Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja: 11-03-2023 Uruchomiony przez geouser (administrator) GEO-TEST (Hewlett-Packard HP Compaq 8100 Elite CMT PC) (11-03-2023 13:52:12) Uruchomiony z C:\Users\GEOtest\Downloads Załadowane profile: geouser Platforma: Microsoft Windows 7 Professional Service Pack 1 (X86) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Safe Mode (minimal) ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: G - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: H - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: I - I:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {0474ec4b-2d26-11ea-b282-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {13d84544-4c95-11ea-bfd5-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {13d8454d-4c95-11ea-bfd5-54ffe6cb3e0b} - I:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {2b1ef29b-0792-11eb-b072-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {5d9c8dab-87d4-11ec-8a4e-546a4efa8c0b} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {7a344e8b-9b4c-11eb-bf86-54b66367250b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {909e82db-b419-11e9-9459-54ffe6cb3e0b} - H:\autorun.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {909e82e2-b419-11e9-9459-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {909e82ec-b419-11e9-9459-54ffe6cb3e0b} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {90ee26ed-53fd-11ec-8c65-546a4efa8c0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {ae2492ee-a0a2-11ea-b0fc-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {ba4bffe0-1292-11eb-a0bd-54ffe6cb3e0b} - H:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {c4660b4b-085b-11eb-82f4-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {d0069537-8232-11eb-8256-54b66367250b} - I:\HiSuiteDownLoader.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {ef4892b6-e70a-11e8-8666-643150376005} - I:\autorun.exe HKU\S-1-5-21-3939378201-523280795-2232624445-1000\...\MountPoints2: {ff27886b-b8d0-11e9-abf1-54ffe6cb3e0b} - G:\HiSuiteDownLoader.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [280576 2018-08-14] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows NT x86\Print Processors\hpipp7a0: C:\Windows\System32\spool\prtprocs\W32X86\hpipp7a0.dll [245248 2010-04-28] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Windows NT x86\Print Processors\HPIPP7sm: C:\Windows\System32\spool\prtprocs\W32X86\hpipp7sm.DLL [245248 2010-04-15] (Hewlett-Packard Corporation) [Brak podpisu cyfrowego] HKLM\...\Windows NT x86\Print Processors\hpzpplhn: C:\Windows\System32\spool\prtprocs\W32X86\hpzpplhn.dll [89600 2009-06-22] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Windows NT x86\Print Processors\hpzppWN7: C:\Windows\System32\spool\prtprocs\W32X86\hpzppWN7.dll [90624 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Windows NT x86\Print Processors\OneNotePrint2007: C:\Windows\System32\spool\prtprocs\W32X86\msonpppr.dll [33104 2006-10-26] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [201216 2018-05-06] (Bullzip) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\C287SeriesPCL Language Monitor: C:\Windows\system32\KOAXPJ_L.DLL [24680 2021-04-08] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\C360SeriesPCL Language Monitor: C:\Windows\system32\KOAZ8J_L.DLL [19976 2016-03-16] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\HP Standard TCP/IP Port: C:\Windows\system32\HpTcpMon.dll [200704 2009-09-16] (Hewlett Packard) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\HPrint Port Monitor: C:\Windows\system32\hpprintmon.dll [67072 2011-04-01] (Hewlett-Packard Corporation) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\RAICHU Lang Monitor: C:\Windows\system32\hpltlm5.dll [32768 2010-04-20] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation, Microsoft Corporation) HKLM\...\Print\Monitors\RLanguage Monitor: C:\Windows\system32\hpltlm5.dll [32768 2010-04-20] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation, Microsoft Corporation) HKLM\...