Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 27-04-2025 Uruchomiony przez peter (administrator) PIOTR (ASUS System Product Name) (29-04-2025 17:51:58) Uruchomiony z J:\Bezpieczeństwo\FRST64.exe Załadowane profile: peter Platforma: Microsoft Windows 11 Pro Wersja 24H2 26100.3775 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe ->) (Corsair Memory, Inc. -> ) C:\Program Files\Corsair\Corsair iCUE5 Software\crashpad_handler.exe <2> (C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\QmlRenderer.exe (C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe (explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) I:\totalcmd\TOTALCMD64.EXE (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (TeamSpeak Systems GmbH -> TeamSpeak Systems GmbH) I:\Teamspeak3\ts3client_win64.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <18> (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe (services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_ee4ab813cb541e9a\logi_lamparray_service.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.060.0330.0003\FileSyncHelper.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8ae620a6c455be0a\Display.NvContainer\NVDisplay.Container.exe <2> (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.25032.52.0_x64__cw5n1h2txyewy\CrossDeviceService.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.060.0330.0003\FileCoAuth.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.296.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.8401.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [KeePass 2 PreLoad] => I:\KeePass Password Safe 2\KeePass.exe [3305824 2025-03-04] (Open Source Developer, Dominik Reichl -> Dominik Reichl) HKLM\...\Run: [Corsair iCUE5 Software] => C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE Launcher.exe [189824 2025-04-27] (Corsair Memory, Inc. -> Corsair Memory, Inc.) HKU\S-1-5-21-3188886365-3688785521-2679698863-1001\...\Run: [MicrosoftEdgeAutoLaunch_78A92E0D73E8D43924D5E45291DCAF15] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4419624 2025-04-24] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3188886365-3688785521-2679698863-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5013800 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3188886365-3688785521-2679698863-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [22809480 2025-04-27] (Logitech Inc -> Logitech, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\135.0.7049.115\Installer\chrmstp.exe [2025-04-27] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {4D8DB92E-B52C-4E63-BC9F-64057CF897BB} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem137.0.7129.0{333D129A-BABB-47A1-94F7-127DF3275BEC} => C:\Program Files (x86)\Google\GoogleUpdater\137.0.7129.0\updater.exe [6152800 2025-04-17] (Google LLC -> Google LLC) Task: {68969F9E-294A-48C3-9382-6C1B6862817B} - System32\Tasks\Microsoft\Office\Office Apps Prewarm => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315600 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {F1E30A01-B51B-43CA-A49A-D8033E84A025} - System32\Tasks\Microsoft\Office\Office Apps Prewarm Recurring => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315600 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {7A47B20A-DB24-4A51-9451-EE0E82B4DCFD} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29107976 2025-04-17] (Microsoft Corporation -> Microsoft Corporation) Task: {706D0FAC-2799-4A6E-A8DB-1B4C5D60D3E3} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [68360 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {594F0452-8B9E-4BDE-9C7A-3069EC7F3A8E} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29107976 2025-04-17] (Microsoft Corporation -> Microsoft Corporation) Task: {428476B0-A9E9-4C20-93AC-7533B8A0BDBF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315600 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {F6367203-23D5-4A71-82E3-08593F60D767} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315600 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {BD86EAEC-22BC-4B15-B7CE-B9B6E5D70770} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [204400 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) Task: {4B32C833-F02E-4E7D-8DB7-56870A7E66DF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {224CC004-FF91-44FF-95D6-EA456A8D7A6F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {07871E4A-7CFF-4A83-AAF6-6F9CB677007E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {F8FF5B27-C922-4B28-AE51-E8E6099E55D9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E0E71BFF-B1B5-4906-AA60-1E6C00F6F2D2} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-14] (Mozilla