Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 14-11-2022 Uruchomiony przez Mateusz (administrator) MATEUSZ-MATEUSZ (14-11-2022 19:26:02) Uruchomiony z C:\Users\Mateusz\Downloads\Programs Załadowane profile: Mateusz Platform: Microsoft Windows 10 Pro N Wersja 22H2 19045.2251 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\RAIDXpert2\rcpopup.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5> (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <2> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCopyAccelerator.exe (cmd.exe ->) (Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMMsgHost.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15> (explorer.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (explorer.exe ->) (Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\Windscribe.exe (Famatech Corp. -> Famatech Corp.) C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe (Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AMD, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\RAIDXpert2\rc_cgi.exe (services.exe ->) (Apache Software Foundation) [Brak podpisu cyfrowego] C:\Program Files (x86)\RAIDXpert2\apache\bin\httpd.exe <2> (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe (services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (services.exe ->) (Famatech Corp. -> Famatech Corp.) C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe (services.exe ->) (FingerPower Digital Technology Ltd. -> ) C:\Users\Mateusz\AppData\Local\Kingosoft\Kingo Root\update_27205\bin\KingoSoftService.exe (services.exe ->) (Huawei Technologies Co.,Ltd. -> ) C:\Program Files (x86)\MobileBrServ\mbbService.exe (services.exe ->) (ICEpower a/s -> ICEpower a/s) C:\Windows\System32\ICEsoundService64.exe (services.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe (services.exe ->) (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (services.exe ->) (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (services.exe ->) (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe (services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_bd530e4cbd42e0a3\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Prolific Technology Inc.) [Brak podpisu cyfrowego] C:\Windows\SysWOW64\IoctlSvc.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) D:\Program Files\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (StarWind Software) [Brak podpisu cyfrowego] C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe (services.exe ->) (TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (services.exe ->) (Tonalio GmbH -> Sandboxie-Plus.com) C:\Program Files\Sandboxie-Plus\SbieSvc.exe (services.exe ->) (Windscribe Limited -> Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexStoreSvr.exe (svchost.exe ->) (Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll [7954920 2016-04-25] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18388936 2018-03-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212184 2022-11-03] (Avast Software s.r.o. -> AVAST Software) HKLM-x32\...\Run: [KiesTrayAgent] => D:\Program Files\Kies\KiesTrayAgent.exe [318128 2016-11-16] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) HKLM-x32\...\Run: [rcpopup] => C:\Program Files (x86)\RAIDXpert2\rcpopup.exe [5131264 2017-10-31] (AMD, Inc.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [RadminVPN] => C:\Program Files (x86)\Radmin VPN\RvRvpnGui.exe [2109968 2022-04-12] (Famatech Corp. -> Famatech Corp.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2022-09-15] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] => C:\Program Files (x86)\Common Files\Ahead\Lib\NMBgMonitor.exe [152872 2008-01-22] (Nero AG -> Nero AG) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [NoIPDUCv4] => C:\Program Files (x86)\No-IP\DUC40.exe [347648 2015-07-21] () [Brak podpisu cyfrowego] HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482168 2022-09-07] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [Microsoft Edge Update] => C:\Users\Mateusz\AppData\Local\Microsoft\EdgeUpdate\1.3.167.21\MicrosoftEdgeUpdateCore.exe [253888 2022-08-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [Windscribe] => C:\Program Files (x86)\Windscribe\Windscribe.exe [7633840 2022-11-06] (Windscribe Limited -> Windscribe Limited) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [KiesPDLR.exe] => D:\Program Files\Kies\External\FirmwareUpdate\KiesPDLR.exe [1126568 2021-05-28] (Samsung Electronics CO., LTD. -> Samsung) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1802584 2022-11-06] (Overwolf Ltd -> Overwolf Ltd.) HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\MountPoints2: {76d1d7c8-c396-11ec-a68f-7085c2a44c7e} - "F:\Install.exe" HKLM\...\Print\Monitors\HP c111 Status Monitor: C:\Windows\system32\hpinkstsc111LM.dll [333496 2012-12-16] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-11] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> IFEO\mpcmdrun.exe: [Debugger] C:\WINDOWS\System32\systray.exe Startup: C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ctfmon.exe.lnk [2022-09-29] ShortcutTarget: ctfmon.exe.lnk -> C:\Windows\System32\ctfmon.exe (Microsoft Windows -> Microsoft Corporation) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {00E91001-5DC7-4DDC-821C-FC780A177E42} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-08-12] (Piriform Software Ltd -> Piriform) Task: {090ED37B-9CF3-4B43-9663-DE61EE32005B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {0A6A33E1-FC58-46F9-BED2-2400006ADA74} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0EE0CFED-0AC0-4173-A06D-E6659EF2B4A2} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [66936 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {26D44C19-6B93-4318-9AC1-D0EFA3E2602D} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4936920 2022-11-03] (Avast Software s.r.o. -> AVAST Software) Task: {278BED9B-F601-4FA3-A25E-0FA416D2D3AD} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-09-08] (Avast Software s.r.o. -> Avast Software) Task: {2B7AA795-41A2-402C-B2D0-B7C9FCE68C62} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {3342F761-D3E9-4D2C-A781-2F9D25705E74} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {34F7886F-C82B-4F02-828F-83504F0B9EC6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {3924144D-43E2-48FE-9F9C-35897709C346} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3BC44A25-C40D-4556-B2F5-203F6E6760AA} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {3BE2EEDA-7FAF-4C9D-86F1-D0104E226FDD} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {3D09E621-DA12-4A2D-9B77-FB04B49B848D} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2576728 2022-11-06] (Overwolf Ltd -> Overwolf LTD) Task: {50E8A75F-449E-456D-A8B3-40EEBEB10C48} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {56F5E92C-1C31-49E7-AD4C-B71E6B08D28A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {60E32356-4E21-4BE4-8353-3ECA7FE3B5BB} - System32\Tasks\CCleanerSkipUAC - Mateusz => C:\Program Files\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {640790A6-CB9B-4B68-9EBB-7C0C1A3CD452} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {706DF7C3-7D0F-48F8-A564-8953F890977D} - System32\Tasks\Optimize Thumbnail Cache => C:\Program Files (x86)\Common Files\installshield\engine\8\intel 32\isupdate.exe [61104 2020-09-26] (Flexera Software LLC -> InstallShield®) [Brak podpisu cyfrowego] <==== UWAGA Task: {78DBCE5E-9EE4-491F-B380-69F6614BD677} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {83BE7F51-94EF-444E-9043-82315B2D8C54} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {A7AED9C1-86D0-48D6-B6FE-AE3444492113} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {BC8B0116-8E1C-4ED9-89CB-9F2DCF4A4A1A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {BED2F532-2193-4434-A93A-749966827373} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {CBBC828C-878C-4F81-872D-4C7B52E8BBC4} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-11-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {E5A13FBF-87DD-4FA2-9327-C758E8C92DE0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F21F8800-962C-4F58-81BB-ACEA1505FC31} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {F3D733DF-6676-4A38-A86D-759791FB1E92} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [6562168 2016-11-14] (Nero AG -> Nero AG) Task: {FD1F66AA-E6AA-4614-978A-A8022A8CC524} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MpCmdRun.exe [1567360 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\..