Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 13-05-2020 01 Uruchomiony przez SYSTEM MININT-LSBEVU4 (15-05-2020 19:37:16) Uruchomiony z F:\ Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 Tryb startu: Recovery Domyślne: ControlSet004 [b]UWAGA!:=====> Jeśli system uruchamia się, FRST należy uruchomić z poziomu Trybu awaryjnego lub normalnego w celu utworzenia kompletnego raportu.[/b] Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13672152 2014-05-09] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-09-22] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\win7\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Startup: C:\Users\win7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2018-06-27] ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team) Startup: C:\Users\win7\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Snipaste.lnk [2018-02-26] ShortcutTarget: Snipaste.lnk -> C:\Program Files\yuiyuiuyi\Snipaste.exe (Le Liu) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {09C53B00-0491-43B8-9ADA-695183403843} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {146399E6-C8CF-4644-BF6B-FF27374E254D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\Overseer.exe [1660520 2020-02-28] (Avast Software s.r.o. -> Avast Software) Task: {35BFAAE8-A805-44CC-A99E-C3A41DBD3781} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => c:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {5C914E64-3780-4A53-8F0C-43B589719A9E} - System32\Tasks\{C39A27CC-EB6A-4599-9355-529833A1BD94} => C:\Windows\system32\pcalua.exe -a D:\SETUP.EXE -d D:\ Task: {5CC10471-E530-43A4-8316-FE85E78CE5AA} - System32\Tasks\{51398BD4-EDB6-4AC7-A1AA-1B5B70FB5690} => C:\Windows\system32\pcalua.exe -a "C:\Users\win7\Downloads\Stronghold Crusader\sce12.exe" -d "C:\Users\win7\Downloads\Stronghold Crusader" Task: {6FA22F84-0075-4316-9C76-AB75C784E11C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-04-14] (Adobe Inc. -> Adobe) Task: {700E7F3D-0CEB-449E-B1BC-3899E33A656F} - System32\Tasks\avast! BCU UpdateS-1-5-21-3878949092-2813713913-3466041323-1000 => C:\Users\win7\AppData\Roaming\AVAST Software\Browser Cleanup\BCUUpdate.exe [851168 2015-03-18] (AVAST Software a.s. -> AVAST Software) Task: {78124793-767F-43D8-8F4C-57239596B81E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {9078682F-E3CD-4456-BFED-22BFD5923697} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_pepper.exe [1454136 2020-04-14] (Adobe Inc. -> Adobe) Task: {A39BE5E8-05DB-4C70-A4DC-D234388FFC38} - System32\Tasks\avastBCLS-1-5-21-3878949092-2813713913-3466041323-1000 => C:\Users\win7\AppData\Roaming\AVAST Software\Browser Cleanup\BCUSched.exe [202960 2019-09-11] (AVAST Software s.r.o. -> AVAST Software) Task: {AB217770-C018-45B0-B48A-68A441BA80BE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {C11CF105-0E4F-4915-BA9B-4CA03BFFBA8A} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648 2019-05-04] () Task: {C67A9948-8034-47A0-B899-1CE65B974257} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_363_Plugin.exe [1458232 2020-04-14] (Adobe Inc. -> Adobe) Task: {D95D1C50-A7FA-45A0-9518-8F6626DEADAE} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {DF53A81E-548B-4846-BE22-0799CFDD24C5} - System32\Tasks\{C7EB8847-40A1-4EE5-9BD6-192AA2C830C5} => C:\Windows\system32\pcalua.exe -a C:\Users\win7\Downloads\sce12.exe -d C:\Users\win7\Downloads Task: {F1209E47-741B-45F1-977A-24D6313EF203} - System32\Tasks\update-S-1-5-21-3878949092-2813713913-3466041323-1000 => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\update-S-1-5-21-3878949092-2813713913-3466041323-1000.