Corporation -> Mozilla Foundation) Task: {E1D48F80-00A6-4A50-B124-72CC5C4FE8DA} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3275808 2025-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BCCF97C7-EA47-4847-BC63-9DEC1CB980DC} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223824 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {6CD96537-F9DB-4A42-9F36-2BF391E787DB} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3188886365-3688785521-2679698863-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223824 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Task: {FB1FD53B-586A-4FF7-BA45-53154625B629} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3188886365-3688785521-2679698863-1001 => C:\Program Files\Microsoft OneDrive\25.060.0330.0003\OneDriveLauncher.exe [676688 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 194.168.4.100 194.168.8.100 Tcpip\..\Interfaces\{330026f1-f7e5-4c41-a03d-7827be6a4560}: [DhcpNameServer] 194.168.4.100 194.168.8.100 Edge: ======= Edge Profile: C:\Users\peter\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-29] Edge Extension: (Dokumenty Google offline) - C:\Users\peter\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-27] Edge Extension: (Edge relevant text changes) - C:\Users\peter\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-04-27] FireFox: ======== FF DefaultProfile: sb4oiz02.default FF ProfilePath: C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\sb4oiz02.default [2025-04-27] FF ProfilePath: C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release [2025-04-29] FF Homepage: Mozilla\Firefox\Profiles\cwstt97m.default-release -> www.tgs-clan.pl FF Extension: (Firefox Color) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\FirefoxColor@mozilla.com.xpi [2025-04-27] FF Extension: (Privacy Badger) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2025-04-27] FF Extension: (Language: Polski (Polish)) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\langpack-pl@firefox.mozilla.org.xpi [2025-04-27] FF Extension: (Alternate Player for Twitch.tv) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\twitch5@coolcmd.xpi [2025-04-27] FF Extension: (uBlock Origin) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-04-27] FF Extension: (10 lat TGS logo) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{18053499-7d55-4598-851b-254b955dc6d7}.xpi [2025-04-27] FF Extension: (Startpage – prywatna wyszukiwarka) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2025-04-27] FF Extension: (Behemoth Albums 3) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{21726e29-5848-4277-82e5-5db8f4a17b46}.xpi [2025-04-27] FF Extension: (TGS-Clan v2) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{33f6fd91-87ef-42d1-a224-4d0c524deab6}.xpi [2025-04-27] FF Extension: (10 lat TGS) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{414f4df6-00ca-4a78-886f-5d7ead2a3db5}.xpi [2025-04-27] FF Extension: (EFT - Escape from Tarkov) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{4ed05d54-b141-49dd-ba7c-6b74bbbe3f58}.xpi [2025-04-27] FF Extension: (Battlefield 4) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{5cff30ca-84de-4ef8-8a68-f01ab4ad7176}.xpi [2025-04-27] FF Extension: (Mouse Gesture (crxMouse)) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{7e6d3c2b-70e8-4a26-9a0f-cbdaddd395be}.xpi [2025-04-27] FF Extension: (AlienWare Blue Killz) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{9dc0b5aa-3303-43a2-8f9f-3d9a2923fe69}.xpi [2025-04-27] FF Extension: (Szukaj na YouTube) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{be8f6f90-2079-4e84-ac5c-13e6af2b48d1}.xpi [2025-04-27] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2025-04-27] FF Extension: (Battlefield 4 _V3) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{dc0b09bd-7494-43d9-a865-61eff633529a}.xpi [2025-04-27] FF Extension: (Foxy Gestures) - C:\Users\peter\AppData\Roaming\Mozilla\Firefox\Profiles\cwstt97m.default-release\Extensions\{e839c3f9-298e-4cd0-99e0-464431cb7c34}.xpi [2025-04-27] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-04-28] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-04-28] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\peter\AppData\Local\Google\Chrome\User