Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 14-04-2020 Uruchomiony przez Ciapek (administrator) LAPTOP-KAROLINA (LENOVO 20150) (14-04-2020 21:13:12) Uruchomiony z C:\Users\Ciapek\Downloads Załadowane profile: Ciapek (Dostępne profile: Ciapek) Platform: Windows 10 Home Wersja 1903 18362.720 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AlcorMicro, Corp. -> Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Atheros) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <2> (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe (Byte Technologies LLC -> Byte Technologies LLC) C:\Program Files\ByteFence\ByteFenceService.exe (Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe (Byte Technologies LLC -> Byte Technologies LLC.) C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <12> (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Corporation) [Brak podpisu cyfrowego] C:\Program Files\Intel\iCLS Client\HeciServer.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Management\utility.exe (LENOVO -> Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Ciapek\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Ciapek\AppData\Local\Microsoft\Teams\current\Teams.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.19111.24110.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12004.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20022.11011.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Users\Ciapek\AppData\Local\Temp\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Users\Ciapek\AppData\Local\Temp\TeamViewer\TeamViewer_Desktop.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Users\Ciapek\AppData\Local\Temp\TeamViewer\tv_w32.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Users\Ciapek\AppData\Local\Temp\TeamViewer\tv_x64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc. -> Conexant Systems, Inc.) HKLM\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [366720 2012-06-26] (AlcorMicro, Corp. -> Alcor Micro Corp.) HKLM\...\Run: [Energy Management] => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe [17111056 2016-06-18] (Lenovo (Beijing) Limited -> Lenovo (Beijing) Limited) HKLM\...\Run: [EnergyUtility] => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe [193008 2016-06-18] (Lenovo (Beijing) Limited -> Lenovo(beijing) Limited) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1795912 2015-07-23] (NVIDIA Corporation -> NVIDIA Corporation) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [277664 2020-02-25] (Avast Software s.r.o. -> AVAST Software) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [571928 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA HKLM\...\Policies\Explorer\Run: [BtvStack] => "C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe" HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-2934446187-1376105397-639230036-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4701888 2017-04-24] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2934446187-1376105397-639230036-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3140368 2020-04-10] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-2934446187-1376105397-639230036-1001\...\Run: [Spotify] => C:\Users\Ciapek\AppData\Roaming\Spotify\Spotify.exe [22907112 2020-04-04] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-2934446187-1376105397-639230036-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Ciapek\AppData\Local\Microsoft\Teams\Update.exe [2342544 2020-03-28] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-2934446187-1376105397-639230036-1001\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91584872 2020-03-12] (Skype Software Sarl -> Skype Technologies S.A.