\Interfaces\{1B611DAA-C912-4CE3-B718-B18BF2CE18FB}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{6EF85D62-5392-4AA1-9DF0-D180D28A0ABC}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{BC360BC0-1CE9-4325-824E-D369F1F13858}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{EC7ECEF8-423F-4DD9-BF89-F00EC719584F}: [NameServer] 8.8.8.8 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Mateusz\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-31] Edge Extension: (Avast Online Security & Privacy) - C:\Users\Mateusz\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fdgpikaaheckgdijjmepmdjjkbceakif [2022-10-31] Edge Extension: (IDM Integration Module) - C:\Users\Mateusz\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2022-06-22] Edge Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Mateusz\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2022-10-31] Edge Extension: (Avast SafePrice | Porównania, okazje, kupony) - C:\Users\Mateusz\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\phhhmbgggfifgikoihlakngnngdehhfe [2022-10-31] Edge HKU\S-1-5-21-1108289569-963966695-2365604164-1000\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2022-10-04] FireFox: ======== FF DefaultProfile: 01uh5hke.default FF ProfilePath: C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default [2022-11-14] FF Homepage: Mozilla\Firefox\Profiles\01uh5hke.default -> hxxps://www.google.pl/ FF Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2022-10-23] FF Extension: (IDM Integration Module) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\mozilla_cc3@internetdownloadmanager.com.xpi [2022-10-23] FF Extension: (Avast SafePrice | Porównania, okazje, kupony) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\sp@avast.com.xpi [2022-10-13] FF Extension: (Avast Online Security & Privacy) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\wrc@avast.com.xpi [2022-10-13] FF Extension: (Google™ Translator) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\{059cddf1-f66c-4b63-a79a-c35ac7e6ac65}.xpi [2021-01-20] FF Extension: (Video DownloadHelper) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-01-05] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2022-10-23] FF Extension: (Orange) - C:\Users\Mateusz\AppData\Roaming\Mozilla\Firefox\Profiles\01uh5hke.default\Extensions\{dbc7dd2d-d0f1-4cad-89b5-4d9c0207d3e6}.xpi [2020-11-26] FF HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\Mateusz\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\Mateusz\AppData\Roaming\IDM\idmmzcc5 [2022-04-06] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-1108289569-963966695-2365604164-1000\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Przestarzałe] FF Plugin: @java.com/DTPlugin,version=11.351.2 -> C:\Program Files\Java\jre1.8.0_351\bin\dtplugin\npDeployJava1.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.351.2 -> C:\Program Files\Java\jre1.8.0_351\bin\plugin2\npjp2.dll [2022-10-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-10-16] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-01] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default [2022-11-14] CHR Notifications: Default -> hxxps://allegro.pl CHR Extension: (Avast SafePrice | Porównania, okazje, kupony) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2022-10-13] CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-10-22] CHR Extension: (Avast Online Security & Privacy) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2022-10-13] CHR Extension: (Video DownloadHelper) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2022-10-13] CHR Extension: (IDM Integration Module) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2022-10-25] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-10-25] CHR Extension: (e-pity - dodatek) - C:\Users\Mateusz\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2022-10-25] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-10-04] CHR HKU\S-1-5-21-1108289569-963966695-2365604164-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-10-04] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2022-10-04] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R2 Apache2.4; C:\Program Files (x86)\RAIDXpert2\apache\bin\httpd.exe [23040 2017-06-21] (Apache Software Foundation) [Brak podpisu cyfrowego] R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8539152 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [592600 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2018008 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [592600 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-09-08] (Avast Software s.r.o. -> AVAST Software) S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1082896 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12516280 2022-11-01] (Microsoft Corporation -> Microsoft Corporation) S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [785408 2022-11-11] (Microsoft Windows -> Microsoft Corporation) S2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [462432 2022-07-06] (Digital Wave Ltd -> Digital Wave Ltd) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4960120 2022-09-07] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 iBtSiva; C:\Program Files (x86)\Intel\Bluetooth\ibtsiva.exe [172152 2016-09-16] (Intel Corporation - pGFX -> Intel Corporation) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe [69632 2005-11-14] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 KingoSoftService; C:\Users\Mateusz\AppData\Local\Kingosoft\Kingo Root\update_27205\bin\checkupdate.exe [377832 2018-03-08] (FingerPower Digital Technology Ltd. -> ) R2 Mobile Broadband HL Service; C:\Program Files (x86)\MobileBrServ\mbbservice.exe [242264 2016-03-24] (Huawei Technologies Co.,Ltd. -> ) R3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [275752 2008-01-22] (Nero AG -> Nero AG) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2576728 2022-11-06] (Overwolf Ltd -> Overwolf LTD) R2 PLFlash DeviceIoControl Service; C:\Windows\SysWOW64\IoctlSvc.exe [81920 2006-12-19] (Prolific Technology Inc.) [Brak podpisu cyfrowego] R2 rc_cgi; C:\Program Files (x86)\RAIDXpert2\rc_cgi.exe [669184 2017-10-31] (AMD, Inc.) [Brak podpisu cyfrowego] S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2720088 2022-11-13] (Rockstar Games, Inc. -> Rockstar Games) S3 