Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 07-06-2025 Uruchomiony przez scarf (administrator) DESKTOP-PKCT45J (21-06-2025 10:29:24) Uruchomiony z C:\Users\scarf\Desktop\FRST64.exe Załadowane profile: scarf Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.5965 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files (x86)\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files (x86)\Mozilla Firefox\crashhelper.exe (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzBTLEManager (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectManager (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectServer (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDeviceManager (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager (C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager (C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5> (C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe (C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe (explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <18> (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (services.exe ->) (Gen Digital Inc. -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (services.exe ->) (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_9d15b9aa9e1c885b\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe (services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe (services.exe ->) (SurfRight B.V. -> SurfRight B.V.) C:\Program Files\HitmanPro\hmpsched.exe (services.exe ->) (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2502.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (AutoIt Consulting Ltd -> AutoIt Team) C:\Users\scarf\AppData\Roaming\Microsoft\Windows\AutoIt3.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.BingWeather_4.54.63007.0_x64__8wekyb3d8bbwe\Microsoft.Msn.Weather.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2504.4.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2506.1001.20.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Start WingMan Profiler] => C:\Program Files\Logitech\Gaming Software\LWEMon.exe [190536 2010-06-14] (Logitech -> Logitech Inc.) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\...\Run: [DAEMON Tools Pro Agent] => D:\Użytki\DAEMON Tools Pro\DTAgent.exe [4807952 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\...\Run: [Napisy24Update] => C:\Program Files\Napisy24\Napisy24Update.exe [3990528 2018-02-02] (Napisy24.pl) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\...\Run: [MicrosoftEdgeAutoLaunch_E005DBA176258B619ABABC24C04238ED] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141120 2025-06-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44970408 2024-07-17] (Gen Digital Inc. -> Piriform Software Ltd) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3598984 2025-04-24] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\...\Run: [DAEMON Tools Pro Agent] => D:\Użytki\DAEMON Tools Pro\DTAgent.exe [4807952 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\...\Run: [Napisy24Update] => C:\Program Files\Napisy24\Napisy24Update.exe [3990528 2018-02-02] (Napisy24.pl) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\...\Run: [MicrosoftEdgeAutoLaunch_E005DBA176258B619ABABC24C04238ED] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141120 2025-06-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44970408 2024-07-17] (Gen Digital Inc. -> Piriform Software Ltd) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3598984 2025-04-24] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Run: [DAEMON Tools Pro Agent] => D:\Użytki\DAEMON Tools Pro\DTAgent.exe [4807952 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Run: [Napisy24Update] => C:\Program Files\Napisy24\Napisy24Update.exe [3990528 2018-02-02] (Napisy24.pl) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Run: [MicrosoftEdgeAutoLaunch_E005DBA176258B619ABABC24C04238ED] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4141120 2025-06-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [44970408 2024-07-17] (Gen Digital Inc. -> Piriform Software Ltd) [Brak podpisu cyfrowego] HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3598984 2025-04-24] (Razer USA Ltd. -> Razer Inc.) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3598984 2025-04-24] (Razer USA Ltd. -> Razer Inc.) HKLM\...