Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-12-2023 Uruchomiony przez Arek (administrator) DESKTOP-EH9JK6I (Micro-Star International Co., Ltd. MS-7C91) (29-12-2023 10:52:51) Uruchomiony z E:\Downloads\FRST64.exe Załadowane profile: Arek Platforma: Microsoft Windows 11 Pro Wersja 23H2 22631.2861 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> Micro-Star INT'L CO., LTD.) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.29.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe (C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe (C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\Fortinet\FortiClient\scheduler.exe ->) (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) C:\Program Files\Fortinet\FortiClient\FCDBLog.exe (C:\Program Files\Fortinet\FortiClient\scheduler.exe ->) (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) C:\Program Files\Fortinet\FortiClient\FortiSettings.exe (C:\Program Files\Fortinet\FortiClient\scheduler.exe ->) (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) C:\Program Files\Fortinet\FortiClient\FortiSSLVPNdaemon.exe (C:\Program Files\Fortinet\FortiClient\scheduler.exe ->) (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) C:\Program Files\Fortinet\FortiClient\FortiTray.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\85.0.30.0\crashpad_handler.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.30700.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\120.0.2210.91\msedgewebview2.exe <6> (cmd.exe ->) (Agilebits -> AgileBits, Inc.) C:\Users\Arek\AppData\Local\1Password\app\8\1Password-BrowserSupport.exe (explorer.exe ->) (Agilebits -> 1Password) C:\Users\Arek\AppData\Local\1Password\app\8\1Password.exe <3> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13> (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe <7> (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2310.13.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10> (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) C:\Program Files\Fortinet\FortiClient\scheduler.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdsi.inf_amd64_8f6c80ec02b538e6\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SecHealthUI_1000.25873.9001.0_x64__8wekyb3d8bbwe\SecHealthUI.exe (svchost.exe ->) (Microsoft Windows -> ) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_423.30700.0.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\SecurityHealth\1.0.2306.10002-0\SecurityHealthHost.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI Companion\Gamebar_Connect.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI Companion\MSI_GamebarTool.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Copyright ?2020 Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Companion\MSI_TraceFPS.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.TerminalServer.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\True Color\New\MSI.True Color.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Engine.exe (svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4> (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [193976 2023-11-25] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3022640 2023-11-28] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [122520 2022-12-05] (VMware, Inc. -> VMware, Inc.) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [126403424 2022-03-21] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [748624 2023-10-04] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe [58733344 2023-12-21] (Google LLC -> Google, Inc.) HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe [58733344 2023-12-21] (Google LLC -> Google, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2595344 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [1Password] => C:\Users\Arek\AppData\Local\1Password\app\8\1Password.exe [172714864 2023-12-14] (Agilebits -> 1Password) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe [58733344 2023-12-21] (Google LLC -> Google, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2658920 2023-12-25] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [70918144 2023-12-12] (Riot Games, Inc. -> Riot Games, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [Discord] => C:\Users\Arek\AppData\Local\Discord\Update.exe [1525016 2022-12-09] (Discord Inc. -> GitHub) HKU\S-1-5-21-270259313-3629780624-3914517322-1001\...