\Print\Monitors\Send To Microsoft OneNote Monitor: C:\Windows\system32\msonpmon.dll [31640 2009-02-27] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-01-27] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2022-12-24] (Adobe Inc. -> Adobe Systems, Inc.) BootExecute: autocheck autochk * HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1377FEDF-2EEC-4683-A12D-A684F3AABE96} - System32\Tasks\{29D4EE0B-E9B7-4610-83F0-F76F6B5CC8E6} => msiexec.exe /package "C:\Users\GEOtest\Desktop\Nowy folder (2)\Tessel CADRaster Pro v10.1 for Autocad\Setup\cdrpro101pol.msi" Task: {175FC76C-9856-4060-BFD3-A177A55B5BCC} - System32\Tasks\{D36EFA96-7BB7-4841-86CA-7B71AF5EEB6B} => msiexec.exe /package "C:\Users\GEOtest\Desktop\Nowy folder (2)\Tessel CADRaster Pro v10.1 for Autocad\Setup\cdrpro101pol.msi" Task: {1B04832D-E4D0-436D-9DDE-A7A162A7E691} - System32\Tasks\tokanofine\{319A79F3-1D0C-58D8-86D8-591C29013583} => C:\PROGRA~1\COMMON~1\NEROGE~1\TOKANO~1.EXE /Porola (Brak pliku) Task: {30970E98-1083-4478-832A-D01F9817EFED} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [561056 2023-02-15] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {3706EFAE-E8B2-43F7-B08A-9EE47A9A0ED7} - System32\Tasks\Opera scheduled Autoupdate 1549355540 => C:\Users\GEOtest\AppData\Local\Programs\Opera\launcher.exe [1879616 2022-05-26] (Opera Norway AS -> Opera Software) Task: {3E9F1181-B6B1-4E51-953F-B97303866140} - System32\Tasks\{FA426DD0-8F2B-4987-9DBD-6AA1B3032EC2} => C:\Windows\system32\pcalua.exe -a C:\Autodesk\AutoCAD_2010_Polish_SLD_WIN_32bit\setup.exe -d C:\Users\GEOtest\Desktop -c "C:\Users\GEOtest\Desktop\inw_pkp_06.08.2018_(paliki wykryte przez ekipe pkp).dwg" Task: {42F65B5C-8907-418D-8D60-45197EC5B1B0} - System32\Tasks\{F9062037-5CFB-40A2-B7BC-A58EA19A1008} => C:\Windows\system32\pcalua.exe -a C:\Users\GEOtest\AppData\Local\Temp\Temp1_Mapa_SG-12.zip\Mapa_SG-12\Setup.exe <==== UWAGA Task: {5073DA5B-0584-4693-A826-13B5C7976A97} - System32\Tasks\{78B6B1EB-93E9-4988-A284-2A880293E557} => C:\Windows\system32\pcalua.exe -a C:\Instalki\Mapa_SG-12\Setup.exe -d C:\Instalki\Mapa_SG-12 Task: {5C84D385-8C1C-4027-A540-4622992106E0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [153168 2018-08-22] (Google Inc -> Google Inc.) Task: {5D82A537-7887-4B91-8138-87102DA1F8D1} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4252472 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "b651c74b-4e9c-45be-8557-43d8a789bd21" --version "6.09.10300" --silent Task: {5FD90028-4BA2-431F-BE75-4656B5BD2DC4} - System32\Tasks\Opera scheduled assistant Autoupdate 1582783732 => C:\Users\GEOtest\AppData\Local\Programs\Opera\launcher.exe [1879616 2022-05-26] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\GEOtest\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {603B21C4-B014-4CB2-8F3D-64911AC16165} - System32\Tasks\{54C34E77-05E7-4CE7-9154-D0A35B2C07D1} => C:\Windows\system32\pcalua.exe -a C:\Users\GEOtest\Downloads\JavaUninstallTool.exe -d C:\Users\GEOtest\Downloads Task: {652CDBAC-8623-4BF9-8D8B-57EC59DCEAAF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [153168 2018-08-22] (Google Inc -> Google Inc.) Task: {66DD8FF2-A121-4E6C-967E-0D1C1E5520B7} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [2017208 2023-01-31] (AVG Technologies USA, LLC -> AVG Technologies) Task: {72D372F3-5EEC-4A35-8F3E-071F3FE6B191} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4594104 2023-03-10] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) Task: {9F1876DC-3BF2-45EC-B978-30DC98D21C4E} - System32\Tasks\CCleanerSkipUAC - geouser => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {C76E8B25-14A1-4C3F-B10B-9CD851E39417} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1560056 2023-02-01] (Adobe Inc. -> Adobe Inc.) Task: {F519C0FA-38EB-4104-8ECC-BA475161569F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\Windows\Tasks\GlaryInitialize 5.job => C:\Program Files\Glary Utilities 5\Initialize.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{3003D92F-9B1A-4C88-BB92-AE644B630BB1}: [DhcpNameServer] 10.97.0.2 10.96.0.1 Tcpip\..