Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-03-2025 Uruchomiony przez Kasia (administrator) DELL-E5570 (Dell Inc. Latitude E5570) (11-03-2025 17:30:10) Uruchomiony z C:\Users\Dom\Downloads\FRST64.exe Załadowane profile: Kasia Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.5555 (X64) Język: Polski (Polska) Domyślna przeglądarka: Brave Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <18> (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe (C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe (C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ELECTRIC CO., LTD. -> ALPSALPINE CO., LTD.) C:\Program Files\DellTPad\hidfind.exe (C:\Program Files\Google\NearbyShare\nearby_share.exe ->) (Google LLC -> ) C:\Program Files\Google\NearbyShare\crashpad_handler.exe (DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe (DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe (explorer.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe (explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\CCleaner\CCleaner64.exe (Google LLC -> Google) C:\Program Files\Google\NearbyShare\nearby_share.exe (Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\explorer.exe (services.exe ->) ("STMicroelectronics Srl" -> ) C:\Windows\System32\drivers\DellFFDPWmiService.exe (services.exe ->) () [Brak podpisu cyfrowego] C:\Dell\Sytem64Folder\DellRctlService.exe (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe (services.exe ->) (AVB Disc Soft, SIA -> Disc Soft FZE LLC) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_e192e6f3fb1cfc71\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2501.1.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Dom\AppData\Local\Microsoft\OneDrive\25.020.0202.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [779152 2019-12-12] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9230176 2018-10-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Nearby Share] => C:\Program Files\Google\NearbyShare\nearby_share_launcher.exe [3048032 2025-01-24] (Google LLC -> Google) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [484400 2024-12-17] (AVB Disc Soft, SIA -> Disc Soft FZE LLC) HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\Run: [e-file [ID] - Asystent] => C:\Users\Dom\Documents\efile\efileID\bin\efileIDAsystent.exe [253048 2025-02-05] (e-file sp. z o.o. -> e-file sp. z o.o. sp. k.) HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\Run: [Kasia] => cmd.exe /c start www.bongbonger.org (Brak pliku) <==== UWAGA HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45452080 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\MountPoints2: {14dbdb2b-a671-11ef-8f1e-e4a471c75082} - "E:\Disk1\InstData\VM\setup.exe" HKU\S-1-5-21-4202650918-750063722-353576276-1001\...\MountPoints2: {6183c16c-d595-11ef-8f24-e4a471c75082} - "G:\Install.exe" HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\134.0.6998.36\Installer\chrmstp.exe [2025-03-11] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\134.1.76.73\Installer\chrmstp.exe [2025-03-11] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2025-03-11] ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {D03B6440-2B35-4A07-82AF-0C8AA23924B0} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {26121329-625A-4AE6-BB68-C637356F4606} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "4d248255-ea83-4406-a70c-77075c449a39" --version "6.33.0.11465" --silent Task: {2B2155A8-AB4C-4D34-AED3-3B8DF3020A03} - System32\Tasks\CCleanerSkipUAC - Kasia => C:\Program Files\CCleaner\CCleaner.exe [39224624 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) Task: {9B083272-3A5C-49E4-AC3D-802231383C95} - System32\Tasks\Core Temp Autostart Kasia => "C:\Program Files\Core Temp\Core Temp.exe" (Brak pliku) Task: {8C94B1D3-10BB-4108-9993-65FA35D57D7C} - System32\Tasks\ExternalUi => C:\ProgramData\FNPLicensingService\vcpkgsrv.exe [1496680 2025-02-11] (Microsoft Corporation -> Microsoft Corporation) <==== UWAGA Task: {6F529F07-2B1F-4CF8-B26D-4772CCA1A449} - System32\Tasks\Google\Quick