Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20-11-2025 Uruchomiony przez grzeg (administrator) DESKTOP-MJS60US (SAMSUNG ELECTRONICS CO., LTD. R540/SA41/E452) (01-12-2025 17:44:10) Uruchomiony z C:\Users\grzeg\Downloads\FRST64.exe Załadowane profile: grzeg Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.6466 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe (C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\27.1.1.23\DiscoverySrv.exe (C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (explorer.exe ->) (Suunto Oy -> ) C:\Users\grzeg\AppData\Local\Suuntolink\app-4.1.15\resources\app\LaunchAgents\SuuntolinkLauncher.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.209.1026.0002\OneDrive.Sync.Service.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3> (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe (services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\vds.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2508.1.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.209.1026.0002\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19677688 2022-06-23] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security App\bdagent.exe [1088832 2025-11-28] (Bitdefender SRL -> Bitdefender) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKU\S-1-5-21-504369874-3521093726-15342627-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4742504 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-504369874-3521093726-15342627-1001\...\Run: [SuuntolinkLauncher] => C:\Users\grzeg\AppData\Local\Suuntolink\app-4.1.15\resources\app\LaunchAgents\SuuntolinkLauncher.exe [828616 2024-04-09] (Suunto Oy -> ) HKU\S-1-5-21-504369874-3521093726-15342627-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41613784 2025-11-17] (Adobe Inc. -> Adobe Systems Incorporated) HKLM\...\Print\Monitors\HP be2a Status Monitor: C:\Windows\system32\hpinkstsbe2aLM.dll [468576 2018-06-15] (Hewlett Packard -> HP Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\142.1.84.141\Installer\chrmstp.exe [2025-11-18] (Brave Software, Inc. -> Brave Software, Inc.) ==================== Zaplanowane zadania (Wszystkie) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {7E84B09B-03E3-4C99-B363-EE0AB7951149} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.) Task: {7D71A0D7-862D-44A2-9A98-BBD50F964370} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\27.1.1.23\WatchDog.exe [1171960 2025-11-11] (Bitdefender SRL -> Bitdefender) -> C:\Program Files\Bitdefender Agent\27.1.1.23\repair Task: {B20D6A80-73A7-4093-A362-EBD8693C90ED} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{A97E28C0-FFF4-45A6-9BFE-DDDAEC5BF987} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-06-30] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {31C8837F-F389-4F66-A179-8077477CFA53} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{CB193B77-E0C5-42B6-B999-0CB38B7C6FB5} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-06-30] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {95B0FD18-8BE1-452F-9949-12E1F074591D} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2023-04-22] () [Brak podpisu cyfrowego] Task: {BAF4B9A8-1B02-4B38-B231-7EA97230256B} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 => {84F0FAE1-C27B-4F6F-807B-28CF6F96287D} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [23952 2022-06-25] (Microsoft Corporation -> Microsoft Corporation) Task: {D5A9F0F2-D7CA-4A2B-8871-C67F2CBEADF1} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 => {429BC048-379E-45E0-80E4-EB1977941B5C} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [23952 2022-06-25] (Microsoft Corporation -> Microsoft Corporation) Task: {1D44DA44-C6A2-454A-AD76-389CB7AB7B77} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical => {613FBA38-A3DF-4AB8-9674-5604984A299A} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [23952 2022-06-25] (Microsoft Corporation -> Microsoft Corporation) Task: {B750F9BA-94F7-495C-9AA5-9E0BFB0E1F63} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical => {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [23952 2022-06-25] (Microsoft Corporation -> Microsoft Corporation) Task: {F346D1E4-9974-4A5D-9E35-FE7079A30555} - System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Automated) => {CF2CF428-325B-48D3-8CA8-7633E36E5A32} C:\Windows\system32\msdrm.dll [570368 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {8E33F0A3-A31E-4E6C-AFF7-844A27E761B7} - System32\Tasks\Microsoft\Windows\Active Directory Rights Management Services Client\AD RMS Rights Policy Template Management (Manual) => {BF5CB148-7C77-4D8A-A53E-D81C70CF743C} C:\Windows\system32\msdrm.dll [570368 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {5B885149-AF43-451C-A12F-0CD1E0A34023} - System32\Tasks\Microsoft\Windows\AppID\EDP Policy Manager => {DECA92E0-AF85-439E-9204-86679978DA08} C:\Windows\System32\AppLockerCsp.dll [391168 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4EBE9A38-6BE4-429E-8588-B460327DB327} - System32\Tasks\Microsoft\Windows\AppID\PolicyConverter => C:\Windows\system32\appidpolicyconverter.exe [160768 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {7A27D6E9-CB10-42F6-B75D-A53F78486290} - System32\Tasks\Microsoft\Windows\AppID\VerifiedPublisherCertStoreCheck => C:\Windows\system32\appidcertstorecheck.exe [50176 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {0AE803E0-A33B-4490-A447-F92337448D09} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(1): %windir%\system32\compattelrunner.exe -> -m:aeinv.dll -f:UpdateSoftwareInventoryW invsvc Task: {0AE803E0-A33B-4490-A447-F92337448D09} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(2): %windir%\system32\compattelrunner.exe -> -m:appraiser.dll -f:DoScheduledTelemetryRun Task: {0AE803E0-A33B-4490-A447-F92337448D09} - System32\Tasks\Microsoft\Windows\Application Experience\MareBackup => Command(3): %windir%\system32\compattelrunner.exe -> -m:aemarebackup.dll -f:BackupMareData Task: {7A5AFDB2-56EC-4352-AB44-069E7BF253A8} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => C:\Windows\system32\compattelrunner.exe [254824 2025-08-28] (Microsoft Corporation -> Microsoft Corporation) Task: {71D13F5D-3783-4AEB-B3CF-794F12A6C2C1} - System32\Tasks\Microsoft\Windows\Application Experience\PcaPatchDbTask => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaPatchSdbTask Task: {209242B8-BCBB-4616-AB9E-B22B922C66CF} - System32\Tasks\Microsoft\Windows\Application Experience\PcaWallpaperAppDetect => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\PcaSvc.dll,PcaWallpaperAppDetect Task: {73469C3A-0B60-4A11-AD8A-FC67A901B741} - System32\Tasks\Microsoft\Windows\Application Experience\ProgramDataUpdater => C:\Windows\system32\compattelrunner.exe [254824 2025-08-28] (Microsoft Corporation -> Microsoft Corporation) Task: {3D363385-64B8-4207-AC46-3EE180DD87F2} - System32\Tasks\Microsoft\Windows\Application Experience\StartupAppTask => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> Startupscan.dll,SusRunTask Task: {B5108B49-C39A-43DE-AC49-06155873BAE9} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierdaily => C:\Windows\system32\AppHostRegistrationVerifier.exe [120320 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {BA366117-6A44-44F3-9BAA-09C4ADA110CC} - System32\Tasks\microsoft\windows\applicationdata\appuriverifierinstall => C:\Windows\system32\AppHostRegistrationVerifier.exe [120320 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {E003BEA4-7D11-4522-9834-25C3F9F93F53} - System32\Tasks\Microsoft\Windows\ApplicationData\CleanupTemporaryState => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> Windows.Storage.ApplicationData.dll,CleanupTemporaryState Task: {F472261A-A57A-465B-A695-5F2E75E37782} - System32\Tasks\Microsoft\Windows\ApplicationData\DsSvcCleanup => C:\Windows\system32\dstokenclean.exe [13312 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {4EE2625C-893A-47C9-A36B-70BB13E8B105} - System32\Tasks\Microsoft\Windows\AppListBackup\Backup => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\Windows\system32\AppListBackupLauncher.dll [94208 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {895D8441-4B12-425F-9E4F-8D2516BF3903} - System32\Tasks\Microsoft\Windows\AppListBackup\BackupNonMaintenance => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\Windows\system32\AppListBackupLauncher.dll [94208 