\Interfaces\{C1CCD669-60C4-49E0-BF88-46707BE9D956}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{DF60885D-571C-4CB0-8733-F3875E1BF725}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\GEOtest\AppData\Local\Microsoft\Edge\User Data\Default [2023-03-11] FireFox: ======== FF DefaultProfile: 52jyaa3w.default-1546411552481 FF ProfilePath: C:\Users\GEOtest\AppData\Roaming\Mozilla\Firefox\Profiles\52jyaa3w.default-1546411552481 [2023-03-09] FF user.js: detected! => C:\Users\GEOtest\AppData\Roaming\Mozilla\Firefox\Profiles\52jyaa3w.default-1546411552481\user.js [2023-01-23] FF Homepage: Mozilla\Firefox\Profiles\52jyaa3w.default-1546411552481 -> about:newtab FF Notifications: Mozilla\Firefox\Profiles\52jyaa3w.default-1546411552481 -> hxxps://drive.google.com; hxxps://pogoda.interia.pl FF Extension: (Video DownloadHelper) - C:\Users\GEOtest\AppData\Roaming\Mozilla\Firefox\Profiles\52jyaa3w.default-1546411552481\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-12-09] FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default [2023-03-11] CHR HomePage: Default -> hxxp://www.nav-pl.com/ CHR StartupUrls: Default -> "hxxp://www.interia.pl/" CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-03-02] CHR Extension: (GetThemAll) - C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhkjfciooifcflkailbnchdaihccdebf [2020-04-14] CHR Extension: (Dokumenty Google offline) - C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-14] CHR Extension: (fillUp Formularze - dodatek) - C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlnpeeaafijaebcdgkdeojkpnkfkjdnh [2021-04-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Profile: C:\Users\GEOtest\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-12-16] CHR HKLM\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM\...\Chrome\Extension: [nlnpeeaafijaebcdgkdeojkpnkfkjdnh] Opera: ======= OPR Profile: C:\Users\GEOtest\AppData\Roaming\Opera Software\Opera Stable [2023-01-25] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\GEOtest\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-11-09] OPR Extension: (Opera Wallet) - C:\Users\GEOtest\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-12-22] OPR Extension: (Amazon Assistant Promotion) - C:\Users\GEOtest\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-09-21] StartMenuInternet: (HKU\S-1-5-21-3939378201-523280795-2232624445-1000) OperaStable - "C:\Users\GEOtest\AppData\Local\Programs\Opera\Launcher.exe" ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 AdobeARMservice; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-02-01] (Adobe Inc. -> Adobe Inc.) S4 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [581560 2023-03-10] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S4 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [582072 2023-03-10] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S4 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [8057272 2023-03-10] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S4 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [109480 2021-08-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) S4 EPWD; C:\Program Files\CheckPoint\Endpoint Connect\Watchdog\EPWD.exe [512760 2020-08-19] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) S4 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [651720 2018-08-17] (Macrovision Corporation -> Macrovision Europe Ltd.) [Brak podpisu cyfrowego] S4 GUBootService; C:\Program Files\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [889232 2023-03-03] (Glarysoft Ltd -> Glarysoft Ltd) S4 GUPMService; C:\Program Files\Glary Utilities 5\GUPMService.exe [76696 2023-03-03] (Glarysoft Ltd -> Glarysoft Ltd) S4 hasplms; C:\Windows\system32\hasplms.exe [4609928 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.) S4 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [191808 2020-12-05] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] S2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-01-18] (Hewlett-Packard) [Brak podpisu cyfrowego] S4 PDF24; C:\Program Files\PDF24\pdf24.exe [486464 2020-10-01] (geek software GmbH -> geek software GmbH) S2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-01-18] (Hewlett-Packard) [Brak