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-07] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-08-12] (Qualcomm Atheros -> Qualcomm®Atheros®) [Brak podpisu cyfrowego] HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\WINDOWS\system32\AthCredentialProvider.dll [2013-08-12] (Qualcomm Atheros -> Qualcomm®Atheros®) [Brak podpisu cyfrowego] FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {03022DF7-8AB5-452F-8BA8-156354D7A103} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3894664 2020-02-25] (Avast Software s.r.o. -> AVAST Software) Task: {1278061B-FE10-45E5-9CC2-D9228DFF567C} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1321296 2016-06-02] (LENOVO -> Lenovo) Task: {199B2FEF-A0E6-44DC-ACE8-A6EB2E3AFA25} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {30C2E8AD-C238-47D6-93F4-4673FA8A2C42} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => C:\WINDOWS\System32\AutoWorkplace.exe Task: {38AD20B3-CFEE-4AA6-B868-ABE44D455373} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [9944400 2016-06-02] (LENOVO -> Lenovo) Task: {4B23C4D2-A673-4ECD-A114-26A528E81810} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {552070E9-9E70-4958-A41F-35ECF208B64E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-06-18] (Google Inc -> Google Inc.) Task: {5A3FB241-0B11-4EA5-BC66-0D9F1B406040} - System32\Tasks\Microsoft\Windows\Customer Experience Improvement Program\BthSQM => {C8367320-6F85-11E0-A1F0-0800200C9A66} C:\WINDOWS\System32\BthTelemetry.dll [32256 2019-03-19] (Microsoft Windows -> Microsoft Corporation) Task: {5E6F8663-E8FD-419A-AD89-FFBD7A5FC5A7} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSC.Services.UpdateStatusService.exe [263504 2016-06-02] (LENOVO -> ) Task: {66785EBB-360F-4290-AA68-030E99B642F0} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe Task: {67689F4B-1C33-4F56-AC2B-5C44136F207F} - \Lenovo\Lenovo Service Bridge\S-1-5-21-2934446187-1376105397-639230036-1001 -> Brak pliku <==== UWAGA Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {6EA4B520-243E-41AE-A782-175DF7A1AD0D} - System32\Tasks\ByteFence => C:\Program Files\ByteFence\ByteFence.exe [3939808 2020-02-17] (Byte Technologies LLC -> Byte Technologies LLC) <==== UWAGA Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {8C0F405E-2363-4C76-A7CB-566E80C8D6CF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {A6FCFE4F-0F5B-45A5-88A1-E323066E302F} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA Task: {C4A4FFC3-12FA-48D9-A719-49EFA85507F0} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [9944400 2016-06-02] (LENOVO -> Lenovo) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {D08D5181-979D-4736-9186-E02395CB3883} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {E2505E8B-0B54-42FF-B5FC-9D8B2652C2B2} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-06-18] (Google Inc -> Google Inc.) Task: {ED8DA988-14C5-4738-8A40-12A632CD562B} - \WPD\SqmUpload_S-1-5-21-2934446187-1376105397-639230036-1001 -> Brak pliku <==== UWAGA (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{b5acbae0-c2b5-4b03-8ca0-3862c53879e6}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{e3092115-ddd5-4678-b69d-c2a245092515}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-2934446187-1376105397-639230036-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2020-04-09] (McAfee, LLC -> McAfee, LLC) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2020-04-09] (McAfee, LLC -> McAfee, LLC) FireFox: ======== FF DefaultProfile: y0sqf0bd.default FF ProfilePath: C:\Users\Ciapek\AppData\Roaming\Mozilla\Firefox\Profiles\y0sqf0bd.default [2020-03-22] FF ProfilePath: C:\Users\Ciapek\AppData\Roaming\Mozilla\Firefox\Profiles\40rpajyn.default-release [2020-03-22] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\Ciapek\AppData\Roaming\Mozilla\Firefox\Profiles\40rpajyn.default-release\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2020-03-22] FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2020-04-09] [UpdateUrl:hxxps://www.siteadvisor.com/waffinstall/update.json] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default [2020-04-14] CHR Notifications: Default -> hxxps://www.facebook.com CHR Extension: (Prezentacje) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12] CHR Extension: (Dokumenty) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12] CHR Extension: (Dysk Google) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-06-18] CHR Extension: (YouTube) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-06-18] CHR Extension: (Dots) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpojomfieilbljofdjjlecechaenkea [2020-04-06] CHR Extension: (Arkusze) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12] CHR Extension: (Dokumenty Google offline) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-11] CHR Extension: (Przycisk Zapisz Pinteresta) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gpdjojdkbbmdfjfahjcgigfpmkopogic [2020-03-11] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-29] CHR Extension: (Chrome Media Router) - C:\Users\Ciapek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6046624 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [382712 2019-07-19] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [413472 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57536 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R2 ByteFenceService; C:\Program Files\ByteFence\ByteFenceService.exe [163296 2020-02-17] (Byte Technologies LLC -> Byte Technologies LLC) <==== UWAGA S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2017-04-24] (Disc Soft Ltd -> Disc Soft Ltd) R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [337888 2016-05-03] (Intel(R) pGFX -> Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-11] (Intel® Trusted Connect Service -> Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) S3 LSC.Services.SystemService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSC.Services.SystemService.exe [273232 2016-06-02] (LENOVO -> Lenovo) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [913640 2020-04-09] (McAfee, LLC -> McAfee, LLC) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2495792 2020-04-10] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3447608 2020-04-10] (Electronic Arts, Inc. -> Electronic Arts) R2 rtop; c:\program files\bytefence\rtop\bin\rtop_svc.exe [297288 2020-03-29] (Byte Technologies LLC -> Byte Technologies LLC.) <==== UWAGA R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [249032 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-11] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-11] (Microsoft Windows Publisher -> Microsoft Corporation) R2 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-08-12] (Atheros) [Brak podpisu cyfrowego] R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [37864 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [205576 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [271120 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [206608 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [64272 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [16304 2020-02-25] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software) R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [279360 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42976 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [175400 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [110560 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [84056 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [848672 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [458584 2020-03-11] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [235184 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [316256 