Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22.01.2024 Uruchomiony przez Wsi (administrator) TT-MAREK (23-01-2024 06:07:32) Uruchomiony z C:\Users\Wsi\Downloads\FRST64.exe Załadowane profile: Wsi Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.3803 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (explorer.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\ANetChat\ANetChat.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <18> (services.exe ->) (Glarysoft Ltd -> Glarysoft Ltd) C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe (services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe (sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.MSPaint_6.2310.24037.0_x64__8wekyb3d8bbwe\PaintStudio.View.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKU\S-1-5-21-3760884624-182462441-3368453680-1001\...\Run: [ANetChat] => C:\Program Files (x86)\ANetChat\ANetChat.exe [1042944 2005-12-25] () [Brak podpisu cyfrowego] HKU\S-1-5-21-3760884624-182462441-3368453680-1001\...\Run: [MicrosoftEdgeAutoLaunch_0B72AD366012871B88241BB5E2B7F0A1] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854376 2024-01-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3760884624-182462441-3368453680-1001\...\MountPoints2: {c7577124-eccf-11ea-b0c5-7085c26b56e9} - "E:\AutoRun.exe" HKU\S-1-5-21-3760884624-182462441-3368453680-1001\...\MountPoints2: {f7df1c6e-be86-11e9-b091-806e6f6e6963} - "D:\setup.exe" /AUTORUN HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\HP1100LM: C:\WINDOWS\system32\HP1100LM.DLL [288768 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Microsoft Office.lnk [2024-01-22] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files (x86)\Microsoft Office\Office10\OSA.EXE (Microsoft Corporation -> Microsoft Corporation) BootExecute: autocheck autochk * HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {40380CD6-E150-4D6E-9E64-AE36D3EB3547} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe (Brak pliku) Task: {7FA2CD92-5BFC-4AF1-99B4-93BA61A81AAB} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe /from_scheduler:1 (Brak pliku) Task: {CAEA4B94-71C3-48A2-B5EF-1CBF7A4B3CEC} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [834856 2021-09-02] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {1B874AB2-46BB-451F-A52D-32158EADAB8C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E4CD272E-CAEA-4538-A00F-62A656D27D2F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3A07155E-CA8A-4060-B046-AD2F79E5FE58} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D5DDE6C2-71A1-47FC-847B-C34E43BC07F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MpCmdRun.exe [1608808 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C203BF36-3489-4022-A80D-1CAE263C0B1F} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [674720 2024-01-22] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {05E2B25C-BB5A-4BAA-8EAB-E770B52739CC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [35232 2024-01-22] (Mozilla Corporation -> Mozilla Foundation) Task: {52CB2BCC-8F85-4D72-86CD-3465197DC3A4} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-3760884624-182462441-3368453680-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {FE3C87D2-44BE-485B-A18F-08426DC75D78} - System32\Tasks\Uninstaller_SkipUac_Wsi => C:\Program Files (x86)\IObit\IObit Uninstaller\IObitUninstaler.exe [9831432 2023-07-31] (IObit CO., LTD -> IObit) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\..\Interfaces\{d6ac7e33-258b-49ff-865a-4896154ee7bf}: [NameServer] 10.0.0.3 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Wsi\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-23] Edge HomePage: Default -> hxxp://www.nav-pl.com/ Edge Extension: (Dokumenty Google offline) - C:\Users\Wsi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-29] Edge Extension: (Edge relevant text changes) - C:\Users\Wsi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-14] FireFox: ======== FF DefaultProfile: tcyezdny.default FF ProfilePath: C:\Users\Wsi\AppData\Roaming\Mozilla\Firefox\Profiles\tcyezdny.default [2023-06-30] FF user.js: detected! => C:\Users\Wsi\AppData\Roaming\Mozilla\Firefox\Profiles\tcyezdny.default\user.js [2023-08-04] FF Extension: (Avast SafePrice | Porównania, promocje, kupony) - C:\Users\Wsi\AppData\Roaming\Mozilla\Firefox\Profiles\tcyezdny.default\Extensions\sp@avast.com.xpi [2019-08-30] FF ProfilePath: C:\Users\Wsi\AppData\Roaming\Mozilla\Firefox\Profiles\4drd9lju.default-release-1698901648612 [2024-01-23] FF Homepage: Mozilla\Firefox\Profiles\4drd9lju.default-release-1698901648612 -> www.interia.pl FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2019-09-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR Profile: C:\Users\Wsi\AppData\Local\Google\Chrome\User Data\Default [2024-01-22] CHR HomePage: Default -> hxxp://www.nav-pl.com/ CHR Extension: (Wtyczka Tipli) - C:\Users\Wsi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejocgomhimjbhmpbjphkikodfplbemjb [2022-08-30] CHR Extension: (Dokumenty Google offline) - C:\Users\Wsi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-08-25] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Wsi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-19] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 GUBootService; C:\Program Files (x86)\Common Files\Glarysoft\StartupManager\1.0\GUBootService.exe [889232 2023-03-03] (Glarysoft Ltd -> Glarysoft Ltd) S3 GUPMService; C:\Program Files (x86)\Glary Utilities 5\GUPMService.exe [76696 2023-03-03] (Glarysoft Ltd -> Glarysoft Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230360 2023-11-15] (HP Inc. -> HP Inc.) R2 HPSIService; C:\Windows\system32\HPSIsvc.exe [126880 2012-09-27] (Hewlett-Packard Company -> HP) S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [167432 2023-07-26] (IObit CO., LTD -> IObit) R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7Debug\mdm.exe [270336 2001-02-23] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-01-22] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R1 GUBootStartup; C:\WINDOWS\System32\drivers\GUBootStartup.sys [45056 2023-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd) R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [43896 2023-01-13] (IObit Information Technology -> IObit) R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37112 2023-01-13] (IObit Information Technology -> IObit) R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [51128 2023-01-13] (IObit Information Technology -> IObit) S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [29168 2022-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.) S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24064 2020-09-11] (Microsoft Corporation) [Brak podpisu cyfrowego] S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2024-01-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [594304 2024-01-22] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2019-06-14] (NGO -> MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2024-01-22] (Microsoft Windows -> Microsoft Corporation) S3 cpuz154; \??\C:\WINDOWS\temp\cpuz154\cpuz154_x64.sys [X] <==== UWAGA ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-01-23 06:07 - 2024-01-23 06:08 - 000015674 _____ C:\Users\Wsi\Downloads\FRST.txt 2024-01-23 06:06 - 2024-01-23 06:07 - 000000000 ____D C:\FRST 2024-01-23 06:05 - 2024-01-23 06:05 - 002389504 _____ (Farbar) C:\Users\Wsi\Downloads\FRST64.exe 2024-01-23 05:53 - 2024-01-23 05:53 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2024-01-22 12:46 - 2024-01-22 12:46 - 000000000 ____D C:\Program Files (x86)\Microsoft SDKs 2024-01-22 12:32 - 2024-01-22 12:32 - 001320200 _____ () C:\Users\Wsi\Downloads\visual-c-2013-redistributable-6628263106324097-AsystentPobierania_v1.016.43.24.97.exe 2024-01-22 12:28 - 2024-01-22 12:28 - 000000000 ____D C:\WINDOWS\SysWOW64\CatRoot_bak 2024-01-22 10:17 - 2024-01-22 10:17 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2024-01-22 10:15 - 2024-01-22 10:15 - 015852680 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Wsi\Downloads\avgclear.exe 2024-01-22 10:14 - 2024-01-22 10:14 - 000002765 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Excel.lnk 2024-01-22 10:14 - 2024-01-22 10:14 - 000002759 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Outlook.lnk 2024-01-22 10:14 - 2024-01-22 10:14 - 000002743 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Word.lnk 2024-01-22 10:14 - 2024-01-22 10:14 - 000002725 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Otwórz dokument Office.lnk 2024-01-22 10:14 - 2024-01-22 10:14 - 000002701 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint.lnk 2024-01-22 10:14 - 2024-01-22 10:14 - 000002699 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Nowy dokument Office.lnk 2024-01-22 10:05 - 2024-01-22 10:05 - 000003992 _____ C:\WINDOWS\system32\Tasks\Antivirus Emergency Update 2024-01-22 05:51 - 2024-01-22 09:47 - 000000000 ___HD C:\$WinREAgent 2024-01-19 11:38 - 2024-01-19 11:38 - 000000000 ____D C:\ProgramData\WindowsPerformanceRecorder 2024-01-19 09:06 - 2024-01-22 12:46 - 000000000 ____D C:\ProgramData\Package Cache 2024-01-18 13:42 - 2024-01-18 13:42 - 000237386 ____R C:\Users\Wsi\Downloads\faktura .pdf 2024-01-18 13:25 - 2024-01-18 13:25 - 000235041 ____R C:\Users\Wsi\Downloads\faktura sprężyny -1.pdf 2024-01-17 13:38 - 2024-01-17 13:38 - 000165398 ____R C:\Users\Wsi\Downloads\4501847964.pdf 2024-01-16 13:08 - 2024-01-16 13:08 - 004775908 ____R C:\Users\Wsi\Downloads\Procedura antymobingowa .pdf 2024-01-16 10:02 - 2024-01-16 10:02 - 000023081 ____R C:\Users\Wsi\Downloads\000013687_FA4723120201_-1.pdf 2024-01-15 07:25 - 2024-01-15 07:25 - 000411136 _____ C:\Users\Wsi\Downloads\1946-N laser(1).XLS 2024-01-15 07:24 - 2024-01-15 07:24 - 000411136 _____ C:\Users\Wsi\Downloads\1946-N laser.XLS 2024-01-11 08:29 - 2024-01-11 08:29 - 000458240 _____ C:\Users\Wsi\Downloads\1949-Z.XLS 2024-01-09 07:12 - 2024-01-09 07:12 - 000015485 _____ C:\Users\Wsi\Downloads\04.01.2024.xlsx 2024-01-05 13:43 - 2024-01-05 13:43 - 056024866 _____ C:\Users\Wsi\Downloads\NOWE PDF.rar ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-01-23 05:57 - 2022-02-10 06:14 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-01-23 05:56 - 2020-06-15 08:36 - 000004206 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{0F6F89D6-3B84-4E41-9052-2F7011D33EDA} 2024-01-23 05:53 - 2019-08-14 11:33 - 000000000 __SHD C:\Users\Wsi\IntelGraphicsProfiles 2024-01-22 13:24 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-22 13:19 - 2022-11-07 11:54 - 000003676 _____ C:\WINDOWS\SysWOW64\pubfreeware.ini 2024-01-22 13:11 - 2021-12-20 08:57 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-01-22 13:11 - 2019-08-14 11:53 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-22 12:38 - 2020-06-15 08:36 - 001768668 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-01-22 12:38 - 2019-12-07 16:08 - 000784502 _____ C:\WINDOWS\system32\perfh015.dat 2024-01-22 12:38 - 2019-12-07 16:08 - 000152398 _____ C:\WINDOWS\system32\perfc015.dat 2024-01-22 12:38 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2024-01-22 12:34 - 2022-11-16 06:02 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-01-22 12:34 - 2020-06-15 08:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-01-22 12:34 - 2020-06-15 08:31 - 000008192 ___SH C:\DumpStack.log.tmp 2024-01-22 12:34 - 2019-12-11 07:37 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-01-22 12:33 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-01-22 12:23 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-01-22 10:31 - 2019-12-11 07:37 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-01-22 10:29 - 2020-01-09 09:53 - 000000000 ____D C:\Users\Wsi\AppData\Local\CrashDumps 2024-01-22 10:26 - 2023-01-27 12:19 - 000000000 ____D C:\Users\Wsi\AppData\Local\AVG 2024-01-22 10:26 - 2023-01-27 12:15 - 000000000 ____D C:\ProgramData\AVG 2024-01-22 10:26 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-01-22 10:22 - 2020-03-06 09:29 - 000001160 _____ C:\Users\Wsi\Desktop\lipinski.wykaz.lnk 2024-01-22 10:17 - 2020-06-15 08:31 - 000496640 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-01-22 10:14 - 2019-12-19 07:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia Microsoft Office 2024-01-22 10:14 - 2019-08-30 07:23 - 000000524 _____ C:\WINDOWS\ODBC.INI 2024-01-22 10:14 - 2019-03-19 05:49 - 000000188 _____ C:\WINDOWS\win.ini 2024-01-22 10:08 - 2020-06-09 05:07 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-22 10:08 - 2020-06-09 05:07 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2024-01-22 10:05 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-01-22 10:04 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps.tmp 2024-01-22 10:02 - 2020-06-15 08:01 - 000000000 ____D C:\Users\zbysz 2024-01-22 10:02 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2024-01-22 10:02 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2024-01-22 10:02 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2024-01-22 10:02 - 2019-12-07 16:08 - 000000000 ____D C:\WINDOWS\SysWOW64\pl 2024-01-22 10:02 - 2019-12-07 16:08 - 000000000 ____D C:\WINDOWS\system32\pl 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\Nui 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ras 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\icsxml 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ias 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ContainerSettingsProviders 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-01-22 10:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2024-01-22 10:02 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2024-01-22 10:00 - 2023-10-12 05:08 - 000000000 ____D C:\Program Files\RUXIM 2024-01-22 10:00 - 2023-08-24 10:41 - 000000000 ____D C:\Program Files (x86)\LibreCAD 2024-01-22 10:00 - 2023-07-17 06:15 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2024-01-22 10:00 - 2023-03-27 06:06 