\Run: [MicrosoftEdgeAutoLaunch_A92092BD5D56AEEBC27032131D3891B3] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854280 2023-12-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2595344 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [37180368 2023-12-21] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [Discord] => C:\Users\Ignacy\AppData\Local\Discord\Update.exe [1525016 2022-10-21] (Discord Inc. -> GitHub) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe /launchViaAutoStart (Brak pliku) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe [58733344 2023-12-21] (Google LLC -> Google, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [70918144 2023-12-12] (Riot Games, Inc. -> Riot Games, Inc.) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [MicrosoftEdgeAutoLaunch_9031C4D776766C96DAD8527D91376FA7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854280 2023-12-21] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-270259313-3629780624-3914517322-1002\...\Run: [Lunar Client] => C:\Users\Ignacy\AppData\Local\Programs\launcher\Lunar Client.exe [163279416 2023-11-22] (Moonsworth, LLC -> Moonsworth LLC) HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\85.0.30.0\GoogleDriveFS.exe [58733344 2023-12-21] (Google LLC -> Google, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\120.0.6099.130\Installer\chrmstp.exe [2023-12-27] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\Arek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2023-04-01] ShortcutTarget: Wysyłanie do programu OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {096d82d6-16ce-4b18-8d16-2038a0b19e96} - Brak ścieżki do pliku. <==== UWAGA Task: {0d9f2b12-1028-4202-999a-664f2950da49} - Brak ścieżki do pliku. <==== UWAGA Task: {6c827045-976b-4eff-9d38-535f65964b6f} - Brak ścieżki do pliku. <==== UWAGA Task: {76bc09b4-fa5d-4882-a67a-c02d99b06a6a} - Brak ścieżki do pliku. <==== UWAGA Task: {b7d4259b-7b2d-4ae2-97eb-f6cf96c0004d} - Brak ścieżki do pliku. <==== UWAGA Task: {c44cd200-8099-4961-b78e-0e1dab92a218} - Brak ścieżki do pliku. <==== UWAGA Task: {e69fdb5b-d795-4a2f-97fc-a76d1182954d} - Brak ścieżki do pliku. <==== UWAGA Task: {fc1a68d5-8962-43c1-a540-e5b475e0da06} - Brak ścieżki do pliku. <==== UWAGA Task: {6B14AD5C-AE99-4736-88F8-27214854501B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1566200 2023-09-20] (Adobe Inc. -> Adobe Inc.) Task: {93A19435-7E1C-4364-9CC3-779FD8FD00DE} - System32\Tasks\GoogleUpdateTaskMachineCore{46821351-3D97-43EE-BDB6-3335A19C178F} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-12-03] (Google LLC -> Google LLC) Task: {6EE4F627-61CF-4D29-A7DA-873954409758} - System32\Tasks\GoogleUpdateTaskMachineUA{B95CC95F-2BF3-4A4B-8CC6-15D0F33E9631} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [171480 2022-12-03] (Google LLC -> Google LLC) Task: {2940A436-E291-4EE2-B9C5-9C2B1E1E0220} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175336 2023-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {B720D129-574B-43EE-B6FB-AB2585B9B465} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28175336 2023-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {9696735C-8D9D-4584-8E0F-F963DFA88F66} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306624 2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Task: {0B2D154E-40FC-49D5-B773-C1645D8484A6} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [306624 2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Task: {2609BFEE-FFF2-436E-8567-E76E669C2EF3} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [169144 2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Brak pliku) Task: {19BBE0DD-DD10-4701-984C-AC8541FEE1A7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => %systemroot%\system32\MusNotification.exe LogonUpdateResults (Brak pliku) Task: {8CD6F979-5409-4BCE-91D2-1BBB30068700} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC ReadyToReboot (Brak pliku) Task: {526394E0-BBBC-4CF3-8C4E-4D8C62BCD8A2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery ReadyToReboot (Brak pliku) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) Task: {D61F402E-B735-4466-85E5-991CDED3ACC5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8B62E861-D332-41B8-82AB-409599ECB230} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {27CB6DC8-13AA-4D84-ADFB-80DE79B0CB06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7501FD2A-51EC-4BA3-A5E6-630F540397C7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {10BABFB1-A91B-409E-ACAA-8494D0841D01} - System32\Tasks\MSI Task Host - FixNorton.exe => C:\Program Files (x86)\MSI\MSI Center\PushCast\Push20221215131801\FixNorton.exe (Brak pliku) Task: {1ABB6907-85D4-4182-A591-519793D1EBBB} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [2669160 2023-11-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {5E42E346-AC64-496D-B072-EEF53E540EBF} - System32\Tasks\MSI_GamebarConnect => C:\Program Files (x86)\MSI\MSI Companion\Gamebar_Connect.exe [110688 2023-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) Task: {E9ABCF5E-D42C-40D3-8128-5C6A50B2FEBD} - System32\Tasks\MSI_GamebarTool => C:\Program Files (x86)\MSI\MSI Companion\MSI_GamebarTool.exe [117856 2023-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) Task: {B7ECA37D-47BF-46FF-BB36-E13A81643207} - System32\Tasks\MSI_TraceFPS => C:\Program Files (x86)\MSI\MSI Companion\MSI_TraceFPS.exe [2196064 2023-05-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> Copyright ?2020 Micro-Star INT'L CO., LTD.) Task: {5E124305-1575-44EA-9BAE-D5AB2DAAA9F7} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1005096 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {AFFB00D4-7860-4E18-838B-EDCF2BB551F0} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3345448 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C0EC006F-7821-4C50-B39C-6DD4D661CD70} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649256 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C618F419-6FF0-4E5F-8553-448D42E10E20} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {00BB3D30-73DC-4623-9734-6081AD31D99A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {59BA84A0-538D-4517-A0B2-4F692BAD5435} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2A98865E-93A8-4B89-A371-233834ED2AD8} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6026E476-39C5-4A9A-AEC5-9FAEA3673EF1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {88F1A4D7-D51D-4C58-A7BC-7A95AB4586AB} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-11-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {50DA70C0-A2C0-4B3A-B36E-D0B1731EAA93} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) Task: {8F883134-1B58-4038-A1BB-24BDAC5E4BE3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-270259313-3629780624-3914517322-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) Task: {D3322813-E029-44EF-AF8C-01A9711141F3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-270259313-3629780624-3914517322-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) Task: {65F04868-9159-4A87-92B2-0C0AE17C35FF} - System32\Tasks\Opera scheduled Autoupdate 1702154831 => C:\Users\Arek\AppData\Local\Programs\Opera\launcher.exe --scheduledautoupdate $(Arg0) (Brak pliku) Task: {2A0B4F15-07C0-42CE-B7CF-0C41D1CB42A9} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641928 2023-12-19] (Overwolf Ltd -> Overwolf LTD) Task: {2246345D-1425-489A-A7DC-A6E226976544} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [138741312 2023-09-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{3c0713ae-a060-427c-80ee-e846332a8938}: [DhcpNameServer] 8.8.8.8 8.8.4.4 Tcpip\..\Interfaces\{78abd105-e9f2-4350-a881-7cb57c1a5abd}: [DhcpNameServer] 192.168.100.1 Edge: ======= Edge Profile: C:\Users\Arek\AppData\Local\Microsoft\Edge\User Data\Default [2023-12-29] Edge Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-22] Edge Extension: (Edge relevant text changes) - C:\Users\Arek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-22] FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.391.