RServer3; C:\Windows\SysWOW64\rserver30\RServer3.exe [1164400 2017-12-07] (Famatech Corp. -> Famatech Corp.) R2 RvControlSvc; C:\Program Files (x86)\Radmin VPN\RvControlSvc.exe [1058320 2022-04-12] (Famatech Corp. -> Famatech Corp.) R2 SbieSvc; C:\Program Files\Sandboxie-Plus\SbieSvc.exe [365008 2022-10-19] (Tonalio GmbH -> Sandboxie-Plus.com) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224216 2022-11-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ss_conn_service; D:\Program Files\USB Drivers\27_ssconn\conn\ss_conn_service.exe [754784 2016-07-22] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [933304 2019-12-17] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [Brak podpisu cyfrowego] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12097024 2019-11-06] (TeamViewer GmbH -> TeamViewer Germany GmbH) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\NisSrv.exe [3191272 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2210.6-0\MsMpEng.exe [133544 2022-11-12] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [1256880 2022-11-06] (Windscribe Limited -> Windscribe Limited) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_bd530e4cbd42e0a3\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_bd530e4cbd42e0a3\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AsrDrv103; C:\Windows\SysWOW64\Drivers\AsrDrv103.sys [34568 2019-02-09] (ASROCK Incorporation -> ASRock Incorporation) [Brak podpisu cyfrowego] S3 AsrDrv104; C:\WINDOWS\SysWOW64\Drivers\AsrDrv104.sys [34536 2022-03-28] (ASROCK Incorporation -> ASRock Incorporation) [Brak podpisu cyfrowego] R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [238152 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [382528 2022-11-14] (Microsoft Windows Hardware Compatibility Publisher -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [306128 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [105936 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [48512 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [276520 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [564304 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [114464 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [90008 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [862936 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [672272 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [221944 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [327896 2022-11-03] (Avast Software s.r.o. -> AVAST Software) R3 axscsibus; C:\WINDOWS\System32\drivers\axscsibus.sys [30352 2019-02-13] (Disc Soft Ltd -> Alcohol Soft Development Team) R2 BlueStacksDrv_bgp64; C:\Program Files\BlueStacks_bgp64\BstkDrv_bgp64.sys [315976 2020-10-04] (Bluestack Systems, Inc -> Bluestack System Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-02-24] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2022-04-24] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 mirrorv3; C:\WINDOWS\System32\drivers\rminiv3.sys [5632 2017-12-07] (Microsoft Windows Hardware Compatibility Publisher -> Famatech International Corp.) S3 Neo_SoftEther; C:\WINDOWS\System32\DRIVERS\Neo_0065.sys [38088 2019-07-24] (SoftEther Corporation -> SoftEther Corporation) S3 Neo_SoftEther_VPN1; C:\WINDOWS\System32\DRIVERS\Neo_0091.sys [38088 2019-11-18] (SoftEther Corporation -> SoftEther Corporation) S3 Neo_VPN; C:\WINDOWS\System32\DRIVERS\Neo_0059.sys [38088 2019-02-13] (SoftEther Corporation -> SoftEther Corporation) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation) S3 pxwfp; C:\Windows\system32\drivers\pxwfp.sys [33992 2019-08-09] (SoftEther Corporation -> SoftEther Corporation) R1 raddrvv3; C:\Windows\SysWOW64\rserver30\raddrvv3.sys [96128 2017-12-12] (Famatech Corp. -> Famatech Corp.) R3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [69048 2020-09-24] (Famatech Corp. -> Famatech Corp.) R3 SbieDrv; C:\Program Files\Sandboxie-Plus\SbieDrv.sys [250392 2022-10-19] (Microsoft Windows Hardware Compatibility Publisher -> Sandboxie-Plus.com) S3 SEE; C:\WINDOWS\System32\drivers\see.sys [52424 2019-11-18] (SoftEther Corporation -> SoftEther Corporation) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [393880 2021-06-08] (Disc Soft Ltd -> Duplex Secure Ltd.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 tap0901; C:\WINDOWS\System32\DRIVERS\tap0901.sys [36496 2019-05-24] (OpenVPN Technologies, Inc. -> The OpenVPN Project) S3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744 2021-06-13] (nordvpn s.a. -> The OpenVPN Project) R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [48544 2022-03-19] (Windscribe Limited -> The OpenVPN Project) R3 VBAudioVACMME; C:\WINDOWS\System32\drivers\vbaudio_cable64_win7.sys [41192 2014-09-02] (Vincent Burel -> Windows (R) Win 7 DDK provider) S3 VOICEMOD_Driver; C:\WINDOWS\System32\drivers\vmdrv.sys [27648 2018-01-10] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [50688 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49616 2022-11-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R4 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [469288 2022-11-12] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [95520 2022-11-12] (Microsoft Windows -> Microsoft Corporation) S3 WindscribeSplitTunnel; C:\WINDOWS\system32\DRIVERS\WindscribeSplitTunnel.sys [35752 2022-11-06] (Windscribe Limited -> ) R3 windtun420; C:\WINDOWS\System32\drivers\windtun420.sys [38312 2022-03-19] (Windscribe Limited -> WireGuard LLC) S3 wod0205; C:\WINDOWS\System32\DRIVERS\wod0205.sys [33160 2011-04-23] (Secure Plus d.o.o. -> WeOnlyDo Software) U3 idsvc; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-11-14 19:24 - 2022-11-14 19:25 - 000000000 ___HD C:\avast! sandbox 2022-11-14 13:07 - 2022-11-14 13:11 - 000000119 _____ C:\Users\Mateusz\Desktop\pensja.txt 2022-11-14 12:20 - 2022-11-14 12:20 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2022-11-14 09:46 - 2022-11-14 09:46 - 000000000 ____D C:\Users\Mateusz\Desktop\Microsoft Visual C++ 2022-11-14 07:36 - 2022-11-14 07:36 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2022-11-14 07:34 - 2022-11-09 11:03 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2022-11-14 07:34 - 2022-11-09 11:03 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo.exe 2022-11-14 07:34 - 2022-11-09 11:03 - 001642592 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-11-14 07:34 - 2022-11-09 11:03 - 001642592 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2022-11-14 07:34 - 2022-11-09 11:03 - 001487912 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2022-11-14 07:34 - 2022-11-09 11:03 - 001444416 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2022-11-14 07:34 - 2022-11-09 11:03 - 001444416 _____ C:\WINDOWS\system32\vulkan-1.dll 2022-11-14 07:34 - 2022-11-09 11:03 - 001227304 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2022-11-14 07:34 - 2022-11-09 11:03 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2022-11-14 07:34 - 2022-11-09 11:03 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2022-11-14 07:34 - 2022-11-09 10:59 - 000865272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2022-11-14 07:34 - 2022-11-09 10:59 - 000672232 _____ C:\WINDOWS\system32\nvofapi64.dll 2022-11-14 07:34 - 2022-11-09 10:59 - 000507432 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 002162176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 001618408 