2020-02-25] (Avast Software s.r.o. -> AVAST Software) R3 athr; C:\WINDOWS\System32\drivers\athw8x.sys [4233728 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-05-05] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-05-05] (Disc Soft Ltd -> Disc Soft Ltd) R3 L1C; C:\WINDOWS\System32\drivers\L1C63x64.sys [121344 2019-03-19] (Microsoft Windows -> Qualcomm Atheros Co., Ltd.) R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvltwu.inf_amd64_0221ce4ec0827f74\nvlddmkm.sys [14190520 2017-01-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-06-03] (Synaptics Incorporated -> Synaptics Incorporated) R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [648872 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46688 2019-10-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [350136 2019-10-11] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-11] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-14 21:13 - 2020-04-14 21:14 - 000026115 _____ C:\Users\Ciapek\Downloads\FRST.txt 2020-04-14 21:08 - 2020-04-14 21:13 - 000000000 ____D C:\FRST 2020-04-14 21:07 - 2020-04-14 21:07 - 002281472 _____ (Farbar) C:\Users\Ciapek\Downloads\FRST64.exe 2020-04-14 20:50 - 2020-04-14 20:50 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2020-04-14 20:50 - 2020-04-14 20:50 - 000002241 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2020-04-14 20:50 - 2020-04-14 20:50 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\NVIDIA 2020-04-14 20:50 - 2020-04-14 20:50 - 000000000 ____D C:\Users\Ciapek\AppData\LocalLow\Google 2020-04-14 20:50 - 2020-04-14 20:50 - 000000000 ____D C:\Program Files\Google 2020-04-14 20:46 - 2020-04-14 20:46 - 001295576 _____ (Google LLC) C:\Users\Ciapek\Downloads\GoogleEarthProSetup.exe 2020-04-13 16:33 - 2020-04-13 16:33 - 000407552 _____ (Embarcadero Technologies, Inc.) C:\Users\Ciapek\Downloads\midas.dll 2020-04-11 14:45 - 2020-04-11 14:45 - 000316325 _____ C:\Users\Ciapek\Downloads\skala oceny ciała-arkusz.pdf 2020-04-11 12:25 - 2020-04-11 12:25 - 000313464 _____ C:\Users\Ciapek\Downloads\skala oceny ciała-opis.pdf 2020-04-11 12:24 - 2020-04-11 12:25 - 000315717 _____ C:\Users\Ciapek\Downloads\skala oceny ciała-normy (1).pdf 2020-04-11 12:24 - 2020-04-11 12:24 - 000339756 _____ C:\Users\Ciapek\Downloads\obraz ciała a zaburzenia odżywiania.pdf 2020-04-11 12:21 - 2020-04-11 12:21 - 000596188 _____ C:\Users\Ciapek\Downloads\skala oceny ciała-klucz.pdf 2020-04-11 12:21 - 2020-04-11 12:21 - 000315717 _____ C:\Users\Ciapek\Downloads\skala oceny ciała-normy.pdf 2020-04-10 23:15 - 2020-04-10 23:23 - 000000000 ____D C:\Users\Ciapek\AppData\Local\TeamViewer 2020-04-10 23:15 - 2020-04-10 23:15 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\TeamViewer 2020-04-10 23:13 - 2020-04-10 23:13 - 027347176 _____ (TeamViewer Germany GmbH) C:\Users\Ciapek\Downloads\TeamViewer_Setup.exe 2020-04-10 13:23 - 2020-04-11 16:54 - 000000000 ____D C:\Users\Ciapek\Desktop\Badania seks i odżywianie 2020-04-09 18:17 - 2020-04-09 18:17 - 000047094 _____ C:\Users\Ciapek\Downloads\przelew.pdf 2020-04-07 14:57 - 2020-04-07 14:58 - 000000000 ____D C:\Users\Ciapek\Desktop\Praktyki 2020 2020-04-07 14:43 - 2020-04-14 11:39 - 000000037 _____ C:\Users\Ciapek\AppData\Roaming\WB.CFG 2020-04-05 20:18 - 2020-04-14 20:48 - 000000000 ____D C:\Users\Ciapek\Desktop\Pierwsza randka z Michałem 2020-03-30 12:29 - 2020-03-30 12:29 - 000294409 _____ C:\Users\Ciapek\Desktop\PPK.pdf 2020-03-29 20:35 - 2020-03-29 20:35 - 000000000 ____D C:\ProgramData\ByteFence 2020-03-29 20:26 - 2010-05-26 11:41 - 001998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2020-03-29 20:25 - 2020-03-29 20:28 - 000000000 ____D C:\ProgramData\DDF626ADdvdcss 2020-03-29 20:25 - 2020-03-29 20:25 - 000001286 _____ C:\Users\Public\Desktop\DVD-Ranger Player.lnk 