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {C9ABE41C-5E65-4E52-8BAD-4F1BCA3B5715} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\Pre-staged app cleanup => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\AppxDeploymentClient.dll,AppxPreStageCleanupRunTask Task: {6F7B2AC8-8299-4355-8772-7C0ABF9219C9} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\UCPD velocity => C:\Windows\system32\UCPDMgr.exe [177664 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {36A78C3E-A142-4F86-903E-AE26291F646C} - System32\Tasks\Microsoft\Windows\Autochk\Proxy => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> /d acproxy.dll,PerformAutochkOperations Task: {34ADEFE8-89DB-43BC-8C0B-14BB34D69F6D} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker Encrypt All Drives => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {87094343-6C1F-4855-A6B9-305BA74AB761} - System32\Tasks\Microsoft\Windows\BitLocker\BitLocker MDM policy Refresh => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {AB05B368-13F7-468A-9B30-E553C06B5449} - System32\Tasks\Microsoft\Windows\Bluetooth\UninstallDeviceTask => C:\Windows\system32\BthUdTask.exe [40448 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {077333D6-06BA-4EA4-BDF4-1CD1439558F2} - System32\Tasks\Microsoft\Windows\BrokerInfrastructure\BgTaskRegistrationMaintenanceTask => {E984D939-0E00-4DD9-AC3A-7ACA04745521} Task: {F0BE4F3E-F4F0-4B98-88EE-57290DDF6CB2} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\AikCertEnrollTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\Windows\system32\ngctasks.dll [279040 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {F67BF9CD-2696-4F2D-9D78-BB8C84A53C1E} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\CryptoPolicyTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\Windows\system32\ngctasks.dll [279040 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {2F63CF7F-0537-4E2A-9F8A-B763EFE907F5} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\KeyPreGenTask => {47E30D54-DAC1-473A-AFF7-2355BF78881F} C:\Windows\system32\ngctasks.dll [279040 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {50DDDD38-168C-486B-966F-A23226488295} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\SystemTask => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\Windows\system32\dimsjob.dll [44544 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {0EDEA23A-3DEC-41C3-B03E-BC7A3356D6BC} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\UserTask => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\Windows\system32\dimsjob.dll [44544 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {78FC1447-DCFF-4832-A268-0ABA89022F48} - System32\Tasks\Microsoft\Windows\CertificateServicesClient\UserTask-Roam => {58FB76B9-AC85-4E55-AC04-427593B1D060} C:\Windows\system32\dimsjob.dll [44544 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {57C76B66-AD3C-4221-81FA-55045859B06F} - System32\Tasks\Microsoft\Windows\Chkdsk\ProactiveScan => {CF4270F5-2E43-4468-83B3-A8C45BB33EA1} C:\Windows\System32\pstask.dll [16384 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {3FC4BE91-4A96-48F5-8858-1628CB88EFB5} - System32\Tasks\Microsoft\Windows\Chkdsk\SyspartRepair => C:\Windows\system32\bcdboot.exe [259584 2025-02-12] (Microsoft Windows -> Microsoft Corporation) -> %windir% /sysrepair Task: {9C650D80-19A5-4468-94EF-05981E6A0B5A} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => C:\Windows\system32\clipesu.exe [346496 2025-09-26] (Microsoft Windows -> Microsoft Corporation) Task: {CC9EF247-4AEB-4AAE-9CB5-031F3F9630E6} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => C:\Windows\system32\ClipESUConsumer.exe [535440 2025-11-12] (Microsoft Windows -> Microsoft Corporation) Task: {AF069FB2-9B27-4B7C-A0A9-C43B764827B8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => C:\Windows\system32\ClipESUConsumer.exe [535440 2025-11-12] (Microsoft Windows -> Microsoft Corporation) Task: {4B8435C9-E92E-470A-BF34-95D0CA2E50A4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => C:\Windows\system32\ClipESUConsumer.exe [535440 2025-11-12] (Microsoft Windows -> Microsoft Corporation) Task: {9695B3FA-67DD-43D9-B395-B5D422293717} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => C:\Windows\system32\ClipESUConsumer.exe [535440 2025-11-12] (Microsoft Windows -> Microsoft Corporation) Task: {3208AADC-1F37-4799-8E20-A77D977150E8} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => C:\Windows\system32\clipesu.exe [346496 2025-09-26] (Microsoft Windows -> Microsoft Corporation) Task: {5B0ED9ED-6704-45F8-B8C1-93C5A3B5F4FF} - System32\Tasks\Microsoft\Windows\Clip\License Validation => C:\Windows\system32\ClipUp.exe [1167896 2025-10-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {12514C9A-1DE5-40CE-B66C-D6838DA9A169} - System32\Tasks\Microsoft\Windows\CloudExperienceHost\CreateObjectTask => {E4544ABA-62BF-4C54-AAB2-EC246342626C} C:\Windows\System32\CloudExperienceHostBroker.exe [70016 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {1B72D6F3-18EA-4717-8F90-ED976E6A080A} - System32\Tasks\Microsoft\Windows\CloudRestore\Backup => {722D0F89-B69C-4700-AE8C-4A44350E4876} C:\Windows\System32\CloudRestoreLauncher.dll [882176 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {49AA1163-4E83-45DA-A703-28C1FF4E47DB} - System32\Tasks\Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask => {82AA0895-198A-4C1B-B2D1-C16894218AFB} C:\Windows\System32\unifiedconsent.dll [357376 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {ED77AEE0-EAFB-4133-B544-9E7C5632D902} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\Consolidator => C:\Windows\System32\wsqmcons.exe [120320 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {7572B7F9-BE9D-43BF-9A4E-F82023EDBD33} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\UsbCeip => {C27F6B1D-FE0B-45E4-9257-38799FA69BC8} C:\Windows\System32\usbceip.dll [119808 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {304D2127-E6ED-4C82-B9B3-63B3B54A4D66} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Check And Scan => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [317440 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {90F68E39-00DE-4159-BCDB-5C5759A5CF53} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [317440 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {EAD9ED20-AC69-4E97-8CCB-E8F62CA707B3} - System32\Tasks\Microsoft\Windows\Data Integrity Scan\Data Integrity Scan for Crash Recovery => {DCFD3EA8-D960-4719-8206-490AE315F94F} C:\Windows\System32\discan.dll [317440 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {490A24B5-4C2A-417A-AE92-03C4621F315A} - System32\Tasks\Microsoft\Windows\Defrag\ScheduledDefrag => C:\Windows\system32\defrag.exe [210432 2023-11-15] (Microsoft Windows -> Microsoft Corp.) Task: {4F41B4A1-8822-4B02-90CD-202A0099FFAE} - System32\Tasks\Microsoft\Windows\Device Information\Device => C:\Windows\system32\devicecensus.exe [82944 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {F278A444-BDB4-4CD1-A2F0-7A2284C32800} - System32\Tasks\Microsoft\Windows\Device Information\Device User => C:\Windows\system32\devicecensus.exe [82944 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {082F4875-D88C-40EA-8706-87480962C446} - System32\Tasks\Microsoft\Windows\Device Setup\Metadata Refresh => {23C1F3CF-C110-4512-ACA9-7B6174ECE888} C:\Windows\System32\DeviceSetupManagerAPI.dll [162816 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {9D87DBE9-E563-4708-A9E9-1A6EE5951EC2} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleCommand => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {0016B09F-CFDA-4F5B-A70B-84A75599B89B} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\HandleWnsCommand => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {61B4D08B-1B23-4CC8-869E-CF0B7996EF5F} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\IntegrityCheck => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {6AAEEF1D-9661-4720-B127-27C975871238} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\LocateCommandUserSession => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {9ECD9F35-130A-4C0C-A551-9D3335B165D7} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceAccountChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {EA82AA60-4BB0-41D9-AA1A-D64D739F55DE} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceLocationRightsChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {5E0DF2C3-3D26-4759-9E02-FB7F4DCD159B} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePeriodic24 => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {114EC267-55F2-45DA-9AB6-B98CA9DC0D01} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDevicePolicyChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {AF73DAAA-53AE-4CC8-8671-BE29D886B057} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceProtectionStateChanged => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {C660D735-E9F2-4190-9B4E-97ADF1AFFA16} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceSettingChange => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {175185B7-4F01-430D-BCA6-692AEBBB495A} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterDeviceWnsFallback => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {A2FFCE6E-7F06-494A-8C84-6EFCAEB075BB} - System32\Tasks\Microsoft\Windows\DeviceDirectoryClient\RegisterUserDevice => {AE31B729-D5FD-401E-AF42-784074835AFE} C:\Windows\system32\DeviceDirectoryClient.dll [287744 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {57F058ED-2E90-4B6E-AB18-69C56CB31936} - System32\Tasks\Microsoft\Windows\Diagnosis\RecommendedTroubleshootingScanner => {AD08DCC2-4E35-4486-9D49-547CBD30942D} C:\Windows\System32\MitigationClient.dll [512512 2025-05-14] (Microsoft Windows -> Microsoft Corporation) Task: {C3944556-15CF-467E-89E2-29D4BFD3EC5A} - System32\Tasks\Microsoft\Windows\Diagnosis\Scheduled => {C1F85EF8-BCC2-4606-BB39-70C523715EB3} C:\Windows\System32\sdiagschd.dll [68096 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {55B1C85E-5BEF-4EDB-ADD0-ECEAEF261E7C} - System32\Tasks\Microsoft\Windows\DirectX\DirectXDatabaseUpdater => C:\Windows\system32\directxdatabaseupdater.exe [305664 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {0CBABB27-6DFC-4155-BAE7-AE919B92FEF2} - System32\Tasks\Microsoft\Windows\DirectX\DXGIAdapterCache => C:\Windows\system32\dxgiadaptercache.exe [251392 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {6AA2E298-C47C-45AE-BF6F-E2D9A555345C} - System32\Tasks\Microsoft\Windows\DiskCleanup\SilentCleanup => C:\Windows\system32\cleanmgr.exe [315904 2025-05-29] (Microsoft Windows -> Microsoft Corporation) -> /autoclean /d %systemdrive% Task: {B97C7632-DD50-4F07-8E4E-F1450795BF78} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticDataCollector => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> dfdts.dll,DfdGetDefaultPolicyAndSMART Task: {3A4032F6-6063-4D54-BAE3-F8A4A5110CDA} - System32\Tasks\Microsoft\Windows\DiskDiagnostic\Microsoft-Windows-DiskDiagnosticResolver => C:\Windows\system32\DFDWiz.exe [54784 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {C9EC268B-1D36-4AF0-A1EB-2C1BC3B455D9} - System32\Tasks\Microsoft\Windows\DiskFootprint\Diagnostics => C:\Windows\system32\disksnapshot.exe [85504 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {117E2D01-1275-4560-90E9-A34BB4EE69A3} - System32\Tasks\Microsoft\Windows\DiskFootprint\StorageSense => {AB2A519B-03B0-43CE-940A-A73DF850B49A} C:\Windows\system32\StorageUsage.dll [186880 2025-07-09] (Microsoft Windows -> Microsoft Corporation) Task: {69D15B8E-729C-4C1C-A0E7-6DCA5E963E60} - System32\Tasks\Microsoft\Windows\DUSM\dusmtask => C:\Windows\System32\dusmtask.exe [40960 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {EF4B8F07-FA4B-4CD0-84BC-4A758127E3DD} - System32\Tasks\Microsoft\Windows\EDP\EDP App Launch Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {3789A597-BD62-4A2F-8F57-AE2D504E0E98} - System32\Tasks\Microsoft\Windows\EDP\EDP Auth Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {0E2DCCB3-7B11-40CF-B973-90F22732E317} - System32\Tasks\Microsoft\Windows\EDP\EDP Inaccessible Credentials Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {66A3F618-0C70-4F70-9BBA-735CCDB43A09} - System32\Tasks\Microsoft\Windows\EDP\StorageCardEncryption Task => {61BCD1B9-340C-40EC-9D41-D7F1C0632F05} C:\Windows\System32\edptask.dll [72192 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {F8FEDA28-6261-4385-844A-684E6C988577} - System32\Tasks\Microsoft\Windows\ExploitGuard\ExploitGuard MDM policy Refresh => {711001CD-CC1D-4470-9B7E-1EF73849C79E} C:\Windows\System32\MitigationConfiguration.dll [86528 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {92FFE795-C628-4324-AB97-06F804352DB6} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClient => C:\Windows\system32\dmclient.exe [120832 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {7617E03F-109E-435B-9B4C-0282CD5BE4A9} - System32\Tasks\Microsoft\Windows\Feedback\Siuf\DmClientOnScenarioDownload => C:\Windows\system32\dmclient.exe [120832 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {2EE7F450-D2B6-4D5E-AFE0-A8699149E79E} - System32\Tasks\Microsoft\Windows\FileHistory\File History (maintenance mode) => {89917B7C-A1A6-11DF-8BF6-18A90531A85A} C:\Windows\System32\fhtask.dll [61952 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {B0EF9E64-D933-430B-BFDE-D95ABEBF63D6} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures => {59EECBFE-C2F5-4419-9B99-13FE05FF2675} C:\Windows\System32\fcon.dll [472576 2025-05-14] (Microsoft Windows -> Microsoft Corporation) Task: {CAB1524E-4A24-4689-9921-5D79651DD078} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataFlushing => {99EFDAD1-0F11-4A6B-A702-4E1C37D1A3EF} C:\Windows\System32\fcon.dll [472576 2025-05-14] (Microsoft Windows -> Microsoft Corporation) Task: {75B035A2-5C19-4E30-A9BD-11045126467E} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\UsageDataReporting => {BBFCD054-8AAC-45DE-A1EB-7B246C9028AF} C:\Windows\System32\fcon.dll [472576 2025-05-14] (Microsoft Windows -> Microsoft Corporation) Task: {7263C0D1-21AF-41E6-AF4F-6242453D0D46} - System32\Tasks\Microsoft\Windows\Flighting\OneSettings\RefreshCache => {E07647F7-AED2-48D9-9720-939BC24A8A3C} C:\Windows\System32\wosc.dll [436224 2025-09-26] (Microsoft Windows -> Microsoft Corporation) Task: {12DF3F8A-9612-48CA-AE38-2818FA70CA73} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe [511488 2025-04-23] (Microsoft Windows -> ) Task: {CADF1293-5495-426F-8E37-A30F69274AF4} - System32\Tasks\Microsoft\Windows\Input\LocalUserSyncDataAvailable => {8E7C2AFB-72B9-415C-9AC2-5037693309B7} C:\Windows\System32\InputCloudStore.dll [230912 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {DA42085F-11E4-4EE1-A363-1898204812F5} - System32\Tasks\Microsoft\Windows\Input\MouseSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [230912 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4A0DEFDA-A2B8-4736-88E1-A578E00D9704} - System32\Tasks\Microsoft\Windows\Input\PenSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [230912 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {7C4733D2-81D6-4CA3-B30C-E00B496B9857} - System32\Tasks\Microsoft\Windows\Input\TouchpadSyncDataAvailable => {378EAB97-EFD6-4ED5-9AD9-E64A6AA1E6FA} C:\Windows\System32\InputCloudStore.dll [230912 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {A08D6A77-C926-4E78-9ED0-09836E2769AE} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdates => {A558C6A5-B42B-4C98-B610-BF9559143139} C:\Windows\System32\InstallServiceTasks.dll [267264 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {A2FADBDF-6855-42F7-BDFC-F0C510EDA9BC} - System32\Tasks\Microsoft\Windows\InstallService\ScanForUpdatesAsUser => {DDAFAEA2-8842-4E96-BADE-D44A8D676FDB} C:\Windows\System32\InstallServiceTasks.dll [267264 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {44AF7ADA-1C0D-43B1-A063-9E7581F7730B} - System32\Tasks\Microsoft\Windows\InstallService\SmartRetry => {F3A219C3-2698-4CBF-9C07-037EDB8E72E6} C:\Windows\System32\InstallServiceTasks.dll [267264 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {9B29B882-A95C-438B-BF91-E7C31B1D82D1} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndContinueUpdates => {0DC331EE-8438-49D5-A721-E10B937CE459} C:\Windows\System32\InstallServiceTasks.dll [267264 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {EC3EFE4E-A2E4-4C66-975C-CA2EFD0D42CD} - System32\Tasks\Microsoft\Windows\InstallService\WakeUpAndScanForUpdates => {D5A04D91-6FE6-4FE4-A98A-FEB4500C5AF7} C:\Windows\System32\InstallServiceTasks.dll [267264 2025-08-28] (Microsoft Windows -> Microsoft Corporation) Task: {A60D9ECB-A6F4-4FE1-9BD7-B049487A67E7} - System32\Tasks\Microsoft\Windows\International\Synchronize Language Settings => {10D62541-90D0-42FE-848C-0DBC1AC42EDA} C:\Windows\System32\CoreGlobConfig.dll [217560 