Share Relaunch => C:\Program Files\Google\NearbyShare\nearby_share_launcher.exe [3048032 2025-01-24] (Google LLC -> Google) Task: {6F2AAE3E-BDB7-4425-AFB0-8BC7DA2C6793} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{5E2ABD52-A7A9-45F5-97E9-75569BD21855} => C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe [5745760 2025-02-19] (Google LLC -> Google LLC) Task: {0C8BF9E6-8C15-48BA-A984-042D51399F48} - System32\Tasks\Kasia => C:\Windows\system32\cmd.exe [289792 2024-05-04] (Microsoft Windows -> Microsoft Corporation) -> /c REG ADD HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /f /v Kasia /t REG_SZ /d "cmd.exe /c start www.bongbonger.org" <==== UWAGA Task: {ECBB6844-B5E6-46C6-BCC2-153807265C4E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A8934F08-8340-4FB3-B0A4-4C136CA9755B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F68DD313-0CA0-4FF8-9F90-5D215C6E45D7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F9C29E82-D756-4264-BBB4-463B4A094961} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9FABDAB2-EDFA-4612-995F-430DEC850F3A} - System32\Tasks\OneDrive Startup Task-S-1-5-21-4202650918-750063722-353576276-1001 => C:\Users\Dom\AppData\Local\Microsoft\OneDrive\25.020.0202.0001\OneDriveLauncher.exe [669200 2025-03-06] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}: [DhcpDomain] home Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}\550534234313135383235343: [DhcpNameServer] 62.179.1.63 62.179.1.62 Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}\550534234313135383235343: [DhcpDomain] chello.pl Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}\74241F646F67737B696F583: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{e1f00e3e-b6c2-4cb4-bbc7-5a4606f233bf}\74241F646F67737B696F583: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Dom\AppData\Local\Microsoft\Edge\User Data\Default [2025-03-11] Edge Extension: (Dokumenty Google offline) - C:\Users\Dom\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-02-11]hxxps://clients2.google.com/service/update2/crx Edge Extension: (Edge relevant text changes) - C:\Users\Dom\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-04-29]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx FireFox: ======== FF DefaultProfile: jnp7la7g.default FF ProfilePath: C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\jnp7la7g.default [2023-06-18] FF ProfilePath: C:\Users\Dom\AppData\Roaming\Mozilla\Firefox\Profiles\3gnp9job.default-release [2025-03-11] Chrome: ======= CHR Profile: C:\Users\Dom\AppData\Local\Google\Chrome\User Data\Default [2025-03-11] CHR Extension: (Dokumenty Google offline) - C:\Users\Dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-06-18]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Dom\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-18]hxxps://clients2.google.com/service/update2/crx Brave: ======= BRA Profile: C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-03-11] BRA HomePage: Default -> hxxp://google.pl/ BRA StartupUrls: Default -> "hxxps://google.pl/" BRA Extension: (Nordic Forest) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\amekpplpfocpmaimnmgfjoibodpjedie [2025-01-11]hxxps://clients2.google.com/service/update2/crx BRA Extension: (MEGA) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2025-03-06] [UpdateUrl:hxxps://mega.nz/firefox-web-extension-updates.json] <==== UWAGA BRA Extension: (uBlock Origin Lite) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ddkjiahejlhfcafbddmgiahcphecmpfh [2025-03-11]hxxps://clients2.google.com/service/update2/crx BRA Extension: (Dark Mode) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dmghijelimhndkbmpgbldicpogfkceaj [2025-02-11]hxxps://clients2.google.com/service/update2/crx BRA Extension: (Flash Player for the Web) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\omimccinlhlkpjaeaocglgmkbelejlhj [2025-01-01]hxxps://clients2.google.com/service/update2/crx BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-03-11] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-03-11] BRA