2020-03-29 20:25 - 2020-03-29 20:25 - 000000000 ____D C:\Users\Ciapek\Documents\DVDRanger 2020-03-29 20:25 - 2020-03-29 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DVD-Ranger Player 2020-03-29 20:25 - 2020-03-29 20:25 - 000000000 ____D C:\ProgramData\DVDRanger 2020-03-29 20:25 - 2020-03-29 20:25 - 000000000 ____D C:\Program Files (x86)\Pixbyte 2020-03-29 20:24 - 2020-03-29 20:24 - 000000000 ____D C:\Program Files\McAfee 2020-03-29 20:23 - 2020-04-14 20:40 - 000002550 _____ C:\WINDOWS\system32\Tasks\ByteFence 2020-03-29 20:23 - 2020-04-14 10:43 - 000000000 ____D C:\Program Files\ByteFence 2020-03-29 20:23 - 2020-03-29 20:23 - 012527784 _____ (Pixbyte Development SL) C:\Users\Ciapek\Downloads\PlayerSetup(dobreprogramy.pl).exe 2020-03-29 20:23 - 2020-03-29 20:23 - 000001092 _____ C:\Users\Ciapek\Desktop\ByteFence Anti-Malware.lnk 2020-03-29 20:23 - 2020-03-29 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware 2020-03-29 20:22 - 2020-03-29 20:22 - 000000000 ____D C:\ProgramData\McAfee 2020-03-29 20:21 - 2020-03-29 20:22 - 003219752 _____ (Bikofobolo ) C:\Users\Ciapek\Downloads\DVDRanger-Player-34250-AsystentPobierania_3526039462.exe 2020-03-29 10:59 - 2020-03-29 10:59 - 000518412 _____ C:\Users\Ciapek\Downloads\37-43-1-PB (1).pdf 2020-03-29 10:41 - 2020-03-29 10:41 - 000518412 _____ C:\Users\Ciapek\Downloads\37-43-1-PB.pdf 2020-03-24 21:48 - 2020-03-24 21:48 - 000001379 _____ C:\Users\Public\Desktop\Skype.lnk 2020-03-24 21:48 - 2020-03-24 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-03-24 21:46 - 2020-03-24 21:47 - 070011112 _____ (Skype Technologies S.A.) C:\Users\Ciapek\Downloads\Skype-8.58.0.93.exe 2020-03-22 20:35 - 2020-03-22 21:29 - 000000000 ____D C:\Users\Ciapek\Desktop\muzyka 50 2020-03-22 19:49 - 2020-03-22 19:54 - 000000000 ____D C:\Users\Ciapek\Desktop\zdjęcia 2020-03-22 18:53 - 2020-03-22 18:53 - 000000000 ____D C:\Users\Ciapek\Desktop\JOGA 2020-03-22 17:36 - 2020-03-22 20:27 - 000000000 ____D C:\Users\Ciapek\Desktop\50 2020-03-22 15:12 - 2020-03-22 21:29 - 000000000 ____D C:\Users\Ciapek\AppData\LocalLow\Mozilla 2020-03-22 15:12 - 2020-03-22 15:12 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\Mozilla 2020-03-22 15:12 - 2020-03-22 15:12 - 000000000 ____D C:\Users\Ciapek\AppData\Local\Mozilla 2020-03-22 15:11 - 2020-03-22 15:22 - 000001321 _____ C:\Users\Ciapek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-03-22 15:11 - 2020-03-22 15:22 - 000001313 _____ C:\Users\Ciapek\Desktop\Firefox.lnk 2020-03-22 15:11 - 2020-03-22 15:22 - 000000000 ____D C:\Users\Ciapek\AppData\Local\Mozilla Firefox 2020-03-22 15:11 - 2020-03-22 15:12 - 000000000 ____D C:\ProgramData\Mozilla 2020-03-22 15:09 - 2020-03-22 15:09 - 000319776 _____ (Mozilla) C:\Users\Ciapek\Downloads\Firefox Installer.exe 2020-03-20 17:56 - 2020-03-28 16:15 - 000002414 _____ C:\Users\Ciapek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2020-03-20 17:56 - 2020-03-28 16:15 - 000002406 _____ C:\Users\Ciapek\Desktop\Microsoft Teams.lnk 2020-03-20 17:56 - 2020-03-20 17:57 - 000000000 ____D C:\Users\Ciapek\AppData\Local\SquirrelTemp 2020-03-20 17:56 - 2020-03-20 17:56 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\Microsoft Teams 2020-03-20 17:56 - 2020-03-20 17:56 - 000000000 ____D C:\ProgramData\Ciapek 2020-03-20 17:55 - 2020-03-20 17:56 - 099885304 _____ (Microsoft Corporation) C:\Users\Ciapek\Downloads\Teams_windows_x64_s_8D7CCE69E42F376-2-0_.exe 2020-03-16 12:25 - 2020-03-16 12:25 - 010191468 _____ C:\Users\Ciapek\Downloads\Techniki w psychodramie.