Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 06-06-2020 Uruchomiony przez gabinet (administrator) GABINET-HP (HP HP ProDesk 400 G3 MT) (14-06-2020 20:25:20) Uruchomiony z C:\Users\gabinet\Downloads Załadowane profile: gabinet Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Asseco Poland S.A. (TS)) [Brak podpisu cyfrowego] C:\Program Files (x86)\PostgreSQL\9.5\bin\pg_ctl.exe (Asseco Poland S.A. (TS)) [Brak podpisu cyfrowego] C:\Program Files (x86)\PostgreSQL\9.5\bin\postgres.exe <7> (Asseco Poland S.A. -> ) C:\Program Files (x86)\ASSECO\mMedica\mmService.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\afwServ.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <8> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [108136 2020-06-10] (Avast Software s.r.o. -> AVAST Software) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [110008 2015-08-05] (CyberLink Corp. -> CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [499640 2015-08-05] (CyberLink Corp. -> CyberLink Corp.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKLM\...\Windows x64\Print Processors\Canon iP1900 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPD9M.DLL [27648 2008-03-11] (CANON INC.) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\Canon BJ Language Monitor iP1900 series: C:\windows\system32\CNMLM9M.DLL [279040 2008-03-11] (CANON INC.) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\HP 622a Status Monitor: C:\windows\system32\hpinksts622aLM.dll [468584 2018-08-06] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP LaserJet MFP M129-M134): C:\windows\system32\HPDiscoPM622a.dll [988296 2018-08-22] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\windows\system32\hpbprtmon.dll [423936 2014-06-11] (Hewlett-Packard) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.97\Installer\chrmstp.exe [2020-06-04] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{438363A8-F486-4C37-834C-4955773CB3D3}] -> msiexec /fu {438363A8-F486-4C37-834C-4955773CB3D3} /qn GroupPolicy: Ograniczenia ? <==== UWAGA FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0AB00BF6-973D-44FC-ACF6-03E3EE8784C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-11-28] (Google Inc -> Google Inc.) Task: {0F6E387B-F7C5-4DDA-91C3-D419C2D013AA} - System32\Tasks\Adobe Flash Player Updater => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-06-10] (Adobe Inc. -> Adobe) Task: {32F48D30-A479-4E63-8086-85FC55E279C0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2016-11-28] (Google Inc -> Google Inc.) Task: {612F1E0A-DD1A-4A55-AE26-DBF2C1F91B0F} - System32\Tasks\HPCustPartic.exe_{D9590E41-E04A-44D9-B886-91EF13681670} => C:\Program Files\HP\HP LaserJet MFP M129-M134\Bin\HPCustPartic.exe [6660744 2018-08-22] (Hewlett Packard -> HP Inc.) Task: {63CA35C8-9997-4A19-9B52-3802B9571E09} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {65D49433-4D38-42F4-AD03-E77CD62256F0} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {660C8B55-7017-4368-BDA2-9350B5899CB1} - System32\Tasks\HPCustParticipation HP LaserJet MFP M129-M134 => C:\Program Files\HP\HP LaserJet MFP M129-M134\Bin\HPCustPartic.exe [6660744 2018-08-22] (Hewlett Packard -> HP Inc.) Task: {721B861A-8838-411D-9297-86459C17CE46} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1505624 2020-05-20] (HP Inc. -> HP Inc.) Task: {73B8B296-4BFA-4467-ACE0-BFE5F650C5B5} - System32\Tasks\{9D5BB72D-331D-4975-BB66-2FDC514C2589} => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe [2706480 2020-02-05] (Adobe Inc. -> Adobe Systems Incorporated) Task: {7949B471-95E4-4689-8D6F-5B3B06EF0411} - System32\Tasks\{7243DA4F-1CBB-4A2D-BD37-84EC8F0C72A6} => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroRd32.exe [2706480 2020-02-05] (Adobe Inc. -> Adobe Systems Incorporated) Task: {7A5FEC8E-4070-4300-A221-FC67BBEF7632} - System32\Tasks\HPCeeScheduleForgabinet => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe Task: {8F3F573C-E252-464E-A9DC-A76C351934FB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {9BB1B132-504B-4BC3-8C2F-2F3E09D921FF} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe [136056 2019-01-02] (HP Inc. -> HP Inc.) Task: {A182366A-6854-4B3E-BA15-DD45D8D557A5} - System32\Tasks\{511ACD67-A941-49B0-A050-DB3AEE183934} => C:\windows\system32\pcalua.exe -a "G:\instale\bios