Extension: (Brave NTP background images) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-03-11] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\beeceepafhbchnbfdkfalfipoancnjkm [2024-06-28] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-03-11] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-03-11] BRA Extension: (Brave Ads Resources) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\feeklcgpaolphdiamjaolkkcpbeihkbh [2025-01-24] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-01-08] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2024-04-29] BRA Extension: (Brave NTP sponsored images) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2025-03-11] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-03-11] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-01-24] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka (plaintext))) - C:\Users\Dom\AppData\Local\BraveSoftware\Brave-Browser\User Data\ngcohbdfildjnmfnicgdipopmlhdcokg [2025-02-24] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [166424 2024-04-29] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\134.1.76.73\elevation_service.exe [3333136 2025-03-05] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [166424 2024-04-29] (Brave Software, Inc. -> BraveSoftware Inc.) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-02-18] (Gen Digital Inc. -> Gen Digital Inc.) S3 Crypkey License; C:\Windows\system32\crypserv.exe [122880 2008-05-07] (CrypKey (Canada) Ltd.) [Brak podpisu cyfrowego] S3 Crypkey License; C:\Windows\SysWOW64\crypserv.exe [69632 2006-09-21] (CrypKey (Canada) Ltd.) [Brak podpisu cyfrowego] R2 DellFFDPWmiService; C:\Windows\System32\drivers\DellFFDPWmiService.exe [41136 2020-08-28] ("STMicroelectronics Srl" -> ) R2 DellRctlService; C:\Dell\Sytem64Folder\DellRctlService.exe [515584 2016-05-03] () [Brak podpisu cyfrowego] R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4940336 2024-12-17] (AVB Disc Soft, SIA -> Disc Soft FZE LLC) S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-09-24] (The Document Foundation -> The Document Foundation) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe [1926976 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559328 2025-03-11] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe [4352456 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe [270056 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.) R3 DellRctl; C:\Windows\System32\drivers\DellRctl.sys [38336 2016-04-27] (FPT USA Corp. -> ) R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2024-12-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2024-12-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [278944 2025-03-06] (Microsoft Windows -> Microsoft Corporation) R1 NetworkX; C:\Windows\system32\ckldrv.sys [28664 2008-03-17] (CrypKey (Canada) Inc. -> ) R1 NetworkX; C:\Windows\SysWOW64\ckldrv.sys [31846 2006-01-10] () [Brak podpisu cyfrowego] S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20016 2025-03-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [601520 2025-03-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100768 2025-03-06] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-03-11 17:30 - 2025-03-11 17:30 - 000022902 _____ C:\Users\Dom\Downloads\FRST.txt 2025-03-11 17:19 - 2025-03-11 17:30 - 000000000 ____D C:\FRST 2025-03-11 17:19 - 2025-03-11 17:19 - 000000000 ____D C:\Users\Dom\Downloads\FRST-OlderVersion 2025-03-11 17:18 - 2025-03-11 17:19 - 002404352 _____ (Farbar) C:\Users\Dom\Downloads\FRST64.exe 2025-03-11 17:01 - 2025-03-11 17:02 - 000000000 ____D C:\AdwCleaner 2025-03-11 16:32 - 2025-03-11 16:32 - 000000000 ____D C:\Users\Dom\Downloads\Autoruns 2025-03-11 16:15 - 2025-03-11 16:15 - 001276704 _____ (BraveSoftware Inc.) C:\Users\Dom\Documents\BraveBrowserSetup-BRV013.exe 2025-03-11 15:53 - 2025-03-11 15:53 - 000000000 ___HD C:\$WinREAgent 2025-03-11 15:37 - 2025-03-11 15:37 - 000161670 _____ C:\Users\Dom\Documents\cc_20250311_153738.reg 