podpisu cyfrowego] S4 TracSrvWrapper; C:\Program Files\CheckPoint\Endpoint Connect\TracSrvWrapper.exe [7836920 2020-08-21] (Check Point Software Technologies Ltd. -> Check Point Software Technologies) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [376200 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.) R0 avgArDisk; C:\Windows\System32\drivers\avgArDisk.sys [28864 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [190048 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [329912 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [242120 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [88208 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [36576 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [225592 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [404872 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S3 avgNetNd6; C:\Windows\System32\DRIVERS\avgNetNd6.sys [21408 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [89784 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [69088 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [772552 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S1 avgSP; C:\Windows\System32\drivers\avgSP.sys [590816 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S2 avgStm; C:\Windows\System32\drivers\avgStm.sys [158968 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [264792 2023-03-10] (Microsoft Windows Hardware Compatibility Publisher -> AVG Technologies CZ, s.r.o.) S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [15360 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [25864 2020-03-31] (Glarysoft LTD -> Glarysoft Ltd) S2 hardlock; C:\Windows\system32\drivers\hardlock.sys [608648 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2020-12-05] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 netr28u; C:\Windows\System32\DRIVERS\netr28u.sys [1635632 2013-09-06] (Mediatek Inc. -> Ralink Technology Corp.) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [15688 2013-09-30] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [10320 2013-09-30] (MiniTool Solution Ltd -> ) S3 vna_ap; C:\Windows\System32\DRIVERS\vnaap.sys [134160 2017-08-01] (Check Point Software Technologies Ltd. -> Check Point Software Technologies Ltd.) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-03-11 13:48 - 2023-03-11 13:48 - 000000000 ____D C:\Program Files\chrome_BITS_3068_1749985289 2023-03-11 13:47 - 2023-03-11 13:52 - 000021789 _____ C:\Users\GEOtest\Downloads\FRST.txt 2023-03-11 13:47 - 2023-03-11 13:52 - 000000000 ____D C:\FRST 2023-03-11 13:47 - 2023-03-11 13:47 - 002080768 _____ (Farbar) C:\Users\GEOtest\Downloads\FRST.exe 2023-03-11 13:15 - 2023-03-11 13:15 - 000000000 __SHD C:\found.000 2023-03-11 13:06 - 2023-03-11 13:06 - 002378752 _____ (Farbar) C:\Users\GEOtest\Downloads\FRST64.exe 2023-03-11 13:06 - 2023-03-11 13:06 - 000000000 ____D C:\Program Files\chrome_BITS_3800_1564907962 2023-03-11 00:48 - 2023-03-11 00:48 - 010546086 _____ C:\Users\GEOtest\Downloads\ADATA_SSDToolBoxSetup.5.0.16.zip 2023-03-11 00:48 - 2023-03-11 00:48 - 000001990 _____ C:\Users\Public\Desktop\ADATA SSD ToolBox.LNK 2023-03-11 00:48 - 2023-03-11 00:48 - 000000000 ____D C:\Users\GEOtest\Downloads\ADATA_SSDToolBoxSetup.5.0.16 2023-03-11 00:48 - 2023-03-11 00:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ADATA 2023-03-11 00:48 - 2023-03-11 00:48 - 000000000 ____D C:\ProgramData\FNet 2023-03-11 00:48 - 2023-03-11 00:48 - 000000000 ____D C:\Program Files\ADATA 2023-03-11 00:10 - 2023-03-11 00:10 - 000002207 _____ C:\Users\skaner\Desktop\Google Chrome.lnk 2023-03-11 00:10 - 2023-03-11 00:10 - 000001421 _____ C:\Users\skaner\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2023-03-11 00:10 - 2023-03-11 00:10 - 000000000 ____D C:\Users\skaner\AppData\Roaming\Adobe 2023-03-11 00:10 - 2023-03-11 00:10 - 000000000 ____D C:\Users\skaner\AppData\Local\Google 2023-03-11 00:09 - 2023-03-11 00:10 - 000000000 ____D C:\Users\skaner 2023-03-11 00:09 - 2023-03-11 00:09 - 000000020 ___SH C:\Users\skaner\ntuser.ini 