Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 08-03-2020 Uruchomiony przez krzysztof (administrator) LENOVO (LENOVO 4174CW8) (16-03-2020 22:23:18) Uruchomiony z C:\FRST64 Załadowane profile: UpdatusUser & krzysztof (Dostępne profile: Laptop & UpdatusUser & krzysztof) Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] C:\Program Files\KMSpico\Service_KMS.exe (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AuthenTec, Inc. -> Authentec Inc.) C:\Program Files\ThinkVantage Fingerprint Software\upeksvr.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\ThinkPad\Bluetooth Software\btwdins.exe (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe (Ericsson AB -> Ericsson AB) C:\Program Files (x86)\Mobile Broadband drivers\WMCore\mini_WMCore.exe (Fortemedia Inc -> ) C:\Program Files\CONEXANT\ForteConfig\fmapp.exe (Foxit Software Incorporated -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel(R) Identity Protection Technology Software -> Intel Corporation) C:\Program Files (x86)\Intel\Services\IPT\jhi_service.exe (Lenovo -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe (LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tphkload.exe (LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPONSCR.exe (LENOVO -> Lenovo Group Limited) C:\Program Files\Lenovo\ZOOM\TpScrex.exe (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcDeskBandHlpr.exe (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcPrfMgrSvc.exe (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\AcSvc.exe (LENOVO -> Lenovo) C:\Program Files (x86)\Lenovo\Access Connections\SvcGuiHlpr.exe (LENOVO -> Lenovo.) C:\Windows\System32\ibmpmsvc.exe (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\micmute.exe (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\shtctky.exe (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\TPHKSVC.exe (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlk.exe (Lenovo(Japan)Ltd. -> Lenovo Group Limited) C:\Program Files\Lenovo\HOTKEY\tpnumlkd.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\EXCEL.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\OUTLOOK.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LogonUI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPLpr.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AcWin7Hlpr] => C:\Program Files (x86)\Lenovo\Access Connections\AcTBenabler.exe [63728 2015-06-08] (LENOVO -> Lenovo) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916592 2014-07-28] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> ) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SAIICpl.exe [316032 2010-12-14] (Conexant Systems, Inc. -> Conexant systems, Inc.) HKLM\...\Run: [PSQLLauncher] => C:\Program Files\ThinkVantage Fingerprint Software\launcher.exe [86312 2013-03-05] (AuthenTec, Inc. -> Authentec Inc.) HKLM-x32\...\Run: [Opera Browser Assistant] => C:\Program Files (x86)\Opera\assistant\browser_assistant.exe [3024920 2020-03-12] (Opera Software AS -> Opera Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.132\Installer\chrmstp.exe [2020-03-06] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\58.0.3029.81\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\...\Authentication\Credential Providers: [{18CBEEAA-6708-41A1-9379-D08915333CF2}] -> C:\Program Files\ThinkVantage Fingerprint Software\provider.dll [2013-03-05] (AuthenTec, Inc. -> Authentec Inc.) HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\ThinkPad\Bluetooth Software\\BtwCP.dll [2013-05-14] (Broadcom Corporation -> Broadcom Corporation.) HKLM\Software\...\Authentication\Credential Providers: [{D28973E5-8630-41af-8831-50A15FEB396B}] -> C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll [2013-05-14] (Broadcom Corporation -> Broadcom Corporation.) HKLM\Software\...\Authentication\Credential Provider Filters: [{AE583D93-8D1B-424F-9858-5623FB7824EE}] -> C:\Program Files\ThinkVantage Fingerprint Software\provider.dll [2013-03-05] (AuthenTec, Inc. -> Authentec Inc.) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [245872 2013-10-29] (NVIDIA CORPORATION -> NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [201576 2013-10-29] (NVIDIA CORPORATION -> NVIDIA Corporation) Lsa: [Notification Packages] scecli C:\Program Files\ThinkPad\Bluetooth Software\BtwProximityCP.dll C:\Program Files\ThinkVantage Fingerprint Software\psqlpwd.dll Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-04-23] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\ThinkPad\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) Startup: C:\Users\krzysztof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\serwer.bat [2015-06-02] () [Brak podpisu cyfrowego] Startup: C:\Users\krzysztof\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2020-03-12] ShortcutTarget: Wysyłanie do programu OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation -> Microsoft Corporation) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1316FCF3-0396-40A1-B7BF-2C27159F327A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-05-08] (Google Inc -> Google Inc.) Task: {189764BE-84FB-4216-B228-7AD5D66C4E5E} - System32\Tasks\Opera scheduled assistant Autoupdate 1576957726 => C:\Program Files (x86)\Opera\launcher.exe [1351192 2020-02-24] (Opera Software AS -> Opera Software) Task: {1D2250E3-3D00-459F-AB72-F9AA49AA4D3A} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [745664 2016-01-11] (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] Task: {1FF7C604-A12D-4ED7-896D-97EFD1C3CE4D} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [16832 2015-07-01] (LENOVO -> Lenovo) Task: {4BBB549F-F4A5-48C6-AFBE-22FEC79ADD5E} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office 15\root\vfs\ProgramFilesCommonx86\Microsoft Shared\OFFICE15\OLicenseHeartbeat.exe [1163560 2016-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {52355A8F-928E-4B4E-8872-8182C42D247F} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-01-08] (Lenovo -> ) Task: {602AF665-D93F-40E0-8BBD-B3ED3D305CDE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {810F6846-29B0-4D7E-B0DD-592C09CD1F5B} - System32\Tasks\Opera scheduled Autoupdate 1431457071 => C:\Program Files (x86)\Opera\launcher.exe [1351192 2020-02-24] (Opera Software AS -> Opera Software) Task: {838A33EF-9077-4192-A3F4-3399FBAAE88A} - System32\Tasks\GoogleUpdateTaskMachineCore1d1f14422d8d4e8 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-05-08] (Google Inc -> Google Inc.) Task: {8B08D520-8C1B-4393-BAA0-1CB4C2F792CB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [977672 2016-11-01] (Microsoft Corporation -> Microsoft Corporation) Task: {B3A34FBA-D03D-4FD8-8DE4-B9EA5980D388} - System32\Tasks\PMTask => C:\Program Files (x86)\ThinkPad\Utilities\PwmIdTsv.exe [3649704 2016-04-14] (LENOVO -> Lenovo Group Limited) Task: {CE96DE33-6E3B-4C14-99D9-CEDA66B8E5ED} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758984 2020-01-08] (Lenovo -> ) Task: {DCB69001-1D50-4FFA-AAEC-24778CB385B6} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-05-08] (Google Inc -> Google Inc.) Task: {FF16AEBC-768C-488A-BE9C-669F40F4B49A} - System32\Tasks\Microsoft\Office\Office Automatic Updates => C:\Program Files\Microsoft Office 15\ClientX64\OfficeC2RClient.exe [977672 2016-11-01] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: Nie znaleziono pliku Hosts w domyślnym katalogu Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 Tcpip\..\Interfaces\{5E08AB2C-270B-4A94-B272-FFDF974FAD8F}: [DhcpNameServer] 10.0.1.4 Tcpip\..\Interfaces\{D55E75A1-D75A-4BEC-9E01-550B9E4772A3}: [DhcpNameServer] 192.168.8.