Data\Default [2025-04-27] CHR Extension: (Google Docs Offline) - C:\Users\peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-27] CHR Extension: (Chrome Web Store Payments) - C:\Users\peter\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-04-27] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [1121304 2025-04-29] (ASUSTeK Computer Inc. -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [18663720 2024-06-17] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13863152 2025-04-17] (Microsoft Corporation -> Microsoft Corporation) R3 CorsairCpuIdService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe [304520 2025-04-27] (Corsair Memory, Inc. -> Corsair Memory, Inc.) S3 CorsairDeviceListerService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairDeviceListerService.exe [176512 2025-04-27] (Corsair Memory, Inc. -> ) R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.060.0330.0003\FileSyncHelper.exe [3586392 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) R3 iCUEUpdateService; C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe [532872 2025-04-27] (Corsair Memory, Inc. -> Corsair Memory, Inc.) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [16172424 2025-04-27] (Logitech Inc -> Logitech, Inc.) R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_ee4ab813cb541e9a\logi_lamparray_service.exe [11280984 2025-04-27] (Logitech Inc -> Logitech, Inc.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe [2009608 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_8ae620a6c455be0a\Display.NvContainer\NVDisplay.Container.exe [1275560 2025-04-14] (NVIDIA Corporation -> NVIDIA Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.060.0330.0003\OneDriveUpdaterService.exe [3837256 2025-04-28] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559320 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe [4538400 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe [278320 2025-04-27] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aqnic650; C:\WINDOWS\System32\drivers\aqnic650.sys [207688 2020-09-16] (Aquantia Corp. -> Aquantia Corporation) R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2025-04-27] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2025-04-27] (Microsoft Windows Hardware Compatibility Publisher -> Corsair) R3 cpuz159; C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [44680 2025-04-29] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== UWAGA S3 e2f68; C:\WINDOWS\System32\drivers\e2f68.sys [507904 2024-03-28] (Microsoft Windows -> Intel Corporation) R3 e2fexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e2f.inf_amd64_2d5cb0c750512550\e2f.sys [536168 2022-07-18] (Intel Corporation -> Intel Corporation) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [331168 2025-04-27] (Microsoft Windows -> Microsoft Corporation) R3 logi_audio_surround; C:\WINDOWS\System32\DriverStore\FileRepository\logi_audio.inf_amd64_affafe6e263c4f51\logi_audio_surround.sys [44112 2025-04-27] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44992 2025-04-27] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32200 2025-04-27] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73152 2025-04-27] (Logitech Inc -> Logitech) R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_ee4ab813cb541e9a\logi_lamparray.sys [89688 2025-04-27] (Logitech Inc -> Logitech, Inc.) S3 ThermalFilter; C:\WINDOWS\System32\DriverStore\FileRepository\c_thermal.inf_amd64_732a53ed1662b707\ThermalFilter.sys [75376 2025-04-27] (Microsoft Windows Hardware Abstraction Layer Publisher -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20016 2025-04-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [605576 2025-04-27] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-27] (Microsoft Windows -> Microsoft Corporation) S3 wini3ctarget; C:\WINDOWS\System32\DriverStore\FileRepository\wini3ctarget.inf_amd64_bdb09ebda2834009\wini3ctarget.sys [75168 2025-04-27] (Microsoft Windows -> Microsoft Corporation) S3 MpKsl6cc41e4f; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{EDFA51BA-0BBD-4845-88AC-DFA43D90CA47}\MpKslDrv.sys [X] S0 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-04-29 17:50 - 2025-04-29 17:52 - 000000000 ____D C:\FRST 2025-04-29 17:38 - 2025-04-29 17:38 - 000000000 ____D C:\Users\peter\AppData\Local\DBG 2025-04-29 17:14 - 2025-04-29 17:14 - 002879500 _____ C:\WINDOWS\Minidump\042925-10375-01.dmp 2025-04-29 17:04 - 2025-04-29 17:04 - 004631716 _____ C:\WINDOWS\Minidump\042925-9953-01.dmp 2025-04-28 23:04 - 2025-04-28 23:04 - 000000000 ____D C:\WINDOWS\system32\%userprofile% 2025-04-28 23:04 - 2025-04-28 23:04 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2025-04-28 23:03 - 2025-04-29 17:14 - 1689474252 _____ C:\WINDOWS\MEMORY.DMP 2025-04-28 23:03 - 2025-04-28 23:03 - 004999084 _____ C:\WINDOWS\Minidump\042825-10187-01.dmp 2025-04-28 20:04 - 2025-04-28 20:04 - 000000000 ____D C:\Users\peter\AppData\Local\PeerDistRepub 2025-04-28 06:58 - 2025-04-28 17:30 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\UProof 2025-04-28 06:58 - 2025-04-28 06:58 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Proof 2025-04-28 06:57 - 2025-04-28 06:57 - 000000000 ____D C:\Users\peter\Documents\Niestandardowe szablony pakietu Office 2025-04-28 06:55 - 2025-04-28 06:55 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Excel 2025-04-28 06:51 - 2025-04-28 23:04 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2025-04-28 06:51 - 2025-04-28 23:04 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-04-28 06:51 - 2025-04-28 23:04 - 000000000 ___RD C:\Users\Default\OneDrive 2025-04-28 06:51 - 2025-04-28 21:16 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Office 2025-04-28 06:51 - 2025-04-28 17:34 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Word 2025-04-28 06:51 - 2025-04-28 06:51 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\AddIns 2025-04-28 06:50 - 2025-04-28 06:50 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk 2025-04-28 06:50 - 2025-04-28 06:50 - 000002471 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2025-04-28 06:50 - 2025-04-28 06:50 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2025-04-28 06:50 - 2025-04-28 06:50 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2025-04-28 06:50 - 2025-04-28 06:50 - 000002405 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2025-04-28 06:50 - 2025-04-28 06:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2025-04-28 06:50 - 2025-04-28 06:50 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2025-04-28 06:48 - 2025-04-28 06:50 - 000000000 ____D C:\Program Files\Microsoft Office 2025-04-28 06:48 - 2025-04-28 06:48 - 000000000 ____D C:\Program Files\Microsoft Office 15 2025-04-28 06:24 - 2025-04-28 06:24 - 000000000 ____D C:\WINDOWS\system32\AccountHealthAssets 2025-04-28 06:24 - 2025-04-28 06:24 - 000000000 ____D C:\inetpub 2025-04-28 06:21 - 2025-04-28 06:21 - 000000000 ____D C:\Users\peter\AppData\Local\NVIDIA 2025-04-28 06:17 - 2025-04-14 08:16 - 002072456 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2025-04-28 06:17 - 2025-04-14 08:16 - 002072456 _____ C:\WINDOWS\system32\vulkaninfo.exe 2025-04-28 06:17 - 2025-04-14 08:16 - 001614216 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2025-04-28 06:17 - 2025-04-14 08:16 - 001614216 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2025-04-28 06:17 - 2025-04-14 08:16 - 001576840 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2025-04-28 06:17 - 2025-04-14 08:16 - 001576840 _____ C:\WINDOWS\system32\vulkan-1.dll 2025-04-28 06:17 - 2025-04-14 08:16 - 001389960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2025-04-28 06:17 - 2025-04-14 08:16 - 001389960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2025-04-28 06:17 - 2025-04-14 08:16 - 000478384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2025-04-28 06:17 - 2025-04-14 08:16 - 000374960 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2025-04-28 06:17 - 2025-04-14 08:11 - 001259648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2025-04-28 06:17 - 2025-04-14 08:11 - 000674992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll 2025-04-28 06:17 - 2025-04-14 08:11 - 000509104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 026001536 _____ C:\WINDOWS\system32\nvidia-pcc.exe 2025-04-28 06:17 - 2025-04-14 08:10 - 002313872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 001713816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 001569448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 001220784 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 001053312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2025-04-28 06:17 - 2025-04-14 08:10 - 000942224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2025-04-28 06:17 - 2025-04-14 08:10 - 000810128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2025-04-28 06:17 - 2025-04-14 08:09 - 