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Ustawienia lokalne 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Szablony 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Moje dokumenty 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Menu Start 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Documents\Moje wideo 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Documents\Moje obrazy 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Documents\Moja muzyka 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\Dane aplikacji 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\AppData\Local\Historia 2023-03-11 00:09 - 2023-03-11 00:09 - 000000000 _SHDL C:\Users\skaner\AppData\Local\Dane aplikacji 2023-03-11 00:09 - 2018-08-17 23:10 - 000000000 ____D C:\Users\skaner\AppData\Local\Microsoft Help 2023-03-11 00:09 - 2009-07-14 09:28 - 000000000 ____D C:\Users\skaner\AppData\Roaming\Media Center Programs 2023-03-10 13:36 - 2023-03-10 13:36 - 000001940 _____ C:\Users\GEOtest\Desktop\CrystalDiskInfo.lnk 2023-03-10 13:36 - 2023-03-10 13:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2023-03-10 13:36 - 2023-03-10 13:36 - 000000000 ____D C:\Program Files\CrystalDiskInfo 2023-03-10 12:55 - 2023-03-10 12:55 - 000000000 ____D C:\ProgramData\Glarysoft 2023-03-10 12:53 - 2023-03-10 12:54 - 000000000 ____D C:\Program Files\CrystalDiskMark8 2023-03-10 12:53 - 2023-03-10 12:53 - 000001050 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk 2023-03-10 12:53 - 2023-03-10 12:53 - 000001038 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk 2023-03-10 12:53 - 2023-03-10 12:53 - 000000334 _____ C:\Windows\Tasks\GlaryInitialize 5.job 2023-03-10 12:53 - 2023-03-10 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 2023-03-10 12:53 - 2023-03-10 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskMark8 2023-03-10 12:53 - 2023-03-10 12:53 - 000000000 ____D C:\Program Files\Common Files\Glarysoft 2023-03-10 08:54 - 2023-03-10 08:54 - 000011688 ____N C:\bootsqm.dat 2023-03-10 08:35 - 2023-03-10 08:35 - 000001914 _____ C:\Users\Public\Desktop\AVG AntiVirus Free.lnk 2023-03-10 08:35 - 2023-03-10 07:16 - 000265144 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe 2023-03-10 07:18 - 2023-03-11 13:50 - 001853652 _____ C:\Windows\ntbtlog.txt 2023-03-09 14:30 - 2023-03-09 14:30 - 001627589 _____ C:\Users\GEOtest\Downloads\powykonawczy_wojkowice.zip 2023-03-09 09:27 - 2023-03-09 09:27 - 000000000 ____D C:\Users\GEOtest\AppData\Local\SafeNet Sentinel 2023-03-09 09:27 - 2023-03-09 09:27 - 000000000 ____D C:\ProgramData\SafeNet Sentinel 2023-03-09 09:27 - 2023-03-09 09:27 - 000000000 ____D C:\Program Files\Common Files\SafeNet Sentinel 2023-03-09 09:27 - 2023-03-09 09:27 - 000000000 ____D C:\Program Files\Common Files\Aladdin Shared 2023-03-09 09:27 - 2013-08-01 15:11 - 004609928 _____ (SafeNet Inc.) C:\Windows\system32\hasplms.exe 2023-03-09 09:27 - 2013-08-01 15:11 - 004609928 _____ (SafeNet Inc.) C:\Windows\system32\aksllmtp.exe 2023-03-09 09:27 - 2013-08-01 15:11 - 000608648 _____ (SafeNet Inc.) C:\Windows\system32\Drivers\hardlock.sys 2023-03-09 09:27 - 2013-08-01 15:11 - 000376200 _____ (SafeNet Inc.) C:\Windows\system32\Drivers\aksfridge.sys 2023-03-09 09:27 - 2013-08-01 15:11 - 000198088 _____ (Aladdin Knowledge Systems Ltd.) C:\Windows\system32\hlvdd.dll 2023-03-09 09:25 - 2023-03-09 09:25 - 000000305 _____ C:\Users\Public\Desktop\GEO-MAP for Windows.lnk 2023-03-09 08:50 - 2023-03-10 12:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Geo-System 2023-03-09 08:50 - 2023-03-09 08:50 - 000001976 _____ C:\Users\Public\Desktop\Gmw64.exe.lnk 2023-03-09 08:50 - 2023-03-09 08:50 - 000001976 _____ C:\Users\Public\Desktop\Gmw32.exe.lnk 2023-03-09 08:49 - 2023-03-09 08:49 - 000000000 ____D C:\Users\GEOtest\Documents\GEO-DAT 2023-03-08 15:15 - 2023-03-08 15:15 - 001236102 _____ C:\Users\GEOtest\Downloads\sosnowiec_przebudowa_budynków.zip 2023-03-08 12:05 - 2023-03-08 12:05 - 011326859 _____ C:\Users\GEOtest\Downloads\DaneWektorowe_GEK.6640.6448.2022.ZIP 2023-03-07 11:44 - 2023-03-07 12:35 - 000000448 _____ C:\Users\GEOtest\Downloads\pliki-skanow-WG.6640.32.2023.zip 2023-03-07 10:44 - 2023-03-07 10:45 - 001395244 _____ C:\Users\GEOtest\Downloads\WG.6640.32.2023_9_1_1GML.zip 2023-03-07 09:23 - 2023-03-07 09:23 - 019111476 _____ C:\Users\GEOtest\Desktop\psary-mpzp-jednolity2021-150dp.pdf 2023-03-06 11:30 - 2023-03-06 11:30 - 022961754 _____ C:\Users\GEOtest\Downloads\WG.6640.32.2023_16_2_Źródłowy_U1(1).zip 2023-03-06 11:14 - 2023-03-06 11:14 - 022961754 _____ C:\Users\GEOtest\Downloads\WG.6640.32.2023_16_2_Źródłowy_U1.zip 2023-03-06 08:46 - 2023-03-06 15:18 - 000000000 ____D C:\Users\GEOtest\Desktop\Zlecenia 21-24 2023-03-06 08:44 - 2023-03-09 15:29 - 000000000 ____D C:\Users\GEOtest\Desktop\WOJ_K 2023-03-01 14:23 - 2023-03-01 15:35 - 000082304 _____ C:\Users\GEOtest\Downloads\Dla Joasi.dwg 2023-03-01 14:07 - 2023-03-01 14:07 - 000281577 _____ C:\Users\GEOtest\Downloads\Dla Joasi.dxf 2023-03-01 09:01 - 2023-03-01 09:05 - 000000000 ____D C:\Users\GEOtest\Desktop\Bercik 2023-03-01 08:47 - 2023-03-01 08:47 - 085898214 _____ C:\Users\GEOtest\Desktop\GEK.6640.2978.2021.pades.pdf 2023-03-01 07:26 - 2023-03-01 07:26 - 085828219 _____ C:\Users\GEOtest\Desktop\GEK.6640.2978.2021.pdf 2023-02-24 08:34 - 2023-03-09 12:37 - 000000000 ____D C:\Users\GEOtest\Desktop\DXF tOMEK 2023-02-23 10:10 - 2023-03-01 13:39 - 000000000 ____D C:\Users\GEOtest\Desktop\Pyskowice 2023-02-22 14:57 - 2023-02-22 14:57 - 000000057 _____ C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.b9s5jc 2023-02-22 11:16 - 2023-03-02 12:26 - 000000000 ____D C:\Users\GEOtest\AppData\Roaming\MAPA_m6 2023-02-22 11:16 - 2023-02-22 11:16 - 000000000 ____D C:\Users\GEOtest\AppData\Local\MAPA_m6 2023-02-22 10:32 - 2023-02-28 15:29 - 000000000 ____D C:\Users\GEOtest\Desktop\Mikołów 2023-02-22 07:19 - 2023-02-22 07:19 - 000000057 _____ C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.nieadr 2023-02-16 06:44 - 2023-02-16 06:44 - 000000430 _____ C:\Users\GEOtest\Desktop\styk.txt 2023-02-15 07:18 - 2023-02-17 07:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-02-14 07:12 - 2023-02-14 07:12 - 000000057 _____ C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.4dbfkt 2023-02-09 13:51 - 2023-02-09 13:58 - 000000000 ____D C:\Users\GEOtest\Desktop\gml ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-03-11 13:46 - 2018-08-22 06:15 - 000000000 ____D C:\Program Files\Google 2023-03-11 13:46 - 2009-07-14 05:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-03-11 13:44 - 2018-08-14 13:43 - 001678034 _____ C:\Windows\system32\PerfStringBackup.INI 2023-03-11 13:44 - 2009-07-14 09:07 - 000743484 _____ C:\Windows\system32\perfh015.dat 2023-03-11 13:44 - 2009-07-14 09:07 - 000156966 _____ C:\Windows\system32\perfc015.dat 2023-03-11 13:44 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\inf 2023-03-11 13:38 - 2020-05-27 12:52 - 000000000 ____D C:\Program Files\CCleaner 2023-03-11 13:27 - 2009-07-14 05:53 - 000032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2023-03-10 13:10 - 2020-03-31 12:44 - 000000000 ____D C:\Program Files\Glary Utilities 5 2023-03-10 12:57 - 2018-08-20 08:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\C-GEO 2023-03-10 12:57 - 2018-08-20 07:24 - 000000000 ____D C:\Users\GEOtest\AppData\Roaming\TeamViewer 2023-03-10 08:55 - 2021-08-19 06:25 - 000000000 ____D C:\ProgramData\AVG 2023-03-10 08:35 - 2021-08-19 06:26 - 000004162 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update 2023-03-10 07:16 - 2021-08-19 06:26 - 000590816 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000404872 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000264792 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000242120 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000225592 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000089784 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000088208 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000069088 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000036576 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys 2023-03-10 07:16 - 2021-08-19 06:26 - 