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com HKU\S-1-5-21-3927854613-2608156586-4117075644-1001\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com HKU\S-1-5-21-3927854613-2608156586-4117075644-1002\Software\Microsoft\Internet Explorer\Main,Search Page = www.bing.com BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation -> Microsoft Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2016-11-01] (Microsoft Corporation -> Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\Office15\OCHelper.dll [2016-12-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2016-11-01] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\Office15\GROOVEEX.DLL [2016-11-01] (Microsoft Corporation -> Microsoft Corporation) DPF: HKLM-x32 {1ABA5FAC-1417-422B-BA82-45C35E2C908B} hxxps://kitchenplanner.ikea.com/pl/Core/Player/2020PlayerAX_IKEA_Win32.cab Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2016-08-09] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: 9klbp651.default FF DefaultProfile: 39s6seyr.default FF ProfilePath: C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default [2020-03-16] FF Homepage: Mozilla\Firefox\Profiles\9klbp651.default -> hxxp://www.bip.ore.edu.pl/?app=przetargi|hxxp://di.com.pl/informacje FF Extension: (Youtube to audio converter) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\2conv@hotger.com.xpi [2018-09-09] FF Extension: (Flash Video Downloader) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\artur.dubovoy@gmail.com.xpi [2018-09-09] FF Extension: (Flash Video Downloader) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\ductloanphuok@gmail.com.xpi [2019-12-15] FF Extension: (British English Dictionary (Updated)) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\en-gb@flyingtophat.co.uk [2015-08-27] [Przestarzałe] [Brak podpisu cyfrowego] FF Extension: (Ghostery – Bloker reklam chroniący prywatność) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\firefox@ghostery.com.xpi [2018-09-09] FF Extension: (FlashStopper) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\flashstopper@byo.co.il.xpi [2018-09-09] [Przestarzałe] FF Extension: (hotfix-update-xpi-intermediate) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\hotfix-update-xpi-intermediate@mozilla.com.xpi [2019-05-04] FF Extension: (Eliminator Slajdów) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\jid0-GaZOxvWNYcafEsmayJDIG3XXVi8@jetpack.xpi [2015-09-17] [Przestarzałe] FF Extension: (Open Multiple URLs) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\openmultipleurls@ustat.de.xpi [2018-02-25] FF Extension: (uBlock Origin) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\uBlock0@raymondhill.net.xpi [2018-09-09] FF Extension: (RefControl) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{455D905A-D37C-4643-A9E2-F6FEFAA0424A}.xpi [2017-11-08] [Przestarzałe] FF Extension: (ScrapBook) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{53A03D43-5363-4669-8190-99061B2DEBA5}.xpi [2016-08-29] [Przestarzałe] FF Extension: (YouTube Classic) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{6acd0f4d-ab79-4b79-9b28-8bde65ae355c}.xpi [2019-10-25] FF Extension: (YouTube Converter Button) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{8f4bbf79-5514-4d04-a901-d5fabfe91d73}.xpi [2019-10-08] FF Extension: (CookieCuller) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{99B98C2C-7274-45a3-A640-D9DF1A1C8460}.xpi [2016-05-02] [Przestarzałe] FF Extension: (Greasemonkey) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-09-23] FF Extension: (User Agent Switcher) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\Extensions\{e968fc70-8f95-4ab9-9e79-304de2a71ee1}.xpi [2017-11-08] [Przestarzałe] FF Extension: (Telemetry coverage) - C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\9klbp651.default\features\{7270b536-ac10-4c99-87ad-87cf087fd314}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-05-06] [Przestarzałe] FF ProfilePath: C:\Users\krzysztof\AppData\Roaming\Mozilla\Firefox\Profiles\iigqej75.czysty [2020-03-12] FF ProfilePath: C:\Users\krzysztof\AppData\Roaming\Moonchild Productions\Pale Moon\Profiles\39s6seyr.default [2020-02-29] FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT READER\plugins\npFoxitReaderPlugin.dll [2015-02-11] (Foxit Software Incorporated -> Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIIPT.dll [2014-07-09] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Services\IPT\npIntelWebAPIUpdater.dll [2014-07-09] (Intel(R) Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-12] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2015-05-06] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-10-28] (NVIDIA CORPORATION -> NVIDIA Corporation) [Brak podpisu cyfrowego] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-10-28] (NVIDIA CORPORATION -> NVIDIA Corporation) [Brak podpisu cyfrowego] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-3927854613-2608156586-4117075644-1002: SkypeForBusinessPlugin-16.2 -> C:\Users\krzysztof\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.498\npGatewayNpapi.dll [2019-07-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-3927854613-2608156586-4117075644-1002: SkypeForBusinessPlugin64-16.2 -> C:\Users\krzysztof\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.498\npGatewayNpapi-x64.dll [2019-07-03] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default [2020-03-16] CHR Notifications: Default -> hxxps://book.lufthansa.com; hxxps://hqcollect.me; hxxps://wfirma.pl; hxxps://www-flyuia-com.gravitec.net CHR Extension: (Prezentacje) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Flash Video Downloader) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2019-05-07] CHR Extension: (Dokumenty) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Dysk Google) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-27] CHR Extension: (YouTube) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-29] CHR Extension: (uBlock Origin) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-06] CHR Extension: (Google Search) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-27] CHR Extension: (Arkusze) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Dokumenty Google offline) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-24] CHR Extension: (Chrome Media Router) - C:\Users\krzysztof\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-15] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [3042032 2016-12-13] (Microsoft Corporation -> Microsoft Corporation) S3 DozeSvc; C:\Program Files (x86)\ThinkPad\Utilities\DZSVC64.EXE [326160 2016-04-14] (LENOVO -> Lenovo.) S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [81280 2019-10-25] (Mixbyte Inc -> Freemake) S2 LPlatSvc; C:\Windows\system32\LPlatSvc.exe [710144 2016-09-06] (LENOVO -> Lenovo.) R2 Service KMSELDI; C:\Program Files\KMSpico\Service_KMS.exe [745664 2016-01-11] (@ByELDI -> @ByELDI) [Brak podpisu cyfrowego] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 WMCoreService; C:\Program Files (x86)\Mobile Broadband drivers\WMCore\mini_WMCore.exe [648744 2011-08-12] (Ericsson AB -> Ericsson AB) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 5U877; C:\Windows\System32\DRIVERS\5U877.sys [166016 2011-03-04] (Microsoft Windows Hardware Compatibility Publisher -> Ricoh co.,Ltd.) S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2011-06-13] (Ericsson AB -> Ericsson AB) S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [30248 2011-06-13] (Ericsson AB -> Ericsson AB) S3 l36wgps; C:\Windows\System32\DRIVERS\l36wgps64.sys [101416 2011-07-01] (Ericsson AB -> Ericsson AB) S3 Mbm3CBus; C:\Windows\System32\DRIVERS\Mbm3CBus.sys [419400 2011-04-29] (MCCI Corporation -> MCCI Corporation) S3 Mbm3DevMt; C:\Windows\System32\DRIVERS\Mbm3DevMt.sys [430664 2011-04-29] (MCCI Corporation -> MCCI Corporation) S3 Mbm3mdfl; C:\Windows\System32\DRIVERS\Mbm3mdfl.sys [19528 2011-04-29] (MCCI Corporation -> MCCI Corporation) S3 Mbm3Mdm; C:\Windows\System32\DRIVERS\Mbm3Mdm.sys [483400 2011-04-29] (MCCI Corporation -> MCCI