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\Windows\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft -> Alcohol Soft Development Team) S3 Disc Soft Pro Bus Service; C:\Program Files\DAEMON Tools Pro\DiscSoftBusService.exe [1369280 2016-03-29] (Disc Soft Ltd -> Disc Soft Ltd) S2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [40080 2017-08-30] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-03-20] (Malwarebytes Inc -> Malwarebytes) S2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) S3 NisSrv; c:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AcpiPmi; C:\Windows\system32\drivers\acpipmi.sys [12800 2010-11-20] (Microsoft Corporation) S1 AFD; C:\Windows\system32\drivers\afd.sys [496128 2017-04-04] (Microsoft Corporation) S3 AmdK8; C:\Windows\system32\drivers\amdk8.sys [64512 2020-01-03] (Microsoft Corporation) S3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [21517312 2015-09-23] (Advanced Micro Devices, Inc.) S3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [483840 2015-09-23] (Advanced Micro Devices, Inc.) S3 AmdPPM; C:\Windows\system32\drivers\amdppm.sys [60928 2020-01-03] (Microsoft Corporation) S3 AppID; C:\Windows\system32\drivers\appid.sys [62464 2020-01-03] (Microsoft Corporation) S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104976 2016-04-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) S1 Beep; C:\Windows\System32\Drivers\Beep.sys [6656 2009-07-14] (Microsoft Corporation) S3 bowser; C:\Windows\System32\DRIVERS\bowser.sys [90112 2018-07-18] (Microsoft Corporation) S3 BrFiltLo; C:\Windows\system32\DRIVERS\BrFiltLo.sys [18432 2009-06-10] (Brother Industries, Ltd.) S3 BrFiltUp; C:\Windows\system32\DRIVERS\BrFiltUp.sys [8704 2009-06-10] (Brother Industries, Ltd.) S3 Brserid; C:\Windows\System32\Drivers\Brserid.sys [286720 2009-07-14] (Brother Industries Ltd.) S3 BrSerWdm; C:\Windows\System32\Drivers\BrSerWdm.sys [47104 2009-06-10] (Brother Industries Ltd.) S3 BrUsbMdm; C:\Windows\System32\Drivers\BrUsbMdm.sys [14976 2009-06-10] (Brother Industries Ltd.) S3 BrUsbSer; C:\Windows\System32\Drivers\BrUsbSer.sys [14720 2009-06-10] (Brother Industries Ltd.) S3 BTHMODEM; C:\Windows\system32\DRIVERS\bthmodem.sys [72192 2009-07-14] (Microsoft Corporation) S4 cdfs; C:\Windows\System32\DRIVERS\cdfs.sys [92672 2019-02-10] (Microsoft Corporation) S3 circlass; C:\Windows\system32\DRIVERS\circlass.sys [45568 2009-07-14] (Microsoft Corporation) S3 cmnxusbser; C:\Windows\System32\DRIVERS\cmnxusbser.sys [146424 2015-11-24] (西安博汇电子科技有限公司 -> Wireless Data Device) S3 CompositeBus; C:\Windows\system32\drivers\CompositeBus.sys [38912 2010-11-20] (Microsoft Corporation) S1 CSC; C:\Windows\System32\drivers\csc.sys [516096 2018-06-29] (Microsoft Corporation) S1 DfsC; C:\Windows\System32\Drivers\dfsc.sys [115200 