2025-03-11 15:35 - 2025-03-11 15:35 - 000000000 ____D C:\ProgramData\Piriform 2025-03-11 15:30 - 2025-03-11 17:17 - 000003326 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2025-03-11 15:30 - 2025-03-11 17:17 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2025-03-11 15:30 - 2025-03-11 17:15 - 000000000 ____D C:\Program Files\CCleaner 2025-03-11 15:30 - 2025-03-11 15:30 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2025-03-11 15:30 - 2025-03-11 15:30 - 000002894 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - Kasia 2025-03-11 15:30 - 2025-03-11 15:30 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2025-03-11 15:30 - 2025-03-11 15:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2025-03-06 10:04 - 2025-03-06 10:04 - 000868725 _____ C:\Users\Dom\Documents\Katarzyna Janacz CV 2025.pdf 2025-02-24 21:56 - 2025-02-24 23:07 - 000000000 ____D C:\Users\Dom\Downloads\1wjo 2025-02-16 23:20 - 2025-02-16 23:20 - 000000000 ____D C:\Users\Dom\Documents\PITY 2025-02-16 22:53 - 2025-02-16 22:53 - 006883040 _____ (e-file sp. z o.o. sp. k. ) C:\Users\Dom\Downloads\setup_efileID.exe 2025-02-16 22:53 - 2025-02-16 22:53 - 000000000 ____D C:\Users\Dom\Documents\efile 2025-02-16 22:53 - 2025-02-16 22:53 - 000000000 ____D C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-file [ID] 2025-02-16 12:16 - 2025-03-02 14:52 - 000000000 ____D C:\Users\Dom\AppData\Local\CrashDumps 2025-02-11 09:59 - 2025-02-11 09:59 - 000003114 _____ C:\Windows\system32\Tasks\ExternalUi 2025-02-11 09:58 - 2025-02-11 09:58 - 000000000 ____D C:\ProgramData\FNPLicensingService 2025-02-11 09:50 - 2025-02-11 09:50 - 000000000 ____D C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Construction Simulator 2 2025-02-11 09:43 - 2025-02-11 09:43 - 000003542 _____ C:\Windows\system32\Tasks\Kasia 2025-02-11 09:37 - 2025-02-11 09:37 - 000000000 ____D C:\Users\Dom\AppData\Roaming\.mono 2025-02-11 09:37 - 2025-02-11 09:37 - 000000000 ____D C:\Users\Dom\AppData\LocalLow\weltenbauer_ Software Entwicklung GmbH 2025-02-11 09:37 - 2025-02-11 09:37 - 000000000 ____D C:\Users\Dom\AppData\LocalLow\weltenbauer. Software Entwicklung GmbH ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-03-11 17:30 - 2023-06-18 09:57 - 000000000 ____D C:\Windows\SystemTemp 2025-03-11 17:25 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-03-11 17:23 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2025-03-11 17:22 - 2023-06-18 08:34 - 001768708 _____ C:\Windows\system32\PerfStringBackup.INI 2025-03-11 17:22 - 2019-12-07 16:09 - 000787238 _____ C:\Windows\system32\perfh015.dat 2025-03-11 17:22 - 2019-12-07 16:09 - 000153082 _____ C:\Windows\system32\perfc015.dat 2025-03-11 17:16 - 2023-06-18 09:13 - 000000000 ____D C:\Users\Dom\AppData\Local\Google 2025-03-11 17:15 - 2023-06-18 08:45 - 000000000 ____D C:\Intel 2025-03-11 17:15 - 2020-08-04 04:45 - 000008192 ___SH C:\DumpStack.log.tmp 2025-03-11 17:15 - 2020-08-04 04:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-03-11 17:15 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState 2025-03-11 17:14 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI 2025-03-11 17:13 - 2024-05-03 16:59 - 000000000 ____D C:\Program Files\Core Temp 2025-03-11 17:13 - 2020-08-04 04:49 - 000000000 ____D C:\Users\Dom\AppData\Local\Packages 2025-03-11 17:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2025-03-11 16:51 - 2020-08-04 04:45 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-03-11 16:16 - 2024-04-29 14:26 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2025-03-11 16:16 - 2024-04-29 14:26 - 000002401 _____ C:\Users\Public\Desktop\Brave.lnk 2025-03-11 16:00 - 2020-08-04 04:45 - 000410720 _____ C:\Windows\system32\FNTCACHE.DAT 2025-03-11 16:00 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2025-03-11 16:00 - 2019-12-07 16:10 - 000000000 ____D C:\Windows\system32\OpenSSH 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2025-03-11 16:00 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2025-03-11 16:00 