000021408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetNd6.sys 2023-03-10 07:15 - 2021-08-19 06:26 - 000772552 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys 2023-03-10 07:15 - 2021-08-19 06:26 - 000329912 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys 2023-03-10 07:15 - 2021-08-19 06:26 - 000190048 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys 2023-03-10 07:15 - 2021-08-19 06:26 - 000028864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArDisk.sys 2023-03-10 07:14 - 2009-07-14 05:33 - 000632848 _____ C:\Windows\system32\FNTCACHE.DAT 2023-03-09 15:30 - 2018-08-16 10:24 - 000000000 ____D C:\Users\GEOtest\AppData\LocalLow\Mozilla 2023-03-09 15:27 - 2020-01-09 15:11 - 000404834 _____ C:\acadminidump.dmp 2023-03-09 15:24 - 2022-07-11 09:56 - 000000000 ____D C:\Users\GEOtest\AppData\Local\Deployment 2023-03-09 13:36 - 2022-07-06 12:28 - 000000000 ____D C:\Users\GEOtest\Desktop\SKANY 2023-03-09 09:27 - 2009-07-14 03:37 - 000000000 ____D C:\Windows\system32\Setup 2023-03-09 09:04 - 2009-07-14 05:34 - 000029648 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2023-03-09 09:04 - 2009-07-14 05:34 - 000029648 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2023-03-09 08:58 - 2020-03-31 13:00 - 000177632 _____ C:\Users\GEOtest\AppData\Local\GDIPFONTCACHEV1.DAT 2023-03-09 08:56 - 2022-06-08 06:23 - 000000000 ___HD C:\Users\GEOtest\Downloads\.opera 2023-03-09 08:56 - 2022-06-08 06:23 - 000000000 ___HD C:\Users\GEOtest\.opera 2023-03-09 07:52 - 2022-06-09 06:44 - 000000000 ____D C:\Users\Public\Documents\MAPA_m6 2023-03-09 07:28 - 2022-09-21 06:28 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2023-03-09 07:25 - 2022-09-22 06:20 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-03-07 07:40 - 2020-06-27 08:07 - 000003454 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-03-07 07:40 - 2020-06-27 08:07 - 000003326 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-03-02 07:26 - 2022-09-21 06:28 - 000003356 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2023-03-02 07:26 - 2021-09-25 10:55 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software 2023-03-02 07:26 - 2021-08-19 06:09 - 000002812 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - geouser 2023-03-02 07:26 - 2021-04-23 07:40 - 000003154 _____ C:\Windows\system32\Tasks\{54C34E77-05E7-4CE7-9154-D0A35B2C07D1} 2023-03-02 07:26 - 2020-05-27 12:52 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update 2023-03-02 07:26 - 2020-02-27 07:08 - 000004312 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1582783732 2023-03-02 07:26 - 2019-02-05 09:32 - 000004116 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1549355540 2023-03-02 07:26 - 2018-11-15 09:58 - 000003180 _____ C:\Windows\system32\Tasks\{D36EFA96-7BB7-4841-86CA-7B71AF5EEB6B} 2023-03-02 07:26 - 2018-11-15 09:56 - 000003180 _____ C:\Windows\system32\Tasks\{29D4EE0B-E9B7-4610-83F0-F76F6B5CC8E6} 2023-03-02 07:26 - 2018-10-16 08:58 - 000003114 _____ C:\Windows\system32\Tasks\{78B6B1EB-93E9-4988-A284-2A880293E557} 2023-03-02 07:26 - 2018-09-03 10:59 - 000003336 _____ C:\Windows\system32\Tasks\{FA426DD0-8F2B-4987-9DBD-6AA1B3032EC2} 2023-03-02 07:26 - 2018-08-22 06:15 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2023-03-02 07:26 - 2018-08-22 06:15 - 000003344 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2023-03-02 07:26 - 2018-08-20 08:48 - 000003152 _____ C:\Windows\system32\Tasks\{F9062037-5CFB-40A2-B7BC-A58EA19A1008} 2023-03-02 07:26 - 2018-08-17 23:00 - 000004464 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2023-02-17 07:12 - 2018-08-16 10:24 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service 2023-02-16 13:53 - 2022-10-13 14:09 - 000002029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk 2023-02-15 15:28 - 2018-08-14 15:00 - 000000000 ____D C:\Windows\system32\MRT 2023-02-15 15:25 - 2018-08-14 15:00 - 145352288 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-02-13 10:15 - 2009-07-14 05:52 - 000000000 ____D C:\Windows\system32\FxsTmp ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-05-04 07:09 - 2020-06-03 