2018-04-25] (Microsoft Corporation) S1 discache; C:\Windows\System32\drivers\discache.sys [40448 2009-07-14] (Microsoft Corporation) S3 drmkaud; C:\Windows\system32\drivers\drmkaud.sys [5632 2015-12-08] (Microsoft Corporation) S3 dtproscsibus; C:\Windows\System32\DRIVERS\dtproscsibus.sys [30264 2016-06-24] (Disc Soft Ltd -> Disc Soft Ltd) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [24056 2016-01-14] (CHENGDU YIWO Tech Development Co., Ltd. -> ) S0 EPMVolFlt; C:\Windows\System32\drivers\EPMVolFlt.sys [20936 2017-11-23] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider) S3 ErrDev; C:\Windows\system32\drivers\errdev.sys [9728 2018-02-10] (Microsoft Corporation) S0 EUBKMON; C:\Windows\System32\drivers\EUBKMON.sys [53240 2016-12-06] (CHENGDU YIWO Tech Development Co., Ltd. -> ) S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2016-07-11] (CHENGDU YIWO Tech Development Co., Ltd. -> ) S3 exfat; C:\Windows\System32\Drivers\exfat.sys [195584 2019-02-10] (Microsoft Corporation) S3 fastfat; C:\Windows\System32\Drivers\fastfat.sys [205312 2019-02-10] (Microsoft Corporation) S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [30424 2015-12-24] (Sony Mobile Communications AB -> Sony Mobile Communications) S3 hcw85cir; C:\Windows\system32\drivers\hcw85cir.sys [31232 2009-06-10] (Hauppauge Computer Works, Inc.) S3 HdAudAddService; C:\Windows\system32\drivers\HdAudio.sys [350208 2019-08-27] (Microsoft Corporation) S3 HidBth; C:\Windows\system32\DRIVERS\hidbth.sys [100864 2009-07-14] (Microsoft Corporation) S3 HidIr; C:\Windows\system32\DRIVERS\hidir.sys [46592 2009-07-14] (Microsoft Corporation) S3 HidUsb; C:\Windows\System32\DRIVERS\hidusb.sys [30208 2019-03-05] (Microsoft Corporation) S3 HTTP; C:\Windows\System32\drivers\HTTP.sys [754176 2019-12-10] (Microsoft Corporation) S0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2014-04-04] (Intel Corporation - Intel® Rapid Storage Technology -> Intel Corporation) S3 igfx; C:\Windows\System32\DRIVERS\igdkmd64.sys [10629408 2012-11-15] (Intel Corporation) S3 InputFilter_Hid_FlexDef2b; C:\Windows\System32\DRIVERS\InputFilter_FlexDef2b.sys [17920 2010-06-19] (Siliten) S3 intelppm; C:\Windows\system32\drivers\intelppm.sys [62464 2020-01-03] (Microsoft Corporation) S3 IpFilterDriver; C:\Windows\System32\DRIVERS\ipfltdrv.sys [82944 2010-11-20] (Microsoft Corporation) S3 IPNAT; C:\Windows\System32\drivers\ipnat.sys [116224 2009-07-14] (Microsoft Corporation) S3 IRENUM; C:\Windows\System32\drivers\irenum.sys [17920 2009-07-14] (Microsoft Corporation) S3 leusbser; C:\Windows\System32\DRIVERS\leusbser.sys [238080 2013-08-01] (QUALCOMM Incorporated) S2 lltdio; C:\Windows\System32\DRIVERS\lltdio.sys [60928 2009-07-14] (Microsoft Corporation) S2 luafv; C:\Windows\system32\drivers\luafv.sys [114688 2019-03-29] (Microsoft Corporation) S2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-05-11] (Malwarebytes Inc -> Malwarebytes) S3 Modem; C:\Windows\System32\drivers\modem.sys [40448 2009-07-14] (Microsoft Corporation) S3 monitor; C:\Windows\system32\drivers\monitor.sys [30208 2019-09-10] (Microsoft Corporation) S0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) S3 mpsdrv; C:\Windows\System32\drivers\mpsdrv.sys [77312 2018-08-10] (Microsoft Corporation) S3 MRxDAV; C:\Windows\system32\drivers\mrxdav.sys [142336 2016-09-08] (Microsoft Corporation) S3 mrxsmb; C:\Windows\System32\DRIVERS\mrxsmb.sys [161280 2020-01-03] (Microsoft Corporation) S3 mrxsmb10; C:\Windows\System32\DRIVERS\mrxsmb10.sys [291328 2020-01-03] (Microsoft Corporation) S3 mrxsmb20; C:\Windows\System32\DRIVERS\mrxsmb20.sys [129536 2020-01-03] (Microsoft Corporation) S1 Msfs; C:\Windows\System32\Drivers\Msfs.sys [26112 2019-02-03] (Microsoft Corporation) S3 mshidkmdf; C:\Windows\System32\drivers\mshidkmdf.sys [8192 2009-07-14] (Microsoft Corporation) S3 NativeWifiP; C:\Windows\System32\DRIVERS\nwifi.sys [324608 2017-09-13] (Microsoft Corporation) S3 NdisCap; C:\Windows\System32\DRIVERS\ndiscap.sys [35328 2009-07-14] (Microsoft Corporation) S3 NdisTapi; C:\Windows\System32\DRIVERS\ndistapi.sys [24064 2018-12-08] (Microsoft Corporation) S3 Ndisuio; C:\Windows\System32\DRIVERS\ndisuio.sys [56832 2010-11-20] (Microsoft Corporation) S3 NDProxy; C:\Windows\System32\Drivers\NDProxy.sys [58368 2018-12-08] (Microsoft Corporation) S1 NetBIOS; C:\Windows\System32\DRIVERS\netbios.sys [45056 2018-01-01] (Microsoft Corporation) S1 NetBT; C:\Windows\System32\DRIVERS\netbt.sys [262656 2019-02-21] (Microsoft Corporation) S3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) S1 Npfs; C:\Windows\System32\Drivers\Npfs.sys [44544 2020-01-03] (Microsoft Corporation) S1 nsiproxy; C:\Windows\System32\drivers\nsiproxy.sys [26112 2017-08-11] (Microsoft Corporation) S2 PEAUTH; C:\Windows\System32\drivers\peauth.sys [663552 2019-06-12] (Microsoft Corporation) S3 Processor; C:\Windows\system32\drivers\processr.sys [60928 2020-01-03] (Microsoft Corporation) S1 Psched; C:\Windows\System32\DRIVERS\pacer.sys [131584 2018-01-01] (Microsoft Corporation) S0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> ) S3 QWAVEdrv; C:\Windows\system32\drivers\qwavedrv.sys [46592 2009-07-14] (Microsoft Corporation) S1 rdbss; C:\Windows\System32\DRIVERS\rdbss.sys [317440 2019-09-10] (Microsoft Corporation) S3 rdpbus; C:\Windows\System32\DRIVERS\rdpbus.sys [24064 2009-07-14] (Microsoft Corporation) S1 RDPCDD; C:\Windows\System32\DRIVERS\RDPCDD.sys [7680 2009-07-14] (Microsoft Corporation) S3 RDPDR; C:\Windows\System32\drivers\rdpdr.sys [165888 2010-11-20] (Microsoft Corporation) S1 RDPENCDD; C:\Windows\System32\drivers\rdpencdd.sys [7680 2009-07-14] (Microsoft Corporation) S1 RDPREFMP; C:\Windows\System32\drivers\rdprefmp.sys [8192 2009-07-14] (Microsoft Corporation) S3 RdpVideoMiniport; C:\Windows\System32\drivers\rdpvideominiport.sys [19456 2012-08-23] (Microsoft Corporation) S3 RDPWD; C:\Windows\System32\Drivers\RDPWD.sys [212480 2014-07-17] (Microsoft Corporation) S2 rspndr; C:\Windows\System32\DRIVERS\rspndr.sys [76800 2009-07-14] (Microsoft Corporation) S3 s3cap; C:\Windows\system32\drivers\vms3cap.sys [6656 2010-11-20] (Microsoft Corporation) S3 scfilter; C:\Windows\System32\DRIVERS\scfilter.sys [29696 2010-11-20] (Microsoft Corporation) S4 secdrv; C:\Windows\System32\Drivers\secdrv.sys [23040 2009-06-10] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) S3 Serenum; C:\Windows\System32\DRIVERS\nuvserenum.sys [23552 2014-01-12] (Windows (R) Win 7 DDK provider) S3 Serial; C:\Windows\System32\DRIVERS\nuvserial.sys [86016 2014-01-12] (Nuvoton Technology Corp.) S3 sffdisk; C:\Windows\system32\drivers\sffdisk.sys [14336 2009-07-14] (Microsoft Corporation) S3 sffp_mmc; C:\Windows\system32\drivers\sffp_mmc.sys [13824 2009-07-14] (Microsoft Corporation) S3 sffp_sd; C:\Windows\system32\drivers\sffp_sd.sys [14336 2010-11-20] (Microsoft Corporation) S0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-06-24] (Disc Soft Ltd -> Duplex Secure Ltd.) S3 srv; C:\Windows\System32\DRIVERS\srv.sys [464384 2020-01-03] (Microsoft Corporation) S3 srv2; C:\Windows\System32\DRIVERS\srv2.sys [406016 2020-01-03] (Microsoft Corporation) S3 srvnet; C:\Windows\System32\DRIVERS\srvnet.sys [169984 2020-01-03] (Microsoft Corporation) S2 tcpipreg; C:\Windows\System32\drivers\tcpipreg.sys [46080 2016-07-07] (Microsoft Corporation) S3 TDPIPE; C:\Windows\System32\drivers\tdpipe.sys [15872 2009-07-14] (Microsoft Corporation) S3 TDTCP; C:\Windows\System32\drivers\tdtcp.sys [23552 2012-02-17] (Microsoft Corporation) S1 tdx; C:\Windows\System32\DRIVERS\tdx.sys [117248 2017-07-29] (Microsoft Corporation) S3 tssecsrv; C:\Windows\System32\DRIVERS\tssecsrv.sys [40448 2017-08-13] (Microsoft Corporation) S3 TsUsbFlt; C:\Windows\System32\drivers\tsusbflt.sys [56832 2013-10-02] (Microsoft Corporation) S3 tunnel; C:\Windows\System32\DRIVERS\tunnel.sys [125440 2010-11-20] (Microsoft Corporation) S4 udfs; C:\Windows\System32\DRIVERS\udfs.sys [328192 2019-02-10] (Microsoft Corporation) S3 usbaudio; C:\Windows\System32\drivers\usbaudio.sys [109824 2013-07-12] (Microsoft Corporation) S3 usbccgp; C:\Windows\System32\DRIVERS\usbccgp.sys [99840 2018-05-02] (Microsoft Corporation) S3 usbcir; C:\Windows\system32\drivers\usbcir.sys [100864 2013-07-12] (Microsoft Corporation) S3 usbehci; C:\Windows\system32\drivers\usbehci.sys [56320 2018-05-02] (Microsoft Corporation) S3 usbhub; C:\Windows\system32\drivers\usbhub.sys [344064 2018-05-02] (Microsoft Corporation) S3 usbohci; C:\Windows\system32\drivers\usbohci.sys [25600 2018-05-02] (Microsoft Corporation) S3 usbprint; C:\Windows\System32\DRIVERS\usbprint.sys [25088 2009-07-14] (Microsoft Corporation) S3 usbrndis6; C:\Windows\System32\DRIVERS\usb80236.sys [19968 2013-02-12] (Microsoft Corporation) S3 usbscan; C:\Windows\system32\drivers\usbscan.sys [42496 2019-12-10] (Microsoft Corporation) S3 USBSTOR; C:\Windows\System32\DRIVERS\USBSTOR.SYS [91648 2016-02-03] (Microsoft Corporation) S3 usbuhci; C:\Windows\system32\drivers\usbuhci.sys [30720 2018-05-02] (Microsoft Corporation) S3 usb_rndisx; C:\Windows\System32\DRIVERS\usb8023x.sys [19968 2013-02-12] (Microsoft Corporation) S3 vga; C:\Windows\System32\DRIVERS\vgapnp.sys [29184 2009-07-14] (Microsoft Corporation) S3 vwifibus; C:\Windows\System32\drivers\vwifibus.sys [24576 2009-07-14] (Microsoft Corporation) S1 vwififlt; C:\Windows\System32\DRIVERS\vwififlt.sys [59904 2009-07-14] (Microsoft Corporation) S3 WANARP; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2018-12-08] (Microsoft Corporation) S1 Wanarpv6; C:\Windows\System32\DRIVERS\wanarp.sys [88576 2018-12-08] (Microsoft Corporation) S1 