Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20-11-2025 Uruchomiony przez pc (administrator) THINKPAD (LENOVO 20B3A01GMH) (19-12-2025 11:23:04) Uruchomiony z C:\Users\pc\Desktop\FRST64.exe Załadowane profile: pc Platforma: Microsoft Windows 10 Pro Wersja 21H2 19044.2486 (X64) Język: Holenderski (Holandia) -> Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe (explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [463456 2024-08-22] (Power Software Limited -> Power Software Ltd) HKLM\...\Policies\Explorer: [NoWindowsUpdate] 1 HKLM\...\Policies\Explorer: [AllowOnlineTips] 0 HKLM\...\Policies\Explorer: [HideSCAMeetNow] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\MRT: Ograniczenia <==== UWAGA HKLM\Software\Policies\...\system: [AllowCrossDeviceClipboard] 0 HKLM\Software\Policies\...\system: [EnableActivityFeed] 0 HKLM\Software\Policies\...\system: [EnableCdp] 0 HKLM\Software\Policies\...\system: [EnableMmx] 0 HKLM\Software\Policies\...\system: [RSoPLogging] 0 HKLM\Software\Policies\...\system: [AllowClipboardHistory] 0 HKLM\Software\Policies\...\system: [PublishUserActivities] 0 HKLM\Software\Policies\...\system: [UploadUserActivities] 0 HKU\S-1-5-21-3702064335-1485693863-2381811695-1001\...\Run: [SpotifyLauncher] => C:\Users\pc\AppData\Roaming\Spotify\SpotifyLauncher.exe [10344320 2025-12-08] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3702064335-1485693863-2381811695-1001\...\Policies\Explorer: [HideSCAMeetNow] 1 HKU\S-1-5-21-3702064335-1485693863-2381811695-1001\...\MountPoints2: D - "D:\Autorun.exe" HKU\S-1-5-21-3702064335-1485693863-2381811695-1001\...\MountPoints2: {6bb728f0-7ed3-11ee-82f1-f8a963531cbd} - "V:\RunGame.exe" HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Run: [MicrosoftEdgeAutoLaunch_72FC07CE8FBC282A90F28F3BD5668C8E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4188616 2023-01-19] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Run: [SteamServerBrowser] => C:\Users\pc\AppData\Roaming\SteamServerBrowser\SteamServerBrowser.exe [289304 2023-05-03] (Lyrha Software Technologies Inc. -> ) HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Run: [ProductAuthenticationService] => C:\Users\pc\AppData\Roaming\ProductAuthenticationService\pas.exe [1004072 2019-05-07] (ResolveDevOps Limited -> ResolveDevOps Limited) <==== UWAGA HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [39517600 2025-10-25] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Run: [Spotify] => C:\Users\guest\AppData\Roaming\Spotify\Spotify.exe --autostart --minimized (Brak pliku) HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\Policies\Explorer: [HideSCAMeetNow] 1 HKU\S-1-5-21-3702064335-1485693863-2381811695-1002\...\MountPoints2: {6bb728f0-7ed3-11ee-82f1-f8a963531cbd} - "V:\RunGame.exe" IFEO\CompatTelRunner.exe: [Debugger] %windir%\System32\taskkill.exe IFEO\DeviceCensus.exe: [Debugger] %windir%\System32\taskkill.exe IFEO\EOSnotify.exe: [Debugger] / IFEO\InstallAgent.exe: [Debugger] / IFEO\MoNotificationUx.exe: [Debugger] / IFEO\MusNotification.exe: [Debugger] / IFEO\MusNotificationUx.exe: [Debugger] / IFEO\remsh.exe: [Debugger] / IFEO\SihClient.exe: [Debugger] / IFEO\UpdateAssistant.exe: [Debugger] / IFEO\UsoClient.exe: [Debugger] / IFEO\WaaSMedic.exe: [Debugger] / IFEO\WaasMedicAgent.exe: [Debugger] / IFEO\Windows10Upgrade.exe: [Debugger] / IFEO\Windows10UpgraderApp.exe: [Debugger] / GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Edge: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {09A22AC7-9F73-451A-9A1E-43CEF3CA416D} - System32\Tasks\DolbySelectorTask => %ProgramFiles%\Dolby Digital Plus\ddp.exe -autostart (Brak pliku) Task: {7E854B1A-DDFE-4AA5-AF27-A9FA3CA508CB} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Brak pliku) Task: {1104BE36-0C2A-4F41-AEF9-C48D7EE958C8} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-3702064335-1485693863-2381811695-1001 => "C:\Users\pc\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe" (Brak pliku) Task: {611D9202-DEAA-4A21-A11B-C90E5C1F67B1} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [128976 2022-05-17] (Lenovo -> Lenovo) Task: {6960F90A-D288-41DE-990E-BAF77A963BF1} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\Windows\SysWOW64\PowerMgrInst.exe [64984 2022-05-17] (Lenovo -> ) Task: {D93619D6-38FA-40BE-A9B4-9FD868B413E3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3118675B-27D2-4F5A-9ACD-7C22AD5E84D9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BE84B270-294D-40CC-BBC5-6738021E7CF5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {30AEB6FE-65DA-44ED-B9E3-9E2E22688A0F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {26D05CDD-CDB6-40F2-80BB-97A2C522BB76} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3702064335-1485693863-2381811695-1001Core{7F33B461-11CE-4CE6-B81D-84BBA0B6099F} => C:\Users\pc\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206256 2023-01-21] (Microsoft Corporation -> Microsoft Corporation) Task: {272937A8-F8FA-4AAE-86B9-246A3B013649} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3702064335-1485693863-2381811695-1001UA{B4FD887B-5EBD-4C35-8C03-A3D2C8693DDC} => C:\Users\pc\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206256 2023-01-21] (Microsoft Corporation -> Microsoft Corporation) Task: {136C2C9C-251E-460D-9922-044D593260FE} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-17] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {8376D0C3-C65A-4EB2-ACEA-2F5A57ABE2B0} - System32\Tasks\TVT\TVSUUpdateTask => "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (Brak pliku) Task: {1B195E49-2144-4DBA-BBDE-8C8599E4F6D7} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => "C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe" PendingTask (Brak pliku) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.) Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 10.11.66.218 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}: [NameServer] 94.140.14.14,94.140.15.15 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}: [DhcpNameServer] 10.11.66.218 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\3547169735F6C6574796F6E637: [DhcpNameServer] 172.16.0.1 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\7416C6168797023523030253740293031626: [DhcpNameServer] 192.168.180.137 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\7416C616879702359366436336: [NameServer] 94.140.14.14,94.140.15.15 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\7416C616879702359366436336: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\960586F6E656022303030302823392: [NameServer] 94.140.14.14,94.140.15.15 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\960586F6E656022303030302823392: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\B405E4641454336463: [DhcpNameServer] 192.168.2.254 Tcpip\..\Interfaces\{f1e64a99-bb1f-44d2-adf0-9746062f3880}\B405E4641454336463: [DhcpDomain] home Edge: ======= Edge Profile: C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-31] FireFox: ======== FF DefaultProfile: yrm513f5.default FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\yrm513f5.default [2023-04-16] FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release [2025-12-19] FF Notifications: Mozilla\Firefox\Profiles\eg87osxh.default-release -> hxxps://club.autodoc.pl FF Extension: (Facebook Container) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\@contain-facebook.xpi [2025-06-30] FF Extension: (Bloker reklam AdGuard) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\adguardadblocker@adguard.com.xpi [2025-11-19] FF Extension: (Enhancer for YouTube™) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2024-12-02] FF Extension: (Simple Translate) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\simple-translate@sienori.xpi [2025-12-11] FF Extension: (ImprovedTube) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{3c6bf0cc-3ae2-42fb-9993-0d33104fdcaf}.xpi [2025-12-11] FF Extension: (Presearch.com Search Extension) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{441ae0e7-c955-4b0e-8209-99462af458db}.xpi [2023-09-24] FF Extension: (SingleFile) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{531906d3-e22f-4a6c-a102-8057b88a1a63}.xpi [2025-12-11] FF Extension: (Weather) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{a79a9c4c-9c3f-4bf4-9e58-6574cc0b7ecb}.xpi [2025-06-30] FF Extension: (Video DownloadHelper) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2025-12-11] FF