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 001531400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 001190392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 000950280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2022-11-14 07:34 - 2022-11-09 10:58 - 000746536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2022-11-14 07:34 - 2022-11-09 10:58 - 000734184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 012452360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 010218488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 005891072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 005856744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 003334136 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2022-11-14 07:34 - 2022-11-09 10:57 - 000457752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2022-11-14 07:34 - 2022-11-09 10:56 - 005816312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2022-11-14 07:34 - 2022-11-09 10:56 - 000853016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2022-11-14 07:34 - 2022-11-09 10:55 - 006512336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2022-11-14 07:34 - 2022-11-08 23:40 - 000100589 _____ C:\WINDOWS\system32\nvinfo.pb 2022-11-11 23:41 - 2022-11-11 23:41 - 000000000 ____D C:\Program Files\Common Files\Services 2022-11-11 11:33 - 2022-11-11 11:33 - 000688128 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-11-11 11:33 - 2022-11-11 11:33 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-11-11 11:33 - 2022-11-11 11:33 - 000073216 _____ C:\WINDOWS\system32\nettraceex.dll 2022-11-11 11:33 - 2022-11-11 11:33 - 000012253 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-11-11 11:24 - 2022-11-11 11:24 - 000000000 ___HD C:\$WinREAgent 2022-11-08 12:12 - 2022-11-08 12:12 - 000000000 ____D C:\Users\Mateusz\Documents\MPC-HC 2022-11-06 19:01 - 2022-11-06 19:01 - 000165530 _____ C:\Users\Mateusz\Downloads\R8 Warszawa-Skarżysko Kamienna 6-27 XI_2.pdf 2022-11-06 19:00 - 2022-11-06 19:00 - 000216494 _____ C:\Users\Mateusz\Downloads\R8 Warszawa-Skarżysko Kamienna 28 XI-10 XII (31 X).pdf 2022-11-06 17:19 - 2022-11-06 17:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windscribe 2022-11-06 17:18 - 2022-11-08 10:50 - 000000000 ____D C:\Program Files (x86)\Windscribe 2022-11-06 17:18 - 2022-11-06 17:18 - 000035752 _____ C:\WINDOWS\system32\Drivers\WindscribeSplitTunnel.sys 2022-11-06 00:13 - 2022-11-06 00:13 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SBB Videojuegos 2022-11-06 00:12 - 2022-11-08 09:41 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Deployment 2022-11-06 00:12 - 2022-11-06 00:12 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Apps\2.0 2022-11-05 13:05 - 2022-11-06 17:15 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-03 21:25 - 2022-11-03 21:25 - 000270552 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2022-11-03 21:25 - 2022-11-03 21:25 - 000221944 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys 2022-11-03 09:06 - 2022-11-03 09:06 - 000477180 _____ C:\Users\Mateusz\Downloads\ROZKLAD_JAZDY_PRZYWOZY_SP_UWIELINY_NOWY(1).pdf 2022-10-30 18:47 - 2022-10-30 18:47 - 000300291 _____ C:\Users\Mateusz\Downloads\2_Dacka_Psychologia-Rozwojowa_26(1)-2021_2.pdf 2022-10-30 17:41 - 2022-10-30 18:54 - 001161499 _____ C:\Users\Mateusz\Desktop\Nastoletnie rodzicielstwo.odp 2022-10-30 17:20 - 2022-10-30 17:20 - 003432660 _____ C:\Users\Mateusz\Downloads\YWP_Nr_3_2020.pdf 2022-10-29 18:56 - 2022-10-29 19:06 - 000000000 ____D C:\Users\Mateusz\Desktop\ślub na fb 2022-10-28 11:22 - 2022-10-30 14:29 - 000000000 ____D C:\Users\Mateusz\Desktop\Kill process 2022-10-28 11:19 - 2022-10-28 11:19 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-10-28 06:42 - 2022-10-28 06:42 - 000002036 _____ C:\Users\Public\Desktop\Avast Premium Security.lnk 2022-10-26 21:30 - 2022-10-26 21:30 - 000165530 _____ C:\Users\Mateusz\Downloads\R8 Warszawa-Skarżysko Kamienna 6-27 XI.pdf 2022-10-25 03:36 - 2022-10-25 03:40 - 000000000 ____D C:\Program Files (x86)\NetSpeedmeter 2022-10-24 15:29 - 2022-10-24 15:29 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Macromedia 2022-10-23 16:09 - 2022-10-23 16:09 - 000002021 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2022-10-23 15:59 - 2022-07-14 00:32 - 000060112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2022-10-23 05:54 - 2022-10-23 05:54 - 000002178 _____ C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox — tryb prywatny.lnk 2022-10-22 23:05 - 2022-10-22 23:05 - 000000848 _____ C:\Users\Mateusz\Desktop\Sandboxie-Plus.lnk 2022-10-17 19:43 - 2022-10-17 20:41 - 000000000 ____D C:\Users\Mateusz\Desktop\Ikony dla Folderów 2022-10-13 19:08 - 2022-10-13 19:08 - 000025576 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswElam.sys 2022-10-13 10:52 - 2022-10-23 16:09 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-10-13 09:48 - 2022-10-07 04:01 - 000041984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2022-10-13 07:24 - 2022-10-13 07:24 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-10-13 07:24 - 2022-10-13 07:24 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-10-13 07:24 - 2022-10-13 07:24 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2022-10-13 07:24 - 2022-10-13 07:24 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2022-10-13 07:24 - 2022-10-13 07:24 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2022-10-11 09:19 - 2022-10-22 23:45 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Sandboxie-Plus 2022-10-11 09:19 - 2022-10-22 23:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie-Plus 2022-10-11 09:19 - 2022-10-22 23:04 - 000002578 _____ C:\WINDOWS\Sandboxie.ini 2022-10-10 09:27 - 2022-10-10 09:27 - 000226412 _____ C:\Users\Mateusz\Downloads\Plakat_2022_CZACHOWEK_POLUDNIOWY_Odjazdy_Wazny_20220904-20221105_PL_202210101028.pdf 2022-10-10 09:26 - 2022-10-10 09:26 - 000224623 _____ C:\Users\Mateusz\Downloads\Plakat_2022_CZACHOWEK_POLUDNIOWY_Odjazdy_BezT_Wazny_20220904-20221105_PL_202210101028.pdf 2022-10-09 19:57 - 2022-10-09 19:59 - 000010280 _____ C:\Users\Mateusz\Desktop\Leroy Merlin Piaseczno Grafik Październik 2022.odt 2022-10-09 14:31 - 2022-10-09 14:31 - 000035052 _____ C:\Users\Mateusz\Downloads\order-summation-1050826231.pdf 2022-10-08 22:00 - 2022-10-08 22:00 - 003465280 _____ C:\Users\Mateusz\Downloads\DINO_40_2022_www.pdf 2022-10-04 00:27 - 2018-12-20 01:05 - 000229296 _____ (Tonec Inc.) C:\WINDOWS\system32\Drivers\idmwfp.sys 2022-10-02 22:22 - 2022-10-02 22:22 - 000474858 _____ C:\Users\Mateusz\Downloads\ROZKLAD_JAZDY_PRZYWOZY_SP_UWIELINY_NOWY.pdf 2022-09-27 07:03 - 2022-09-27 07:03 - 000001868 _____ C:\Users\Mateusz\Desktop\MagicISO.lnk 2022-09-27 07:03 - 2022-09-27 07:03 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MagicISO 2022-09-27 07:03 - 2022-09-27 07:03 - 000000000 ____D C:\Program Files (x86)\MagicISO 2022-09-22 21:59 - 2022-09-22 21:59 - 000013079 _____ C:\Users\Mateusz\Downloads\PARI-98613-09-2022-ECOM.pdf 2022-09-21 13:08 - 2022-11-09 14:23 - 000000000 ____D C:\Users\Mateusz\Documents\#Output 2022-09-18 16:07 - 2022-09-18 16:07 - 000109283 _____ C:\Users\Mateusz\Downloads\4dc2a8ec175558f9f2df927d2f6ebfe2.pdf 2022-09-17 09:16 - 2022-09-17 09:16 - 000325824 _____ C:\Users\Mateusz\Downloads\return_412722.pdf 2022-09-16 21:45 - 2022-11-08 09:47 - 000000000 ____D C:\Program Files\Cheat Engine 7.2 2022-09-16 21:32 - 2022-09-16 