Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 10-08-2019 Uruchomiony przez Sylwia (administrator) SYLWIA (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (11-08-2019 21:21:15) Uruchomiony z C:\Users\Sylwia\Downloads Załadowane profile: Sylwia (Dostępne profile: Sylwia) Platform: Windows 10 Home Wersja 1803 17134.885 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated -> ) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Konstantin Polyakov IP -> ) C:\Program Files (x86)\Autorun Organizer\Reg64Call.exe (Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe (Konstantin Polyakov IP -> Chemtable Software) C:\Program Files (x86)\Autorun Organizer\StartupCheckingService.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe (Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.50.38.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.50.38.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (SoundMixer) [Brak podpisu cyfrowego] C:\Users\Sylwia\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe (Swift Media Entertainment, Inc. -> Blitz Inc.) C:\Users\Sylwia\AppData\Local\Blitz\app-1.2.0\Blitz.exe (Swift Media Entertainment, Inc. -> Blitz Inc.) C:\Users\Sylwia\AppData\Local\Blitz\app-1.2.0\Blitz.exe (Swift Media Entertainment, Inc. -> Blitz Inc.) C:\Users\Sylwia\AppData\Local\Blitz\app-1.2.0\Blitz.exe (Swift Media Entertainment, Inc. -> Blitz Inc.) C:\Users\Sylwia\AppData\Local\Blitz\app-1.2.0\Blitz.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (VIA Technologies, Inc -> VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [180448 2019-07-30] (ESET, spol. s r.o. -> ESET) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2383040 2016-10-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3210016 2019-07-17] (Valve -> Valve Corporation) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Run: [Discord] => C:\Users\Sylwia\AppData\Local\Discord\app-0.0.305\Discord.exe [81780056 2019-03-07] (Discord Inc. -> Discord Inc.) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Run: [com.blitz.app] => C:\Users\Sylwia\AppData\Local\Blitz\Update.exe [1842592 2019-04-24] (Swift Media Entertainment, Inc. -> GitHub) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Run: [Spotify] => C:\Users\Sylwia\AppData\Roaming\Spotify\Spotify.exe [25828256 2019-08-02] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\MountPoints2: {0f0cd372-708e-11e8-866e-902b345e8cd9} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\MountPoints2: {1be43404-cbb7-11e6-85e9-902b345e8cd9} - "H:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\MountPoints2: {4eb186cd-628d-11e8-8669-902b345e8cd9} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\MountPoints2: {4eb18796-628d-11e8-8669-902b345e8cd9} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Winlogon: [Shell] %comspec% <==== UWAGA HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist "C:\Users\Sylwia\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" ( start /MIN "" "C:\Users\Sylwia\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [Brak podpisu cyfrowego] HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.100\Installer\chrmstp.exe [2019-08-11] (Google LLC -> Google LLC) Lsa: [Notification Packages] scecli C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0E9F5E3F-94E1-49C0-9518-B7F424D49C0F} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [272384 2017-09-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {26F6CBE0-14D1-4B0E-B91D-8523D4F06365} - System32\Tasks\AdobeGCInvoker-1.0-SYLWIA-Sylwia => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {2B7F4878-02C1-4DD8-83A0-77C01D30958B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-09-06] (Google Inc -> Google Inc.) Task: {418A6887-5B85-43C5-9617-F3A1BD7DD96C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-09-06] (Google Inc -> Google Inc.) Task: {4B5F7ECD-E2ED-402B-85AE-A51A7F378F2E} - System32\Tasks\Driver Booster SkipUAC (Sylwia) => C:\Program Files (x86)\IObit\Driver