Extension: (Easy Video Downloader) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{cd04e15e-6b23-4648-860d-0057602a5c2a}.xpi [2023-12-06] FF Extension: (To DeepL) - C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\eg87osxh.default-release\Extensions\{db420ff1-427a-4cda-b5e7-7d395b9f16e1}.xpi [2025-03-04] FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN) Vivaldi: ======= StartMenuInternet: (HKU\S-1-5-21-3702064335-1485693863-2381811695-1001) Vivaldi.YQ45RTU4H4F3GSUKF4RQFJSWBM - "C:\Users\pc\Documents\Vivaldi\Application\vivaldi.exe" ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2024-10-02] (Apple Inc. -> Apple Inc.) S2 DefenderUIService; C:\Program Files\DefenderUI\DefenderUIService.exe [342608 2025-03-23] (VoodooSoft, LLC -> VoodooSoft, LLC) S4 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [47000 2024-09-26] (Intel Corporation -> Intel) S4 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [330136 2024-09-26] (Intel Corporation -> Intel) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11122280 2023-04-25] (Electronic Arts, Inc. -> Electronic Arts) S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3071904 2025-10-25] (Epic Games Inc. -> Epic Games, Inc.) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-05-01] (Epic Games Inc. -> Epic Games, Inc.) S3 LPlatSvc; C:\Windows\System32\LPlatSvc.exe [892288 2019-12-11] (Lenovo -> Lenovo.) S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2024-09-18] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [3073888 2024-09-18] (Malwarebytes Inc. -> Malwarebytes) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe [2026184 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224184 2023-01-24] (Microsoft Windows Publisher -> Microsoft Corporation) S4 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2022-10-04] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S4 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2022-10-04] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) S2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [77792 2018-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) S4 valWbioSyncSvc; C:\Windows\system32\valWbioSyncSvc.exe [48608 2018-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe [4414480 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe [282440 2025-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SUService; "C:\Program Files (x86)\Lenovo\System Update\SUService.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthPS3; C:\Windows\System32\drivers\BthPS3.sys [269808 2023-07-17] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) R3 BthPS3PSM; C:\Windows\System32\drivers\BthPS3PSM.sys [54296 2023-07-17] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-12-08] (Microsoft Windows -> Microsoft Corporation) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [21480 2023-11-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2024-09-18] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S3 nssmkig; C:\Windows\System32\drivers\Nssmkig.sys [35392 2021-07-17] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) R0 PMDRVS; C:\Windows\System32\drivers\pmdrvs.sys [38160 2019-12-11] (Lenovo -> Lenovo.) S3 RT-USB; C:\Windows\system32\drivers\RT-USB64.SYS [97152 2014-05-12] (Ross-Tech, LLC -> Ross-Tech LLC) R1 SMIDriverGen; C:\Windows\system32\DRIVERS\smi.sys [31440 2018-04-24] (Synaptics Inc. -> Synaptics Incorporated) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-10-04] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2021-02-23] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 vm331avs; C:\Windows\System32\Drivers\vm331avs.sys [640776 2015-07-01] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20904 2025-12-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [629168 2025-12-08] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-08] (Microsoft Windows -> Microsoft Corporation) U4 DcpSvc; Brak ImagePath S3 IntcAzAudAddService; \SystemRoot\system32\drivers\RTKVHD64.