21:36 - 000000000 ____D C:\Users\Mateusz\AppData\Local\lazarus 2022-09-16 21:32 - 2022-09-16 21:32 - 000000000 ____D C:\Users\Mateusz\AppData\Local\FreePascal 2022-09-16 21:31 - 2021-07-28 12:09 - 002265088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\libeay32.dll 2022-09-16 21:31 - 2021-07-28 12:09 - 000383488 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\ssleay32.dll 2022-09-16 21:28 - 2022-09-18 11:54 - 000000000 ____D C:\Lazarus 2022-09-16 16:16 - 2022-09-16 16:16 - 000012315 _____ C:\Users\Mateusz\Desktop\Lokomotywa - Julian Tuwim.odt 2022-09-15 17:44 - 2022-09-15 17:44 - 000048694 _____ C:\Users\Mateusz\Downloads\Klient0.pdf 2022-09-14 16:36 - 2022-09-14 16:36 - 000038521 _____ C:\Users\Mateusz\Downloads\1851_Agnieszka_Gostkowska_eZwolnienie_zdn_2022-09-13_2022-09-20_2.pdf 2022-09-14 16:35 - 2022-09-14 16:35 - 000054082 _____ C:\Users\Mateusz\Downloads\zalecenia P.Agnieszka Gostkowska.pdf 2022-09-14 16:35 - 2022-09-14 16:35 - 000038521 _____ C:\Users\Mateusz\Downloads\1851_Agnieszka_Gostkowska_eZwolnienie_zdn_2022-09-13_2022-09-20.pdf 2022-09-14 16:35 - 2022-09-14 16:35 - 000036628 _____ C:\Users\Mateusz\Downloads\1851_Agnieszka_Gostkowska_Recepta_zdn_2022-09-14.pdf 2022-09-14 12:44 - 2022-11-11 11:23 - 000000000 ____D C:\Users\Default\.dotnet 2022-09-11 17:31 - 2022-09-11 17:31 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\com.adobe.dunamis 2022-09-11 13:25 - 2022-09-11 13:28 - 000000000 ____D C:\Users\Mateusz\Documents\Squalr 2022-09-11 13:25 - 2022-09-11 13:28 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Anathena Inc 2022-09-11 13:25 - 2022-09-11 13:28 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Squalr 2022-09-11 13:25 - 2022-09-11 13:25 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Anathena_Inc 2022-09-11 13:14 - 2022-09-11 17:33 - 000000000 ____D C:\Program Files\Cheat Engine 2022-09-11 13:13 - 2022-09-11 13:13 - 011752430 _____ C:\Users\Mateusz\Downloads\CheatEnginePortable.rar 2022-09-10 16:04 - 2022-09-10 16:04 - 000009556 _____ C:\Users\Mateusz\Downloads\15072022_dyzury_stm.xlsx 2022-09-09 19:58 - 2022-11-14 11:39 - 000003270 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task 2022-09-09 19:58 - 2022-11-13 07:58 - 000000000 ____D C:\Program Files (x86)\Overwolf 2022-09-09 19:58 - 2022-09-09 19:58 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Overwolf 2022-09-09 19:58 - 2022-09-09 19:58 - 000000000 ____D C:\ProgramData\Overwolf 2022-09-09 19:57 - 2022-09-22 21:49 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Overwolf 2022-09-09 19:57 - 2022-09-09 19:57 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client 2022-09-08 20:19 - 2022-09-08 20:19 - 000000057 _____ C:\Users\Mateusz\Desktop\Książka do Religii.txt 2022-09-08 14:52 - 2022-09-08 14:52 - 000000000 ____D C:\WINDOWS\system32\gf2engine 2022-09-08 09:23 - 2022-09-08 09:23 - 000000000 ___HD C:\$AV_ASW 2022-09-08 09:21 - 2022-11-12 00:13 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Avast Software 2022-09-08 09:21 - 2022-10-28 06:42 - 000002048 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Premium Security.lnk 2022-09-08 09:21 - 2022-09-08 09:21 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Avast Software 2022-09-08 09:20 - 2022-11-14 11:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2022-09-08 09:19 - 2022-11-14 12:29 - 000382528 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys 2022-09-08 09:19 - 2022-11-04 16:42 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2022-09-08 09:19 - 2022-11-03 21:25 - 000862936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000672272 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000564304 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000390096 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys.166842534378101 2022-09-08 09:19 - 2022-11-03 21:25 - 000327896 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000306128 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000276520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000238152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000114464 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000105936 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000090008 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys 2022-09-08 09:19 - 2022-11-03 21:25 - 000048512 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys 2022-09-08 09:19 - 2022-09-08 09:19 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2022-09-08 09:18 - 2022-09-08 09:18 - 000000000 ____D C:\Program Files\Avast Software 2022-09-08 09:16 - 2022-09-08 14:57 - 000000000 ____D C:\Users\Mateusz\Desktop\Avast 2022-09-08 08:21 - 2022-09-08 08:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit 2022-09-07 14:35 - 2022-11-14 19:26 - 000000000 ____D C:\FRST 2022-09-07 13:01 - 2022-10-22 23:39 - 000000000 ____D C:\Program Files\Java 2022-09-06 09:22 - 2022-10-31 08:42 - 000000000 ____D C:\OutputFolder 2022-09-06 08:31 - 2022-09-06 08:31 - 000000948 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk 2022-09-06 08:31 - 2022-09-06 08:31 - 000000000 ____D C:\Program Files\4KDownload 2022-09-06 07:04 - 2022-09-06 07:04 - 000000000 ____D C:\Program Files\factormystic.net 2022-09-06 06:49 - 2022-09-06 06:49 - 000000000 ____D C:\Users\Mateusz\.dotnet 2022-09-06 06:40 - 2022-11-11 11:22 - 000000000 ____D C:\Program Files\dotnet 2022-09-06 06:31 - 2022-10-28 20:01 - 000000000 ____D C:\Program Files\paint.net 2022-09-05 15:53 - 2022-09-05 15:53 - 000221935 _____ C:\Users\Mateusz\Downloads\Wniosek_o_dodatek_węglowy.pdf 2022-09-05 15:40 - 2022-09-05 15:40 - 000288443 _____ C:\Users\Mateusz\Downloads\621529928313-1.pdf 2022-09-05 08:17 - 2022-11-14 07:26 - 000000000 ____D C:\Games 2022-09-04 18:27 - 2022-09-04 18:27 - 000000000 ____D C:\Program Files\OpenMPT 2022-09-04 14:31 - 2022-09-05 17:38 - 000000000 ____D C:\Program Files\Rockstar Games 2022-09-04 14:29 - 2022-11-14 11:39 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:29 - 2022-11-14 11:39 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-09-04 14:17 - 2022-11-14 11:39 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-09-04 14:16 - 2022-09-25 12:03 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-09-04 14:16 - 2022-09-04 14:16 - 000000000 ____D C:\Program Files\Adobe 2022-09-04 14:12 - 2022-09-04 14:12 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2022-09-04 14:02 - 2022-09-04 14:02 - 000000000 ____D C:\Program Files\IrfanView 2022-09-04 13:56 - 2022-09-04 13:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileZilla FTP Client 2022-09-04 13:56 - 2022-09-04 13:56 - 000000000 ____D C:\Program Files\FileZilla FTP Client 2022-09-04 13:53 - 2022-09-04 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy 2022-09-04 13:53 - 2022-09-04 13:53 - 000000000 ____D C:\Program Files\Speccy 2022-09-04 13:50 - 2022-09-04 13:50 - 000000000 ____D C:\Program Files\Microsoft Office 15 2022-09-04 13:49 - 2022-09-04 19:46 - 000000000 ____D C:\ProgramData\Piriform 2022-09-04 13:49 - 2022-09-04 13:49 - 000000000 ____D C:\Program Files\Recuva 2022-09-04 13:48 - 2022-11-14 13:48 - 000000000 ____D C:\Program Files\CCleaner 2022-09-04 13:48 - 2022-11-14 11:39 - 000003194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-09-04 13:48 - 2022-11-14 11:39 - 000002256 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - Mateusz 2022-09-04 13:48 - 2022-09-04 13:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2022-09-04 11:58 - 2022-09-04 11:58 - 000413696 _____ C:\WINDOWS\system32\AzureCheck.dll 2022-09-04 11:58 - 2022-09-04 11:58 - 000098816 _____ C:\WINDOWS\system32\Drivers\cimfs.sys 2022-09-04 11:09 - 2022-11-14 11:39 - 000003570 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{AAD42334-907F-40AB-9304-E09B5BDD461D} 2022-09-04 11:09 - 2022-11-14 11:39 - 000003346 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{EE3E65E4-C605-4A0D-A7B8-51CD1B8CAA0D} 2022-09-01 11:01 - 2022-09-01 11:01 - 000184646 _____ C:\Users\Mateusz\Downloads\R8 Warszawa-Skarżysko Kamienna 4 IX-5 XI (29 VIII).pdf 2022-08-31 12:51 - 2022-10-06 19:09 - 000000000 ____D C:\Users\Mateusz\AppData\Local\PizzaBusiness 2022-08-31 11:48 - 2022-09-04 18:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenMPT 2022-08-31 06:10 - 2022-11-14 11:39 - 000002926 _____ C:\WINDOWS\system32\Tasks\Optimize Thumbnail Cache 2022-08-24 14:09 - 2022-08-24 14:09 - 000426625 _____ C:\Users\Mateusz\Downloads\Grafik_rozpoczecie_roku_szkolnego_2022_2023(1).pdf 2022-08-22 14:49 - 2022-08-22 14:49 - 000000000 ____D C:\Users\Mateusz\Downloads\Java Files 2022-08-22 12:51 - 2022-10-30 15:11 - 000000000 ____D C:\Users\Mateusz\Downloads\Android APK 2022-08-22 12:51 - 2022-08-22 12:51 - 000000000 ____D C:\Users\Mateusz\Downloads\Android XAPK 2022-08-16 17:11 - 2022-08-16 17:11 - 001358879 _____ C:\Users\Mateusz\Downloads\Informacja_o_równym_traktowaniu_w_zatrudnieniu - Równe_traktowanie_w_zatrudnieniu.pdf 2022-08-16 17:08 - 2022-08-16 17:08 - 000213294 _____ C:\Users\Mateusz\Downloads\Oświadczenie PESEL NIP.pdf 2022-08-16 17:07 - 2022-08-16 17:07 - 000677402 _____ C:\Users\Mateusz\Downloads\Skierowanie_na_badania_lekarskie_wstepne_okresowe_kontrolne.pdf 2022-08-16 17:06 - 2022-08-16 17:06 - 000124963 _____ C:\Users\Mateusz\Downloads\Deklaracja o rezygnacji z dokonywania wpłat.pdf 2022-08-16 17:05 - 2022-08-16 17:05 - 000246259 _____ C:\Users\Mateusz\Downloads\PIT-2 (7) 2022.pdf 2022-08-16 17:03 - 2022-08-16 17:03 - 000029648 _____ C:\Users\Mateusz\Downloads\Dane US_do_PIT-11.pdf 2022-08-16 07:16 - 2022-08-16 07:16 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.13 ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-11-14 19:24 - 2022-04-06 14:31 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\DMCache 2022-11-14 19:22 - 2022-03-21 09:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-14 17:52 - 2019-02-09 15:24 - 000000000 ____D C:\Program Files (x86)\Google 2022-11-14 16:18 - 2019-02-09 17:13 - 000000000 ____D C:\Users\Mateusz\AppData\Local\CrashDumps 2022-11-14 15:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-14 14:05 - 2021-12-26 08:56 - 000000000 ____D C:\Users\Mateusz\AppData\LocalLow\Mozilla 2022-11-14 13:29 - 2019-03-07 13:02 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Discord 2022-11-14 13:05 - 2020-12-07 22:08 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Discord 2022-11-14 12:33 - 2022-03-21 09:39 - 001972334 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-14 12:33 - 2019-12-07 16:09 - 000856380 _____ C:\WINDOWS\system32\perfh015.dat 2022-11-14 12:33 - 2019-12-07 16:09 - 000188222 _____ C:\WINDOWS\system32\perfc015.dat 2022-11-14 12:33 - 2019-12-07 10:12 - 000000000 ____D C:\WINDOWS\INF 2022-11-14 12:30 - 2019-02-02 16:12 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-14 12:27 - 2019-09-14 15:33 - 000000000 ____D C:\ProgramData\AVAST Software 2022-11-14 12:27 - 2019-09-09 12:35 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2022-11-14 12:26 - 2022-03-21 09:42 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-14 12:26 - 2022-03-21 09:38 - 000008192 ___SH C:\DumpStack.log.tmp 2022-11-14 12:26 - 2019-12-07 10:03 - 000262144 _____ C:\WINDOWS\system32\config\BBI 2022-11-14 12:26 - 2019-03-13 19:50 - 000000000 ___RD C:\Users\Mateusz\Desktop\Gry 2022-11-14 12:23 - 2021-06-08 18:58 - 000000267 _____ C:\Users\Mateusz\Documents\ax_files.xml 2022-11-14 12:15 - 2019-02-13 08:45 - 000000000 ___RD C:\Program Files (x86)\Rockstar Games 2022-11-14 12:13 - 2022-04-24 07:27 - 000000000 ____D C:\Program Files\DAEMON Tools Lite 2022-11-14 12:10 - 2022-06-01 12:50 - 000000000 ____D C:\WINDOWS\SysWOW64\directx 2022-11-14 12:10 - 2019-03-23 21:26 - 000000000 ___HD C:\WINDOWS\msdownld.tmp 2022-11-14 11:59 - 2019-02-02 16:12 - 000000000 ____D C:\ProgramData\Package Cache 2022-11-14 11:29 - 2021-09-10 20:21 - 000000000 ____D C:\Users\Mateusz\Downloads\Compressed 2022-11-14 10:21 - 2021-12-08 18:57 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Canva 2022-11-14 09:47 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-11-14 08:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-14 08:14 - 2022-03-21 10:40 - 000000000 ____D C:\Users\Mateusz\AppData\Local\D3DSCache 2022-11-14 08:11 - 2019-02-13 09:06 - 000000000 ____D C:\Users\Mateusz\Documents\GTA San Andreas User Files 2022-11-14 08:10 - 2022-02-09 17:24 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-11-14 07:36 - 2019-02-24 12:25 - 000000000 ____D C:\Users\Mateusz\AppData\Local\NVIDIA 2022-11-14 07:36 - 2019-02-02 16:12 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-11-14 07:36 - 2019-02-02 16:12 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-11-14 07:36 - 2019-02-02 16:11 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-11-14 07:24 - 2020-01-02 21:19 - 000000000 ____D C:\Users\Mateusz\AppData\Local\modloader 2022-11-14 07:24 - 2019-02-13 09:17 - 000000000 ____D C:\ProgramData\modloader 2022-11-13 20:11 - 2019-02-12 20:38 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\audacity 2022-11-13 20:08 - 2021-02-27 19:22 - 000000000 ___RD C:\Users\Mateusz\Documents\Vegas Pro Render 2022-11-12 17:25 - 2022-03-21 09:39 - 000000000 ____D C:\Users\Mateusz 2022-11-12 08:47 - 2022-03-21 09:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-11-11 23:42 - 2022-03-21 09:38 - 000474232 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-11-11 23:41 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-11-11 23:41 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-11-11 21:42 - 2021-09-10 20:21 - 000000000 ____D C:\Users\Mateusz\Downloads\Video 2022-11-11 20:37 - 2022-04-06 14:31 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\IDM 2022-11-11 11:36 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-11 11:33 - 2022-03-21 09:40 - 003014656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-11-11 11:22 - 2020-03-28 15:55 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-11 11:19 - 2020-03-28 15:55 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-11 07:33 - 2021-06-03 16:51 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-11-11 07:07 - 2022-03-21 09:38 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-11-11 07:07 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-10 06:20 - 2021-01-20 18:47 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2022-11-09 18:32 - 2019-02-28 09:26 - 000000000 ____D C:\setups 2022-11-09 18:32 - 2019-02-24 20:24 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\CreateInstall 2022-11-09 17:41 - 2019-02-12 20:33 - 000000000 ___RD C:\Users\Mateusz\Desktop\=Porządek= 2022-11-09 17:40 - 2019-02-12 20:33 - 000000000 ___RD C:\Users\Mateusz\Desktop\Mati 2022-11-09 14:34 - 2021-03-01 13:41 - 000000000 ____D C:\Users\Mateusz\Documents\Vegas Pro Recordings 2022-11-09 13:13 - 2022-06-01 10:39 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\obs-studio 2022-11-09 10:55 - 2022-07-31 07:03 - 007642816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 002890296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 002224696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 001297464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 000169512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 000148520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 000086568 _____ C:\WINDOWS\system32\FvSDK_x64.