n03\sp78295.exe" -d "G:\instale\bios n03" Task: {A888310E-0664-448F-8176-288D89318C28} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe [320856 2020-04-23] (HP Inc. -> HP Inc.) Task: {AAA451A9-83E0-4279-9635-165EB0C49AB0} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe [25128 2017-11-17] (HP Inc. -> ) Task: {BF59CF4C-DA2A-485C-B104-36BF9AB89D07} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3314272 2020-06-10] (Avast Software s.r.o. -> AVAST Software) Task: {C0C9B7F1-23E8-4341-9131-7A28E8E22F74} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1133400 2020-06-03] (HP Inc. -> HP Inc.) Task: {DA0F2FA9-569E-41E4-B35E-1E19FDDBB0E1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe [662872 2020-04-30] (HP Inc. -> HP Inc.) Task: {DF5114F0-7A31-4807-94C9-3854AC273C74} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [909112 2016-07-26] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {EBA08ADD-0694-4FEC-8615-B6E7BD94A756} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [1505624 2020-05-20] (HP Inc. -> HP Inc.) Task: {F3B1606F-3F97-4C55-9E99-B3EDC4EF8449} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-11] (Adobe Inc. -> Adobe Systems) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\windows\Tasks\HPCeeScheduleForgabinet.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 194.204.159.1 8.8.8.8 Tcpip\..\Interfaces\{78DA7329-19BB-42CD-9BAC-4B4D2B8556FC}: [NameServer] 8.8.8.8,194.204.159.1 Tcpip\..\Interfaces\{B831890D-6958-4B1B-95D7-D3C8DD010854}: [NameServer] 192.168.1.1,194.204.159.1 Tcpip\..\Interfaces\{B831890D-6958-4B1B-95D7-D3C8DD010854}: [DhcpNameServer] 194.204.159.1 8.8.8.8 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE HKU\S-1-5-21-1448829807-2397916996-3138991478-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.pl/?gws_rd=ssl HKU\S-1-5-21-1448829807-2397916996-3138991478-1000\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp15-comm.msn.com/?pc=HRTE SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-10-27] (HP Inc. -> HP Inc.) BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-10-27] (HP Inc. -> HP Inc.) FireFox: ======== FF DefaultProfile: 15brikf7.default-1536589885140 FF ProfilePath: C:\Users\gabinet\AppData\Roaming\Mozilla\Firefox\Profiles\15brikf7.default-1536589885140 [2020-06-14] FF Homepage: Mozilla\Firefox\Profiles\15brikf7.default-1536589885140 -> hxxps://www.google.pl/?gws_rd=ssl FF NetworkProxy: Mozilla\Firefox\Profiles\15brikf7.default-1536589885140 -> type", 0 FF Extension: (Avast SafePrice | Porównania, promocje, kupony) - C:\Users\gabinet\AppData\Roaming\Mozilla\Firefox\Profiles\15brikf7.default-1536589885140\Extensions\sp@avast.com.xpi [2020-05-15] FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-05] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default [2020-06-14] CHR Notifications: Default -> hxxps://demo.drw.pl; hxxps://www.facebook.com CHR HomePage: Default -> hxxp://www.gazeta.pl/0,0.html?p=136 CHR Extension: (Prezentacje) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-16] CHR Extension: (Dokumenty) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-16] CHR Extension: (Dysk Google) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-28] CHR Extension: (YouTube) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-28] CHR Extension: (Block Site - Website Blocker for Chrome™) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiimnmioipafcokbfikbljfdeojpcgbh [2020-06-03] CHR Extension: (Avast SafePrice | Porównania, promocje, kupony) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-03-26] CHR Extension: (Arkusze) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16] CHR Extension: (Dokumenty Google offline) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-21] CHR Extension: (AdBlock — best ad blocker) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2020-06-14] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-01] CHR Extension: (Gmail) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30] CHR Extension: (Chrome Media Router) - C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-31] CHR Profile: C:\Users\gabinet\AppData\Local\Google\Chrome\User Data\System Profile [2017-05-15] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6392728 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [348968 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R2 avast! Firewall; C:\Program Files\AVAST Software\Avast\afwServ.exe [1052984 2020-06-10] (Avast Software s.r.o. -> AVAST Software) S4 eKopia_w_Chmurze; C:\Program Files (x86)\eKopia w Chmurze\Opero.Client.ClientService.exe [20040 2016-06-29] (Xopero Software -> Xopero Software sp. z o.o.