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {7A7B60AA-BA42-409F-BC97-7BCFEFAD6308} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Installation => {6F58F65F-EC0E-4ACA-99FE-FC5A1A25E4BE} C:\Windows\System32\LanguageComponentsInstaller.dll [208896 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {A499FA48-7057-4AC1-9702-44C6FD924058} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\ReconcileLanguageResources => {D0582E3B-3126-4CAA-9155-AC37C912A489} C:\Windows\System32\LanguageOverlayServer.dll [410112 2024-12-10] (Microsoft Windows -> Microsoft Corporation) Task: {9520602D-5D35-49BC-B397-5251EC6364E8} - System32\Tasks\Microsoft\Windows\LanguageComponentsInstaller\Uninstallation => {6F58F65F-EC0E-4ACA-99FE-FC5A1A25E4BE} C:\Windows\System32\LanguageComponentsInstaller.dll [208896 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {A28E2F31-2C6D-426C-A2AC-2F9F6952D916} - System32\Tasks\Microsoft\Windows\License Manager\TempSignedLicenseExchange => {77646A68-AD14-4D53-897D-7BE4DDE5F929} C:\Windows\System32\TempSignedLicenseExchangeTask.dll [74752 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => C:\Windows\System32\LocationNotificationWindows.exe [89600 2025-05-29] (Microsoft Windows -> Microsoft Corporation) Task: {E32B86AB-ABAA-45A7-9BE7-9BB2E6B7837D} - System32\Tasks\Microsoft\Windows\Location\WindowsActionDialog => C:\Windows\System32\WindowsActionDialog.exe [80896 2025-05-29] (Microsoft Windows -> Microsoft Corporation) Task: {6F063424-E8AD-40FA-92B9-CD047EC2A92A} - System32\Tasks\Microsoft\Windows\Maintenance\WinSAT => {A9A33436-678B-4C9C-A211-7CC38785E79D} C:\Windows\system32\WinSATAPI.dll [377856 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {718B121C-9FEC-4290-96F6-81A61C1A46E2} - System32\Tasks\Microsoft\Windows\Management\Autopilot\DetectHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\Windows\System32\Autopilot.dll [200704 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {370B8F69-7A79-42AC-A4E0-E15DCC75CE77} - System32\Tasks\Microsoft\Windows\Management\Autopilot\RemediateHardwareChange => {62B2DD2C-F129-42EE-BF59-55D3FD21C215} C:\Windows\System32\Autopilot.dll [200704 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {E38739C8-A84F-4F9B-8913-DCA75BC35C79} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Cellular => C:\Windows\system32\ProvTool.exe [87040 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {80436C26-BC19-4930-9051-F06F0E0BA960} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Logon => C:\Windows\system32\ProvTool.exe [87040 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {2AD5F8AE-8128-49DD-AB67-7D9052D0C609} - System32\Tasks\Microsoft\Windows\Management\Provisioning\Retry => C:\Windows\system32\ProvTool.exe [87040 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {E91D1CC3-09DF-45F0-8208-474AEE6B0A16} - System32\Tasks\Microsoft\Windows\Management\Provisioning\RunOnReboot => C:\Windows\system32\ProvTool.exe [87040 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {701473A3-4C61-4063-AAC6-871E22A29FE7} - System32\Tasks\Microsoft\Windows\Maps\MapsToastTask => {9885AEF2-BD9F-41E0-B15E-B3141395E803} C:\Windows\System32\mapstoasttask.dll [54272 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {E577C99D-E5DD-43E8-9E9F-2D291B431572} - System32\Tasks\Microsoft\Windows\Maps\MapsUpdateTask => {B9033E87-33CF-4D77-BC9B-895AFBBA72E4} C:\Windows\System32\mapsupdatetask.dll [45568 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {BC60520E-BA64-42C2-B019-9B4D6EA5145A} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\ProcessMemoryDiagnosticEvents => {8168e74a-b39f-46d8-adcd-7bed477b80a3} C:\Windows\System32\MemoryDiagnostic.dll [33792 2024-03-13] (Microsoft Windows -> Microsoft Corporation) Task: {8DF0013E-18B3-4AA1-BAE7-9388263CC2B8} - System32\Tasks\Microsoft\Windows\MemoryDiagnostic\RunFullMemoryDiagnostic => {8168e74a-b39f-46d8-adcd-7bed477b80a3} C:\Windows\System32\MemoryDiagnostic.dll [33792 2024-03-13] (Microsoft Windows -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\Windows\System32\MbaeParserTask.exe [119296 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {6EE3AFA8-CBB1-4E6E-B0B4-ABFF3127206C} - System32\Tasks\Microsoft\Windows\MUI\LPRemove => C:\Windows\system32\lpremove.exe [97280 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {9486DC81-1119-4559-9110-1A771DEC137A} - System32\Tasks\Microsoft\Windows\Multimedia\SystemSoundsService => {2DEA658F-54C1-4227-AF9B-260AB5FC3543} C:\Windows\System32\PlaySndSrv.dll [90112 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {3A6DB6F9-A355-420A-B6E0-7C54D12F4033} - System32\Tasks\Microsoft\Windows\NetTrace\GatherNetworkInfo => C:\Windows\system32\gatherNetworkInfo.vbs [88781 2019-12-07] (Microsoft Windows -> ) Task: {C34E99FC-E9DA-45EE-AF9B-77AAD0B1B25F} - System32\Tasks\Microsoft\Windows\NlaSvc\WiFiTask => C:\Windows\System32\WiFiTask.exe [133608 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {D4DAB92A-4282-4D30-8F6C-2B06F151181D} - System32\Tasks\Microsoft\Windows\PI\Secure-Boot-Update => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\Windows\system32\TpmTasks.dll [737792 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {FA2060CD-B912-40E4-8BF8-DF93CA7B62F7} - System32\Tasks\Microsoft\Windows\PI\Sqm-Tasks => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\Windows\system32\TpmTasks.dll [737792 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {C0467AB3-5004-4E13-BD2C-8DDF2AB880B5} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Group Policy => {60400283-B242-4FA8-8C25-CAF695B88209} C:\Windows\System32\pnppolicy.dll [91648 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4E3AEDFB-B76C-4C12-A54F-3BD72A10C434} - System32\Tasks\Microsoft\Windows\Plug and Play\Device Install Reboot Required => {48794782-6A1F-47B9-BD52-1D5F95D49C1B} C:\Windows\System32\pnpui.dll [49664 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {DF27E6F5-E07E-4744-981B-BB5BC982261C} - System32\Tasks\Microsoft\Windows\Plug and Play\Sysprep Generalize Drivers => C:\Windows\System32\drvinst.exe [349696 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {D9353C30-D505-4F11-8F95-55F3DDA1E214} - System32\Tasks\Microsoft\Windows\Power Efficiency Diagnostics\AnalyzeSystem => {927EA2AF-1C54-43D5-825E-0074CE028EEE} C:\Windows\System32\energytask.dll [26624 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {35525E8D-FD60-47BF-8D11-FA4F778C57C3} - System32\Tasks\Microsoft\Windows\Printing\EduPrintProv => C:\Windows\system32\eduprintprov.exe [100352 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {1EE26170-B3D2-4B34-A7F4-F236EDAF41AF} - System32\Tasks\Microsoft\Windows\Printing\PrinterCleanupTask => {C56F065E-DE49-4E42-BE7C-305C45609D25} C:\Windows\System32\PrinterCleanupTask.dll [86528 2025-03-25] (Microsoft Windows -> Microsoft Corporation) Task: {701C84A6-D1C5-4D34-B964-17EE065ABF6D} - System32\Tasks\Microsoft\Windows\PushToInstall\LoginCheck => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start pushtoinstall login Task: {F253816F-DFDB-4564-BDC8-CA9D2404E224} - System32\Tasks\Microsoft\Windows\PushToInstall\Registration => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start pushtoinstall registration Task: {C0E197F6-2E40-46FD-83DA-BE8704EF2CE5} - System32\Tasks\Microsoft\Windows\Ras\MobilityManager => {C463A0FC-794F-4FDF-9201-01938CEACAFA} C:\Windows\system32\rasmbmgr.dll [61952 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {F0FCA53B-F391-48AD-91F6-D1994846E55E} - System32\Tasks\Microsoft\Windows\RecoveryEnvironment\VerifyWinRE => {89D1D0C2-A3CF-490C-ABE3-B86CDE34B047} C:\Windows\System32\ReAgentTask.dll [13824 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {00446CF1-8668-472D-BEDD-D0BB88DBA009} - System32\Tasks\Microsoft\Windows\Registry\RegIdleBackup => {CA767AA8-9157-4604-B64B-40747123D5F2} C:\Windows\System32\regidle.dll [15872 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {CC4F585B-EBBB-4AA6-9BDF-B28C489A9125} - System32\Tasks\Microsoft\Windows\RemoteAssistance\RemoteAssistanceTask => C:\Windows\system32\RAServer.exe [135168 2023-11-15] (Microsoft Windows -> Microsoft Corporation) -> %windir%\/offerraupdate Task: {8627F38D-3BB5-45A5-AAE5-B8735A41B62D} - System32\Tasks\Microsoft\Windows\Servicing\StartComponentCleanup => {752073A1-23F2-4396-85F0-8FDB879ED0ED} C:\Windows\servicing\TrustedInstaller.exe [192408 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {E51EADD7-C4F7-43E7-A9CB-FEC8EC1E204F} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask => {59B9640B-3F70-4D1C-B159-F26EEB8A4C87} C:\Windows\system32\SettingSyncCore.dll [1128960 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {7445D17B-89AB-43F3-B904-4DD68B19A6F2} - System32\Tasks\Microsoft\Windows\SettingSync\NetworkStateChangeTask => {A4173A49-F373-4475-9A0F-2D615204DC20} C:\Windows\system32\SettingSyncCore.dll [1128960 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {8DB27523-093D-4B93-A00B-68F6317DFAE1} - System32\Tasks\Microsoft\Windows\SharedPC\Account Cleanup => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> %windir%\System32\Windows.SharedPC.AccountManager.dll,StartMaintenance Task: {EC95F45C-0486-40E1-8938-20FE3E377E7D} - System32\Tasks\Microsoft\Windows\Shell\CreateObjectTask => {990A9F8F-301F-45F7-8D0E-68C5952DBA43} C:\Windows\system32\shell32.dll [7832296 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {DFDC1B83-7FD3-4C77-8CD1-7391D1680ACA} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyMonitor => C:\Windows\System32\wpcmon.exe [1188064 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {CD0446AF-D5F6-4616-85CE-058C20FCE9EC} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyRefreshTask => {C844C79D-AED8-4DCE-AB25-4D359BED84F8} C:\Windows\System32\WpcRefreshTask.dll [1050624 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {C483CE25-B1C5-4BEB-AA31-5CADC8C66692} - System32\Tasks\Microsoft\Windows\Shell\IndexerAutomaticMaintenance => {3FBA60A6-7BF5-4868-A2CA-6623B3DFFEA6} C:\Windows\System32\srchadmin.dll [234496 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {5CA26F55-1C13-48BE-9B52-3B6B9044D04B} - System32\Tasks\Microsoft\Windows\Shell\ThemesSyncedImageDownload => {79F8E185-4E45-4B74-8182-02AA430661E4} C:\Windows\System32\Themes.SsfDownload.ScheduledTask.dll [142336 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {008539BF-83F9-4483-9E0A-EEEE6EAC0A08} - System32\Tasks\Microsoft\Windows\Shell\UpdateUserPictureTask => {09C5DD34-009D-40FA-BCB9-0165AD0C15D4} C:\Windows\System32\Windows.UI.Immersive.dll [1256448 2025-05-14] (Microsoft Windows -> Microsoft Corporation) Task: {2DFC28A5-3035-4555-A9E6-CE6D44EB1DB3} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTask => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\Windows\System32\sppcext.dll [608768 2025-05-29] (Microsoft Windows -> Microsoft Corporation) Task: {892625FE-213B-4B60-95ED-A1CEFCAA365D} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskLogon => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\Windows\System32\sppcext.dll [608768 2025-05-29] (Microsoft Windows -> Microsoft Corporation) Task: {3AB082DC-B77E-4487-BB5D-5DCB3A6C2B3C} - System32\Tasks\Microsoft\Windows\SoftwareProtectionPlatform\SvcRestartTaskNetwork => {B1AEBB5D-EAD9-4476-B375-9C3ED9F32AFC} C:\Windows\System32\sppcext.dll [608768 2025-05-29] (Microsoft Windows -> Microsoft Corporation) Task: {A9C498D6-046E-407B-A5B5-597DFC8756D9} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceAgentTask => C:\Windows\system32\SpaceAgent.exe [165888 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {AFEE5D15-0E83-432F-9DB0-58A2702115E1} - System32\Tasks\Microsoft\Windows\SpacePort\SpaceManagerTask => C:\Windows\system32\spaceman.exe [80800 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4D595DA6-BC59-47AE-A527-EC01FCE2E615} - System32\Tasks\Microsoft\Windows\Speech\SpeechModelDownloadTask => C:\Windows\system32\speech_onecore\common\SpeechModelDownload.exe [221696 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {58CCC4DA-C86D-4E3D-8FAF-A7B24D8F3950} - System32\Tasks\Microsoft\Windows\StateRepository\MaintenanceTasks => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> %windir%\system32\Windows.StateRepositoryClient.dll,StateRepositoryDoMaintenanceTasks Task: {D777B567-BB3B-4111-881C-0CB741022B0C} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Management Initialization => {5C9AB547-345D-4175-9AF6-65133463A100} C:\Windows\System32\TieringEngineService.exe [326144 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {FC3767EA-5307-4D11-BA38-EB21A39737D7} - System32\Tasks\Microsoft\Windows\Storage Tiers Management\Storage Tiers Optimization => C:\Windows\system32\defrag.exe [210432 2023-11-15] (Microsoft Windows -> Microsoft Corp.) Task: {261077B5-80C0-4540-B614-72DE15169A3A} - System32\Tasks\Microsoft\Windows\Subscription\EnableLicenseAcquisition => C:\Windows\system32\ClipRenew.exe [182200 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {8B0F524A-7883-44E2-ACAA-6D3CA8615858} - System32\Tasks\Microsoft\Windows\Subscription\LicenseAcquisition => C:\Windows\system32\ClipRenew.exe [182200 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {64614AC8-EA46-476D-A71C-2C0B055C95CC} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCachePrepopulate => {17C82257-654E-4C47-8E23-DCA24EAA76A0} C:\Windows\system32\sysmain.dll [1005056 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {236EEE35-EDD5-418B-BCD5-293F6FAD7966} - System32\Tasks\Microsoft\Windows\Sysmain\HybridDriveCacheRebalance => {D44377B8-1F2F-4FAA-9C8E-6C4AD2928E47} C:\Windows\system32\sysmain.dll [1005056 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {051DF697-AF10-4DB6-9B93-E1A4E35F00F7} - System32\Tasks\Microsoft\Windows\Sysmain\ResPriStaticDbSync => {297EE78C-BA95-4E94-81D3-D6E7F089C7B5} C:\Windows\system32\sysmain.dll [1005056 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {638672E6-20F1-499D-BFCC-9EA7935257C4} - System32\Tasks\Microsoft\Windows\Sysmain\WsSwapAssessmentTask => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> sysmain.dll,PfSvWsSwapAssessmentTask Task: {20546688-8F7B-4B82-8429-7E7E4F537E96} - System32\Tasks\Microsoft\Windows\SystemRestore\SR => C:\Windows\system32\srtasks.exe [59392 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {7BE5585E-0190-458B-9CEC-F4076574C717} - System32\Tasks\Microsoft\Windows\Task Manager\Interactive => {855FEC53-D2E4-4999-9E87-3414E9CF0FF4} C:\Windows\system32\wdc.dll [739840 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {88CE6B8C-B14B-499A-8D43-214F06116F07} - System32\Tasks\Microsoft\Windows\TextServicesFramework\MsCtfMonitor => {01575CFE-9A55-4003-A5E1-F38D1EBDCBE1} C:\Windows\system32\MsCtfMonitor.dll [94208 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {F5E862B9-98AE-458E-BC87-3ED25EFBB4D3} - System32\Tasks\Microsoft\Windows\Time Synchronization\ForceSynchronizeTime => {A31AD6C2-FF4C-43D4-8E90-7101023096F9} C:\Windows\system32\TimeSyncTask.dll [15360 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {1FDAEDB1-C8AA-43FA-B046-3CDDDA12661E} - System32\Tasks\Microsoft\Windows\Time Synchronization\SynchronizeTime => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start w32time task_started Task: {C4C11C95-C597-4541-B0FF-0FB2C761FC92} - System32\Tasks\Microsoft\Windows\Time Zone\SynchronizeTimeZone => C:\Windows\system32\tzsync.exe [70144 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {1B21CF35-06DE-4BA0-BB83-8F56A6260E08} - System32\Tasks\Microsoft\Windows\TPM\Tpm-HASCertRetr => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\Windows\system32\TpmTasks.dll [737792 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {2E12560B-D4EF-4F08-BEE6-BDDF7A9782EF} - System32\Tasks\Microsoft\Windows\TPM\Tpm-Maintenance => {5014B7C8-934E-4262-9816-887FA745A6C4} C:\Windows\system32\TpmTasks.dll [737792 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => C:\Windows\System32\UNP\UpdateNotificationMgr.exe [463232 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {C5FDCFCB-DC2F-4E28-A7EC-3800C69318D7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => C:\Windows\system32\MusNotification.exe [697344 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {EFCA74A8-DEB1-41F5-9ED8-10E04E6416DD} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => C:\Windows\system32\MusNotification.exe [697344 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {70EA2999-165C-4933-9027-250FB8B772F8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Report policies => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {03ECED83-9738-4AE3-ABB3-14C7C8E3E6E7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {AEC7EFDF-4422-46E8-BC97-05FFCAA28CDC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {309BA321-F7C8-46A4-BA50-5FAC484229CB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Scan Static Task => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4F0A7184-F2D6-4072-8DDF-84D109579D87} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Wake