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 000075304 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll 2022-11-08 23:40 - 2022-07-31 07:07 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2022-11-08 12:10 - 2022-04-06 17:37 - 000000000 ____D C:\Users\Mateusz\Downloads\Subtitles 2022-11-06 17:15 - 2019-02-12 19:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-06 13:49 - 2022-05-22 09:41 - 000000016 _____ C:\Users\Mateusz\AppData\Roaming\obs-virtualcam.txt 2022-11-05 22:40 - 2019-03-05 10:24 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Mato_Technologies 2022-11-05 21:01 - 2019-02-13 08:02 - 000000000 ____D C:\Users\Mateusz\Documents\Bandicam 2022-11-05 20:05 - 2022-03-21 09:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-11-05 20:05 - 2019-02-12 19:20 - 000000965 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-03 21:25 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-11-03 12:10 - 2019-02-19 13:12 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\FileZilla 2022-11-01 16:54 - 2019-02-12 20:17 - 000000000 ____D C:\Program Files (x86)\Steam 2022-11-01 08:52 - 2019-09-14 15:36 - 000000000 ____D C:\Program Files\Microsoft Office 2022-10-31 21:23 - 2019-02-24 20:24 - 000000000 ____D C:\Program Files (x86)\CreateInstall 2022-10-30 17:23 - 2022-03-21 13:45 - 000000000 ____D C:\Users\Mateusz\AppData\Local\PlaceholderTileLogoFolder 2022-10-29 20:31 - 2021-04-07 18:29 - 000000000 ____D C:\Program Files (x86)\Cossacks 2022-10-26 14:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Cursors 2022-10-26 13:22 - 2019-12-26 09:20 - 000000000 ____D C:\Users\Mateusz\Desktop\Tapety 2022-10-25 03:37 - 2022-03-21 10:11 - 000000000 ____D C:\Users\Mateusz\AppData\Local\Packages 2022-10-25 03:37 - 2022-03-21 10:11 - 000000000 ____D C:\ProgramData\Packages 2022-10-24 15:30 - 2019-02-13 12:33 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\GG 2022-10-23 14:29 - 2019-02-09 15:31 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Adobe 2022-10-22 23:39 - 2019-02-12 19:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2022-10-22 23:38 - 2021-01-12 08:21 - 000195232 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2022-10-22 23:05 - 2022-06-16 12:38 - 000000000 ____D C:\Program Files\Sandboxie-Plus 2022-10-21 21:19 - 2020-11-08 09:06 - 000000000 ____D C:\Users\Mateusz\Documents\GTA Underground User Files 2022-10-21 20:50 - 2019-02-13 09:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\San Andreas Multiplayer 2022-10-21 15:06 - 2022-04-06 14:31 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager 2022-10-19 12:35 - 2019-02-12 20:27 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2022-10-17 07:34 - 2020-10-29 09:11 - 000000000 ____D C:\Users\Mateusz\Documents\GTA Vice City User Files 2022-10-17 05:39 - 2019-03-14 10:38 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\HpUpdate 2022-10-17 05:36 - 2019-03-14 10:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2022-10-16 12:46 - 2019-02-12 20:49 - 000000000 ____D C:\Users\Mateusz\AppData\Roaming\MMFApplications ==================== Pliki w katalogu głównym wybranych folderów ======== 2017-04-06 11:58 - 2017-04-06 11:58 - 000037607 _____ () C:\Program Files (x86)\Common Files\license.rtf 2017-04-06 11:58 - 2017-04-06 11:58 - 000008046 _____ () C:\Program Files (x86)\Common Files\setupBanner.jpg 2020-03-30 15:54 - 2022-08-26 10:29 - 000000035 _____ () C:\Users\Mateusz\AppData\Roaming\.crystalinst 2022-05-22 09:41 - 2022-11-06 13:49 - 000000016 _____ () C:\Users\Mateusz\AppData\Roaming\obs-virtualcam.txt 2021-09-02 22:12 - 2021-12-03 22:33 - 000004608 _____ () C:\Users\Mateusz\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2021-04-04 17:30 - 2021-04-06 21:03 - 000000128 _____ () C:\Users\Mateusz\AppData\Local\PUTTY.RND 2019-02-12 21:51 - 2020-06-03 06:27 - 000007605 _____ () C:\Users\Mateusz\AppData\Local\resmon.resmoncfg 2022-07-06 14:15 - 2022-07-06 14:15 - 000000071 _____ () C:\Users\Mateusz\AppData\Local\uts.ini ==================== SigCheckExt ========================= 2011-04-12 13:20 - 2010-11-21 04:24 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvscres.dll 2019-02-12 19:54 - 2015-10-24 18:00 - 000126976 _____ C:\WINDOWS\system32\ff_vfw.dll 2012-08-30 14:18 - 2012-08-30 14:18 - 000071680 _____ (Beepa P/L) C:\WINDOWS\system32\frapsv64.dll 2022-03-21 10:49 - 2005-01-22 00:53 - 000055296 _____ C:\WINDOWS\system32\huffyuv.dll 2019-02-12 19:54 - 2011-12-07 19:37 - 000148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2022-09-16 21:31 - 2021-07-28 12:09 - 002265088 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\libeay32.dll 2022-09-16 21:31 - 2021-07-28 12:09 - 000383488 _____ (The OpenSSL Project, hxxp://www.openssl.org/) C:\WINDOWS\system32\ssleay32.dll 2019-02-12 19:54 - 2017-07-30 12:50 - 003799552 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll 2020-01-28 21:45 - 2019-12-28 11:00 - 000784384 _____ C:\WINDOWS\system32\xvidcore.dll 2020-01-28 21:45 - 2019-12-28 11:00 - 000310784 _____ C:\WINDOWS\system32\xvidvfw.dll 2019-03-05 10:34 - 1998-07-30 11:51 - 000305152 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2021-03-29 20:56 - 2021-03-29 20:56 - 000216064 _____ (Indigo Rose Corporation) C:\WINDOWS\iun3405.exe 1997-01-15 22:00 - 1997-01-15 23:00 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\ST5UNST.EXE 2001-03-06 17:05 - 2001-03-06 17:05 - 004358144 ____R (GSC Game World) C:\WINDOWS\uncsetup.exe 2019-08-06 10:42 - 2002-01-05 01:18 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl70.dll 2019-03-05 15:43 - 2006-09-26 13:57 - 000028672 _____ C:\WINDOWS\SysWOW64\AVEQT.dll 2019-03-05 15:43 - 2007-04-12 14:19 - 000129024 _____ C:\WINDOWS\SysWOW64\AVERM.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000974848 _____ C:\WINDOWS\SysWOW64\cis-2.4.dll 2019-03-05 10:35 - 1998-09-02 09:28 - 001088272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\danim.dll 2006-10-24 01:20 - 2003-10-08 00:19 - 000036864 _____ () C:\WINDOWS\SysWOW64\DGRip.dll 2007-04-27 09:43 - 2007-04-27 09:43 - 000120200 _____ () C:\WINDOWS\SysWOW64\DLLDEV32i.dll 2019-03-05 10:35 - 1998-08-27 05:51 - 000182032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft3.dll 2019-02-12 19:54 - 2015-10-24 18:00 - 000112128 _____ C:\WINDOWS\SysWOW64\ff_vfw.dll 2012-08-30 14:18 - 2012-08-30 14:18 - 000065536 _____ (Beepa P/L) C:\WINDOWS\SysWOW64\frapsvid.dll 2019-02-12 19:54 - 2004-05-18 20:16 - 000039936 _____ (Disappearing Inc.) C:\WINDOWS\SysWOW64\huffyuv.dll 2004-07-26 15:16 - 2004-07-26 15:16 - 001568768 _____ (Pegasus Imaging Corp.) C:\WINDOWS\SysWOW64\imagX7.dll 2004-07-26 15:16 - 2004-07-26 15:16 - 000262144 _____ (Pegasus Imaging Corp.) C:\WINDOWS\SysWOW64\imagXR7.dll 2004-07-26 15:16 - 2004-07-26 15:16 - 000471040 _____ (Pegasus Imaging Corp.) C:\WINDOWS\SysWOW64\imagXRA7.dll 2011-08-05 20:22 - 2011-06-09 20:32 - 000057344 _____ C:\WINDOWS\SysWOW64\imsaiff.dll 2019-08-23 09:04 - 2011-06-09 20:28 - 000070656 _____ C:\WINDOWS\SysWOW64\imsfchk.dll 2006-10-24 01:15 - 2011-06-09 20:18 - 000087552 _____ C:\WINDOWS\SysWOW64\imsise.dll 2006-10-24 01:15 - 2011-08-04 22:42 - 000249856 _____ C:\WINDOWS\SysWOW64\imsise.exe 2011-08-05 01:52 - 2011-08-04 22:42 - 000207360 _____ C:\WINDOWS\SysWOW64\imsise64.exe 2004-06-10 22:14 - 2011-06-10 18:04 - 000034304 _____ C:\WINDOWS\SysWOW64\imslevel.dll 2006-12-19 08:30 - 2006-12-19 08:30 - 000081920 _____ (Prolific Technology Inc.) C:\WINDOWS\SysWOW64\IoctlSvc.exe 2016-05-18 14:49 - 2016-05-18 14:49 - 000081920 _____ C:\WINDOWS\SysWOW64\issacapi_bs-2.3.