Booster\4.4.0\DriverBooster.exe [5582624 2017-05-03] (IObit Information Technology -> IObit) Task: {65EAD4F2-962E-417D-AB77-8EE1B08946D0} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {7186D173-1C3B-41D2-84C8-BF43474374EF} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_27_0_0_130_pepper.exe [1286144 2017-09-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {71F658B3-8537-46B0-BDAC-E3DBF47EC696} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd) Task: {792A6C6B-866F-4769-BBB6-19674ED9C546} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8FC3A601-C368-4B63-A625-94A2EA57FA9C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1236048 2019-07-24] (Adobe Inc. -> Adobe Systems) Task: {92083E9A-A3F8-403E-B91A-9B9BA0B33383} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A4B7006D-945B-461F-85FB-6A53F570F35A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A615B4E1-95E8-476F-B50F-30CED05189F8} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A93D525A-F8AE-4F28-8509-4D75292A1DE4} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {ACAA3D6D-6FC4-4760-AE5E-DA65F7175F77} - System32\Tasks\AdobeAAMUpdater-1.0-SYLWIA-Sylwia => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {B0D53CB3-7A55-4F8A-ACA3-28CAC1ADEEA3} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BC239E6D-12DC-4E5C-8FE2-09D481135254} - System32\Tasks\Autorun Organizer => C:\Program Files (x86)\Autorun Organizer\AutorunOrganizer.exe [10799552 2018-09-01] (Konstantin Polyakov IP -> Chemtable Software) Task: {CB877335-4FE7-4ACF-A877-CDBE7D095794} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CE2A0EA8-E99E-4FC4-9EEA-6D8A84022728} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DBB64E38-ED6B-4B4A-B199-5763AFC314B6} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F214D66A-57D3-4E22-BF1F-E34A82BFBE19} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) Task: {F56BAA4C-52D9-4165-BD51-708D8586E4F2} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{712b68f2-3bd9-47ef-ae89-98d4f624029b}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{b940dbec-80a1-4e6d-8fff-3aecd8fd4cb9}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-02] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-02] (Oracle America, Inc. -> Oracle Corporation) FireFox: ======== FF DefaultProfile: m5qvy6e3.default FF ProfilePath: C:\Users\Sylwia\AppData\Roaming\Mozilla\Firefox\Profiles\m5qvy6e3.default [2019-08-11] FF Session Restore: Mozilla\Firefox\Profiles\m5qvy6e3.default -> [funkcja włączona] FF Extension: (AdBlock) - C:\Users\Sylwia\AppData\Roaming\Mozilla\Firefox\Profiles\m5qvy6e3.default\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2019-07-30] FF Extension: (uBlock Origin) - C:\Users\Sylwia\AppData\Roaming\Mozilla\Firefox\Profiles\m5qvy6e3.default\Extensions\uBlock0@raymondhill.net.xpi [2019-03-24] FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-10-12] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-02] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-02] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-15] (Google Inc -> Google LLC) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-05-03] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-10-12] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin HKU\S-1-5-21-2047351627-3355893820-3090271687-1000: @my.com/Games -> C:\Users\Sylwia\AppData\Local\MyComGames\NPMyComDetector.dll [Brak pliku] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.pl/ CHR StartupUrls: Default -> "hxxp://www.google.pl/","hxxp://www.istartpageing.com/?type=hp&ts=1451853076&z=e361b155386ef0102163f81gbz8w1g1b3wdc6eem7q&from=cor&uid=wdcxwd1600js-00ncb1_wd-wcanm857553275532" CHR Session Restore: Default -> [funkcja włączona] CHR Profile: C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default [2019-08-11] CHR Extension: (Prezentacje) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Dokumenty) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Dysk