Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 23-10-2022 Uruchomiony przez Marcin (administrator) DESKTOP-6STU9IM (Gigabyte Technology Co., Ltd. G1.Sniper B5) (26-10-2022 10:38:05) Uruchomiony z C:\Users\Marcin\Desktop\Programy Załadowane profile: Marcin Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.2130 (X64) Język: Angielski (Stany Zjednoczone) -> Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <12> (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-01-07] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1073144 2021-09-25] (Heidi Computers Ltd -> The Eraser Project) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Acrotray.exe [3499640 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [460432 2022-04-11] (Power Software Limited -> Power Software Ltd) HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Marcin\AppData\Local\Microsoft\Teams\Update.exe [2576128 2022-09-02] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default (Brak pliku) HKU\S-1-5-21-3584624621-2433745816-4293875090-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2631088 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3584624621-2433745816-4293875090-1002\...\Run: [Marcin] => explorer.exe hxxp://kb-ribaki.org (Brak pliku) <==== UWAGA HKU\S-1-5-21-3584624621-2433745816-4293875090-1002\...\Run: [MicrosoftEdgeAutoLaunch_CD25C50A2248AF7292B6599F50C8310A] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852232 2022-10-20] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [55432 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Inc) HKLM\...\Print\Monitors\HP a011 Status Monitor: C:\Windows\system32\hpinkstsa011LM.dll [331664 2012-06-13] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Deskjet 3050A J611 series): C:\Windows\system32\HPDiscoPMa011.dll [741536 2021-11-28] (HP Inc. -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\106.0.5249.119\Installer\chrmstp.exe [2022-10-12] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\107.1.45.113\Installer\chrmstp.exe [2022-10-26] (Brave Software, Inc. -> Brave Software, Inc.) IFEO\osppsvc.exe: [VerifierDlls] SppExtComObjHook.dll IFEO\SppExtComObj.exe: [VerifierDlls] SppExtComObjHook.dll ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {000BBA58-B3C1-4EA5-AE06-601543F75183} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [168040 2022-06-28] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {0C7DA41E-E48E-495C-9D45-CD1BD1FA13FF} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8502776 2022-09-29] (Microsoft Corporation -> Microsoft Corporation) Task: {1E47F5CB-B552-40CC-87D5-291A9239865B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {213E27A3-A557-4D8A-96AA-6FD6F2F54B2A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8502776 2022-09-29] (Microsoft Corporation -> Microsoft Corporation) Task: {24229EC5-5B6E-4818-9E9D-ADA91240A15B} - System32\Tasks\GoogleUpdateTaskMachineCore{3DBF2B6D-C8FA-4A55-828D-B5D8A6C9E95F} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-28] (Google LLC -> Google LLC) Task: {29E39AD2-3E70-400B-BC15-66C77A019F08} - \Marcin -> Brak pliku <==== UWAGA Task: {31CBAA7D-5821-4AB1-AD1C-ECC1AE8DCEA6} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-15] (Microsoft Corporation -> Microsoft Corporation) Task: {3E4136B8-87FE-4019-80C5-848511AE46FF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5AB5B0DD-7FBF-4C21-97C8-C71A138051A3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26165176 2022-10-15] (Microsoft Corporation -> Microsoft Corporation) Task: {755C3C5E-635F-47FA-9129-BAA1C40D753F} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3584624621-2433745816-4293875090-500 => C:\Users\Marcin\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (Brak pliku) Task: {7E9F2541-C1CF-4BD4-8A79-73F93D40007C} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [65448 2022-09-29] (Microsoft Corporation -> Microsoft Corporation) Task: {84B123AD-BF38-4A73-97C1-39DC836752C8} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [168040 2022-06-28] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {856A6506-3490-426D-96AA-9E608F553083} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3476184 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {8FBAB3C5-3A8F-40ED-9DDA-30E4D7A5DDC9} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3584624621-2433745816-4293875090-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166064 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) Task: {9100DF3B-AA09-406B-A923-67EE1FFD506C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143232 2022-10-15] (Microsoft Corporation -> Microsoft Corporation) Task: {97BEF114-69E0-4298-9231-41EFF2CC3EE2} - System32\Tasks\GoogleUpdateTaskMachineUA{1D686741-71F3-4329-9B39-ED07C0B120A0} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-06-28] (Google LLC -> Google LLC) Task: {B0402B95-68FF-4617-87E4-DC41A10F28E9} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3584624621-2433745816-4293875090-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166064 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) Task: {BA5E879C-7CC6-4CF2-9A6B-0AEE585FA75F} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4166064 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) Task: {BBD4C805-96B1-47E4-926C-DA71DEB845F9} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [143232 2022-10-15] (Microsoft Corporation -> Microsoft Corporation) Task: {E0F14A80-C4EC-41CE-83CC-BA1B55AD8735} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EDD6CB9E-C260-4190-A464-3F431486A3D3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MpCmdRun.exe [1348368 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 91.90.56.2 91.90.56.12 Tcpip\..