\Windows x64\Print Processors\hpzppw71: C:\Windows\System32\spool\prtprocs\x64\hpzppw71.dll [230400 2009-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\LIDIL hpzllw71: C:\Windows\system32\hpzllw71.dll [53248 2009-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\137.0.7151.120\Installer\chrmstp.exe [2025-06-21] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {987FE3FE-848B-48A2-8B11-AE89CEB6EEBD} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_Plugin.exe [1504312 2021-01-09] (Adobe Inc. -> Adobe) Task: {CE2B39DD-C185-4CDF-B722-F83BE20D3501} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-01-09] (Adobe Inc. -> Adobe) Task: {8D7F32EE-FF8F-4B96-BF10-015378583B40} - System32\Tasks\CCleanerSkipUAC - scarf => C:\Program Files\CCleaner\CCleaner64.exe [44970408 2024-07-17] (Gen Digital Inc. -> Piriform Software Ltd) [Brak podpisu cyfrowego] Task: {8A23270E-E56F-48C9-BB7B-611AE5B0AB81} - System32\Tasks\DESKTOP-PKCT45J => C:\Users\scarf\AppData\Roaming\Microsoft\Windows\AutoIt3.exe [1071704 2022-09-19] (AutoIt Consulting Ltd -> AutoIt Team) -> C:\Users\scarf\AppData\Roaming\Microsoft\Windows\DESKTOP-PKCT45J.au3 <==== UWAGA Task: {3C9E8B13-D2C5-40AF-B157-3B33C8615288} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{A59B0644-DE86-41A9-966E-3551D4228A7A} => C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe [7080032 2025-05-22] (Google LLC -> Google LLC) Task: {16491275-EDC9-4C89-ACCB-966C472796E8} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {B247774A-B150-4076-BF14-73B264E8B452} - System32\Tasks\Microsoft\Windows\rempl\shell-usoscan => %ProgramFiles%\rempl\remsh.exe /RunUsoScanOnly (Brak pliku) Task: {48F98F44-AE40-4BD6-B9A5-D6B1AFFD6961} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpCmdRun.exe [1757568 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {34FDDA64-07FD-464C-BF55-8E01A3A9A12C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpCmdRun.exe [1757568 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3395DAAD-8C6B-474A-BE0B-79EB6532126E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpCmdRun.exe [1757568 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2C2B85FC-DB57-4639-ABCE-3B408B48F36C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpCmdRun.exe [1757568 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AAAE3BAC-C045-4F4C-8609-EDC5D6720EB4} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [695872 2025-06-11] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {677125BA-77BD-4D95-8AB9-A3D1B531E3F8} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2277654708-3986498821-1161186268-1002 E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [695872 2025-06-11] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {5923B76C-A6DE-4734-8DBC-A0D8BD622D72} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [34880 2025-06-11] (Mozilla Corporation -> Mozilla Foundation) Task: {04EAFA50-4AC5-4423-B16D-BB3FA6E558F2} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3275808 2025-03-21] (NVIDIA Corporation -> NVIDIA Corporation) Task: {70B24ED5-D821-431F-9C68-E13B91F423C7} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2277654708-3986498821-1161186268-1002 => C:\Users\scarf\AppData\Local\Microsoft\OneDrive\25.091.0512.0001\OneDriveLauncher.exe [684880 2025-06-11] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{d55e7dc9-857f-4625-b2e8-a78200a91c1a}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\scarf\AppData\Local\Microsoft\Edge\User Data\Default [2025-06-14] Edge Extension: (Dokumenty Google offline) - C:\Users\scarf\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-14] Edge Extension: (Edge relevant text changes) - C:\Users\scarf\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge HKU\S-1-5-21-2277654708-3986498821-1161186268-1000\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx Edge HKU\S-1-5-21-2277654708-3986498821-1161186268-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx Edge HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx FireFox: ======== FF DefaultProfile: 7b0gmuck.default-1532093952818 FF ProfilePath: C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818 [2025-06-21] FF DownloadDir: D:\Download FF Notifications: Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818 -> hxxps://www.napiprojekt.pl; hxxps://pizzahut.pl; hxxps://www.pyszne.pl FF Extension: (YouTube mp3) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\320youtube@gmx.net.xpi [2024-06-11] FF Extension: (uBlock Origin) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\uBlock0@raymondhill.net.xpi [2025-05-17] FF Extension: (WOT – Bezpieczeństwo witryn i bezpieczne przeglądanie) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\{a0d7ccb3-214d-498b-b4aa-0e8fda9a7bf7}.xpi [2023-06-19] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2024-05-03] FF Extension: (Video DownloadHelper) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-06-04] FF Extension: (Purp Grid) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\{ebd72a21-e694-44b3-92e8-164cc5b2d33b}.xpi [2019-05-14] FF Extension: (Louis Vuitton Dark) - C:\Users\scarf\AppData\Roaming\Mozilla\Firefox\Profiles\7b0gmuck.default-1532093952818\Extensions\{f076d03f-ee01-44d4-8526-afad1db19832}.xpi [2023-08-17] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-09-29] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\scarf\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_465.dll [2021-01-09] (Adobe Inc. -> ) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.21 -> D:\Użytki\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_465.dll [2021-01-09] (Adobe Inc. -> ) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Brak podpisu cyfrowego] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-08-24] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-2277654708-3986498821-1161186268-1002: @acestream.net/acestreamplugin,version=3.2.8 -> C:\Users\scarf\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku] Chrome: ======= CHR Profile: C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default [2025-06-12] CHR DownloadDir: D:\Download CHR Notifications: Default -> hxxps://www.facebook.com; hxxps://www.rmf.fm CHR Extension: (uBlock Origin) - C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2025-05-17] CHR Extension: (Dokumenty Google offline) - C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-03] CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2025-04-05] CHR Extension: (Ace Script) - C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2025-01-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\scarf\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-26] CHR HKU\S-1-5-21-2277654708-3986498821-1161186268-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2021-01-09] (Adobe Inc. -> Adobe) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8912272 2022-06-25] (BattlEye Innovations e.K. -> ) R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1085864 2024-07-16] (Gen Digital Inc. -> Piriform Software Ltd) S4 Disc Soft Pro Bus Service; D:\Użytki\DAEMON Tools Pro\DiscSoftBusService.exe [1267984 2015-02-27] (Disc Soft Ltd -> Disc Soft Ltd) S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [395024 2016-12-27] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 HitmanProScheduler; C:\Program Files\HitmanPro\hmpsched.exe [151496 2023-01-22] (SurfRight B.V. -> SurfRight B.V.) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-05-02] (HP Inc. -> HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2023-10-26] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Brak podpisu cyfrowego] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Brak podpisu cyfrowego] R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe [2071592 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_9d15b9aa9e1c885b\Display.NvContainer\NVDisplay.Container.exe [1275016 2025-03-15] (NVIDIA Corporation -> NVIDIA Corporation) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76888 2018-07-11] (Even Balance, Inc. -> ) R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1882024 2024-10-18] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [232360 2024-10-18] (Razer USA Ltd. -> Razer Inc.) R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1268176 2024-07-18] (Razer USA Ltd. -> Razer Inc.) R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc) R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300168 2025-04-24] (Razer USA Ltd. -> Razer Inc.) R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-04-28] (Razer USA Ltd. -> Razer Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\NisSrv.exe [4513624 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe [278328 2025-06-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.242\WsAppService.exe [495720 2018-08-29] (Wondershare Technology Co.,Ltd -> Wondershare) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ANVSOFT_WaveExtensible; C:\WINDOWS\system32\drivers\ammvrtaudio.sys [38048 2019-12-24] (深圳市安韦尔软件技术有限公司 -> ) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] (ASUSTeK Computer Inc. -> ) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-09-28] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-09-28] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtproscsibus; C:\WINDOWS\System32\drivers\dtproscsibus.sys [30352 2017-06-09] (Disc Soft Ltd -> Disc Soft Ltd) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2023-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2023-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [330112 2025-06-17] (Microsoft Windows -> Microsoft Corporation) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> ) R3 rtwlane_13; C:\WINDOWS\System32\drivers\rtwlane_13.sys [3717120 2019-12-07] (Microsoft Windows -> Realtek Semiconductor Corporation) R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0046; C:\WINDOWS\System32\drivers\RzDev_0046.sys [54168 2020-08-24] (Razer USA Ltd. -> Razer Inc) R3 RzDev_0216; C:\WINDOWS\System32\drivers\RzDev_0216.sys [54168 2020-08-24] (Razer USA Ltd. -> Razer Inc) S3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [51224 2016-05-10] (Razer USA Ltd. -> Razer Inc) S3 rzmpos; C:\WINDOWS\System32\drivers\rzmpos.sys [47640 2016-05-10] (Razer USA Ltd. -> Razer Inc) R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20032 2025-06-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [612768 2025-06-17] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-06-17] (Microsoft Windows -> Microsoft Corporation) S3 cpuz149; \??