To Work => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {1A8A0FD7-CD75-4CDD-9450-AECD47BE6B88} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {C3B53A5C-078A-40A2-91BF-83072DE2E300} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Start Oobe Expedite Work => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {3B7255FC-3EC7-4C77-9CDD-D4DAFD84F1AB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScan_LicenseAccepted => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {59FB3D82-9BD2-4B53-BDA0-AA6276D4EEE1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\StartOobeAppsScanAfterUpdate => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {CB673CE4-960F-462D-AAD7-CDA0CD9FE030} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\UpdateModelTask => C:\Windows\system32\usoclient.exe [242688 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {4671B5C1-A383-4428-A45A-8D348E4CB873} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\Windows\system32\MusNotification.exe [697344 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {57FF06A5-1054-4791-9938-1C3E61F00B07} - System32\Tasks\Microsoft\Windows\UPnP\UPnPHostConfig => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> config upnphost start= auto Task: {C5D47392-881C-422A-9BF8-E4916B55CD22} - System32\Tasks\Microsoft\Windows\USB\Usb-Notifications => {E05BE1C8-92A8-4757-B575-ACAECB4E6A40} C:\Windows\System32\UsbTask.dll [55808 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {3E51A991-10E2-4B16-B5B4-A2F051544BB9} - System32\Tasks\Microsoft\Windows\User Profile Service\HiveUploadTask => {BA677074-762C-444B-94C8-8C83F93F6605} C:\Windows\system32\profsvc.dll [491520 2025-09-10] (Microsoft Windows -> Microsoft Corporation) Task: {0CEC0B91-4AE9-4E8A-ACB2-3B4C811F442C} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\Windows\system32\WaaSMedicPS.dll [29184 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {0CEC0B91-4AE9-4E8A-ACB2-3B4C811F442C} - System32\Tasks\Microsoft\Windows\WaaSMedic\PerformRemediation => {72566E27-1ABB-4EB3-B4F0-EB431CB1CB32} C:\Windows\System32\WaaSMedicSvc.dll [434176 2025-06-25] (Microsoft Windows -> Microsoft Corporation) Task: {1E334E22-CBC0-4D9C-B830-F1CC1BD6DCFD} - System32\Tasks\Microsoft\Windows\WCM\WiFiTask => C:\Windows\System32\WiFiTask.exe [133608 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {4D36FC3F-B740-4739-9A9D-C43793F201B8} - System32\Tasks\Microsoft\Windows\WDI\ResolutionHost => {900BE39D-6BE8-461A-BC4D-B0FA71F5ECB1} C:\Windows\System32\wdi.dll [105472 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {75A35C91-670A-4071-BB93-066651438E14} - System32\Tasks\Microsoft\Windows\Windows Error Reporting\QueueReporting => C:\Windows\system32\wermgr.exe [237488 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {86158314-60CF-4F3F-85B5-2399327EA496} - System32\Tasks\Microsoft\Windows\Windows Filtering Platform\BfeOnServiceStartTypeChange => C:\Windows\system32\rundll32.exe [89600 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> bfe.dll,BfeOnServiceStartTypeChange Task: {94EF6A03-19A8-4414-9BFE-4292DF314D5F} - System32\Tasks\Microsoft\Windows\Windows Media Sharing\UpdateLibrary => C:\Program Files\Windows Media Player\wmpnscfg.exe [71168 2019-12-06] (Microsoft Windows -> Microsoft Corporation) Task: {AA70A383-6F5D-470B-AA6B-B324620D9C75} - System32\Tasks\Microsoft\Windows\WindowsColorSystem\Calibration Loader => {B210D694-C8DF-490D-9576-9E20CDBC20BD} C:\Windows\System32\mscms.dll [708208 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {797B7D28-98F0-4BF4-BBC0-D495E3029C84} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Refresh Group Policy Cache => {07369A67-07A6-4608-ABEA-379491CB7C46} C:\Windows\System32\UpdatePolicy.dll [260608 2025-07-09] (Microsoft Windows -> Microsoft Corporation) Task: {4B7CBB23-56F5-4C0A-AFEF-3109FEF3B403} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => C:\Program Files\RUXIM\PLUGscheduler.exe [383360 2025-06-06] (Microsoft Windows -> Microsoft Corporation) Task: {8FF5DE67-C947-4488-997B-4184221E7D50} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start => C:\Windows\System32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start wuauserv Task: {D85F83F5-ED09-49BC-A506-32C837CA0904} - System32\Tasks\Microsoft\Windows\Wininet\CacheTask => {0358B920-0AC7-461F-98F4-58E32CD89148} C:\Windows\system32\wininet.dll [5039616 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {5E351EE7-F0D4-4F41-A05C-907EB1A33CE8} - System32\Tasks\Microsoft\Windows\WlanSvc\CDSSync => {B0D2B535-12E1-439F-86B3-BADA289510F0} C:\Windows\System32\WiFiCloudStore.dll [283136 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {23C98575-0E86-4478-A215-809EA6EE99BC} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Management => {B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1} C:\Windows\system32\WofTasks.dll [30720 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {03B269A4-3C91-4A6A-84C5-8FA60A2D6732} - System32\Tasks\Microsoft\Windows\WOF\WIM-Hash-Validation => {B7BFFB5A-EFA8-4D8C-BBDE-C8D5FAAF54A1} C:\Windows\system32\WofTasks.dll [30720 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {F93E2A44-7E3E-49FE-9F66-12B1F4A037C0} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Logon Synchronization => {97D47D56-3777-49FB-8E8F-90D7E30E1A1E} C:\Windows\System32\WorkFoldersShell.dll [230400 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {6440C5E0-A168-4A5F-B84E-F7C8C0A6E933} - System32\Tasks\Microsoft\Windows\Work Folders\Work Folders Maintenance Work => {63260BCE-A3FB-4A34-AA51-D4D8E877B62B} C:\Windows\System32\WorkFoldersShell.dll [230400 2024-05-15] (Microsoft Windows -> Microsoft Corporation) Task: {4BDB5047-01B7-48D5-AE7E-720EDA7D2049} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Device-Join => C:\Windows\System32\dsregcmd.exe [468992 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {571A0A5E-B60E-4A25-BEFB-ABB3C6BB6B78} - System32\Tasks\Microsoft\Windows\Workplace Join\Device-Sync => {C662D912-E4D6-44A3-89A0-20550514951D} C:\Windows\System32\dsregtask.dll [52736 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {35D4C945-33D4-43B6-83D3-99034D411E25} - System32\Tasks\Microsoft\Windows\Workplace Join\Recovery-Check => C:\Windows\System32\dsregcmd.exe [468992 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {DF6A7742-913B-4025-B27A-CE65BB343A0D} - System32\Tasks\Microsoft\Windows\WwanSvc\NotificationTask => C:\Windows\System32\WiFiTask.exe [133608 2023-11-15] (Microsoft Windows -> Microsoft Corporation) Task: {C4C46F5D-628F-4C0D-8B45-2B1935E2861E} - System32\Tasks\Microsoft\Windows\WwanSvc\OobeDiscovery => {C93CF9D5-031B-4AAA-AB0B-EF802347B381} C:\Windows\System32\MBMediaManager.dll [746496 2025-04-23] (Microsoft Windows -> Microsoft Corporation) Task: {41F5FC9D-EE65-4CA4-A908-91B3587198E0} - System32\Tasks\Microsoft\XblGameSave\XblGameSaveTask => C:\Windows\System32\XblGameSaveTask.exe [33792 2025-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {05C14E95-6274-41E0-923B-A93522D0A857} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2025-11-22] (Microsoft Corporation -> Microsoft Corporation) Task: {37AC4EFE-D0E8-46D4-8A1A-5AD700415B47} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2025-11-22] (Microsoft Corporation -> Microsoft Corporation) Task: {32F53411-798E-4524-8747-7ED8C7FCF93D} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {19F81E89-464D-468B-9D75-1D77985EA7DB} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-504369874-3521093726-15342627-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-25] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {FB304FA5-50E1-4557-A66D-8317E6B56E2F} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-25] (Mozilla Corporation -> Mozilla Foundation) Task: {B57CD830-4EC2-4EEA-AF4D-B97AC2A3F777} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4380008 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) Task: {981E9F14-2D03-44FF-BF5B-AC20BFF6AAEB} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-504369874-3521093726-15342627-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4380008 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) Task: {D08D4B32-C8F3-4C14-98FA-DF19603613F9} - System32\Tasks\OneDrive Startup Task-S-1-5-21-504369874-3521093726-15342627-1001 => C:\Program Files\Microsoft OneDrive\25.209.1026.0002\OneDriveLauncher.exe [727440 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}: [DhcpDomain] lan Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\05F48455C414E4B414: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\14E64627F69646140523649344: [DhcpNameServer] 192.168.24.24 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\24C65756F5C41676F6F6E6F534964797: [DhcpNameServer] 10.53.0.