023033472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2025-04-28 06:17 - 2025-04-14 08:09 - 000467064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2025-04-28 06:17 - 2025-04-14 08:08 - 020517016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2025-04-28 06:17 - 2025-04-14 08:08 - 007323280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2025-04-28 06:17 - 2025-04-14 08:08 - 005913744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2025-04-28 06:17 - 2025-04-14 08:08 - 005239936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2025-04-28 06:17 - 2025-04-14 08:08 - 003993752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2025-04-28 06:17 - 2025-04-14 08:08 - 000853144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2025-04-28 06:17 - 2025-04-14 08:06 - 005601032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2025-04-28 06:17 - 2025-04-14 08:06 - 004902688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2025-04-28 06:17 - 2025-04-12 14:25 - 000142952 _____ C:\WINDOWS\system32\nvinfo.pb 2025-04-28 06:13 - 2025-04-28 06:21 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2025-04-28 06:13 - 2025-04-28 06:16 - 000000000 ____D C:\Users\peter\AppData\Local\NVIDIA Corporation 2025-04-28 06:13 - 2025-04-28 06:13 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2025-04-28 06:13 - 2025-04-28 06:13 - 000000000 ____D C:\Users\peter\ansel 2025-04-28 06:13 - 2025-04-28 06:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2025-04-28 06:13 - 2025-04-07 18:14 - 003114016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2025-04-28 06:13 - 2025-04-07 18:14 - 002403360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2025-04-28 06:13 - 2025-04-07 18:14 - 000271392 _____ C:\WINDOWS\system32\FvSDK_x64.dll 2025-04-28 06:13 - 2025-04-07 18:14 - 000245792 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll 2025-04-28 06:13 - 2025-04-07 17:52 - 000180760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2025-04-28 06:13 - 2025-04-07 17:52 - 000159768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2025-04-28 06:13 - 2025-04-07 17:52 - 000059928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2025-04-28 06:09 - 2025-04-28 06:09 - 000000000 ____D C:\Users\peter\AppData\Local\Backup 2025-04-28 00:12 - 2025-04-28 00:12 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2025-04-28 00:12 - 2025-04-28 00:12 - 000000000 ____D C:\Users\peter\AppData\Roaming\IrfanView 2025-04-27 21:27 - 2025-04-27 21:27 - 000070484 _____ C:\WINDOWS\SysWOW64\ctac.json 2025-04-27 21:27 - 2025-04-27 21:27 - 000070484 _____ C:\WINDOWS\system32\ctac.json 2025-04-27 21:27 - 2025-04-27 21:27 - 000029042 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-04-27 21:27 - 2025-04-27 21:27 - 000029042 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-04-27 21:27 - 2025-04-27 21:27 - 000000998 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json 2025-04-27 17:33 - 2025-04-27 17:33 - 000000000 ____D C:\Users\Public\Documents\Corsair 2025-04-27 17:33 - 2025-04-27 17:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Corsair 2025-04-27 17:32 - 2025-04-27 17:33 - 000000000 ____D C:\Users\peter\AppData\Roaming\Corsair 2025-04-27 17:32 - 2025-04-27 17:33 - 000000000 ____D C:\Program Files\Corsair 2025-04-27 17:31 - 2025-04-27 17:37 - 000000000 ____D C:\Users\peter\AppData\Local\Corsair 2025-04-27 17:31 - 2025-04-27 17:33 - 000000000 ____D C:\ProgramData\Corsair 2025-04-27 17:27 - 2025-04-29 17:22 - 000000000 ____D C:\Users\peter\AppData\Roaming\lghub 2025-04-27 17:27 - 2025-04-29 17:22 - 000000000 ____D C:\Users\peter\AppData\Roaming\G HUB 2025-04-27 17:27 - 2025-04-29 16:41 - 000000000 ____D C:\Users\peter\AppData\Local\LGHUB 2025-04-27 17:27 - 2025-04-27 17:27 - 000000000 ____D C:\ProgramData\Logishrd 2025-04-27 17:27 - 2025-04-27 17:27 - 000000000 ____D C:\Program Files\Logitech 2025-04-27 17:27 - 2025-04-27 17:27 - 000000000 ____D C:\Program Files\Logi 2025-04-27 17:26 - 2025-04-27 17:27 - 000000000 ____D C:\ProgramData\LGHUB 2025-04-27 17:26 - 2025-04-27 17:26 - 000073152 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_xlcore.sys 2025-04-27 17:26 - 2025-04-27 17:26 - 000044992 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_bus_enum.sys 2025-04-27 17:26 - 2025-04-27 17:26 - 000032200 _____ (Logitech) C:\WINDOWS\system32\Drivers\logi_joy_vir_hid.sys 2025-04-27 17:26 - 2025-04-27 17:26 - 000000932 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2025-04-27 