\C:\Users\scarf\AppData\Local\Temp\cpuz149\cpuz149_x64.sys [X] <==== UWAGA S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempy3ckfwm45i.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempmqfgy3alfr.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ C:\Users\scarf\AppData\Local\Templ8r7yufr5s.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempkobstom786.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempas1kzoak3d.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempx78m742zfk.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempwtdtih1hfj.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempupct1n1lys.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temptba08grz24.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempqvjh7ssry5.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempqj5ajz6dm1.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempqi55otihxo.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempq1yaa5ckus.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temppj8cldnosr.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempokjixvgj7k.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempmtrdehb082.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Templ1tw76coz3.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempki15xus8j2.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempkhwcgpgvn3.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempka18uv7w4p.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempjworxpkb6w.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempjvssjo1e2u.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temph7yzspdi6k.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temph71bp4fwxu.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempgycv2o1hac.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Tempd81ibv144o.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temp3vzpig40ld.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ C:\Users\scarf\AppData\Local\Temp21rky3ra0j.ps1 2025-06-21 10:29 - 2025-06-21 10:30 - 000030370 _____ C:\Users\scarf\Desktop\FRST.txt 2025-06-21 10:27 - 2025-06-21 10:27 - 000000000 ____D C:\Users\scarf\Desktop\FRST-OlderVersion 2025-06-11 08:15 - 2025-06-11 08:15 - 000000000 ___HD C:\$WinREAgent 2025-06-09 08:42 - 2025-06-09 08:43 - 002454876 _____ C:\WINDOWS\Minidump\060925-21140-01.dmp 2025-06-09 08:42 - 2025-06-09 08:42 - 1920246968 _____ C:\WINDOWS\MEMORY.DMP ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-06-21 10:30 - 2016-09-28 17:20 - 000000000 ____D C:\Users\scarf\AppData\Local\CrashDumps 2025-06-21 10:29 - 2019-01-05 22:55 - 000000000 ____D C:\FRST 2025-06-21 10:27 - 2023-08-16 10:39 - 002406912 _____ (Farbar) C:\Users\scarf\Desktop\FRST64.exe 2025-06-21 10:01 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-06-21 09:34 - 2020-11-01 11:20 - 001767984 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-06-21 09:34 - 2019-12-07 17:08 - 000784340 _____ C:\WINDOWS\system32\perfh015.dat 2025-06-21 09:34 - 2019-12-07 17:08 - 000152236 _____ C:\WINDOWS\system32\perfc015.dat 2025-06-21 09:34 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2025-06-21 09:32 - 2022-02-11 02:51 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-06-21 09:27 - 2024-04-19 23:27 - 000000000 ____D C:\Users\scarf\AppData\Roaming\qBittorrent 2025-06-21 09:27 - 2020-11-01 11:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-06-21 09:27 - 2020-11-01 11:14 - 000000000 ____D C:\Users\Instalator 2025-06-21 09:27 - 2020-11-01 11:14 - 000000000 ____D C:\Users\defaultuser0 2025-06-21 09:27 - 2020-11-01 11:13 - 000008192 ___SH C:\DumpStack.log.tmp 2025-06-21 09:27 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2025-06-21 09:27 - 2017-05-14 14:41 - 000000000 ____D C:\ProgramData\NVIDIA 2025-06-21 07:57 - 2024-08-13 15:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2025-06-21 07:57 - 2021-12-15 19:53 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-06-21 07:57 - 2020-11-01 11:13 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-06-21 07:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2025-06-21 07:57 - 2016-09-28 17:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-06-21 03:41 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-06-21 03:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-06-21 03:35 - 2020-03-28 21:28 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-06-21 03:35 - 2020-03-28 21:28 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2025-06-18 14:59 - 2024-06-18 20:12 - 000000000 ____D C:\Users\scarf\Desktop\Nowe GPX 2025-06-17 15:58 - 2018-02-27 21:18 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-06-16 04:14 - 2018-02-05 20:13 - 000000000 ____D C:\Users\scarf\AppData\Local\Packages 2025-06-15 19:43 - 2020-06-07 13:53 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-06-15 19:43 - 2020-06-07 13:53 - 000002292 