WfpLwf; C:\Windows\System32\DRIVERS\wfplwf.sys [12800 2009-07-14] (Microsoft Corporation) S3 WinUSB; C:\Windows\System32\DRIVERS\WinUsb.sys [41984 2010-11-20] (Microsoft Corporation) S3 WmiAcpi; C:\Windows\system32\drivers\wmiacpi.sys [14336 2018-02-10] (Microsoft Corporation) S4 ws2ifsl; C:\Windows\system32\drivers\ws2ifsl.sys [22016 2019-08-20] (Microsoft Corporation) S3 WudfPf; C:\Windows\System32\drivers\WudfPf.sys [87040 2012-07-26] (Microsoft Corporation) S3 WUDFRd; C:\Windows\System32\DRIVERS\WUDFRd.sys [198656 2012-07-26] (Microsoft Corporation) S3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [398816 2013-01-21] (Marvell Semiconductor -> Marvell) UpperFilters: [{4D36E967-E325-11CE-BFC1-08002BE10318}] -> [PartMgr EPMVolFlt] UpperFilters: [{71A27CDD-812A-11D0-BEC7-08002BE2092F}] -> [EPMVolFlt EUBKMON EUBAKUP] LowerFilters: [{4D36E967-E325-11CE-BFC1-08002BE10318}] -> [iaStorF] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-15 19:36 - 2020-05-15 19:37 - 000000000 ____D C:\FRST 2020-05-11 16:55 - 2020-05-11 16:55 - 000214496 _____ (Malwarebytes) C:\Windows\System32\Drivers\MbamChameleon.sys 2020-05-11 12:46 - 2020-05-11 12:49 - 403421696 _____ C:\Users\win7\Downloads\DW-Lincoln.Rhyme.Hunt.for.the.Bone.Collector.2020.PL.S01E02.480p.AMZN.WEB-DL.XviD-J.avi 2020-05-11 12:44 - 2020-05-11 12:47 - 295584415 _____ C:\Users\win7\Downloads\Lincoln.Rhyme.Hunt.for.the.Bone.Collector.S01E01.Pilot.PL.AMZN.WEB-DL.x264-666.mkv 2020-05-11 12:39 - 2020-05-11 12:44 - 585571036 _____ C:\Users\win7\Downloads\Blue.Bloods.S10E16.PL.480p.WEB-DL.XviD.AC3.avi 2020-05-11 12:08 - 2020-05-11 12:15 - 1143806829 _____ C:\Users\win7\Downloads\- - Bad Boys for Life - 2020 - LEKTOR PL.BRRip.x264.AAC.2.0-MG.mkv 2020-05-11 11:53 - 2020-05-11 11:54 - 133645523 _____ C:\Users\win7\Downloads\s_nh KD 2020.rar 2020-05-06 11:29 - 2020-05-06 11:32 - 299033083 _____ C:\Users\win7\Downloads\Znaki.2020.S02E05.POLiSH.HDTV.x264-666.mkv 2020-05-06 11:27 - 2020-05-06 11:29 - 236038975 _____ C:\Users\win7\Downloads\Znaki.S02E04.PL.480p.HDTV.x264-tds.mkv 2020-05-06 11:21 - 2020-05-06 11:26 - 472365756 _____ C:\Users\win7\Downloads\Znaki.S02E03.PL.HDTV.XviD-HFu.avi 2020-05-06 11:15 - 2020-05-06 11:20 - 470108978 _____ C:\Users\win7\Downloads\Znaki.2020.PL.S02E02.480p.HDTV.XviD-J.avi 2020-05-06 10:44 - 2020-05-06 10:49 - 319137693 _____ C:\Users\win7\Downloads\Znaki.2020.S02E01.POLiSH.HDTV.x264-666.mkv 2020-05-06 10:09 - 2020-05-06 10:09 - 000013847 _____ C:\Users\win7\Downloads\nancy_drew_2019_1x01_1x1_n24_pl_118130.zip 2020-05-01 18:02 - 2020-05-01 18:14 - 1249733448 _____ C:\Users\win7\Downloads\Przypadkowy świadek - lektor PL.avi 2020-05-01 16:40 - 2020-05-01 16:54 - 703837256 _____ C:\Users\win7\Downloads\Blue.Bloods.S10E15.Vested.Interests.PL.480p.AMZN.WEB-DL.DD2.0.XviD-Ralf.avi 2020-04-27 13:39 - 2020-04-27 13:46 - 733525874 _____ C:\Users\win7\Downloads\Little.Accidents.2014.PL.WEB-DL.XviD-MX.avi 2020-04-25 21:25 - 2020-04-25 21:28 - 333366563 _____ C:\Users\win7\Downloads\White.House.Farm.S01E06.FiNAL.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 21:18 - 2020-04-25 21:23 - 328631742 _____ C:\Users\win7\Downloads\White.House.Farm.S01E05.