17:26 - 2025-04-27 17:26 - 000000000 ____D C:\Users\peter\AppData\Local\Sentry 2025-04-27 17:26 - 2025-04-27 17:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2025-04-27 17:26 - 2025-04-27 17:26 - 000000000 ____D C:\Program Files\LGHUB 2025-04-27 17:16 - 2025-04-27 17:16 - 000000000 ____D C:\Users\peter\AppData\Roaming\NVIDIA 2025-04-27 17:02 - 2025-04-29 17:14 - 000000000 ____D C:\ProgramData\NVIDIA 2025-04-27 17:02 - 2025-04-28 06:21 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2025-04-27 17:02 - 2025-04-28 06:21 - 000000000 ____D C:\Users\peter\AppData\LocalLow\NVIDIA 2025-04-27 17:02 - 2024-11-19 11:26 - 000131656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2025-04-27 17:01 - 2025-04-28 06:13 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2025-04-27 16:59 - 2025-04-27 16:59 - 000745338 _____ C:\WINDOWS\system32\perfh015.dat 2025-04-27 16:59 - 2025-04-27 16:59 - 000152038 _____ C:\WINDOWS\system32\perfc015.dat 2025-04-27 16:57 - 2025-04-29 17:21 - 000000000 ____D C:\Users\peter\AppData\Local\D3DSCache 2025-04-27 16:45 - 2025-04-27 16:54 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2025-04-27 16:44 - 2025-04-27 16:44 - 000000000 ____D C:\WINDOWS\pss 2025-04-27 16:10 - 2025-04-27 16:10 - 000000000 ____D C:\Users\peter\AppData\LocalLow\Battlestate Games 2025-04-27 16:10 - 2025-04-27 16:10 - 000000000 ____D C:\Users\peter\AppData\Local\BattlEye 2025-04-27 15:12 - 2025-04-28 23:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-04-27 14:52 - 2025-04-29 17:14 - 000000000 ____D C:\WINDOWS\Minidump 2025-04-27 14:38 - 2025-04-29 17:48 - 000000000 ____D C:\Users\peter\AppData\Roaming\TS3Client 2025-04-27 14:38 - 2025-04-27 14:38 - 000000612 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk 2025-04-27 14:38 - 2025-04-27 14:38 - 000000000 ____D C:\Users\peter\AppData\Local\TeamSpeak 3 2025-04-27 14:38 - 2025-04-27 14:38 - 000000000 ____D C:\Users\peter\AppData\Local\cache 2025-04-27 14:24 - 2025-04-27 14:24 - 000000000 ____D C:\Users\peter\AppData\Roaming\thunderbird 2025-04-27 14:24 - 2025-04-27 14:24 - 000000000 ____D C:\Users\peter\AppData\Local\thunderbird 2025-04-27 14:23 - 2025-04-27 14:23 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2025-04-27 14:23 - 2025-04-27 14:23 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2025-04-27 14:03 - 2025-04-29 17:16 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-04-27 14:03 - 2025-04-27 14:52 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-04-27 14:03 - 2025-04-27 14:03 - 000002038 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox Private Browsing.lnk 2025-04-27 14:03 - 2025-04-27 14:03 - 000001065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-04-27 14:03 - 2025-04-27 14:03 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2025-04-27 14:03 - 2025-04-27 14:03 - 000000000 ____D C:\Users\peter\AppData\Roaming\Mozilla 2025-04-27 14:03 - 2025-04-27 14:03 - 000000000 ____D C:\Users\peter\AppData\Local\Mozilla 2025-04-27 14:03 - 2025-04-27 14:03 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-04-27 14:00 - 2025-04-27 14:00 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-04-27 14:00 - 2025-04-27 14:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem 2025-04-27 14:00 - 2025-04-27 14:00 - 000000000 ____D C:\Users\peter\AppData\Local\Google 2025-04-27 14:00 - 2025-04-27 14:00 - 000000000 ____D C:\Program Files\Google 2025-04-27 14:00 - 2025-04-27 14:00 - 000000000 ____D C:\Program Files (x86)\Google 2025-04-27 13:56 - 2025-04-27 13:56 - 000000000 ____D C:\Users\peter\AppData\Local\GHISLER 2025-04-27 13:55 - 2025-04-27 13:55 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2025-04-27 13:55 - 2025-04-27 13:55 - 000000000 ____D C:\Users\peter\AppData\Roaming\GHISLER 2025-04-27 13:28 - 2025-04-27 16:10 - 000000000 ____D C:\Users\peter\AppData\Roaming\Battlestate Games 2025-04-27 13:28 - 2025-04-27 13:28 - 000000000 ____D C:\Users\peter\AppData\Local\CEF 2025-04-27 13:28 - 2025-04-27 13:28 - 000000000 ____D C:\Users\peter\AppData\Local\Battlestate Games 2025-04-27 13:28 - 2025-04-27 13:28 - 000000000 ____D C:\ProgramData\Battlestate Games 2025-04-27 13:25 - 2024-06-05 22:14 - 005229128 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw10.sys 2025-04-27 13:25 - 2024-06-05 22:13 - 001496136 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter10.dll 2025-04-27 13:24 - 2025-04-27 13:24 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-04-27 