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-06-14 18:54 - 2023-06-03 14:34 - 000000000 ____D C:\Users\scarf\Desktop\Trasy GPX 2025-06-14 10:22 - 2018-05-17 19:56 - 000000000 ____D C:\Users\scarf\AppData\Local\D3DSCache 2025-06-13 22:57 - 2025-05-20 16:41 - 000003816 _____ C:\WINDOWS\system32\Tasks\DESKTOP-PKCT45J 2025-06-12 07:14 - 2025-01-17 16:09 - 000003168 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2277654708-3986498821-1161186268-1002 2025-06-12 00:07 - 2018-11-26 17:16 - 000000000 ____D C:\Users\scarf\AppData\Roaming\discord 2025-06-12 00:03 - 2016-09-28 17:07 - 000001238 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-06-11 23:14 - 2018-11-26 17:26 - 000002300 _____ C:\Users\scarf\Desktop\Discord.lnk 2025-06-11 23:14 - 2018-11-26 17:26 - 000000000 ____D C:\Users\scarf\AppData\Local\Discord 2025-06-11 22:52 - 2021-12-14 09:58 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2277654708-3986498821-1161186268-1002 2025-06-11 22:52 - 2020-11-01 11:22 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2277654708-3986498821-1161186268-1002 2025-06-11 22:52 - 2020-11-01 11:14 - 000002480 _____ C:\Users\scarf\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-06-11 12:13 - 2020-11-01 11:13 - 000449424 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-06-11 12:12 - 2024-07-10 12:32 - 000000000 ____D C:\WINDOWS\system32\compatrel 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-06-11 12:12 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2025-06-11 10:09 - 2016-08-30 10:46 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-06-11 10:07 - 2016-08-30 10:46 - 216824056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-06-11 08:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-06-11 08:20 - 2020-11-01 11:16 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-06-09 12:01 - 2020-11-01 11:14 - 000000000 ____D C:\Users\scarf 2025-06-09 08:47 - 2018-05-11 12:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer 2025-06-09 08:43 - 2021-10-11 19:26 - 000000000 ____D C:\WINDOWS\Minidump 2025-06-07 06:30 - 2022-02-16 19:27 - 000000000 ____D C:\Program Files\RUXIM 2025-06-06 17:37 - 2016-09-30 23:30 - 000000000 ____D C:\Users\scarf\AppData\Local\ElevatedDiagnostics 2025-05-30 20:49 - 2022-11-04 11:04 - 000000000 ____D C:\Users\scarf\Desktop\Praca 2025-05-29 07:37 - 2016-12-30 21:35 - 000000000 ____D C:\Users\scarf\AppData\Roaming\MPC-BE 2025-05-29 07:34 - 2024-07-18 08:32 - 000000000 ____D C:\Program Files\CCleaner 2025-05-26 20:04 - 2024-11-16 10:17 - 000000000 ____D C:\Users\scarf\AppData\Roaming\vlc ==================== Pliki w katalogu głównym wybranych folderów ======== 2017-12-23 02:43 - 2017-12-23 02:43 - 000000809 _____ () C:\Users\scarf\AppData\Roaming\qnapi.ini 2019-12-18 04:05 - 2019-12-18 04:05 - 000000017 _____ () C:\Users\scarf\AppData\Local\resmon.resmoncfg 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temp21rky3ra0j.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temp3vzpig40ld.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempa4pi750io5.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempas1kzoak3d.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempd81ibv144o.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempgycv2o1hac.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temph71bp4fwxu.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temph7yzspdi6k.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempjvssjo1e2u.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempjworxpkb6w.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempka18uv7w4p.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempkhwcgpgvn3.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempki15xus8j2.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempkobstom786.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Templ1tw76coz3.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Templ8r7yufr5s.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempmqfgy3alfr.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempmtrdehb082.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempokjixvgj7k.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temppj8cldnosr.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempq1yaa5ckus.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempqi55otihxo.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempqj5ajz6dm1.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempqvjh7ssry5.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Temptba08grz24.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempupct1n1lys.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempwtdtih1hfj.ps1 2025-06-21 10:30 - 2025-06-21 10:30 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempx78m742zfk.ps1 2025-06-21 10:31 - 2025-06-21 10:31 - 000077357 _____ () C:\Users\scarf\AppData\Local\Tempy3ckfwm45i.ps1 ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================