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2025-03-11 16:00 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2025-03-11 15:58 - 2020-08-04 04:48 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2025-03-11 15:35 - 2023-06-18 10:04 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-03-11 15:25 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-03-11 15:22 - 2023-06-18 08:56 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-03-09 14:32 - 2020-08-04 04:45 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-03-09 14:24 - 2020-08-04 04:45 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-03-09 14:24 - 2020-08-04 04:45 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-03-06 09:19 - 2025-01-24 09:55 - 000003560 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-4202650918-750063722-353576276-1001 2025-03-06 09:19 - 2023-06-18 08:33 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4202650918-750063722-353576276-1001 2025-03-06 09:19 - 2023-06-18 08:33 - 000003366 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4202650918-750063722-353576276-1001 2025-03-06 09:19 - 2020-08-04 04:49 - 000002417 _____ C:\Users\Dom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-03-06 09:19 - 2020-08-04 04:45 - 000000000 ____D C:\Windows\system32\Drivers\wd 2025-02-24 23:16 - 2024-07-09 19:03 - 000000000 ____D C:\Windows\system32\compatrel 2025-02-24 23:16 - 2024-04-29 14:13 - 000000000 ____D C:\Windows\InboxApps 2025-02-24 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2025-02-24 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2025-02-24 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2025-02-18 08:06 - 2020-08-04 04:49 - 000000000 ___SD C:\Users\Dom\AppData\Roaming\Microsoft\Credentials 2025-02-17 18:37 - 2023-06-18 09:46 - 000000000 ____D C:\Windows\system32\MRT 2025-02-17 18:35 - 2023-06-18 09:45 - 209365816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2025-02-11 09:49 - 2024-07-19 22:12 - 000000000 ____D C:\Games ==================== Pliki w katalogu głównym wybranych folderów ======== 2024-04-29 16:09 - 2025-01-27 20:26 - 000001496 _____ () C:\Users\Dom\AppData\Local\Adobe Zapisz dla Internetu 13.0 Prefs ==================== SigCheckExt ========================= 2024-12-19 18:21 - 2008-05-08 00:29 - 000122880 _____ (CrypKey (Canada) Ltd.) C:\Windows\system32\Crypserv.exe 2024-12-19 18:21 - 1999-06-18 22:49 - 000165888 _____ (Kenonic Controls) C:\Windows\Ckconfig.exe 2024-12-19 18:21 - 1995-07-04 19:33 - 000011776 _____ C:\Windows\Ckrfresh.exe 2024-12-19 18:21 - 1996-05-03 16:36 - 000018432 _____ C:\Windows\Setup_ck.dll 2024-12-19 18:21 - 1996-05-03 18:21 - 000027648 ____R C:\Windows\Setup_ck.exe 2024-05-04 10:06 - 1998-05-31 15:02 - 000153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autmgr32.exe 2024-05-04 10:06 - 1998-05-31 15:02 - 000140288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\autprx32.dll 2024-05-04 10:06 - 1998-06-17 09:11 - 000042496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clireg32.exe 2024-05-04 10:06 - 1998-07-13 09:08 - 000089600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CMCTLfr.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CMDLGfr.DLL 2024-12-19 18:29 - 2006-09-22 00:33 - 000069632 _____ (CrypKey (Canada) Ltd.) C:\Windows\SysWOW64\Crypserv.exe 2024-05-04 10:06 - 1998-07-13 09:08 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DATGDfr.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FLXGDfr.DLL 2024-11-07 18:57 - 2001-05-03 11:39 - 000057344 _____ (RENAULT) C:\Windows\SysWOW64\IOTBD32V3.dll 2024-05-04 10:06 - 1998-07-13 09:08 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MCIfr.DLL 2024-05-04 10:06 - 2000-05-11 12:06 - 000077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSBIND.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCC2fr.DLL 2024-05-04 10:06 - 2000-03-14 10:04 - 000049152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCDRUN.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCMCfr.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSCOMfr.DLL 2024-05-04 10:06 - 2000-03-14 10:04 - 000299008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDBRPTR.DLL 2024-05-04 10:06 - 2000-03-14 03:10 - 000136192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSDERUN.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPRPfr.DLL 2024-05-04 10:06 - 2000-05-11 12:06 - 000397312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrdo20.dll 2024-05-04 10:06 - 2000-03-14 10:04 - 000118784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTDFMT.DLL 2024-05-04 10:06 - 1998-06-18 10:58 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSSTKPRP.DLL 2024-05-04 10:06 - 2000-03-14 10:04 - 000299008 _____ (Microsoft) C:\Windows\SysWOW64\MSWCRUN.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000034304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RCHTXfr.DLL 2024-05-04 10:06 - 2000-03-14 10:04 - 000151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdocurs.dll 2024-05-04 10:06 - 1998-07-13 09:08 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\STDFTfr.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000119568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VB6fr.DLL 2024-05-04 10:06 - 1998-07-13 09:08 - 000015872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WINSKfr.DLL 2025-03-11 17:18 - 2025-03-11 17:19 - 002404352 _____ (Farbar) C:\Users\Dom\Downloads\FRST64.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {8293dcc8-d60c-11ea-becc-ba53b87a7292} {8293dccb-d60c-11ea-becc-ba53b87a7292} {8293dccc-d60c-11ea-becc-ba53b87a7292} {1022020a-18d2-11ea-8f0c-806e6f6e6963} {1022020b-18d2-11ea-8f0c-806e6f6e6963} {1022020c-18d2-11ea-8f0c-806e6f6e6963} timeout 0 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {8293dcce-d60c-11ea-becc-ba53b87a7292} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmware Application (101fffff) ------------------------------- identifier {1022020a-18d2-11ea-8f0c-806e6f6e6963} description USB Storage Device Firmware Application (101fffff) ------------------------------- identifier {1022020b-18d2-11ea-8f0c-806e6f6e6963} device partition=\Device\HarddiskVolume1 path EFI\Microsoft\Boot\bootmgfw.efi description UEFI: INTEL SSDPEKKF512G8L, Partition 1 Firmware Application (101fffff) ------------------------------- identifier {1022020c-18d2-11ea-8f0c-806e6f6e6963} description Secure Digital(SD) Card Firmware Application (101fffff) ------------------------------- identifier {8293dcc8-d60c-11ea-becc-ba53b87a7292} description Diskette Drive Firmware Application (101fffff) ------------------------------- identifier {8293dccb-d60c-11ea-becc-ba53b87a7292} description CD/DVD/CD-RW Drive Firmware Application (101fffff) ------------------------------- identifier {8293dccc-d60c-11ea-becc-ba53b87a7292} description Onboard NIC Windows Boot Loader ------------------- identifier {current} device partition=C: path \Windows\system32\winload.efi description Windows 10 locale pl-PL inherit {bootloadersettings} recoverysequence {8293dcd0-d60c-11ea-becc-ba53b87a7292} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \Windows resumeobject {8293dcce-d60c-11ea-becc-ba53b87a7292} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {8293dcd0-d60c-11ea-becc-ba53b87a7292} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{8293dcd1-d60c-11ea-becc-ba53b87a7292} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-pl inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{8293dcd1-d60c-11ea-becc-ba53b87a7292} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {8293dcce-d60c-11ea-becc-ba53b87a7292} device partition=C: path \Windows\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {8293dcd0-d60c-11ea-becc-ba53b87a7292} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostyka pamięci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Local RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {8293dcd1-d60c-11ea-becc-ba53b87a7292} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Koniec FRST.txt ========================