13:23 - 2025-04-27 13:23 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2025-04-27 13:23 - 2025-04-27 12:27 - 000000000 ___DC C:\WINDOWS\Panther 2025-04-27 13:23 - 2025-04-27 12:27 - 000000000 ____D C:\Windows.old 2025-04-27 13:19 - 2025-04-27 13:19 - 000000000 ____D C:\Users\peter\AppData\Local\Comms 2025-04-27 13:04 - 2025-04-29 17:47 - 000000000 ____D C:\ProgramData\Package Cache 2025-04-27 13:04 - 2025-04-27 13:04 - 000000609 _____ C:\Users\Public\Desktop\Battlestate Games Launcher.lnk 2025-04-27 13:04 - 2025-04-27 13:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlestate Games 2025-04-27 13:00 - 2025-04-28 06:17 - 000000000 ____D C:\Users\peter\AppData\Roaming\KeePass 2025-04-27 12:58 - 2025-04-27 12:58 - 000000651 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass 2.lnk 2025-04-27 12:41 - 2025-04-27 12:41 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\MMC 2025-04-27 12:40 - 2025-04-29 17:15 - 000000000 ___RD C:\Users\peter\OneDrive 2025-04-27 12:40 - 2025-04-28 23:04 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3188886365-3688785521-2679698863-1001 2025-04-27 12:40 - 2025-04-28 23:04 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3188886365-3688785521-2679698863-1001 2025-04-27 12:40 - 2025-04-27 19:00 - 000000000 ____D C:\Users\peter\AppData\Local\PlaceholderTileLogoFolder 2025-04-27 12:40 - 2025-04-27 12:40 - 000000000 ___HD C:\OneDriveTemp 2025-04-27 12:40 - 2025-04-27 12:40 - 000000000 ____D C:\Users\peter\AppData\Local\Publishers 2025-04-27 12:40 - 2025-04-27 12:40 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2025-04-27 12:38 - 2025-04-28 17:29 - 000000000 ____D C:\Users\peter\AppData\Local\ConnectedDevicesPlatform 2025-04-27 12:38 - 2025-04-28 06:51 - 000000000 ____D C:\Users\peter\AppData\Local\Packages 2025-04-27 12:38 - 2025-04-27 12:40 - 000000000 __RHD C:\Users\Public\AccountPictures 2025-04-27 12:38 - 2025-04-27 12:38 - 000000000 ___SD C:\Users\peter\AppData\Roaming\Microsoft\Crypto 2025-04-27 12:38 - 2025-04-27 12:38 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Vault 2025-04-27 12:38 - 2025-04-27 12:38 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Network 2025-04-27 12:38 - 2025-04-27 12:38 - 000000000 ____D C:\Users\peter\AppData\Roaming\Adobe 2025-04-27 12:38 - 2025-04-27 12:38 - 000000000 ____D C:\Users\peter\AppData\Local\VirtualStore 2025-04-27 12:37 - 2025-04-27 12:37 - 000000000 ___SD C:\Users\peter\AppData\Roaming\Microsoft\SystemCertificates 2025-04-27 12:36 - 2025-04-29 17:04 - 000000000 ____D C:\Users\peter 2025-04-27 12:36 - 2025-04-27 17:27 - 000000000 ___SD C:\Users\peter\AppData\Roaming\Microsoft\Credentials 2025-04-27 12:36 - 2025-04-27 13:21 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Spelling 2025-04-27 12:36 - 2025-04-27 12:38 - 000000000 ____D C:\Users\peter\AppData\Roaming\Microsoft\Windows 2025-04-27 12:36 - 2025-04-27 12:36 - 000000020 ___SH C:\Users\peter\ntuser.ini 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Ustawienia lokalne 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Szablony 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Moje dokumenty 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Menu Start 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Documents\Moje wideo 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Documents\Moje obrazy 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Documents\Moja muzyka 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\Dane aplikacji 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\AppData\Local\Tymczasowe pliki internetowe 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\AppData\Local\Historia 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 _SHDL C:\Users\peter\AppData\Local\Dane aplikacji 2025-04-27 12:36 - 2025-04-27 12:36 - 000000000 ___SD C:\Users\peter\AppData\Roaming\Microsoft\Protect 2025-04-27 12:32 - 2025-04-28 06:13 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2025-04-27 12:32 - 2025-04-27 16:59 - 001679084 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-04-27 12:29 - 2025-04-27 12:38 - 000338272 _____ () C:\WINDOWS\system32\AsusDownLoadLicense.exe 2025-04-27 12:27 - 2025-04-28 06:51 - 000000000 ____D C:\ProgramData\Packages 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Szablony 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Moje dokumenty 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Menu Start 