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-14 21:09 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-14 21:08 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-04-14 20:52 - 2019-10-03 12:30 - 000000000 ____D C:\Users\Ciapek\AppData\Local\D3DSCache 2020-04-14 20:40 - 2019-10-10 16:23 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-04-14 20:40 - 2019-10-10 16:23 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2020-04-14 20:40 - 2019-10-10 16:23 - 000003274 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-04-14 20:40 - 2019-10-10 16:23 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2934446187-1376105397-639230036-1001 2020-04-14 20:36 - 2019-10-10 16:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\AVAST Software 2020-04-14 20:26 - 2019-10-10 16:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-04-14 20:11 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-04-14 20:11 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-04-14 15:03 - 2019-10-10 16:18 - 001768484 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-04-14 15:03 - 2019-03-19 14:23 - 000785768 _____ C:\WINDOWS\system32\perfh015.dat 2020-04-14 15:03 - 2019-03-19 14:23 - 000152530 _____ C:\WINDOWS\system32\perfc015.dat 2020-04-14 10:44 - 2017-06-27 15:04 - 000000000 ____D C:\Users\Ciapek\AppData\Local\CrashDumps 2020-04-14 10:43 - 2018-02-17 16:05 - 000000000 ____D C:\Users\Ciapek\AppData\Local\AVAST Software 2020-04-14 10:42 - 2017-06-26 16:59 - 000000000 ____D C:\Users\Ciapek\AppData\Local\Origin 2020-04-14 10:42 - 2017-06-26 16:59 - 000000000 ____D C:\ProgramData\Origin 2020-04-14 10:42 - 2016-06-18 15:49 - 000000000 __SHD C:\Users\Ciapek\IntelGraphicsProfiles 2020-04-10 11:37 - 2017-06-26 17:01 - 000000000 ____D C:\Program Files (x86)\Origin 2020-04-09 21:09 - 2016-09-25 22:24 - 000000000 ____D C:\ProgramData\NVIDIA 2020-04-09 21:08 - 2019-10-10 16:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-04-09 21:08 - 2019-03-19 06:37 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2020-04-09 11:43 - 2020-01-11 12:45 - 000001279 _____ C:\WINDOWS\NGIControl.KTL 2020-04-09 11:43 - 2019-06-25 22:31 - 001427282 _____ C:\WINDOWS\ProcessedPackets.KTL 2020-04-09 11:43 - 2019-06-25 22:31 - 000288105 _____ C:\WINDOWS\SentOSPackets.KTL 2020-04-09 11:43 - 2016-09-17 17:05 - 000576091 _____ C:\WINDOWS\Packet.KTL 2020-04-09 11:43 - 2016-09-17 17:05 - 000289273 _____ C:\WINDOWS\Control.KTL 2020-04-07 21:49 - 2016-06-18 15:21 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-04-07 21:49 - 2016-06-18 15:21 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-04-07 14:59 - 2016-10-11 12:59 - 000000000 ____D C:\Users\Ciapek\Desktop\uczelnia 2020-04-06 21:17 - 2019-10-22 19:40 - 000000000 ____D C:\Users\Ciapek\AppData\Local\Spotify 2020-04-06 21:12 - 2019-10-22 19:39 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\Spotify 2020-04-03 23:19 - 2019-10-10 16:23 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update 2020-04-03 15:17 - 2017-06-26 17:01 - 000000000 ____D C:\Users\Ciapek\AppData\Roaming\Origin 2020-03-29 19:54 - 2018-05-16 22:01 - 000000000 ____D C:\Users\Ciapek\AppData\Local\PlaceholderTileLogoFolder 2020-03-26 22:03 - 2017-06-26 19:14 - 000000000 ____D C:\Program Files (x86)\Origin Games 2020-03-19 19:44 - 2019-10-10 16:10 - 000002455 _____ C:\Users\Ciapek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-03-19 19:44 - 2016-06-18 17:17 - 000000000 ___RD C:\Users\Ciapek\OneDrive 2020-03-19 18:02 - 2018-09-12 18:49 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-03-18 00:40 - 2019-10-10 16:10 - 000000000 ____D C:\Users\Ciapek 2020-03-15 10:55 - 2017-12-11 18:32 - 000000000 ___RD C:\Users\Ciapek\3D Objects 2020-03-15 10:55 - 2016-04-27 07:33 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-03-15 10:54 - 2019-10-10 16:04 - 000526456 _____ C:\WINDOWS\system32\FNTCACHE.DAT ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-04-07 14:43 - 2020-04-14 11:39 - 000000037 _____ () C:\Users\Ciapek\AppData\Roaming\WB.CFG ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================