Corporation) R3 nusb3hub; C:\Windows\System32\DRIVERS\nusb3hub.sys [97792 2012-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation) R3 nusb3xhc; C:\Windows\System32\DRIVERS\nusb3xhc.sys [217600 2012-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Renesas Electronics Corporation) R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [284448 2013-10-29] (NVIDIA Corporation -> NVIDIA Corporation) S3 pmxdrv; C:\Windows\system32\drivers\pmxdrv.sys [31152 2020-03-11] (PAIPTAC Driver -> ) R2 risdxc; C:\Windows\System32\DRIVERS\risdxc64.sys [101888 2011-05-25] (Microsoft Windows Hardware Compatibility Publisher -> REDC) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [45296 2014-07-28] (Synaptics Incorporated -> Synaptics Incorporated) R2 smihlp; C:\Program Files\ThinkVantage Fingerprint Software\smihlp.sys [13128 2011-05-30] (AuthenTec, Inc. -> Authentec Inc.) S3 WwanUsbServ; C:\Windows\System32\DRIVERS\WwanUsbMp64.sys [268840 2011-08-12] (Ericsson AB -> Ericsson AB) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-03-15 13:00 - 2020-03-16 21:34 - 000145920 _____ C:\Users\krzysztof\Desktop\pilna windykacja.xls 2020-03-12 20:30 - 2020-03-15 12:59 - 001427968 _____ C:\Users\krzysztof\Desktop\monitoring.xls 2020-03-12 20:23 - 2020-03-16 22:23 - 000000000 ____D C:\FRST 2020-03-12 20:23 - 2020-03-12 23:19 - 000000000 ____D C:\FRST64 2020-03-05 12:52 - 2020-03-05 13:10 - 000121856 _____ C:\Users\krzysztof\Desktop\zaległości 06.03.2020.xls 2020-03-02 08:35 - 2020-03-02 08:35 - 000010156 _____ C:\Users\krzysztof\Downloads\12469_M_03_20.pdf 2020-03-01 18:42 - 2020-03-01 18:42 - 018736106 _____ C:\PRZEDWOJENNA WARSZAWA W KOLORZE _ WARSAW 1939 _ REMASTERING CYFROWY.mp4 2020-03-01 12:52 - 2020-03-01 12:52 - 001516511 _____ C:\orders.csv 2020-02-29 15:43 - 2020-02-29 15:43 - 018834827 _____ C:\Users\krzysztof\Downloads\Laser Scanning Reveals Cathedral’s Mysteries _ National Geographic.mp4 2020-02-27 18:39 - 2020-02-27 18:39 - 011863920 _____ C:\Users\krzysztof\Downloads\Turniej rymów - Jan Kobuszewski i Jan Kociniak.mp4 2020-02-27 10:05 - 2020-02-27 10:05 - 000562637 _____ C:\Users\krzysztof\Desktop\0331686-ZALACZNIK.pdf 2020-02-27 10:05 - 2020-02-27 10:05 - 000398397 _____ C:\Users\krzysztof\Desktop\0331686-0331686_2017 Pismo.pdf 2020-02-27 10:04 - 2020-02-27 10:05 - 000000846 _____ C:\Users\krzysztof\Downloads\Pulpit.lnk 2020-02-26 10:09 - 2020-02-26 10:09 - 000008853 _____ C:\Export.xlsx 2020-02-25 15:06 - 2020-02-25 15:06 - 000111901 _____ C:\Faktura FV 292_25_2_2020.pdf 2020-02-24 18:22 - 2020-02-25 21:40 - 000033792 _____ C:\Users\krzysztof\Desktop\faktury W 24.02.20.xls 2020-02-24 15:39 - 2020-02-24 15:39 - 000061685 _____ C:\LS 2020_maciek 8.01.xlsx 2020-02-21 11:45 - 2020-02-21 13:28 - 000000000 ____D C:\Users\krzysztof\Desktop\DRINK2ME 2020-02-18 13:01 - 2020-02-18 13:15 - 042396676 _____ C:\Users\krzysztof\Downloads\xv070.rar ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-03-16 22:23 - 2019-03-09 23:50 - 000000000 ____D C:\1 mov ok 2020-03-16 21:38 - 2018-09-09 20:55 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-03-16 21:35 - 2018-09-09 20:55 - 000000000 ____D C:\Users\krzysztof\AppData\LocalLow\Mozilla 2020-03-16 16:21 - 2020-01-01 23:52 - 000524800 _____ C:\Users\krzysztof\Desktop\teraz 2020 Q1.xls 2020-03-16 08:27 - 2015-05-08 15:44 - 000001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2020-03-16 07:43 - 2009-07-14 05:45 - 000022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-03-16 07:43 - 2009-07-14 05:45 - 000022080 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-03-16 00:01 - 2015-06-29 20:02 - 000000000 ____D C:\Users\krzysztof\AppData\Roaming\uTorrent 2020-03-15 23:26 - 2015-05-25 15:01 - 000000000 ____D C:\Users\krzysztof\AppData\Roaming\vlc 2020-03-15 14:24 - 2018-02-24 20:44 - 000000000 ____D C:\Users\krzysztof\AppData\Local\Power Query Telemetry 2020-03-15 12:39 - 2018-04-18 