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\Dane aplikacji 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Szablony 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Pulpit 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Menu Start 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Dokumenty 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\ProgramData\Dane aplikacji 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 _SHDL C:\Documents and Settings 2025-04-27 12:26 - 2025-04-27 12:26 - 000000000 ____D C:\WINDOWS\CSC 2025-04-27 12:24 - 2025-04-29 17:14 - 001159944 _____ C:\WINDOWS\system32\wpbbin.exe 2025-04-27 12:24 - 2025-04-29 17:14 - 001121304 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe 2025-04-27 12:24 - 2025-04-29 17:14 - 000012288 ___SH C:\DumpStack.log.tmp 2025-04-27 12:24 - 2025-04-29 17:14 - 000002190 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 2025-04-27 12:24 - 2025-04-29 17:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-04-27 12:24 - 2025-04-29 17:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-04-27 12:24 - 2025-04-28 23:03 - 000342784 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-04-27 12:24 - 2025-04-27 15:12 - 003702981 _____ C:\WINDOWS\Minidump\042725-13968-01.dmp 2025-04-27 12:24 - 2025-04-27 15:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-04-27 12:24 - 2025-04-27 14:52 - 004863097 _____ C:\WINDOWS\Minidump\042725-9437-01.dmp 2025-04-27 12:24 - 2025-04-27 12:27 - 000003642 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{2A223CD0-8FA6-48F7-B9E3-5AF60C91E887} 2025-04-27 12:24 - 2025-04-27 12:27 - 000003518 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{7F7CF8F8-53D2-40B4-BAD6-13D7F8621D19} 2025-04-27 12:24 - 2025-04-27 12:27 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-04-27 12:24 - 2025-04-27 12:24 - 000000000 ____D C:\WINDOWS\system32\config\BFS 2025-04-27 12:24 - 2025-04-27 12:24 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2025-04-27 12:24 - 2025-04-27 12:24 - 000000000 ____D C:\ProgramData\ASUS ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-04-29 17:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-04-29 17:14 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-04-29 17:14 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-04-28 23:04 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps 2025-04-28 23:03 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF 2025-04-28 06:50 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2025-04-28 06:25 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\spool 2025-04-28 06:24 - 2024-04-01 18:28 - 000000000 ___SD C:\WINDOWS\system32\AppV 2025-04-28 06:24 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\InboxApps 2025-04-28 06:24 - 2024-04-01 18:28 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2025-04-28 06:24 - 2024-04-01 18:28 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2025-04-28 06:24 - 2024-04-01 18:28 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2025-04-28 06:24 - 2024-04-01 18:27 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2025-04-28 06:24 - 2024-04-01 18:27 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\UNP 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\IME 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate 2025-04-28 06:24 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System 2025-04-28 06:24 - 2024-04-01 09:21 - 000262144 _____ C:\WINDOWS\system32\config\BBI 2025-04-28 06:24 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing 2025-04-28 06:12 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2025-04-28 06:12 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2025-04-27 19:08 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat 2025-04-27 13:37 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth 2025-04-27 13:23 - 2024-04-01 09:26 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2025-04-27 13:18 - 2024-04-01 09:21 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2025-04-27 13:15 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2025-04-27 12:28 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2025-04-27 12:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2025-04-27 12:27 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState 2025-04-27 12:26 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Windows NT ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================