteRecoveryTask (Brak pliku) Task: {1BAE4854-5765-45DD-838A-84A8E9358EC1} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [436160 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1E3F79F4-5A17-4C2A-A861-1532672A6FB8} - System32\Tasks\Microsoft\Windows\Media Center\OCURDiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /OCURDiscovery $(Arg0) (Brak pliku) Task: {38BB6448-3255-46EA-A994-8BBEEEAFA2DE} - System32\Tasks\Microsoft\Windows\Media Center\PvrScheduleTask => C:\WINDOWS\ehome\mcupdate.exe -PvrSchedule (Brak pliku) Task: {399E43AB-12E0-4949-8977-9EBC5D096833} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {3F3FE7C2-31B9-4624-BE28-602388FBA1A0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1555696 2022-08-03] (Adobe Inc. -> Adobe Inc.) Task: {411BD584-D1B7-453F-9DD7-7E0E3327F892} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {412BBDF4-7BDC-4115-8028-F4E485C22DFB} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDfE067B1} Task: {44B3CEFB-04AC-4271-AF39-24A62653DD45} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW1 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:7 /PBDADiscovery (Brak pliku) Task: {44B85D2B-8D8E-49D0-BEF0-13DA6A48B51A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {44F5A977-C878-4FDC-96A8-732B46459686} - System32\Tasks\Microsoft\Windows\Media Center\ConfigureInternetTimeService => C:\WINDOWS\ehome\ehPrivJob.exe /DoConfigureInternetTimeService (Brak pliku) Task: {476F111D-8369-4CC2-A74F-18F2AB50CF41} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [960448 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47c2-B62A-B7C4CED925CB} Task: {4B3A0F54-D454-4D5F-B393-3A8720965587} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscoveryW2 => C:\WINDOWS\ehome\ehPrivJob.exe /wait:90 /PBDADiscovery (Brak pliku) Task: {4C1F2F4E-193E-402B-B26E-E51B0EF856C0} - System32\Tasks\Microsoft\Windows\Media Center\InstallPlayReady => C:\WINDOWS\ehome\ehPrivJob.exe /InstallPlayReady $(Arg0) (Brak pliku) Task: {4CD44D5B-0AA0-41D4-B2B3-280497AE2496} - System32\Tasks\Microsoft\Windows\Media Center\ObjectStoreRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -ObjectStoreRecoveryTask (Brak pliku) Task: {4E6D7A45-7B1F-4233-8ECA-503E0EEC6476} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [728000 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {56154693-92A1-4214-86B0-C893E64A32E0} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1552544 2015-05-18] (ASUSTeK Computer Inc. -> ) [Brak podpisu cyfrowego] Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5C9E31FC-8774-4932-A917-3CB1337F5086} - System32\Tasks\{365F63B4-A17E-49EF-9502-1DAA21E530A7} => C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\SmartPSS.exe [21970944 2018-02-02] () [Brak podpisu cyfrowego] Task: {5F06C3A4-5A18-4B6B-869F-FA7B23C9F13E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office 15\root\Office15\msoia.exe [375232 2022-07-27] (Microsoft Corporation -> Microsoft Corporation) Task: {60FE55CA-4BF2-46E4-AE9D-6C62A014B6E0} - System32\Tasks\Microsoft\Windows\Media Center\UpdateRecordPath => C:\WINDOWS\ehome\ehPrivJob.exe /DoUpdateRecordPath $(Arg0) (Brak pliku) Task: {699F6B65-B86E-48EB-878A-09DC33240735} - System32\Tasks\Microsoft\Windows\Media Center\ReindexSearchRoot => C:\WINDOWS\ehome\ehPrivJob.exe /DoReindexSearchRoot (Brak pliku) Task: {6AE49D24-85D3-4246-8DB6-86DFCD2FB416} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {6E508CD6-0E7D-4AB7-9690-9B6FF20511E7} - System32\Tasks\Microsoft\Windows\Media Center\mcupdate => C:\WINDOWS\ehome\mcupdate.exe $(Arg0) (Brak pliku) Task: {6F15EC55-D2CB-43F4-944E-4E795F5EF896} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {712E13D3-57F3-4CAA-955B-9DA9E3E37E7D} - System32\Tasks\Microsoft\Windows\Media Center\DispatchRecoveryTasks => C:\WINDOWS\ehome\ehPrivJob.exe /DoRecoveryTasks $(Arg0) (Brak pliku) Task: {72834248-8F53-439D-8118-DE63FBAFCDE5} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe -Daily (Brak pliku) Task: {86FFAE85-BF85-415A-99AF-9E71AEB31C78} - System32\Tasks\Microsoft\Windows\Media Center\ActivateWindowsSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoActivateWindowsSearch (Brak pliku) Task: {89BBA49F-D417-495F-9DEF-A721B176EF57} - System32\Tasks\Microsoft\Windows\Media Center\PeriodicScanRetry => C:\WINDOWS\ehome\MCUpdate.exe -pscn 0 (Brak pliku) Task: {8FA1C5BF-5EAF-4CD4-B6E2-15279251C047} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {992F4AAE-9F1C-45B9-A868-28390F502A92} - System32\Tasks\iSCSIAgentAutoStartup => C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe [1741176 2022-07-07] (QNAP Systems, Inc. -> ) Task: {99BB34A2-D427-48E6-9F4F-F618D0F88949} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9A6EC2B4-C57D-41A2-A9CB-879CD43624C7} - System32\Tasks\Microsoft\Windows\Media Center\PBDADiscovery => C:\WINDOWS\ehome\ehPrivJob.exe /PBDADiscovery (Brak pliku) Task: {A75E4410-56C5-439C-B185-323442E20555} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {ADACF700-3F2D-4364-A2F5-C48A37720759} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40b4-8963-D3C761B18371} Task: {B114F965-D65A-4456-88EB-4CEE2B2AF455} - System32\Tasks\Microsoft\Windows\Media Center\RecordingRestart => C:\WINDOWS\ehome\ehrec.exe /RestartRecording (Brak pliku) Task: {B2161444-62BC-4D06-983F-7D95ADEC97F9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [973744 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {B8770FCE-69A9-42FB-A3F8-DBA59017ADB9} - System32\Tasks\Microsoft\Windows\Media Center\PvrRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -PvrRecoveryTask (Brak pliku) Task: {C16C3572-3DE7-4CEB-B346-DC86B0D1E20D} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-16] (Google Inc -> Google Inc.) Task: {C50779BD-107F-4780-B171-CE49EE309909} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe -LogonOrUnlock (Brak pliku) Task: {C8196D75-E111-4BEA-955D-5E6DFDD3B56C} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) Task: {CC1309D9-7770-4A3D-83F6-4C55C1500457} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {CE948B0B-862D-48A0-9036-FECA1374AF2E} - System32\Tasks\Microsoft\Windows\Media Center\StartRecording => C:\WINDOWS\ehome\ehrec.exe /StartRecording (Brak pliku) Task: {D3322F6C-3BB4-4E16-B2F0-5A45DA641512} - System32\Tasks\{6878C34F-87D0-45EC-B083-9FE15AB26A09} => C:\Program Files (x86)\Smart Professional Surveillance System\SmartPSS\SmartPSS.exe [21970944 2018-02-02] () [Brak podpisu cyfrowego] Task: {D3F90710-60CD-4A17-8105-776068450195} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-10-16] (Google Inc -> Google Inc.) Task: {D5660BAB-9D75-44E0-80F4-C65BB42B5BF1} - System32\Tasks\Microsoft\Windows\Media Center\OCURActivate => C:\WINDOWS\ehome\ehPrivJob.exe /OCURActivate (Brak pliku) Task: {D5BAD3AD-CFB4-45AB-B0E0-D6544B0F7A6F} - System32\Tasks\Microsoft\Windows\Media Center\RegisterSearch => C:\WINDOWS\ehome\ehPrivJob.exe /DoRegisterSearch $(Arg0) (Brak pliku) Task: {D6167CC4-4DF2-4282-898E-CF18BD1DCB5F} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [655296 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E3C6C5BC-0E51-4375-B74E-EDCDA44BBD0C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518080 2017-10-11] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {EBE7504B-968A-44B4-A921-0F1623A064A9} - System32\Tasks\Microsoft\Windows\Media Center\MediaCenterRecoveryTask => C:\WINDOWS\ehome\mcupdate.exe -MediaCenterRecoveryTask (Brak pliku) Task: {EC7A705F-4AC8-4B03-8A1A-EBAB2EFC8B84} - System32\Tasks\Microsoft\Windows\Media Center\ehDRMInit => C:\WINDOWS\ehome\ehPrivJob.exe /DRMInit (Brak pliku) Task: {EE9B4536-B993-49EF-B8D5-F32A615158FE} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4f47-879B-29A80C355D61} Task: {F58AD15A-7737-4678-AB48-406201F4F55D} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43da-BFD7-FBEEA2180A1E} Task: {FF6583D7-333B-407F-A9EF-C84A6B826501} - \Microsoft\Windows\Setup\EOSNotify -> Brak pliku <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{4CC3D369-BC55-4E3F-AE3B-2FE83C07B8E0}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{6951F23E-CA9D-4E6C-974A-67D2EED7814A}: [NameServer] 89.108.202.20 185.89.185.1 Tcpip\..