06:09 - 000000211 _____ () C:\Users\GEOtest\AppData\Roaming\WB.CFG 2019-02-14 07:58 - 2019-02-14 07:58 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.2zhaiv 2021-09-30 08:29 - 2021-09-30 08:29 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.3arpqx 2023-02-14 07:12 - 2023-02-14 07:12 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.4dbfkt 2021-09-09 06:07 - 2021-09-09 06:07 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.4h2tzr 2019-02-14 07:53 - 2019-02-14 07:53 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.4ugpb8 2023-02-02 09:20 - 2023-02-02 09:20 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.5zxmco 2021-09-09 06:07 - 2021-09-09 06:07 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.6na5tk 2019-01-04 08:18 - 2019-01-04 08:18 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.6ovogz 2021-09-09 06:09 - 2021-09-09 06:09 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.6vvbhs 2019-02-14 07:52 - 2019-02-14 07:52 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.7t9gge 2019-07-17 05:09 - 2019-07-17 05:09 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.89pfpb 2019-01-08 14:48 - 2019-01-08 14:48 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.9k497x 2023-01-20 12:57 - 2023-01-20 12:57 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.a7vs8v 2023-02-22 14:57 - 2023-02-22 14:57 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.b9s5jc 2021-09-13 06:34 - 2021-09-13 06:34 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.bi8g7v 2021-09-30 08:28 - 2021-09-30 08:28 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.bvb97a 2019-07-17 05:09 - 2019-07-17 05:09 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.crtmaq 2019-02-14 07:55 - 2019-02-14 07:55 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.e8r5yj 2019-01-16 08:35 - 2019-01-16 08:35 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.ee9hb5 2021-09-30 08:31 - 2021-09-30 08:31 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.gxash9 2019-07-16 06:37 - 2019-07-16 06:37 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.gxr2uc 2021-02-25 09:16 - 2021-02-25 09:16 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.h2wi38 2021-09-30 08:27 - 2021-09-30 08:27 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.h7pms6 2019-01-04 08:18 - 2019-01-04 08:18 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.hmekt5 2019-07-16 06:36 - 2019-07-16 06:36 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.hsorwu 2019-02-14 07:54 - 2019-02-14 07:54 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.ir8nbm 2019-01-04 08:28 - 2019-01-04 08:28 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.jh83uc 2019-01-04 08:20 - 2019-01-04 08:21 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.m8azma 2021-11-29 11:54 - 2021-11-29 11:54 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.mus3tz 2019-02-14 07:57 - 2019-02-14 07:57 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.n3xbje 2023-02-22 07:19 - 2023-02-22 07:19 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.nieadr 2021-09-30 08:26 - 2021-09-30 08:26 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.ojr8yg 2021-09-08 04:58 - 2021-09-08 04:58 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.rpj2wu 2019-12-12 07:29 - 2019-12-12 07:29 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.u5sffz 2021-09-30 08:31 - 2021-09-30 08:31 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.used4m 2019-01-16 08:36 - 2019-01-16 08:36 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.w3az9q 2021-09-09 06:09 - 2021-09-09 06:09 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.wwj3nx 2019-12-12 07:29 - 2019-12-12 07:29 - 000000057 _____ () C:\Users\GEOtest\AppData\Local\CPAUTO.tmp.yw9y4c 2022-11-03 11:04 - 2022-11-03 11:04 - 000000017 _____ () C:\Users\GEOtest\AppData\Local\resmon.resmoncfg 2008-02-05 13:28 - 2008-02-05 13:28 - 000000051 _____ () C:\Users\GEOtest\AppData\Local\setup.txt ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2023-03-06 06:50 ==================== Koniec FRST.txt ========================