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\55053403034313837353: [DhcpNameServer] 193.47.158.254 193.47.158.255 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\55053463139373731343: [DhcpNameServer] 62.179.1.61 62.179.1.63 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\55053463139373731343: [DhcpDomain] home Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\F42716E67656F53577961647C6F677F646F544138383: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\F42716E67656F53577961647C6F677F646F544138383: [DhcpDomain] home Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\F42716E67656F53577961647C6F677F646F593544403: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4b698287-ee75-4082-98ad-dfb6d5953f71}\F42716E67656F53577961647C6F677F646F593544403: [DhcpDomain] home Tcpip\..\Interfaces\{cb7b2aad-4e74-4916-9954-4404f1cf2a81}: [NameServer] 1.1.1.1,1.0.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\grzeg\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-29] Edge Notifications: Default -> hxxps://www.facebook.com Edge StartupUrls: Default -> "hxxps://www.msn.com/pl-pl/" Edge Extension: (Dokumenty Google offline) - C:\Users\grzeg\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-11] Edge Extension: (Edge relevant text changes) - C:\Users\grzeg\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] Edge Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\grzeg\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2025-11-27] Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKU\S-1-5-21-504369874-3521093726-15342627-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] FireFox: ======== FF DefaultProfile: oj1ns97h.default FF ProfilePath: C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\oj1ns97h.default [2025-06-30] FF ProfilePath: C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release [2025-12-01] FF Session Restore: Mozilla\Firefox\Profiles\20utxmih.default-release -> [funkcja włączona] FF Extension: (Dark Reader) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\addon@darkreader.org.xpi [2025-11-28] FF Extension: (Enhancer for YouTube™) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2024-12-02] FF Extension: (Ghostery Bloker Trackerów i Reklam - Prywatność AdBlock) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\firefox@ghostery.com.xpi [2025-11-19] FF Extension: (AliPrice - śledzenie cen na Alíexpress) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\jid10-kOqZHmOwLzTaFg@aliprice_popup.xpi [2024-03-02] FF Extension: (uBlock Origin) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-10-30] FF Extension: (Search by Image) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [2025-10-16] FF Extension: (NoScript) - C:\Users\grzeg\AppData\Roaming\Mozilla\Firefox\Profiles\20utxmih.default-release\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2025-11-28] FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-11-17] (Adobe Inc. -> Adobe Systems Inc.) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\bd_js_config.js [2024-10-14] <==== UWAGA (Linkuje do pliku *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\bd_config.cfg [2024-10-14] <==== UWAGA Chrome: ======= CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Brave: ======= BRA Profile: C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-07-23] BRA Extension: (Malwarebytes Browser Guard) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-07-23] BRA Profile: C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 1 [2025-06-30] BRA Extension: (Malwarebytes Browser Guard) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-06-30] BRA Profile: C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 2 [2025-06-30] BRA Extension: (Malwarebytes Browser Guard) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\Profile 2\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-06-30] BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-07-23] BRA Extension: (Brave Local Data Files Updater) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-07-23] BRA Extension: (Brave NTP background images) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-06-30] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\beeceepafhbchnbfdkfalfipoancnjkm [2025-06-30] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-07-23] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-07-23] BRA Extension: (Brave Ads Resources) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\feeklcgpaolphdiamjaolkkcpbeihkbh [2025-06-30] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-06-30] BRA Extension: (Brave NTP sponsored images) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2025-07-23] BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-07-23] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-07-23] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka (plaintext))) - C:\Users\grzeg\AppData\Local\BraveSoftware\Brave-Browser\User Data\ngcohbdfildjnmfnicgdipopmlhdcokg [2025-07-23] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.) R2 BDAppSrv; C:\Program Files\Bitdefender\Bitdefender Security App\bdservicehost.exe [851704 2025-11-28] (Bitdefender SRL -> Bitdefender) R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [852216 2025-11-28] (Bitdefender SRL -> Bitdefender) R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [852216 2025-11-28] (Bitdefender SRL -> Bitdefender) R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2966184 2023-07-20] (Bitdefender SRL -> Bitdefender) R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2426992 2025-07-03] (Bitdefender SRL -> Bitdefender) R2 BDSafepaySrv; C:\Program Files\Bitdefender\Bitdefender Security App\Safepay\bdservicehost.exe [852216 2025-11-28] (Bitdefender SRL -> Bitdefender) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-06-30] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\142.1.84.141\elevation_service.exe [3255376 2025-11-18] (Brave Software, Inc. -> Brave Software, Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-06-30] (Brave Software, Inc. -> BraveSoftware Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.209.1026.0002\FileSyncHelper.exe [3608936 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243720 2025-07-02] (HP Inc. -> HP Inc.) R3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11146712 2025-12-01] (Malwarebytes Inc -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2024-12-17] (Malwarebytes Inc. -> Malwarebytes) S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MpDefenderCoreService.exe [1431160 2024-09-25] (Microsoft Windows Publisher -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.209.1026.0002\OneDriveUpdaterService.exe [3891560 2025-11-23] (Microsoft Corporation -> Microsoft Corporation) R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [756640 2025-11-11] (Bitdefender SRL -> Bitdefender) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [18035512 2023-10-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [303648 2025-11-28] (Bitdefender SRL -> Bitdefender) R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [852216 2025-11-28] (Bitdefender SRL -> Bitdefender) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\NisSrv.exe [3199656 2024-09-25] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24080.9-0\MsMpEng.exe [133704 2024-09-25] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AmUStor; C:\Windows\system32\drivers\AmUStorU.sys [135296 2022-06-23] (Alcorlink Corp. -> ) R1 atc; C:\Windows\System32\drivers\atc.sys [8502344 2025-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) R3 AtcExt; C:\Windows\System32\drivers\AtcExt.sys [27192 2025-08-14] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA) R2 BdDci4; C:\Windows\System32\drivers\bddci4.sys [1380440 2025-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S0 bdelam; C:\Windows\System32\drivers\bdelam.sys [24568 2023-05-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender) S3 bdprivmon; C:\Windows\System32\drivers\bdprivmon.sys [49208 2025-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 