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-12-19 11:23 - 2025-12-19 11:24 - 000020562 _____ C:\Users\pc\Desktop\FRST.txt 2025-12-19 11:18 - 2025-12-19 11:18 - 009566696 _____ (Malwarebytes) C:\Users\pc\Desktop\AdwCleaner.exe 2025-12-19 11:18 - 2025-12-19 11:18 - 002444288 _____ (Farbar) C:\Users\pc\Desktop\FRST64.exe 2025-12-11 18:31 - 2025-12-11 18:33 - 000000000 ____D C:\Users\pc\AppData\Local\winutil 2025-12-10 09:43 - 2025-12-10 09:43 - 001489326 _____ C:\Users\pc\Desktop\Resume Builder.htm 2025-12-10 09:43 - 2025-12-10 09:43 - 000000000 ____D C:\Users\pc\Desktop\Resume Builder_pliki 2025-12-10 09:26 - 2025-12-10 09:26 - 000020073 _____ C:\Users\pc\Desktop\KamilKucResume2024_251209_091920.pdf 2025-12-10 09:26 - 2025-12-10 09:26 - 000001633 _____ C:\Users\pc\Desktop\CV_251210_092559.txt ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-12-19 11:23 - 2024-05-02 14:22 - 000000000 ____D C:\FRST 2025-12-19 11:12 - 2023-01-09 23:27 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-12-19 08:57 - 2023-04-16 17:18 - 000000527 _____ C:\Users\pc\.vivaldi_reporting_data 2025-12-19 08:02 - 2023-01-21 15:25 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-12-19 00:53 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-12-18 21:19 - 2023-01-21 15:16 - 000748876 _____ C:\Windows\system32\perfh015.dat 2025-12-18 21:19 - 2023-01-21 15:16 - 000144538 _____ C:\Windows\system32\perfc015.dat 2025-12-18 21:19 - 2023-01-09 23:34 - 002563150 _____ C:\Windows\system32\PerfStringBackup.INI 2025-12-18 21:19 - 2019-12-07 16:14 - 000738980 _____ C:\Windows\system32\perfh013.dat 2025-12-18 21:19 - 2019-12-07 16:14 - 000146174 _____ C:\Windows\system32\perfc013.dat 2025-12-18 21:19 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2025-12-17 21:36 - 2023-04-13 21:22 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-12-17 21:36 - 2023-01-21 15:25 - 000001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-12-17 21:36 - 2023-01-21 15:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-12-11 22:42 - 2024-08-12 23:27 - 000000000 ____D C:\Users\pc\AppData\Roaming\FreeTube 2025-12-11 18:46 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2025-12-11 18:37 - 2023-01-09 23:33 - 000000000 ____D C:\Users\pc\AppData\Local\Packages 2025-12-11 18:37 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-12-11 18:31 - 2023-01-21 18:15 - 000000000 ____D C:\Users\pc\AppData\Local\ClassicShell 2025-12-10 21:09 - 2025-10-28 16:08 - 000000000 ____D C:\Users\pc\AppData\Local\Spotify 2025-12-10 17:30 - 2025-10-28 16:08 - 000000000 ____D C:\Users\pc\AppData\Roaming\Spotify 2025-12-10 14:53 - 2024-10-13 14:10 - 000000000 __SHD C:\Users\pc\IntelGraphicsProfiles 2025-12-10 14:53 - 2024-09-21 15:50 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2025-12-10 14:52 - 2023-01-21 15:11 - 000000000 ____D C:\ProgramData\Synaptics 2025-12-10 14:52 - 2023-01-09 23:27 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-12-10 14:52 - 2023-01-09 23:26 - 000008192 ___SH C:\DumpStack.log.tmp 2025-12-10 14:52 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState 2025-12-10 13:21 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI 2025-12-09 22:17 - 2023-01-21 18:27 - 000000000 ____D C:\Users\pc\AppData\Roaming\AIMP 2025-12-08 11:34 - 2023-02-10 16:47 - 000000000 ____D C:\Program Files (x86)\Steam 2025-12-08 10:33 - 2023-01-09 23:27 - 000000000 ____D C:\Windows\system32\Drivers\wd 2025-12-07 22:50 - 2023-01-24 18:07 - 000000000 ____D C:\Windows\SystemTemp 2025-12-05 17:12 - 2023-02-10 18:52 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2025-12-05 17:01 - 2023-02-10 16:49 - 000000000 ____D C:\Users\pc\AppData\Local\Steam 2025-12-05 16:24 - 2023-05-01 11:50 - 000000000 ____D C:\Users\pc\AppData\Local\CrashDumps 2025-11-21 16:30 - 2023-02-07 17:03 - 000000000 ____D C:\Users\pc\Documents\Peace backup ==================== Pliki w katalogu głównym wybranych folderów ======== 2025-06-08 08:48 - 2025-06-08 08:57 - 000000016 _____ () C:\Users\pc\AppData\Local\d2.bin 2025-06-08 08:48 - 2025-06-08 08:57 - 000000017 _____ () C:\Users\pc\AppData\Local\d3.bin 2023-02-17 10:43 - 2023-04-13 13:34 - 000007666 _____ () C:\Users\pc\AppData\Local\Resmon.ResmonCfg 2025-06-08 08:48 - 2025-06-08 08:57 - 000005120 _____ (Microsoft Corporation) C:\Users\pc\AppData\Local\sleep.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================