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5 2024-01-22 10:00 - 2021-01-25 14:41 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2024-01-22 10:00 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2024-01-22 10:00 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2024-01-22 10:00 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\addins 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 __RSD C:\WINDOWS\Media 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\L2Schemas 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IdentityCRL 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2024-01-22 10:00 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\Services 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\dsc 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\downlevel 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-01-22 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-01-22 09:57 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files\Windows Portable Devices 2024-01-22 09:57 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2024-01-22 09:57 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2024-01-22 09:57 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2024-01-22 09:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Cursors 2024-01-22 09:55 - 2023-01-27 12:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVG 2024-01-22 09:55 - 2019-12-19 07:40 - 000000000 ____D C:\WINDOWS\ShellNew 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemApps 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2024-01-22 09:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\IME 2024-01-22 09:48 - 2023-08-24 11:01 - 000000000 ____D C:\ProgramData\ProductData3 2024-01-22 09:48 - 2021-09-02 05:29 - 000000000 ____D C:\Users\Wsi\AppData\LocalLow\IObit 2024-01-22 09:48 - 2021-09-02 05:29 - 000000000 ____D C:\ProgramData\ProductData 2024-01-22 09:48 - 2021-09-02 05:28 - 000000000 ____D C:\Users\Wsi\AppData\Roaming\IObit 2024-01-22 09:48 - 2021-09-02 05:28 - 000000000 ____D C:\ProgramData\IObit 2024-01-22 09:48 - 2019-12-19 07:40 - 000000000 ____D C:\WINDOWS\Msagent 2024-01-22 09:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Globalization 2024-01-22 09:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Containers 2024-01-22 09:48 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2024-01-22 09:48 - 2019-09-05 08:18 - 000000000 ____D C:\Users\Wsi\AppData\Local\WallpaperHd 2024-01-22 09:47 - 2022-10-05 10:23 - 000000000 ____D C:\Program Files\CrystalDiskInfo 2024-01-22 09:47 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Branding 2024-01-22 09:47 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-01-22 09:47 - 2019-08-30 07:27 - 000000000 ____D C:\Graffiti 2024-01-22 09:47 - 2019-08-14 12:08 - 000000000 ____D C:\Program Files\7-Zip 2024-01-22 08:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\registration 2024-01-22 08:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Web 2024-01-22 08:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\System 2024-01-22 07:53 - 2020-06-15 08:01 - 000000000 ____D C:\Users\Wsi 2024-01-22 07:49 - 2019-12-19 07:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 2024-01-22 07:49 - 2019-12-19 07:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2024-01-22 07:00 - 2019-08-14 11:31 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-01-22 06:23 - 2023-08-09 06:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2024-01-22 06:22 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-22 06:16 - 2019-10-03 09:27 - 000000000 ____D C:\Users\Wsi\AppData\Local\D3DSCache 2024-01-22 05:50 - 2020-06-15 08:31 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-01-19 11:08 - 2019-08-14 11:34 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2024-01-19 07:31 - 2019-12-19 07:41 - 000000000 ____D C:\Users\Wsi\AppData\Roaming\Microsoft\Excel 2024-01-17 12:47 - 2020-01-14 11:22 - 000000000 ____D C:\Users\Wsi\AppData\Roaming\Microsoft\Word 2024-01-17 12:36 - 2019-12-19 07:49 - 000000000 ____D C:\Users\Wsi\AppData\Roaming\Microsoft\Proof 2024-01-17 06:01 - 2019-08-14 11:37 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-01-16 06:08 - 2020-06-15 08:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software 2024-01-03 06:33 - 2019-08-30 07:18 - 000008606 _____ C:\WINDOWS\pcgnwsi.ini ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-09-05 08:15 - 2019-09-05 08:15 - 000000940 _____ () C:\Users\Wsi\AppData\Roaming\NetworkDriveManager.ini 2023-03-02 07:22 - 2023-11-24 10:05 - 000007640 _____ () C:\Users\Wsi\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================