\Interfaces\{C41975D0-6705-4A1C-82FF-63587A926DCB}: [NameServer] 89.108.202.21 89.108.195.20 Tcpip\..\Interfaces\{CE9CC882-587B-4B5D-8659-ACAA434D124A}: [DhcpNameServer] 10.0.0.1 Tcpip\..\Interfaces\{F29004C2-08B6-4339-9836-33B63F4160A2}: [NameServer] 89.108.202.21 89.108.195.20 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Da Grasso\AppData\Local\Microsoft\Edge\User Data\Default [2022-09-25] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Da Grasso\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2022-09-01] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF DefaultProfile: g1jeeka8.default-1569259674076 FF ProfilePath: C:\Users\Da Grasso\AppData\Roaming\Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076 [2022-09-25] FF Notifications: Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076 -> hxxps://www.facebook.com; hxxps://drive.google.com; hxxps://fixly.pl FF Extension: (Ghostery – Bloker reklam chroniący prywatność) - C:\Users\Da Grasso\AppData\Roaming\Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076\Extensions\firefox@ghostery.com.xpi [2022-07-13] FF Extension: (Malwarebytes Browser Guard) - C:\Users\Da Grasso\AppData\Roaming\Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2022-08-30] FF Extension: (Szafir SDK Web) - C:\Users\Da Grasso\AppData\Roaming\Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076\Extensions\{5e118bad-a840-4256-bd31-296194533aac}.xpi [2020-02-25] [UpdateUrl:hxxps://www.elektronicznypodpis.pl/download/webmodule/firefox/updates.json] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Da Grasso\AppData\Roaming\Mozilla\Firefox\Profiles\g1jeeka8.default-1569259674076\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-08-29] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2022-05-11] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-09-08] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-03-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Microsoft Office\Office15\NPSPWRAP.DLL [2018-03-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [Brak pliku] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [Brak pliku] Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Opera: ======= OPR Profile: C:\Users\Da Grasso\AppData\Roaming\Opera Software\Opera Stable [2019-09-07] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.pl/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172264 2022-08-03] (Adobe Inc. -> Adobe Inc.) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3054520 2022-04-28] (Microsoft Corporation -> Microsoft Corporation) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2021-11-12] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2022-09-15] (Dropbox, Inc -> Dropbox, Inc.) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2013-10-28] (Huawei Technologies Co., Ltd. -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7901368 2021-11-24] (Malwarebytes Inc -> Malwarebytes) R2 MSSQL$ELISOFT; C:\Program Files (x86)\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [29293408 2010-12-10] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQL$OCHOTA; C:\Program Files\Microsoft SQL Server\MSSQL11.OCHOTA\MSSQL\Binn\sqlservr.exe [194240 2017-08-15] (Microsoft Corporation -> Microsoft Corporation) S2 PLAY ONLINE. RunOuc; C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> ) R2 pproupd; C:\Program Files (x86)\Podatnik.info\PIT pro 2018\pproupd.exe [62720 2022-04-12] (Podatnik S.A. -> Podatnik S.A.) R2 S4HSerwis; D:\S4H_SYNCHRO\S4HSerwis.exe [7168 2020-04-22] () [Brak podpisu