\Interfaces\{e797fc71-2d72-4293-8aa5-74e3bb861416}: [DhcpNameServer] 91.90.56.2 91.90.56.12 Edge: ======= Edge Profile: C:\Users\Marcin\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-26] FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.15@web2pdf.adobedotcom] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn FF Extension: (Adobe Acrobat - Create PDF) - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCFirefoxExtn [2022-07-04] [Przestarzałe] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-08] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.17.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-03-24] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-08] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Air\nppdf32.dll [2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default [2022-10-26] CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-10-25] CHR Extension: (Dokumenty Google offline) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-25] CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-10-22] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Marcin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-06-28] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - C:\Program Files (x86)\Adobe\Acrobat 11.0\Acrobat\Browser\WCChromeExtn\WCChromeExtn.crx [2017-03-28] Brave: ======= BRA Profile: C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-10-26] BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-10-19] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-25] BRA Extension: (Brave NTP background images) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-11] BRA Extension: (Wallet Data Files Updater) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-16] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-25] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2022-08-28] BRA Extension: (Brave NTP sponsored images) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\gccbbckogglekeggclmmekihdgdpdgoe [2022-06-29] BRA Extension: (Brave NTP sponsored images) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2022-10-25] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-06-28] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Marcin\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-25] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [82640 2017-03-28] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3863256 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3701464 2022-07-27] (Adobe Inc. -> Adobe Systems, Incorporated) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [168040 2022-06-28] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [168040 2022-06-28] (Brave Software, Inc. -> BraveSoftware Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477344 2022-10-15] (Microsoft Corporation -> Microsoft Corporation) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.207.1002.0003\FileSyncHelper.exe [3475888 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.207.1002.0003\OneDriveUpdaterService.exe [3840944 2022-10-25] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-14] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\NisSrv.exe [3170576 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2209.7-0\MsMpEng.exe [133584 2022-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\107.1.45.113\elevation_service.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [287744 2022-03-10] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [154112 2021-11-04] (Microsoft Corporation) [Brak podpisu cyfrowego] S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49616 2022-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [455968 2022-10-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [95520 2022-10-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-10-26 10:31 - 2022-10-26 10:32 - 000000000 ____D C:\AdwCleaner 2022-10-26 09:56 - 2022-10-26 10:38 - 000000000 ____D C:\FRST 2022-10-12 10:37 - 2022-10-12 10:37 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2022-10-12 10:37 - 2022-10-12 10:37 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2022-10-12 10:37 - 2022-10-12 10:37 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-10-12 10:36 - 2022-10-12 10:36 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2022-10-12 10:36 - 2022-10-12 10:36 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-10-12 10:36 - 2022-10-12 10:36 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2022-10-12 10:36 - 2022-10-12 10:36 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2022-10-12 10:24 - 2022-10-12 10:26 - 000000000 ___HD C:\$WinREAgent 2022-10-04 16:07 - 2022-10-04 16:08 - 000003522 _____ C:\Windows\system32\Tasks\AdobeGCInvoker-1.0 2022-10-04 16:06 - 2022-10-25 17:56 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-10-01 11:52 - 2022-10-01 11:54 - 001874230 ____H C:\Users\Marcin\Downloads\.c268ca22aeae5c708b57c06afc06a0886b952c2d.parts 2022-10-01 11:52 - 2022-10-01 11:54 - 001054720 ____H C:\Users\Marcin\Downloads\.fdd85afb301bc695d5e5c256d06228bf7f91a2b0.parts 2022-10-01 11:52 - 2022-10-01 11:52 - 000000000 ____D C:\Users\Marcin\Downloads\01.09.2022 2022-10-01 11:52 - 2022-10-01 11:52 - 000000000 ____D C:\Users\Marcin\Downloads\01.08.2022 2022-10-01 11:51 - 2022-10-01 11:51 - 000038367 _____ C:\Users\Marcin\Downloads\rutor_is_01_09_2022_torrent.torrent 2022-10-01 11:51 - 2022-10-01 11:51 - 000027730 _____ C:\Users\Marcin\Downloads\rutor_is_01_08_2022_1_torrent.torrent ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-10-26 10:38 - 2022-07-04 18:36 - 000000000 ____D C:\Users\Marcin\Desktop\Programy 2022-10-26 10:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-10-26 10:26 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2022-10-26 10:21 - 2022-06-28 20:10 - 000000000 ____D C:\Program Files (x86)\Google 2022-10-26 10:15 - 2022-06-28 19:59 - 000000000 __SHD C:\Users\Marcin\IntelGraphicsProfiles 2022-10-26 10:15 - 2022-06-28 19:58 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2022-10-26 10:07 - 2022-06-29 11:49 - 000784270 _____ C:\Windows\system32\perfh015.dat 2022-10-26 10:07 - 2022-06-29 11:49 - 000152192 _____ C:\Windows\system32\perfc015.dat 2022-10-26 10:07 - 2022-03-10 16:21 - 001767980 _____ C:\Windows\system32\PerfStringBackup.INI 2022-10-26 10:03 - 2022-06-28 20:01 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2022-10-26 10:03 - 2022-03-11 01:13 - 000008192 ___SH C:\DumpStack.log.tmp 2022-10-26 10:03 - 2022-03-11 01:13 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-10-26 10:02 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI 2022-10-26 09:50 - 2022-06-28 20:30 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2022-10-26 09:50 - 2022-06-28 20:30 - 000002323 _____ C:\Users\Public\Desktop\Brave.lnk 2022-10-26 09:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2022-10-26 01:07 - 2022-03-11 01:13 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-10-25 13:09 - 2022-06-28 19:58 - 000003596 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3584624621-2433745816-4293875090-1002 2022-10-25 13:09 - 2022-03-10 16:19 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2022-10-25 13:09 - 2022-03-10 16:19 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-10-22 11:17 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-10-21 20:50 - 2022-03-11 01:13 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-10-17 00:00 - 2022-07-13 13:32 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\vlc 2022-10-15 18:07 - 2022-03-11 01:13 - 000440696 _____ C:\Windows\system32\FNTCACHE.DAT 2022-10-15 18:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-10-15 18:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2022-10-15 18:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2022-10-15 18:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2022-10-15 18:04 - 2019-12-07 11:52 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-10-15 18:04 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-10-15 18:04 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2022-10-15 18:04 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2022-10-15 18:04 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-10-15 18:04 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2022-10-15 10:19 - 2022-03-11 01:13 - 000003536 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-10-15 10:19 - 2022-03-11 01:13 - 000003412 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-10-15 01:42 - 2022-03-10 16:18 - 000000000 ____D C:\Program Files\Microsoft Office 2022-10-14 09:58 - 2022-03-11 01:13 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-10-12 20:23 - 2022-06-28 20:10 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-10-12 20:23 - 2022-06-28 20:10 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2022-10-12 10:41 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2022-10-12 10:41 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2022-10-12 10:41 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2022-10-12 10:36 - 2022-06-29 05:44 - 000415690 __RSH C:\bootmgr 2022-10-12 10:36 - 2022-03-10 16:16 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2022-10-12 10:22 - 2022-06-28 22:35 - 000000000 ____D C:\Windows\system32\MRT 2022-10-12 10:20 - 2022-06-28 22:34 - 147398024 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2022-10-09 20:22 - 2022-08-01 13:37 - 000000000 ____D C:\Users\Marcin\AppData\LocalLow\Mozilla 2022-10-09 17:56 - 2022-06-28 19:59 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\Adobe 2022-10-06 16:04 - 2022-09-10 20:38 - 000000000 ____D C:\Users\Marcin\Desktop\AvalonMT2 - Version 1.1 2022-10-01 12:09 - 2022-07-04 18:36 - 000000000 ____D C:\Users\Marcin\AppData\Roaming\qBittorrent 2022-09-27 19:15 - 2022-06-28 19:59 - 000000000 ____D C:\Users\Marcin\AppData\Local\Packages ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-10-05 17:56 - 2022-10-05 17:56 - 000000000 _____ () C:\Users\Marcin\AppData\Local\oobelibMkey.log 2022-07-08 13:53 - 2022-07-08 13:53 - 000000017 _____ () C:\Users\Marcin\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================