bduefiscan; C:\Windows\System32\drivers\bduefiscan.sys [53808 2025-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R1 Gemma; C:\Windows\System32\drivers\gemma.sys [1793072 2025-10-29] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA) S3 Ignisv2; C:\Windows\System32\drivers\ignisv2.sys [848456 2025-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) R2 mbamchameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [234088 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [22120 2025-03-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [245336 2025-12-01] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R2 Trufos; C:\Windows\System32\drivers\Trufos.sys [630320 2025-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2023-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 usbscan; C:\Windows\System32\drivers\usbscan.sys [49664 2022-07-13] (Microsoft Corporation) [Brak podpisu cyfrowego] R0 vlflt; C:\Windows\System32\drivers\vlflt.sys [1445440 2025-10-29] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [22080 2024-09-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [602392 2024-09-25] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-09-25] (Microsoft Windows -> Microsoft Corporation) R3 yukonw8; C:\Windows\System32\drivers\yk63x64.sys [288768 2019-12-07] (Microsoft Windows -> Marvell) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (Wszystkie) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-12-01 17:44 - 2025-12-01 17:46 - 000078288 _____ C:\Users\grzeg\Downloads\FRST.txt 2025-12-01 17:30 - 2025-12-01 17:45 - 000000000 ____D C:\FRST 2025-12-01 17:27 - 2025-12-01 17:27 - 002444288 _____ (Farbar) C:\Users\grzeg\Downloads\FRST64.exe 2025-12-01 16:17 - 2025-12-01 16:17 - 000234088 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2025-12-01 16:16 - 2025-12-01 16:16 - 000159296 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae.sys 2025-11-25 19:37 - 2025-11-26 15:35 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-11-18 17:03 - 2025-11-18 17:03 - 001112960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ClipSp.sys 2025-11-18 16:57 - 2025-11-18 16:57 - 000150088 _____ C:\ProgramData\agent.update.1763481459.bdinstall.v2.bin 2025-11-17 22:55 - 2025-11-17 22:55 - 000289412 _____ C:\Users\grzeg\Downloads\Śledź przesyłkę - Poczta Polska.htm 2025-11-17 22:49 - 2025-11-17 22:49 - 000000000 ____D C:\Users\grzeg\Downloads\Śledź przesyłkę - Poczta Polska_pliki 2025-11-16 16:42 - 2025-11-18 23:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2025-11-12 17:20 - 2025-11-12 17:20 - 003067904 _____ (Microsoft Corporation) C:\Windows\system32\windowsudk.shellcommon.dll 2025-11-12 17:20 - 2025-11-12 17:20 - 002522624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowsudk.shellcommon.dll 2025-11-12 17:20 - 2025-11-12 17:20 - 000828456 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe 2025-11-12 17:20 - 2025-11-12 17:20 - 000705024 _____ C:\Windows\system32\consumeresumgr.dll 2025-11-12 17:20 - 2025-11-12 17:20 - 000535440 _____ (Microsoft Corporation) C:\Windows\system32\ClipESUConsumer.exe 2025-11-12 17:20 - 2025-11-12 17:20 - 000225168 _____ (Microsoft Corporation) C:\Windows\system32\tcbloader.dll 2025-11-12 17:20 - 2025-11-12 17:20 - 000013227 _____ C:\Windows\system32\DrtmAuthTxt.wim 2025-11-12 16:53 - 2025-11-06 02:40 - 000498176 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2025-11-12 16:53 - 2025-11-06 01:54 - 000393216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2025-11-11 12:25 - 2025-11-11 12:25 - 000605726 _____ C:\Users\grzeg\Downloads\Etykieta zwrotu laptop.pdf 2025-11-07 00:09 - 2025-11-07 00:09 - 001025294 _____ C:\Users\grzeg\Downloads\Laptop Ninkear A15 Pro 16GB 1TB AMD Ryzen 5 7430U 16 cali 120Hz 2560_1600 Ekran Wyświetlacz Otwieranie na Odcisk Palca Notebook Komputer.htm 2025-11-07 00:09 - 2025-11-07 00:09 - 000000000 ____D C:\Users\grzeg\Downloads\Laptop Ninkear A15 Pro 16GB 1TB AMD Ryzen 5 7430U 16 cali 120Hz 2560_1600 Ekran Wyświetlacz Otwieranie na Odcisk Palca Notebook Komputer_pliki 2025-11-05 18:38 - 2025-11-05 18:38 - 001648820 _____ C:\Windows\Minidump\110525-18718-01.dmp ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-12-01 17:41 - 2022-02-10 19:55 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-12-01 17:37 - 2024-10-14 16:19 - 000000000 ____D C:\Users\grzeg\AppData\Local\Malwarebytes 2025-12-01 17:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-12-01 16:48 - 2021-12-17 00:12 - 000000000 ____D C:\Windows\SystemTemp 2025-12-01 16:48 - 2020-09-02 19:37 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-12-01 16:23 - 2025-01-14 19:32 - 000000000 ____D C:\Users\grzeg\AppData\Local\CrashDumps 2025-12-01 16:17 - 2024-10-14 16:19 - 000245336 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2025-12-01 16:12 - 2020-09-02 19:47 - 000000000 ___RD C:\Users\grzeg\OneDrive 2025-11-29 20:02 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2025-11-29 12:53 - 2020-09-15 16:05 - 000003564 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-11-29 12:53 - 2020-09-15 16:05 - 000003438 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-11-28 17:48 - 2024-10-14 16:01 - 000000000 ____D C:\ProgramData\Bitdefender 2025-11-28 17:48 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2025-11-28 17:48 - 2019-12-07 10:03 - 000065536 _____ C:\Windows\system32\config\ELAM 2025-11-28 17:42 - 2024-10-14 16:02 - 001380440 _____ (Bitdefender) C:\Windows\system32\Drivers\bddci4.sys 2025-11-28 17:41 - 2024-10-14 16:02 - 000049208 _____ (Bitdefender) C:\Windows\system32\Drivers\bdprivmon.sys 2025-11-28 17:41 - 2024-10-14 16:01 - 000848456 _____ (Bitdefender) C:\Windows\system32\Drivers\Ignisv2.sys 2025-11-27 16:32 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-11-26 15:35 - 2021-07-20 18:13 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2025-11-26 15:35 - 2020-09-02 19:53 - 000001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-11-26 15:35 - 2020-09-02 19:53 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-11-24 19:01 - 2020-09-09 15:19 - 000000000 ____D C:\Users\grzeg\AppData\Roaming\Suuntolink 2025-11-23 13:06 - 2025-02-06 18:15 - 000003534 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-504369874-3521093726-15342627-1001 2025-11-23 13:06 - 2023-03-26 10:23 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2025-11-23 13:06 - 2023-03-26 10:23 - 000002132 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-11-23 13:06 - 2023-03-26 10:22 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2025-11-23 13:06 - 2021-12-11 20:53 - 000003584 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-504369874-3521093726-15342627-1001 2025-11-22 19:22 - 2020-09-15 16:05 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-11-21 17:33 - 2022-10-13 20:33 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2025-11-20 22:57 - 2020-09-02 19:38 - 000000000 ____D C:\Users\grzeg 2025-11-20 19:40 - 2020-09-02 19:39 - 001678238 _____ C:\Windows\system32\PerfStringBackup.INI 2025-11-20 19:40 - 2019-12-07 16:08 - 000748964 _____ C:\Windows\system32\perfh015.dat 2025-11-20 19:40 - 2019-12-07 16:08 - 000144674 _____ C:\Windows\system32\perfc015.dat 2025-11-20 19:36 - 2020-09-10 22:05 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2025-11-20 19:36 - 2020-09-02 19:37 - 000008192 ___SH C:\DumpStack.log.tmp 2025-11-20 19:36 - 2020-09-02 19:37 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-11-18 23:31 - 2019-12-07 10:03 - 001048576 _____ C:\Windows\system32\config\BBI 2025-11-18 21:51 - 2025-06-30 17:44 - 000002370 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2025-11-18 17:03 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2025-11-18 16:57 - 2024-10-14 15:59 - 000003842 _____ C:\Windows\system32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 2025-11-18 16:57 - 2024-10-14 15:57 - 000000000 ____D C:\Program Files\Bitdefender Agent 2025-11-17 20:13 - 2020-09-10 21:59 - 000001274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2025-11-12 16:37 - 2020-10-06 21:19 - 000000000 ____D C:\Windows\system32\MRT 2025-11-12 16:31 - 2020-10-06 09:31 - 215625816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2025-11-05 18:38 - 2022-08-30 15:20 - 000000000 ____D C:\Windows\Minidump 2025-11-05 18:37 - 2024-08-11 10:30 - 908088818 _____ C:\Windows\MEMORY.DMP ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================