Google) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06] CHR Extension: (YouTube) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-06] CHR Extension: (uBlock Origin) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-07-23] CHR Extension: (Arkusze) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Grammarly for Chrome) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2019-08-11] CHR Extension: (Into The Mist) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\mgihmkgobaljfehcadcckdggpeojaadh [2016-09-06] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Gmail) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-24] CHR Extension: (Chrome Media Router) - C:\Users\Sylwia\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-06-20] CHR HKU\S-1-5-21-2047351627-3355893820-3090271687-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [744640 2016-10-12] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-07-04] (Adobe Inc. -> Adobe Systems, Incorporated) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [5745672 2018-05-22] (BattlEye Innovations e.K. -> ) S3 BITCOMET_HELPER_SERVICE; C:\Program Files\BitComet\tools\BitCometService.exe [1296728 2013-11-29] (Shanghai Comet Network Technology -> www.BitComet.com) R2 Chemtable Startup Checking; C:\Program Files (x86)\Autorun Organizer\StartupCheckingService.exe [9924368 2018-08-09] (Konstantin Polyakov IP -> Chemtable Software) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2428848 2019-07-30] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2428848 2019-07-30] (ESET, spol. s r.o. -> ESET) R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [330136 2015-10-12] (Intel Corporation - pGFX -> Intel Corporation) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [4362656 2016-02-24] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) [Brak podpisu cyfrowego] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-02] (NVIDIA Corporation -> NVIDIA Corporation) R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [41952 2016-12-20] (VIA Technologies, Inc -> VIA Technologies, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\NisSrv.exe [4096976 2019-01-24] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1901.7-0\MsMpEng.exe [113992 2019-01-24] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [X] S2 HuaweiHiSuiteService64.exe; "C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe" -/service [X] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [312480 2017-06-04] (Tages SA -> ) S3 CySmb; C:\WINDOWS\System32\drivers\cysmb.sys [10752 2016-09-06] (Microsoft Windows Hardware Compatibility Publisher -> Cypress Semiconductor, Inc.) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2018-04-28] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-06-04] (Disc Soft Ltd -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-06-04] (Disc Soft Ltd -> Disc Soft Ltd) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [149144 2019-07-30] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [189232 2019-07-30] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [113336 2019-07-30] (ESET, spol. s r.o. -> ESET) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-09-06] (Martin Malik - REALiX -> REALiX(tm)) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2018-08-23] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 L1C; C:\WINDOWS\System32\drivers\L1C63x64.sys [162024 2018-08-17] (Rivet Networks LLC -> Qualcomm Atheros, Inc.) R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [43168 2017-06-04] (Tages SA -> ) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_21a764822be8dff8\nvlddmkm.sys [20707744 2019-03-18] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-03-28] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [66792 2018-10-03] (NVIDIA Corporation -> NVIDIA Corporation) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2018-04-28] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [709856 2016-12-20] (VIA Technologies Inc. -> VIA Technologies, Inc.) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [44544 2018-04-12] (Microsoft Windows -> Microsoft Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46488 2019-01-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [343032 2019-01-24] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [63480 2019-01-24] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [55704 2018-08-11] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 ALSysIO; \??\C:\Users\Sylwia\AppData\Local\Temp\ALSysIO64.sys [X] <==== UWAGA S3 WacHidRouterPro; \SystemRoot\System32\drivers\wachidrouter.sys [X] S3 wacomrouterfilter; \SystemRoot\System32\drivers\wacomrouterfilter.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-08-11 21:20 - 2019-08-11 21:20 - 000000002 _____ C:\Users\Sylwia\Downloads\dkbzkrdcvotwu.txt 2019-08-11 21:20 - 2019-08-11 21:20 - 000000000 ____D C:\FRST 2019-08-11 21:19 - 2019-08-11 21:21 - 000030221 _____ C:\Users\Sylwia\Downloads\FRST.txt 2019-08-11 21:19 - 2019-08-11 21:19 - 002097664 _____ (Farbar) C:\Users\Sylwia\Downloads\FRST64.exe 2019-08-11 21:12 - 2019-08-11 21:16 - 000000000 ____D C:\Program Files\Recuva 2019-08-11 21:12 - 2019-08-11 21:12 - 000001699 _____ C:\Users\Public\Desktop\Recuva.lnk 2019-08-11 21:12 - 2019-08-11 21:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recuva 2019-08-11 21:11 - 2019-08-11 21:11 - 005562976 _____ (Piriform Ltd) C:\Users\Sylwia\Downloads\rcsetup153.exe 2019-08-02 20:22 - 2019-08-02 20:22 - 000509211 _____ C:\Users\Sylwia\Downloads\118 Game Of Thrones - The Dragon and the Wolf.pdf 2019-08-02 19:59 - 2019-08-02 19:59 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Tempzxpsigne211946ade1d2be4 2019-08-01 12:16 - 2019-08-01 12:16 - 000260513 _____ C:\Users\Sylwia\Downloads\bilet_85215344.pdf 2019-08-01 12:15 - 2019-08-01 12:15 - 000042025 _____ C:\Users\Sylwia\Downloads\KB02010250.pdf 2019-07-29 00:01 - 2019-07-29 00:01 - 000313314 _____ C:\Users\Sylwia\Downloads\image2019-07-12-135229 (3).pdf 2019-07-28 21:17 - 2019-08-11 20:56 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\Blitz-helpers 2019-07-28 19:48 - 2019-07-28 19:48 - 844045039 _____ C:\WINDOWS\MEMORY.DMP 2019-07-26 19:37 - 2019-07-26 19:37 - 000260497 _____ C:\Users\Sylwia\Downloads\bilet_84845300.pdf 2019-07-25 22:17 - 2019-07-25 22:17 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Tempzxpsign6d35ad6cb5360448 2019-07-25 22:17 - 2019-07-25 22:17 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Tempzxpsign69e377c3d5008d43 2019-07-25 00:00 - 2019-07-25 00:00 - 000877977 _____ C:\Users\Sylwia\Downloads\Zemsta Hermiony.pdf 2019-07-24 20:31 - 2019-07-24 20:31 - 000313314 _____ C:\Users\Sylwia\Downloads\image2019-07-12-135229 (2).pdf 2019-07-21 16:10 - 2019-07-21 16:10 - 000313314 _____ C:\Users\Sylwia\Downloads\image2019-07-12-135229 (1).pdf 2019-07-16 11:26 - 2019-07-16 11:26 - 021668471 _____ C:\Users\Sylwia\Downloads\Biuletyn 2019.7.pdf 2019-07-13 13:02 - 2019-07-13 13:02 - 001417665 _____ C:\Users\Sylwia\Downloads\Kalkulator diax.xlsx 2019-07-12 21:33 - 2019-07-12 21:33 - 000313314 _____ C:\Users\Sylwia\Downloads\image2019-07-12-135229.pdf 2019-07-12 21:22 - 2019-07-12 21:22 - 000000000 ____D C:\Users\Sylwia\Desktop\Grrrrreł ==================== Jeden miesiąc (zmodyfikowane) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-08-11 21:18 - 2016-09-06 21:06 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Spotify 2019-08-11 21:08 - 2018-05-15 00:37 - 000004210 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{EC53E7EB-D79E-40D4-B27F-A603F3C5940A} 2019-08-11 21:06 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-08-11 20:57 - 2019-04-29 21:23 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\Blitz 2019-08-11 20:55 - 2019-06-17 16:20 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Blitz 2019-08-11 20:44 - 2016-09-06 21:05 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\Spotify 2019-08-11 20:38 - 2018-05-15 00:37 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2019-08-11 