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-10-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-11-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2023-12-05] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default [2023-12-29] CHR Extension: (lock) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aeblfdkhhhdcdjpifhhbdiojplfjncoa [2023-12-19] CHR Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-17] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-08-29] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-12-03] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-03-31] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-25] CHR Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-31] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-01-31] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-12-04] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 5 [2023-12-17] CHR Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-31] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-11-04] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-12-07] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 7 [2023-12-21] CHR Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-06-07] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-21] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-07] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 8 [2023-12-14] CHR Extension: (Dokumenty Google offline) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-14] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-12-14] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Arek\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-14] CHR Profile: C:\Users\Arek\AppData\Local\Google\Chrome\User Data\System Profile [2023-12-29] CHR HKU\S-1-5-21-270259313-3629780624-3914517322-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] CHR HKU\S-1-5-21-270259313-3629780624-3914517322-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-09-20] (Adobe Inc. -> Adobe Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15772456 2023-11-24] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233744 2023-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [761408 2023-09-08] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11385960 2023-12-25] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1136552 2023-06-11] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [955816 2023-09-26] (EasyAntiCheat Oy -> Epic Games, Inc.) R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [2535032 2023-11-25] (ESET, spol. s r.o. -> ESET) S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [55416 2023-11-25] (ESET, spol. s r.o. -> ESET) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3876888 2023-11-25] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3876888 2023-11-25] (ESET, spol. s r.o. -> ESET) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [375248 2023-10-15] (Epic Games Inc. -> Epic Games, Inc.) R2 FA_Scheduler; C:\Program Files\Fortinet\FortiClient\scheduler.exe [413784 2022-08-31] (Fortinet Technologies (Canada) ULC -> Fortinet Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncHelper.exe [3514384 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [92768 2023-05-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9405400 2023-12-29] (Malwarebytes Inc. -> Malwarebytes) R2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [74336 2023-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [154216 2023-08-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36880 2023-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [37616 2022-04-28] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdsi.inf_amd64_8f6c80ec02b538e6\Display.NvContainer\NVDisplay.Container.exe [1275528 2023-10-30] (NVIDIA Corporation -> NVIDIA Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\OneDriveUpdaterService.exe [3851280 2023-12-13] (Microsoft Corporation -> Microsoft Corporation) S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2641928 2023-12-19] (Overwolf Ltd -> Overwolf LTD) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2703192 2022-12-09] (Rockstar Games, Inc. -> Rockstar Games) R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [427072 2023-09-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534592 2023-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [9623432 2023-11-28] (Riot Games, Inc. -> Riot Games, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc) S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2023-09-22] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [210936 2023-11-25] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2022-11-09] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [252296 