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 21:16 - 2020-04-25 21:20 - 318124146 _____ C:\Users\win7\Downloads\White.House.Farm.S01E04.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 21:12 - 2020-04-25 21:15 - 325573605 _____ C:\Users\win7\Downloads\White.House.Farm.S01E03.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 21:06 - 2020-04-25 21:09 - 325676151 _____ C:\Users\win7\Downloads\White.House.Farm.S01E02.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 21:01 - 2020-04-25 21:05 - 323677986 _____ C:\Users\win7\Downloads\White.House.Farm.S01E01.PL.AMZN.WEB-DL.x264-666.mkv 2020-04-25 20:51 - 2020-04-25 21:02 - 950985961 _____ C:\Users\win7\Downloads\uncgems-480p-x264-aac2.0-pl-p2p.mkv 2020-04-25 20:28 - 2020-04-25 20:50 - 733853696 _____ C:\Users\win7\Downloads\Iris.2016.PL.BRRip.XviD-KiT.avi 2020-04-25 20:21 - 2020-04-25 20:42 - 734109696 _____ C:\Users\win7\Downloads\White.Bird.In.A.Blizzard.2014.PL.BRRip.XviD-KiT.avi 2020-04-25 19:51 - 2020-04-25 20:06 - 733593708 _____ C:\Users\win7\Downloads\Strangerland.2015.PL.BDRiP.XViD-K12.avi 2020-04-25 19:36 - 2020-04-25 19:51 - 734015488 _____ C:\Users\win7\Downloads\American.Woman.2018.PL.BDRip.XviD-KiT.avi 2020-04-25 19:10 - 2020-04-25 19:34 - 823178679 _____ C:\Users\win7\Downloads\Extraction.2020.PL.NF.WEB-DL.DD2.0.x264-666.mkv 2020-04-25 18:58 - 2020-04-25 19:10 - 583314584 _____ C:\Users\win7\Downloads\Lost.Girls.2020.PL.480p.NF.WEB.X264-J.mkv 2020-04-25 18:33 - 2020-04-25 18:58 - 730934318 _____ C:\Users\win7\Downloads\Run.All.Night.2015.PL.BDRip.x264-MiNS.mkv 2020-04-24 18:29 - 2020-04-24 18:55 - 760699489 _____ C:\Users\win7\Downloads\Spooks.The.Greater.Good.2015.PL.BDRip.x264-KiT.mkv 2020-04-24 13:05 - 2020-04-24 13:05 - 000244594 _____ C:\Users\win7\Downloads\508497040420 n.pdf 2020-04-18 13:52 - 2020-04-18 13:56 - 042826757 _____ C:\Users\win7\Downloads\Shaun The Sheep S03E19 - The Shadow Play.mp4 2020-04-17 20:02 - 2020-04-25 18:31 - 000000000 ____D C:\Users\win7\Desktop\Baranek 2020-04-17 19:08 - 2020-01-30 03:30 - 000834560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2020-04-17 19:08 - 2020-01-30 03:23 - 001010688 _____ (Microsoft Corporation) C:\Windows\System32\user32.dll 2020-04-17 16:28 - 2020-04-17 16:28 - 000760864 _____ C:\Users\win7\Downloads\Alex Marwood - Zatruty ogrod -.mobi ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-29 13:02 - 2019-06-20 22:40 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update 2020-05-29 12:28 - 2020-03-05 11:09 - 000406162 _____ C:\Windows\ntbtlog.txt 2020-05-11 18:31 - 2018-04-15 12:28 - 000000000 ____D C:\Users\win7\Documents\ShareX 2020-05-11 17:47 - 2017-06-27 13:45 - 000000386 _____ C:\Windows\Tasks\update-S-1-5-21-3878949092-2813713913-3466041323-1000.job 2020-05-11 14:34 - 2017-06-27 13:45 - 000000386 _____ C:\Windows\Tasks\update-sys.job 2020-05-11 09:02 - 2009-07-14 05:45 - 000031088 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-05-11 09:02 - 2009-07-14 05:45 - 000031088 ____H C:\Windows\System32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-05-11 08:46 - 2018-02-23 15:41 - 000000000 ____D C:\Program Files\yuiyuiuyi 2020-05-11 08:43 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-05-06 10:42 - 2009-07-14 18:55 - 