20:38 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2019-08-11 20:38 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-08-11 20:38 - 2017-12-25 18:33 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-08-11 20:38 - 2017-12-25 18:33 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-08-11 20:36 - 2016-09-30 03:43 - 000000000 ____D C:\ProgramData\NVIDIA 2019-08-11 20:36 - 2016-09-06 21:00 - 000000000 ____D C:\Users\Sylwia\AppData\Local\Adobe 2019-08-11 20:34 - 2019-04-20 13:43 - 000000000 ____D C:\Users\Sylwia\Documents\Assassin's Creed Unity 2019-08-11 20:34 - 2016-09-06 21:08 - 000000000 ____D C:\Program Files (x86)\Steam 2019-08-04 21:02 - 2018-05-15 00:32 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-08-03 18:06 - 2016-09-10 16:51 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\discord 2019-08-03 16:48 - 2018-05-15 00:42 - 001763504 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-08-03 16:48 - 2018-04-12 17:51 - 000782334 _____ C:\WINDOWS\system32\perfh015.dat 2019-08-03 16:48 - 2018-04-12 17:51 - 000151496 _____ C:\WINDOWS\system32\perfc015.dat 2019-08-03 16:48 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2019-08-03 16:39 - 2019-07-04 20:47 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-08-03 16:39 - 2018-05-15 00:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-08-03 16:39 - 2017-10-21 11:36 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-08-02 21:30 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-08-02 16:37 - 2018-11-16 19:08 - 000000000 ____D C:\Program Files\rempl 2019-07-30 22:58 - 2017-10-21 11:36 - 000000000 ____D C:\Users\Sylwia\AppData\LocalLow\Mozilla 2019-07-30 21:10 - 2017-10-21 11:36 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-07-30 21:09 - 2018-07-12 14:22 - 000189232 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2019-07-30 21:09 - 2018-07-12 14:22 - 000149144 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2019-07-30 21:09 - 2018-07-12 14:22 - 000113336 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2019-07-30 21:09 - 2018-05-15 00:33 - 000000000 ____D C:\Users\Sylwia 2019-07-29 00:04 - 2016-09-06 21:10 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\TS3Client 2019-07-28 22:58 - 2017-05-12 17:21 - 000000000 ____D C:\Users\Sylwia\AppData\Local\CrashDumps 2019-07-28 19:48 - 2018-07-01 12:09 - 000000000 ____D C:\WINDOWS\Minidump 2019-07-21 18:52 - 2019-03-18 19:38 - 000000000 ____D C:\Users\Sylwia\Desktop\tapety s 2019-07-20 19:10 - 2018-05-15 00:37 - 000003024 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Sylwia) 2019-07-15 19:55 - 2019-04-29 21:48 - 000000000 ____D C:\Users\Sylwia\Desktop\Pyrkon wybór 2019-07-12 16:54 - 2019-04-29 21:23 - 000000000 ____D C:\Users\Sylwia\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz Inc ==================== Pliki w katalogu głównym wybranych folderów ================ 2014-08-01 13:03 - 2014-08-01 13:03 - 000247136 _____ () C:\ProgramData\DeleteFile.exe 2014-08-01 13:03 - 2014-08-01 13:03 - 000000139 _____ () C:\ProgramData\DelFile.bat 2018-10-12 18:28 - 2018-10-12 18:28 - 004712448 _____ (SoundMixer) C:\Users\Sylwia\AppData\Roaming\Launcher_01.exe 2019-03-01 15:15 - 2019-03-01 15:15 - 002153472 _____ (SoundMixer) C:\Users\Sylwia\AppData\Roaming\Launcher_08.exe 2018-03-22 20:19 - 2019-03-31 17:34 - 000001496 _____ () C:\Users\Sylwia\AppData\Local\Adobe Zapisz dla Internetu 13.0 Prefs 2018-09-28 20:08 - 2018-09-28 20:08 - 000000000 _____ () C:\Users\Sylwia\AppData\Local\oobelibMkey.log 2018-04-07 21:57 - 2018-04-07 21:57 - 000001555 _____ () C:\Users\Sylwia\AppData\Local\recently-used.xbel 2017-12-30 14:48 - 2017-12-30 14:51 - 000007599 _____ () C:\Users\Sylwia\AppData\Local\Resmon.ResmonCfg ==================== SigCheck =============================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) UWAGA: ==> Nie można uzyskać dostępu do BCD. -> 0 ==================== Koniec FRST.txt ============================