2023-11-25] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [55528 2023-11-25] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81824 2023-11-25] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [123144 2023-11-25] (ESET, spol. s r.o. -> ESET) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2023-12-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 FortiFilter; C:\WINDOWS\system32\DRIVERS\FortiFilter.sys [35400 2022-08-31] (Fortinet Technologies (Canada) Inc. -> Fortinet Inc) S3 Fortips; C:\WINDOWS\System32\drivers\fortips.sys [165056 2022-08-31] (Fortinet, Inc. -> Fortinet Inc) S3 FortiTransCtrl; C:\WINDOWS\System32\drivers\FortiTransCtrl.sys [85696 2022-08-31] (Fortinet, Inc. -> Fortinet Inc) R3 ftsvnic; C:\WINDOWS\System32\drivers\ftsvnic.sys [72800 2022-08-31] (Fortinet, Inc. -> Fortinet Inc.) R3 ft_vnic; C:\WINDOWS\System32\drivers\ftvnic.sys [70368 2022-08-31] (Fortinet Technologies (Canada) Inc. -> Fortinet Corporation) R1 googledrivefs31357; C:\WINDOWS\System32\DriverStore\FileRepository\googledrivefs31357.inf_amd64_a8bf31a168cf7d00\googledrivefs31357.sys [384712 2023-10-25] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.) S3 HWiNFO_187; C:\Users\Arek\AppData\Local\Temp\HWiNFO64A_187.SYS [56912 2023-12-01] (Microsoft Windows Hardware Compatibility Publisher -> REALiX(tm)) <==== UWAGA R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222784 2023-12-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-12-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt11.sys [233704 2023-12-29] (Malwarebytes Inc. -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [78400 2023-12-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2023-12-29] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [188008 2023-12-29] (Malwarebytes Inc. -> Malwarebytes) R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd) R3 NTIOLib_CC_Clock; C:\Program Files (x86)\MSI\MSI Center\Lib\NTIOLib_X64.sys [14288 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32424 2023-07-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) S3 NTIOLib_FWUpdate; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\ResetMCU\JT1Toucher\NTIOLib_X64.sys [28496 2022-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [14288 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-11-26] (Nvidia Corporation -> NVIDIA Corporation) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [22035200 2023-11-27] (Riot Games, Inc. -> Riot Games, Inc.) R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [67072 2022-12-05] (VMware, Inc. -> VMware, Inc.) R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2021-08-16] (VMware, Inc. -> VMware, Inc.) R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [38320 2022-02-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-12-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2023-12-06] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-06] (Microsoft Windows -> Microsoft Corporation) S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-12-29 10:52 - 2023-12-29 10:53 - 000000000 ____D C:\FRST 2023-12-29 10:51 - 2023-12-29 10:51 - 000001445 _____ C:\Users\Arek\Desktop\Malwarebytes.txt 2023-12-29 10:45 - 2023-12-29 10:45 - 000798244 _____ C:\WINDOWS\system32\perfh015.dat 2023-12-29 10:45 - 2023-12-29 10:45 - 000233704 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt11.sys 2023-12-29 10:45 - 2023-12-29 10:45 - 000188008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2023-12-29 10:45 - 2023-12-29 10:45 - 000158294 _____ C:\WINDOWS\system32\perfc015.dat 2023-12-29 10:44 - 2023-12-29 10:45 - 000000000 ____D C:\Users\Arek\AppData\Local\Malwarebytes 2023-12-29 10:44 - 2023-12-29 10:44 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2023-12-29 10:44 - 2023-12-29 10:44 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2023-12-29 10:44 - 2023-12-29 10:44 - 000000000 ____D C:\ProgramData\Malwarebytes 2023-12-29 10:44 - 2023-12-29 10:44 - 000000000 ____D C:\Program Files\Malwarebytes 2023-12-29 10:43 - 2023-12-29 10:43 - 000000000 ____D C:\AdwCleaner 2023-12-20 21:51 - 2023-12-20 21:51 - 000000000 ____D C:\Users\Arek\Desktop\Nowy folder (2) 2023-12-20 08:34 - 2023-12-20 08:37 - 000000000 ____D C:\Users\Ignacy\AppData\Roaming\.doomsday 2023-12-19 18:59 - 2023-12-19 18:59 - 000002345 _____ C:\Users\Arek\Desktop\Insomnia.lnk 2023-12-19 18:59 - 2023-12-19 18:59 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kong 2023-12-19 18:59 - 2023-12-19 18:59 - 000000000 ____D C:\Users\Arek\AppData\Local\insomnia 2023-12-14 18:19 - 2023-12-14 18:19 - 000000000 ___HD C:\$Windows.