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000065536 _____ C:\WINDOWS\SysWOW64\issacapi_pe-2.3.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000057344 _____ C:\WINDOWS\SysWOW64\issacapi_se-2.3.dll 2019-02-12 19:54 - 2011-12-07 19:32 - 000216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2019-03-05 10:35 - 1998-09-02 09:28 - 000155408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LMRT.dll 2019-03-05 10:35 - 1998-09-02 09:28 - 000038160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LMRTREND.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MACXMLProto.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000118784 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MaDRM.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000049152 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaJGUILib.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000045320 _____ (MARKANY) C:\WINDOWS\SysWOW64\MAMACExtract.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000024576 _____ ((주)마크애니) C:\WINDOWS\SysWOW64\MASetupCleaner.exe 2016-05-18 14:49 - 2016-05-18 14:49 - 000045056 _____ ((주) 마크애니) C:\WINDOWS\SysWOW64\MaXMLProto.dll 2019-03-19 17:47 - 2019-03-19 17:47 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000057344 _____ (Marktek) C:\WINDOWS\SysWOW64\MK_Lyric.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000245760 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSCLib.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000155648 _____ (Teruten Inc.) C:\WINDOWS\SysWOW64\MSFLib.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000352256 _____ (Sample Corporation) C:\WINDOWS\SysWOW64\MSLUR71.dll 2004-08-10 01:00 - 2004-08-10 01:00 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVBVM50.dll 1997-01-22 20:26 - 1997-01-22 20:26 - 000565760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp50.dll 2011-11-17 09:52 - 2011-11-17 09:52 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2011-11-17 09:52 - 2011-11-17 09:52 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll 2011-11-17 09:52 - 2011-11-17 09:52 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2003-04-18 16:46 - 2003-04-18 16:46 - 001233920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4.dll 2003-04-18 16:29 - 2003-04-18 16:29 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4r.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000040960 _____ (Telechips Inc.,) C:\WINDOWS\SysWOW64\MTTELECHIP.dll 2016-05-18 14:49 - 2016-05-18 14:49 - 000057344 _____ (Marktek Inc.) C:\WINDOWS\SysWOW64\MTXSYNCICON.dll 2019-03-05 10:35 - 1998-09-02 09:02 - 000194320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qcut.dll 2022-03-21 19:49 - 2016-05-18 14:49 - 004659712 _____ (Dmitry Streblechenko) C:\WINDOWS\SysWOW64\Redemption.dll 2019-03-05 10:35 - 1998-08-20 11:38 - 000217984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\strmdll.dll 2004-09-03 14:56 - 2005-07-08 13:47 - 000077824 _____ (Jess Technology Co., Ltd.) C:\WINDOWS\SysWOW64\tidriver.dll 2004-09-03 14:55 - 2004-09-03 14:55 - 000143360 _____ (Jess Technology Co., Ltd.) C:\WINDOWS\SysWOW64\tipage.dll 2004-07-09 07:43 - 2004-07-09 07:43 - 000364544 _____ (Pegasus Imaging Corp.) C:\WINDOWS\SysWOW64\TwnLib4.dll 2019-03-05 10:35 - 1998-09-02 09:28 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unam4ie.exe 2021-04-07 18:04 - 2021-04-07 18:04 - 000053248 _____ C:\WINDOWS\SysWOW64\unrar.dll 1997-01-15 22:00 - 1997-01-15 22:00 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VB5StKit.dll 2019-03-05 10:35 - 1998-08-17 10:21 - 000010240 _____ C:\WINDOWS\SysWOW64\vidx16.dll 2010-11-23 01:09 - 2005-06-24 15:24 - 000438272 ____R (EA.com/On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll 2019-03-05 10:35 - 2019-03-05 10:35 - 000002272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w95inf16.dll 2019-03-05 10:35 - 2019-03-05 10:35 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\w95inf32.dll 1998-01-12 15:12 - 1996-08-27 11:49 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wavmix32.dll 1998-01-12 15:12 - 1994-09-21 00:00 - 000092208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wing.dll 1998-01-12 15:12 - 1994-09-21 00:00 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wing32.dll 1998-01-12 15:12 - 1994-08-24 00:00 - 000188960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wingde.dll 2019-02-12 19:54 - 2017-07-30 12:50 - 003850240 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll 2019-02-12 19:54 - 2019-12-28 11:00 - 000681984 _____ C:\WINDOWS\SysWOW64\xvidcore.dll 2019-02-12 19:54 - 2019-12-28 11:00 - 000284160 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll 2019-06-26 16:53 - 2019-06-26 16:53 - 000215566 _____ C:\WINDOWS\SysWOW64\zmbv.dll 2022-08-15 07:11 - 2022-08-15 07:11 - 001099223 _____ (SQLite Development Team) C:\Users\Mateusz\AppData\LocalLow\sqlite3.dll ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume1 description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {251149fb-a8f2-11ec-81cc-ca48b43d1dc9} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale pl-PL inherit {bootloadersettings} recoverysequence {43b213db-a8f2-11ec-a660-ee90b60a0781} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {251149fb-a8f2-11ec-81cc-ca48b43d1dc9} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {43b213db-a8f2-11ec-a660-ee90b60a0781} device ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{43b213dc-a8f2-11ec-a660-ee90b60a0781} path \windows\system32\winload.exe description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume3]\Recovery\WindowsRE\Winre.wim,{43b213dc-a8f2-11ec-a660-ee90b60a0781} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {4ca74a07-f3db-11e8-a2aa-b855df159e8e} device ramdisk=[C:]\Recovery\4ca74a07-f3db-11e8-a2aa-b855df159e8e\Winre.wim,{4ca74a08-f3db-11e8-a2aa-b855df159e8e} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[C:]\Recovery\4ca74a07-f3db-11e8-a2aa-b855df159e8e\Winre.wim,{4ca74a08-f3db-11e8-a2aa-b855df159e8e} systemroot \windows nx OptIn winpe Yes Resume from Hibernate --------------------- identifier {251149fb-a8f2-11ec-81cc-ca48b43d1dc9} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {43b213db-a8f2-11ec-a660-ee90b60a0781} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Diagnostyka pami©ci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {43b213dc-a8f2-11ec-a660-ee90b60a0781} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume3 ramdisksdipath \Recovery\WindowsRE\boot.sdi Device options -------------- identifier {4ca74a08-f3db-11e8-a2aa-b855df159e8e} description Ramdisk Options ramdisksdidevice partition=C: ramdisksdipath \Recovery\4ca74a07-f3db-11e8-a2aa-b855df159e8e\boot.sdi ==================== Koniec FRST.txt ========================