000752836 _____ C:\Windows\System32\perfh015.dat 2020-05-06 10:42 - 2009-07-14 18:55 - 000160214 _____ C:\Windows\System32\perfc015.dat 2020-05-06 10:42 - 2009-07-14 06:13 - 001696174 _____ C:\Windows\System32\PerfStringBackup.INI 2020-05-06 10:42 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2020-05-02 20:56 - 2019-06-08 11:52 - 000000000 ____D C:\Users\win7\Desktop\Zagadki 2020-04-25 18:35 - 2019-09-21 16:00 - 000153312 _____ (Malwarebytes) C:\Windows\System32\Drivers\mbae64.sys 2020-04-17 19:24 - 2016-02-08 14:24 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-04-17 18:29 - 2017-05-12 17:24 - 000000000 ____D C:\Users\win7\AppData\LocalLow\Mozilla 2020-04-17 11:51 - 2015-12-17 13:07 - 000000000 ____D C:\Users\win7\AppData\Roaming\BESTplayer ==================== KnownDLLs (filtrowane) ========================= ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\System32\winlogon.exe => MD5 jest poprawne C:\Windows\System32\wininit.exe => MD5 jest poprawne C:\Windows\SysWOW64\wininit.exe => MD5 jest poprawne C:\Windows\explorer.exe => MD5 jest poprawne C:\Windows\SysWOW64\explorer.exe => MD5 jest poprawne C:\Windows\System32\svchost.exe => MD5 jest poprawne C:\Windows\SysWOW64\svchost.exe => MD5 jest poprawne C:\Windows\System32\services.exe => MD5 jest poprawne C:\Windows\System32\User32.dll [2020-04-17 19:08] - [2020-01-30 03:23] - 001010688 _____ (Microsoft Corporation) 8638404CAC7EAC3F44824EAFBF91A715 C:\Windows\SysWOW64\User32.dll [2020-04-17 19:08] - [2020-01-30 03:30] - 000834560 _____ (Microsoft Corporation) 8A4B88FFFCC661A3824860467CEB1D78 C:\Windows\System32\userinit.exe => MD5 jest poprawne C:\Windows\SysWOW64\userinit.exe => MD5 jest poprawne C:\Windows\System32\rpcss.dll => MD5 jest poprawne C:\Windows\System32\dnsapi.dll => MD5 jest poprawne C:\Windows\SysWOW64\dnsapi.dll => MD5 jest poprawne C:\Windows\System32\dllhost.exe => MD5 jest poprawne C:\Windows\SysWOW64\dllhost.exe => MD5 jest poprawne C:\Windows\System32\Drivers\volsnap.sys => MD5 jest poprawne ==================== Powiązania plików (filtrowane) ============= ==================== Punkty Przywracania systemu ========================= ==================== Statystyki pamięci =========================== Procent pamięci w użyciu: 13% Całkowita pamięć fizyczna: 6143.16 MB Dostępna pamięć fizyczna: 5299.75 MB Całkowita pamięć wirtualna: 6141.36 MB Dostępna pamięć wirtualna: 5297.91 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:148.95 GB) (Free:29.71 GB) NTFS Drive e: (GSP1RMCPRXVOL_PL_DVD) (CDROM) (Total:2.85 GB) (Free:0 GB) UDF Drive f: (CYC) (Removable) (Total:3.73 GB) (Free:3.7 GB) FAT32 Drive x: (Boot) (Fixed) (Total:0.03 GB) (Free:0.03 GB) NTFS Drive y: (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==>[system z komponentami startowymi (pozyskano odczytując dysk)] ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 149.1 GB) (Disk ID: B10B01F9) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=149 GB) - (Type=07 NTFS) ========================================================== Disk: 1 (Size: 3.7 GB) (Disk ID: 500A0DFF) No partition Table on disk 1. LastRegBack: 2020-05-11 11:19 ==================== Koniec FRST.txt ========================