~WS 2023-12-14 18:19 - 2023-12-14 18:19 - 000000000 ____D C:\$WINDOWS.~BT 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_6982101 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_366788825 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_1742405479 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_1661704652 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_164239221 2023-12-13 06:52 - 2023-12-13 06:52 - 000000000 ____D C:\Program Files\chrome_BITS_20820_1465333506 2023-12-11 20:03 - 2023-12-11 20:03 - 000000000 _____ C:\Users\Arek\Desktop\usun.bat 2023-12-09 21:47 - 2023-12-09 21:47 - 000004244 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1702154831 2023-12-06 19:49 - 2023-12-06 19:49 - 000000000 ____D C:\Program Files\JBL 2023-12-05 17:54 - 2023-12-05 17:54 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2023-12-05 16:23 - 2023-12-05 16:24 - 000000000 ____D C:\Users\Arek\AppData\Local\GeometryDash 2023-12-05 15:45 - 2023-12-05 15:45 - 000000000 ____D C:\Users\Arek\AppData\Local\Rocket League 2023-12-04 17:55 - 2023-12-04 17:55 - 000003266 _____ C:\WINDOWS\system32\Tasks\MSI_GamebarTool 2023-12-04 17:55 - 2023-12-04 17:55 - 000003210 _____ C:\WINDOWS\system32\Tasks\MSI_GamebarConnect 2023-12-04 17:55 - 2023-12-04 17:55 - 000003110 _____ C:\WINDOWS\system32\Tasks\MSI_TraceFPS 2023-12-04 17:18 - 2023-12-04 17:18 - 000000368 _____ C:\Users\Arek\Desktop\Rocket League®.url 2023-12-02 21:55 - 2023-12-02 21:55 - 000000000 ____D C:\Users\Arek\AppData\Local\DaysGone 2023-12-02 21:54 - 2023-12-02 21:54 - 000000000 ____D C:\Users\Arek\AppData\Local\BendGame 2023-12-01 21:16 - 2023-12-01 21:16 - 000003176 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host 2023-12-01 21:16 - 2023-12-01 21:16 - 000000000 ____D C:\Program Files\WD 2023-12-01 21:16 - 2023-12-01 21:16 - 000000000 ____D C:\Program Files\Verbatim 2023-12-01 21:16 - 2023-12-01 21:16 - 000000000 ____D C:\Program Files\ENE 2023-11-29 12:30 - 2023-11-29 12:30 - 510859316 _____ C:\Users\Ignacy\Desktop\Dragon-Center.zip 2023-11-29 09:00 - 2023-11-29 09:00 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Sun 2023-11-29 08:59 - 2023-11-29 08:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2023-11-29 08:59 - 2023-11-29 08:59 - 000000000 ____D C:\Program Files\Java 2023-11-29 08:59 - 2023-10-04 08:25 - 000200320 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-12-29 10:49 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-12-29 10:47 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-12-29 10:45 - 2023-09-22 20:59 - 001802064 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-12-29 10:45 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF 2023-12-29 10:44 - 2022-05-07 06:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-12-29 10:42 - 2022-12-04 17:15 - 000000000 ____D C:\Users\Arek\AppData\Local\CrashDumps 2023-12-29 10:40 - 2023-06-05 15:32 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2023-12-29 10:39 - 2022-12-03 23:10 - 000000000 ____D C:\Program Files (x86)\Google 2023-12-29 10:38 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps 2023-12-29 10:38 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-12-29 10:37 - 2023-09-22 20:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-12-29 10:37 - 2023-09-22 20:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-12-29 10:37 - 2022-12-04 18:01 - 000000000 ____D C:\ProgramData\VMware 2023-12-29 10:37 - 2022-12-04 09:04 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Samsung Magician 2023-12-29 10:37 - 2022-12-03 23:28 - 000000000 ____D C:\Users\Arek\AppData\Roaming\1Password 2023-12-29 10:37 - 2022-12-03 23:28 - 000000000 ____D C:\Users\Arek\AppData\Local\1Password 2023-12-29 10:37 - 2022-12-03 23:12 - 000000000 ____D C:\ProgramData\NVIDIA 2023-12-29 10:37 - 2022-12-03 23:07 - 000000000 ___SD C:\Users\Arek\AppData\Roaming\Microsoft\Credentials 2023-12-29 10:37 - 2022-12-03 23:05 - 000012288 ___SH C:\DumpStack.log.tmp 2023-12-29 10:37 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState 2023-12-29 10:36 - 2022-05-07 06:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-12-29 09:42 - 2023-09-23 06:36 - 000000000 ____D C:\Users\Ignacy\AppData\Roaming\launcher 2023-12-29 09:42 - 2022-12-07 15:35 - 000000000 ____D C:\Users\Ignacy\AppData\Roaming\discord 2023-12-29 09:37 - 2022-12-09 18:43 - 000000000 ____D C:\Users\Ignacy\AppData\Local\Discord 2023-12-29 09:36 - 2022-12-04 00:39 - 000000000 ____D C:\Program Files (x86)\Steam 2023-12-29 00:23 - 2022-12-04 00:33 - 000000000 ____D C:\Users\Arek\AppData\Local\Battle.net 2023-12-29 00:23 - 2022-12-04 00:31 - 000000000 ____D C:\Program Files (x86)\Battle.net 2023-12-28 21:02 - 2022-12-04 00:49 - 000000000 ____D C:\Users\Arek\AppData\Local\FortiClient 2023-12-28 19:45 - 2022-12-03 23:07 - 000000000 ____D C:\Users\Arek\AppData\Local\Packages 2023-12-28 18:47 - 2022-12-04 16:54 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Microsoft\Excel 2023-12-28 15:55 - 2023-09-22 21:40 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2023-12-28 08:40 - 2022-12-04 17:20 - 000000000 ____D C:\Users\Ignacy\AppData\Local\D3DSCache 2023-12-28 08:01 - 2023-01-22 17:23 - 000000000 ____D C:\Users\Arek\AppData\Roaming\.minecraft 2023-12-28 08:00 - 2023-01-22 17:23 - 000000000 ____D C:\Users\Arek\AppData\Roaming\.tlauncher 2023-12-28 07:59 - 2023-01-23 12:26 - 000001993 _____ C:\Users\Public\Desktop\TLauncher.lnk 2023-12-28 07:59 - 2023-01-22 17:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TLauncher 2023-12-27 16:02 - 2023-04-01 09:26 - 000000000 ____D C:\ProgramData\Riot Games 2023-12-27 16:02 - 2022-12-31 11:08 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2023-12-27 16:02 - 2022-12-31 11:08 - 000002405 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2023-12-27 16:02 - 2022-12-31 11:08 - 000002395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2023-12-27 16:02 - 2022-12-04 00:42 - 000000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2023-12-27 16:02 - 2022-12-04 00:22 - 000001290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2023-12-27 16:02 - 2022-12-04 00:14 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk 2023-12-27 16:02 - 2022-12-03 23:43 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-12-27 16:02 - 2022-12-03 23:10 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-12-27 16:02 - 2022-12-03 23:05 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-12-27 14:28 - 2023-01-18 12:22 - 000000000 ____D C:\Users\Arek\AppData\Roaming\discord 2023-12-27 14:25 - 2023-08-10 19:53 - 000000000 ____D C:\Users\Arek\AppData\Local\Discord 2023-12-27 14:25 - 2022-12-03 23:10 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-12-26 17:11 - 2023-09-22 20:49 - 000000000 ____D C:\Users\Arek 2023-12-26 11:09 - 2022-12-03 23:11 - 000000000 ____D C:\Users\Arek\AppData\Local\PlaceholderTileLogoFolder 2023-12-25 19:56 - 2022-12-03 23:46 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Microsoft\Word 2023-12-25 18:34 - 2022-12-05 06:39 - 000000000 ____D C:\Users\Arek\AppData\Roaming\EasyAntiCheat 2023-12-25 15:45 - 2022-12-03 23:12 - 000000000 ____D C:\Users\Arek\AppData\Local\D3DSCache 2023-12-25 11:36 - 2023-09-24 14:30 - 000000000 ____D C:\Users\Ignacy\AppData\Roaming\Microsoft\Excel 2023-12-23 09:44 - 2023-01-17 07:23 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-12-21 12:47 - 2023-07-30 07:51 - 000001986 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Feather Launcher.lnk 2023-12-21 12:47 - 2022-12-31 11:08 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2023-12-21 12:47 - 2022-12-31 11:08 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2023-12-21 12:47 - 2022-12-03 23:27 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2023-12-20 13:29 - 2023-09-22 20:49 - 000000000 ____D C:\Users\Ignacy 2023-12-20 12:17 - 2022-12-04 20:21 - 000000000 ____D C:\Users\Arek\AppData\Roaming\Insomnia 2023-12-20 08:44 - 2023-11-21 15:43 - 000001946 _____ C:\Users\Ignacy\Desktop\Crystal Launcher.lnk 2023-12-20 08:07 - 2022-12-07 15:35 - 000002277 _____ C:\Users\Ignacy\Desktop\Discord.lnk 2023-12-20 08:02 - 2023-08-10 19:54 - 000002267 _____ C:\Users\Arek\Desktop\Discord.lnk 2023-12-19 20:14 - 2023-06-18 06:14 - 000000000 ____D C:\Program Files (x86)\Overwolf 2023-12-19 18:59 - 2022-12-31 18:07 - 