16:13 - 000000000 ____H C:\descript.ion 2020-03-14 14:23 - 2019-10-24 21:37 - 000089600 _____ C:\Users\krzysztof\Desktop\wydatki teraz.xls 2020-03-14 14:21 - 2015-10-08 14:19 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2020-03-12 23:24 - 2011-02-04 18:38 - 000756100 _____ C:\Windows\system32\perfh015.dat 2020-03-12 23:24 - 2011-02-04 18:38 - 000161440 _____ C:\Windows\system32\perfc015.dat 2020-03-12 23:24 - 2009-07-14 06:13 - 001703484 _____ C:\Windows\system32\PerfStringBackup.INI 2020-03-12 23:24 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2020-03-12 23:18 - 2017-10-10 23:07 - 000000008 __RSH C:\Users\krzysztof\ntuser.pol 2020-03-12 23:18 - 2017-10-10 23:01 - 000000008 __RSH C:\ProgramData\ntuser.pol 2020-03-12 23:18 - 2015-05-06 22:08 - 000000000 ____D C:\Users\krzysztof 2020-03-12 23:18 - 2015-04-23 14:41 - 000000000 ____D C:\ProgramData\NVIDIA 2020-03-12 23:18 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-03-12 23:16 - 2017-10-10 23:00 - 000000000 ____D C:\Windows\system32\Tasks\System 2020-03-12 23:16 - 2015-05-07 09:19 - 000000000 ____D C:\Users\krzysztof\AppData\LocalLow\Temp 2020-03-12 23:16 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\GroupPolicy 2020-03-12 23:07 - 2015-05-11 14:28 - 000000000 ____D C:\Users\krzysztof\AppData\Local\ElevatedDiagnostics 2020-03-12 21:20 - 2019-12-21 20:48 - 000004046 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1576957726 2020-03-11 20:48 - 2017-03-04 16:58 - 000000000 ____D C:\Users\krzysztof\Downloads\pcx 2020-03-11 20:43 - 2017-03-04 16:13 - 000000000 ____D C:\Users\krzysztof\Downloads\zxc 2020-03-11 18:19 - 2017-07-05 16:37 - 000031152 _____ C:\Windows\system32\Drivers\pmxdrv.sys 2020-03-07 13:28 - 2019-10-13 17:38 - 000000000 ____D C:\Users\krzysztof\Downloads\Nowy folder 2020-02-27 10:07 - 2015-05-12 18:46 - 000000000 ____D C:\Program Files (x86)\Opera 2020-02-27 08:33 - 2015-05-12 19:57 - 000003884 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1431457071 ==================== Pliki w katalogu głównym wybranych folderów ======== 2015-06-02 12:57 - 2015-06-02 12:57 - 000000077 _____ () C:\Users\krzysztof\serwer.bat 2016-06-20 15:07 - 2016-11-04 11:19 - 000004608 _____ () C:\Users\krzysztof\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-10-27 00:16 - 2015-10-27 00:16 - 000000218 _____ () C:\Users\krzysztof\AppData\Local\recently-used.xbel 2017-06-06 20:27 - 2017-06-06 20:27 - 000007602 _____ () C:\Users\krzysztof\AppData\Local\Resmon.ResmonCfg 2019-06-01 11:58 - 2019-06-01 11:58 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{26FE7DE6-A0B2-454F-9208-B312050D83F0} 2019-05-12 16:04 - 2019-05-12 16:04 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{295EC99A-D8D8-445E-B1D5-46FEDFD73555} 2019-05-08 09:00 - 2019-05-08 09:00 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{6BFF75F3-C9A5-4397-B022-E67B829A1B35} 2019-04-25 05:33 - 2019-04-25 05:33 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{A0539E78-897D-4B6E-BDF4-115986E3D058} 2019-04-30 07:32 - 2019-04-30 07:32 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{B69D4D1D-CE91-431D-B831-0DAEA50240B8} 2019-05-31 09:14 - 2019-05-31 09:14 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{BC637631-9D07-4FCA-8CDF-A2EEDFD5D865} 2019-05-01 18:41 - 2019-05-01 18:41 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{D756B32D-7F45-4E22-91F7-39EE31BEFD8C} 2019-05-11 08:03 - 2019-05-11 08:03 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{EA86D4F2-AD59-48BB-99A4-2F4BA4FBB9D8} 2019-05-30 08:42 - 2019-05-30 08:42 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{EDB9A4B2-28E0-4A1F-A7BA-13584E2D3614} 2019-05-19 09:14 - 2019-05-19 09:14 - 000000000 _____ () C:\Users\krzysztof\AppData\Local\{F9C6C45A-BED4-469F-ADFB-225B28147814} ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2020-03-08 22:53 ==================== Koniec FRST.txt ========================