cyfrowego] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-14] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$OCHOTA; C:\Program Files\Microsoft SQL Server\MSSQL11.OCHOTA\MSSQL\Binn\SQLAGENT.EXE [613056 2017-08-15] (Microsoft Corporation -> Microsoft Corporation) R2 SQLBackupAndFTP Client Service; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.Service.exe [1330656 2022-09-20] (Pranas.NET Corp -> Pranas.Net) S2 SQLBackupAndFTP Client Service Watchdog; C:\Program Files (x86)\SQLBackupAndFTP\SqlBak.WatchDogService.exe [27104 2022-09-20] (Pranas.NET Corp -> Pranas.Net) R2 UltraViewService; C:\Program Files (x86)\UltraViewer\UltraViewer_Service.exe [220512 2021-09-18] (DUC FABULOUS CO.,LTD -> ) R2 UrBackupClientBackend; C:\Program Files\UrBackup\UrBackupClientBackend.exe [1180352 2020-12-04] (Infscape UG (haftungsbeschränkt) -> ) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe [3125112 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe [133560 2022-09-07] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dcdbas; C:\WINDOWS\system32\drivers\dcdbas64.sys [38472 2011-02-02] (Dell Inc -> Dell Inc.) R3 huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [210352 2022-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-11-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-11-24] (Malwarebytes Inc -> Malwarebytes) S4 RsFx0203; C:\WINDOWS\System32\DRIVERS\RsFx0203.sys [348376 2017-07-08] (Microsoft Corporation -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-09-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [453904 2022-09-07] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [94480 2022-09-07] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-09-25 14:10 - 2022-09-25 14:11 - 000032064 _____ C:\Users\Da Grasso\Downloads\FRST.txt 2022-09-25 14:09 - 2022-09-25 14:11 - 000000000 ____D C:\FRST 2022-09-25 14:07 - 2022-09-25 14:07 - 002371072 _____ (Farbar) C:\Users\Da Grasso\Downloads\FRST64.exe 2022-09-24 17:06 - 2022-09-24 17:06 - 000493778 _____ C:\Users\Da Grasso\Downloads\QXJ0dXJfQ3phcm5vY2tpMTY2NDAzMTk2Mg==.pdf 2022-09-24 17:04 - 2022-09-24 17:04 - 000193766 _____ C:\Users\Da Grasso\Downloads\FEST_Regulamin Promocji FinansowaniePLUS_jesien.pdf 2022-09-24 17:03 - 2022-09-24 17:03 - 000189914 _____ C:\Users\Da Grasso\Downloads\FEST_Regulamin Promocji 18V_jesien.pdf 2022-09-24 16:55 - 2022-09-24 16:55 - 000083954 _____ C:\Users\Da Grasso\Downloads\ipko_credit_schedule_20220924_165533.pdf 2022-09-24 16:55 - 2022-09-24 16:55 - 000083945 _____ C:\Users\Da Grasso\Downloads\ipko_credit_schedule_20220924_165536.pdf 2022-09-24 16:52 - 2022-09-24 16:52 - 000078909 _____ C:\Users\Da Grasso\Downloads\ipko_credit_schedule_20220924_165206.pdf 2022-09-24 15:30 - 2022-09-24 15:30 - 000056288 _____ C:\Users\Da Grasso\Documents\Faktura.pdf 2022-09-24 12:26 - 2022-09-24 12:28 - 000000000 ____D C:\Users\Da Grasso\Documents\qp.zerz 2022-09-21 17:35 - 2022-09-21 17:35 - 000106667 _____ C:\Users\Da Grasso\Desktop\Faktura_FV 4_2022.pdf 2022-09-21 17:34 - 2022-09-21 17:34 - 000107388 _____ C:\Users\Da Grasso\Desktop\Faktura_FV 6_2022.pdf 2022-09-18 15:12 - 2022-09-18 15:12 - 000052459 _____ C:\Users\Da Grasso\Downloads\Faktura_PAB 712_9_2022_abancik.pdf 2022-09-17 08:45 - 2022-09-17 08:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2022-09-16 16:43 - 2022-09-16 16:43 - 000099087 _____ C:\Users\Da Grasso\Downloads\Pakiet aktywacyjny.pdf 2022-09-16 13:31 - 2022-09-16 13:31 - 000111044 _____ C:\Users\Da Grasso\Desktop\IMG.pdf 2022-09-16 13:26 - 2022-09-16 13:26 - 000080086 _____ C:\Users\Da Grasso\Desktop\Faktura_4_2022_#AC.pdf 2022-09-16 13:25 - 2022-09-16 13:25 - 000081618 _____ C:\Users\Da Grasso\Desktop\Faktura_6_2022_#AC.pdf 2022-09-16 13:19 - 2022-09-16 13:19 - 000137988 _____ C:\Users\Da Grasso\Downloads\download.zip 2022-09-16 13:17 - 2022-09-16 13:17 - 000089902 _____ C:\Users\Da Grasso\Downloads\E-faktura leasingowa nr 13184_04_2022 - L318419-1.pdf 2022-09-16 13:17 - 2022-09-16 13:17 - 000082116 _____ C:\Users\Da Grasso\Downloads\WZW 1 PLN nr 21465_04_22 - L318419-1.pdf 2022-09-16 09:56 - 2022-09-16 09:56 - 000326331 _____ C:\Users\Da Grasso\Downloads\Głowaczów.pdf 2022-09-15 13:35 - 2022-09-15 13:35 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2022-09-15 13:35 - 2022-09-15 13:35 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2022-09-15 13:35 - 2022-09-15 13:35 - 000047600 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2022-09-15 13:35 - 2022-09-15 13:35 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2022-09-14 11:07 - 2022-09-14 11:07 - 000011813 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-09-14 11:06 - 2022-09-14 11:06 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll 2022-09-14 11:06 - 2022-09-14 11:06 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-09-14 11:06 - 2022-09-14 11:06 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2022-09-14 11:06 - 2022-09-14 11:06 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2022-09-14 11:00 - 2022-09-14 11:00 - 000000000 ___HD C:\$WinREAgent 2022-09-13 17:13 - 2022-09-22 19:36 - 000101782 _____ C:\Users\Da Grasso\Desktop\DokumentFVS.pdf 2022-09-13 16:09 - 2022-09-13 16:09 - 000231420 _____ C:\Users\Da Grasso\Downloads\Faktura FV 1605_2022.pdf 2022-09-13 11:13 - 2022-09-13 11:13 - 000046723 _____ C:\Users\Da Grasso\Downloads\Remanent CudLód - Kwiecień 2022-9.pdf 2022-09-13 11:13 - 2022-09-13 11:13 - 000000000 ____D C:\Users\Da Grasso\AppData\Roaming\com.adobe.dunamis 2022-09-08 17:17 - 2022-09-08 17:17 - 000073650 _____ C:\Users\Da Grasso\Downloads\-3.pdf 2022-09-07 17:39 - 2022-09-07 17:40 - 000113737 _____ C:\Users\Da Grasso\Desktop\Faktura_FV 12_2022.pdf 2022-09-02 17:48 - 2022-09-02 17:48 - 000000000 _____ C:\Users\Da Grasso\Downloads\KQ7uE9ip.htm 2022-09-02 17:48 - 2022-09-02 17:48 - 000000000 _____ C:\Users\Da Grasso\Downloads\5Z2ZRa4e.htm 2022-09-01 16:59 - 2022-09-01 16:59 - 000046723 _____ C:\Users\Da Grasso\Downloads\Remanent CudLód - Kwiecień 2022-8.pdf 2022-09-01 16:57 - 2022-09-01 16:57 - 000046718 _____ C:\Users\Da Grasso\Downloads\Remanent CudLód - Kwiecień 2022-7.pdf 2022-09-01 12:12 - 2022-09-01 12:12 - 000090972 _____ C:\Users\Da Grasso\Downloads\001436158P-000000001.pdf 2022-08-30 19:16 - 2022-08-30 19:16 - 000037259 _____ C:\Users\Da Grasso\Downloads\Inwentaryzacja - Arkusz1-6.pdf 2022-08-30 10:31 - 2022-08-30 10:31 - 000015682 _____ C:\Users\Da Grasso\Desktop\Formularz_zmiany_cen 2022 r.xlsx 2022-08-30 10:17 - 2022-08-30 10:32 - 000508713 _____ C:\Users\Da Grasso\Downloads\zmiany_cenpazd.zip 2022-08-29 12:14 - 2022-08-29 12:14 - 000001113 _____ C:\Users\Da Grasso\Downloads\Lista gości.csv ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-09-25 13:50 - 2022-03-05 17:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-09-25 13:49 - 2018-02-24 12:01 - 000000000 ____D C:\Users\Da Grasso\AppData\LocalLow\Mozilla 2022-09-25 13:47 - 2020-11-19 00:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-09-25 13:47 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-09-25 13:28 - 2018-10-16 13:26 - 000000000 ____D C:\Program Files (x86)\Google 2022-09-25 12:25 - 2018-04-21 16:06 - 000000000 ____D C:\ProgramData\NVIDIA 2022-09-25 11:04 - 2018-03-06 14:04 - 000000000 ____D C:\ProgramData\S4H 2022-09-24 15:54 - 2018-05-05 20:27 - 000000000 ____D C:\Users\Public\SmartPSS 2022-09-24 15:52 - 2018-03-28 17:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013 2022-09-24 15:50 - 2021-02-27 07:27 - 000000000 ____D C:\Users\Da Grasso\AppData\Local\Packages 2022-09-24 15:50 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-09-24 15:29 - 2019-02-01 11:41 - 000000000 ____D C:\ProgramData\Mozilla 2022-09-24 15:19 - 2021-02-27 07:22 - 002167468 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-09-24 15:19 - 2019-12-07 17:09 - 000856406 _____ C:\WINDOWS\system32\perfh015.dat 2022-09-24 15:19 - 2019-12-07 17:09 - 000188248 _____ C:\WINDOWS\system32\perfc015.dat 2022-09-24 15:19 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-09-24 15:13 - 2022-03-17 01:41 - 000000000 ____D C:\Users\Da Grasso\AppData\Roaming\DropboxElectron 2022-09-24 15:13 - 2019-07-29 19:58 - 000000000 ____D C:\Users\Da Grasso\AppData\Local\CrashDumps 2022-09-24 15:13 - 2018-03-06 21:07 - 000000000 ____D C:\Users\Da Grasso\AppData\Local\Dropbox 2022-09-24 15:13 - 2018-03-06 19:48 - 000000000 ___RD C:\Users\Da Grasso\OneDrive 2022-09-24 15:12 - 2021-02-27 07:22 - 000000000 ____D C:\Users\MSSQL$OCHOTA 2022-09-24 15:12 - 2021-02-27 07:22 - 000000000 ____D C:\Users\Da Grasso 2022-09-24 15:12 - 2020-11-19 01:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-09-24 15:12 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-09-24 15:12 - 2018-03-28 17:12 - 000000000 ____D C:\Program Files\Microsoft Office 15 2022-09-24 12:57 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-09-24 12:31 - 2020-11-19 01:41 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-09-24 12:31 - 2020-11-19 01:41 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-09-23 22:04 - 2022-04-05 22:47 - 000000000 ____D C:\Program Files\UrBackup 2022-09-23 16:30 - 2018-03-09 11:53 - 000000000 ____D C:\Users\Da Grasso\Desktop\DaGrasso 2022-09-22 20:12 - 2018-03-07 11:47 - 000000000 ____D C:\Program Files (x86)\SQLBackupAndFTP 2022-09-22 19:36 - 2018-03-06 14:04 - 000000000 ____D C:\Program Files (x86)\S4H 2022-09-22 16:02 - 2021-12-11 13:20 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-150121922-3317177034-1249720541-1000 2022-09-22 16:02 - 2021-02-27 07:29 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-150121922-3317177034-1249720541-1000 2022-09-22 16:02 - 2021-02-27 07:22 - 000002477 _____ C:\Users\Da Grasso\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-09-17 08:45 - 2018-03-06 21:07 - 000000000 ____D C:\Program Files (x86)\Dropbox 2022-09-15 00:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-09-14 22:15 - 2020-11-19 00:38 - 000437952 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-09-14 22:14 - 2019-12-07 17:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2022-09-14 22:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-09-14 11:06 - 2020-11-19 01:41 - 003011072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-09-14 10:58 - 2018-03-07 00:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-09-14 10:54 - 2018-03-07 00:27 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-09-12 10:33 - 2021-02-27 07:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-09-12 10:32 - 2022-07-15 03:22 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk 2022-09-12 10:32 - 2021-11-24 23:03 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-09-07 14:56 - 2020-11-19 01:39 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-09-05 18:40 - 2021-03-18 16:16 - 000000000 ____D C:\Users\Da Grasso\AppData\Roaming\Blum 2022-09-01 15:10 - 2018-04-21 16:12 - 000000000 ____D C:\Users\Da Grasso\AppData\Local\NVIDIA Corporation 2022-08-30 00:22 - 2021-02-27 07:26 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-08-30 00:22 - 2021-02-27 07:26 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-08-28 20:28 - 2018-03-09 17:53 - 000000000 ____D C:\Users\Da Grasso\Desktop\RISTO ==================== Pliki w katalogu głównym wybranych folderów ======== 2018-05-14 18:21 - 2009-09-10 09:50 - 000000205 _____ () C:\Users\Da Grasso\setup.dat 2018-05-14 18:21 - 2011-06-23 11:40 - 000366456 _____ () C:\Users\Da Grasso\setup.exe 2019-09-07 15:13 - 2019-09-07 15:13 - 000000096 _____ () C:\Users\Da Grasso\AppData\Roaming\InstallerReports.txt 2022-04-05 22:47 - 2022-04-05 22:47 - 000000000 ____H () C:\Users\Da Grasso\AppData\Local\.urbackupclientgui_startonce ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================