000000000 ____D C:\Users\Arek\AppData\Local\SquirrelTemp 2023-12-19 12:43 - 2022-12-31 11:08 - 000002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2023-12-17 06:56 - 2023-09-23 21:01 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK 2023-12-16 16:39 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\USOPrivate 2023-12-16 16:23 - 2023-09-22 20:48 - 000478184 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-12-16 16:23 - 2022-12-03 23:49 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-12-16 16:22 - 2023-10-31 08:16 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2023-12-16 16:22 - 2022-05-07 11:41 - 000000000 ____D C:\WINDOWS\InboxApps 2023-12-16 16:22 - 2022-05-07 11:41 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-12-16 16:22 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-12-16 16:22 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\servicing 2023-12-16 11:30 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-12-16 11:28 - 2023-09-22 20:50 - 003212800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-12-14 18:30 - 2023-09-02 07:38 - 000000000 ___DC C:\WINDOWS\Panther 2023-12-14 18:30 - 2022-12-29 20:23 - 000000000 ____D C:\ESD 2023-12-14 07:36 - 2023-01-19 13:05 - 000000000 ____D C:\Users\Ignacy\AppData\Roaming\Microsoft\Word 2023-12-14 07:09 - 2022-12-03 23:28 - 000001396 _____ C:\Users\Arek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\1Password.lnk 2023-12-13 17:50 - 2023-09-22 20:57 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-270259313-3629780624-3914517322-1002 2023-12-13 17:50 - 2023-09-22 20:57 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-270259313-3629780624-3914517322-1001 2023-12-13 17:50 - 2023-09-22 20:57 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-12-13 06:51 - 2023-06-18 06:12 - 000000000 ____D C:\Users\Arek\AppData\Local\Overwolf 2023-12-10 12:30 - 2023-06-05 14:53 - 000000000 ____D C:\Program Files\Riot Vanguard 2023-12-09 21:15 - 2023-03-13 13:54 - 000000000 ____D C:\Users\Arek\AppData\LocalLow\Unity 2023-12-09 17:51 - 2023-11-12 19:09 - 000000000 ____D C:\Riot Games 2023-12-09 17:51 - 2023-06-05 14:52 - 000001627 _____ C:\Users\Public\Desktop\VALORANT.lnk 2023-12-06 20:01 - 2023-09-22 20:57 - 000003940 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{B95CC95F-2BF3-4A4B-8CC6-15D0F33E9631} 2023-12-06 20:01 - 2023-09-22 20:57 - 000003816 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{46821351-3D97-43EE-BDB6-3335A19C178F} 2023-12-06 15:02 - 2022-12-03 23:05 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-12-06 13:25 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\NDF 2023-12-05 17:54 - 2022-12-31 11:08 - 000000000 ____D C:\Program Files\Microsoft Office 2023-12-05 17:54 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2023-12-04 17:56 - 2022-12-03 23:21 - 000000000 ____D C:\MSI 2023-12-02 22:20 - 2023-11-09 21:08 - 000000000 ____D C:\Users\Arek\.conda 2023-12-02 21:43 - 2023-11-09 21:09 - 000000000 ____D C:\Users\Arek\.spyder-py3 2023-12-02 13:48 - 2022-12-04 00:22 - 000000000 ____D C:\Users\Arek\AppData\Local\UnrealEngine 2023-12-01 23:04 - 2022-12-04 00:41 - 000000000 ____D C:\Users\Arek\AppData\Local\Steam 2023-12-01 21:16 - 2022-12-03 23:21 - 000000000 ____D C:\ProgramData\Package Cache 2023-12-01 13:32 - 2022-12-04 17:20 - 000000000 ____D C:\Users\Ignacy\AppData\Local\Packages 2023-12-01 11:53 - 2022-12-04 17:20 - 000000000 ____D C:\Users\Ignacy\AppData\Local\NVIDIA Corporation 2023-12-01 11:46 - 2022-12-03 23:07 - 000000000 ____D C:\ProgramData\Packages ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-12-26 15:22 - 2022-12-26 15:22 - 000000202 _____ () C:\Users\Arek\AppData\Roaming\82a7553b-35da-4325-b959-f640653c8cd8.tmp 2022-12-04 19:21 - 2023-04-11 17:53 - 000022762 _____ () C:\Users\Arek\AppData\Local\digikamrc 2022-12-17 21:09 - 2023-04-18 18:01 - 000000128 _____ () C:\Users\Arek\AppData\Local\PUTTY.RND 2023-07-14 17:03 - 2023-07-14 17:03 - 000003114 _____ () C:\Users\Arek\AppData\Local\recently-used.xbel 2022-12-06 18:53 - 2022-12-06 18:53 - 000000017 _____ () C:\Users\Arek\AppData\Local\resmon.resmoncfg 2023-07-14 15:34 - 2023-07-14 15:36 - 000002781 _____ () C:\Users\Arek\AppData\Local\showfotorc ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================