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1077752 2016-09-28] (HP Inc. -> HP) R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [379224 2020-05-20] (HP Inc. -> HP Inc.) R2 igfxCUIService2.0.0.0; C:\windows\system32\igfxCUIService.exe [341448 2017-12-22] (Intel(R) pGFX -> Intel Corporation) R2 mmService; C:\Program Files (x86)\ASSECO\mMedica\mmService.exe [2439504 2020-05-26] (Asseco Poland S.A. -> ) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-12-04] (Microsoft Windows -> Microsoft Corporation) R2 postgresmm-9.5; "C:\Program Files (x86)\PostgreSQL\9.5\bin\pg_ctl.exe" runservice -N "postgresmm-9.5" -D "C:\Program Files (x86)\PostgreSQL\9.5\data" ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 aswArPot; C:\windows\System32\drivers\aswArPot.sys [205896 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\windows\System32\drivers\aswbidsdriver.sys [235088 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\windows\System32\drivers\aswbidsh.sys [178768 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\windows\System32\drivers\aswbuniv.sys [60496 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\windows\System32\drivers\aswKbd.sys [42784 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\windows\System32\drivers\aswMonFlt.sys [175208 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\windows\System32\drivers\aswNetHub.sys [506152 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R3 aswNetNd6; C:\windows\System32\DRIVERS\aswNetNd6.sys [38152 2019-02-26] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\windows\System32\drivers\aswRdr2.sys [109280 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\windows\System32\drivers\aswRvrt.sys [84856 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\windows\System32\drivers\aswSnx.sys [851608 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\windows\System32\drivers\aswSP.sys [462600 2020-06-10] (Avast Software s.r.o. -> AVAST Software) R2 aswStm; C:\windows\System32\drivers\aswStm.sys [216824 2020-06-10] (Avast Software s.r.o. -> AVAST Software) S3 aswTap; C:\windows\System32\DRIVERS\aswTap.sys [53904 2018-09-05] (AVAST Software s.r.o. -> The OpenVPN Project) R0 aswVmm; C:\windows\System32\drivers\aswVmm.sys [322256 2020-06-10] (Avast Software s.r.o. -> AVAST Software) S3 athr; C:\windows\System32\DRIVERS\athrx.sys [1579520 2017-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) R0 iaStorF; C:\windows\System32\drivers\iaStorF.sys [31712 2016-01-22] (Intel(R) Rapid Storage Technology -> Intel Corporation) R3 MEIx64; C:\windows\System32\DRIVERS\TeeDriverx64.sys [198712 2016-07-18] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) S3 Ser2pl; C:\windows\system32\drivers\ser2pl64.sys [167936 2013-10-18] (Microsoft Windows Hardware Compatibility Publisher -> Prolific Technology Inc.) R3 XtuAcpiDriver; C:\windows\System32\DRIVERS\XtuAcpiDriver.sys [54168 2017-04-18] (Intel Corporation -> Intel Corporation) S3 SWDUMon; system32\DRIVERS\SWDUMon.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-06-14 20:24 - 2020-06-14 20:25 - 000000000 ____D C:\FRST 2020-06-14 18:00 - 2020-06-14 18:00 - 000000000 ____D C:\windows\pss 2020-06-14 17:26 - 2020-06-14 17:26 - 000000000 ____D C:\Users\Gabservis\AppData\Roaming\Avast Software 2020-06-14 17:21 - 2020-06-14 17:21 - 008402608 _____ (Malwarebytes) C:\Users\Gabservis\Downloads\AdwCleaner.exe 2020-06-14 17:20 - 2020-06-14 17:20 - 000000000 ____D C:\Users\Gabservis\AppData\Roaming\Mozilla 2020-06-14 17:20 - 2020-06-14 17:20 - 000000000 ____D C:\Users\Gabservis\AppData\LocalLow\Mozilla 2020-06-14 17:20 - 2020-06-14 17:20 - 000000000 ____D C:\Users\Gabservis\AppData\Local\Mozilla 2020-06-14 17:19 - 2020-06-14 17:19 - 000095968 _____ C:\Users\Gabservis\AppData\Local\GDIPFONTCACHEV1.DAT 2020-06-14 17:18 - 2020-06-14 19:50 - 000004008 _____ C:\windows\system32\Tasks\User_Feed_Synchronization-{CE3716D9-A8DA-4C43-8E4E-B8AB51292949} 2020-06-14 17:18 - 2020-06-14 17:18 - 000001433 _____ C:\Users\Gabservis\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2020-06-14 17:18 - 2020-06-14 17:18 - 000000000 ____D C:\Users\Gabservis\AppData\Roaming\Adobe 2020-06-14 17:18 - 2020-06-14 17:18 - 000000000 ____D C:\Users\Gabservis\AppData\Local\Google 2020-06-14 17:17 - 2020-06-14 17:29 - 000000000 __SHD C:\Users\Gabservis\IntelGraphicsProfiles 2020-06-14 17:17 - 2020-06-14 17:18 - 000000000 ____D C:\Users\Gabservis 2020-06-14 17:17 - 2020-06-14 17:17 - 000000020 ___SH C:\Users\Gabservis\ntuser.ini 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Ustawienia lokalne 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Szablony 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Moje dokumenty 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Menu Start 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Documents\Moje wideo 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Documents\Moje obrazy 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Documents\Moja muzyka 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\Dane aplikacji 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\AppData\Local\Historia 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 _SHDL C:\Users\Gabservis\AppData\Local\Dane aplikacji 2020-06-14 17:17 - 2020-06-14 17:17 - 000000000 ____D C:\Users\Gabservis\AppData\Local\VirtualStore 2020-06-14 17:17 - 2015-11-18 20:54 - 000000000 ___HD C:\Users\Gabservis\Documents\hp.system.package.metadata 2020-06-14 17:17 - 2015-11-18 20:54 - 000000000 ___HD C:\Users\Gabservis\Documents\hp.applications.package.appdata 2020-06-14 17:17 - 2010-11-21 09:16 - 000000000 ____D C:\Users\Gabservis\AppData\Roaming\Media Center Programs 2020-06-14 16:52 - 2020-06-14 20:25 - 000019775 _____ C:\Users\gabinet\Downloads\FRST.txt 2020-06-14 16:52 - 2020-06-14 16:53 - 000032092 _____ C:\Users\gabinet\Downloads\Addition.txt 2020-06-14 16:51 - 2020-06-14 16:53 - 000000000 ____D C:\FRST- 2020-06-14 16:51 - 2020-06-14 16:51 - 002289152 _____ (Farbar) C:\Users\gabinet\Downloads\FRST64.exe 2020-06-14 16:50 - 2020-06-14 16:50 - 002013184 _____ (Farbar) C:\Users\gabinet\Downloads\FRST.exe 2020-06-14 16:50 - 2020-06-14 16:50 - 002013184 _____ (Farbar) C:\Users\gabinet\Downloads\FRST (1).exe 2020-06-14 16:35 - 2020-06-14 16:35 - 000000000 ____D C:\Users\gabinet\AppData\Local\mbam 2020-06-14 16:34 - 2020-06-14 16:34 - 001988280 _____ (Malwarebytes) C:\Users\gabinet\Downloads\MBSetup.exe 2020-06-14 16:34 - 2020-06-14 16:34 - 000000000 ____D C:\Program Files\Malwarebytes 2020-06-14 16:34 - 2020-06-14 16:34 - 000000000 ____D C:\Malwarebytes 2020-06-14 16:16 - 2020-06-14 16:16 - 000157724 _____ C:\windows\ntbtlog.txt 2020-06-14 16:03 - 2020-06-14 19:50 - 000003006 _____ C:\windows\system32\Tasks\{9D5BB72D-331D-4975-BB66-2FDC514C2589} 2020-06-14 16:03 - 2020-06-14 19:50 - 000003006 _____ C:\windows\system32\Tasks\{7243DA4F-1CBB-4A2D-BD37-84EC8F0C72A6} 2020-06-14 15:54 - 2020-06-14 19:50 - 000004476 _____ C:\windows\system32\Tasks\Adobe Acrobat Update Task 2020-06-14 15:53 - 2020-06-14 16:39 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-06-14 15:53 - 2020-06-14 15:53 - 000002055 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2020-06-14 15:53 - 2020-06-14 15:53 - 000002055 _____ C:\ProgramData\Desktop\Acrobat Reader DC.lnk 2020-06-14 15:17 - 2020-01-30 04:30 - 000834560 _____ (Microsoft Corporation) C:\windows\SysWOW64\user32.dll 2020-06-14 15:17 - 2020-01-30 04:23 - 001010688 _____ (Microsoft Corporation) C:\windows\system32\user32.dll 2020-06-14 15:17 - 2019-10-11 04:22 - 000338944 _____ (Microsoft Corporation) C:\windows\system32\sipnotify.exe 2020-06-10 17:09 - 2020-06-10 17:09 - 000335976 _____ (AVAST Software) C:\windows\system32\aswBoot.exe 2020-06-10 17:09 - 2020-06-10 17:09 - 000216824 _____ (AVAST Software) C:\windows\system32\Drivers\aswStm.sys 2020-06-10 17:09 - 2020-06-10 17:09 - 000175208 _____ (AVAST Software) C:\windows\system32\Drivers\aswMonFlt.sys 2020-06-10 17:01 - 2020-06-10 17:01 - 000000769 _____ C:\Users\gabinet\Desktop\TeamViewerQS.lnk 2020-06-05 06:39 - 2020-06-05 06:39 - 000426872 _____ C:\windows\system32\FNTCACHE.DAT 2020-05-31 15:17 - 2020-05-31 15:17 - 000199351 _____ C:\Users\gabinet\Downloads\fe658ac4-efc6-488e-9300-61be82ac8db1.xml 2020-05-31 15:09 - 2020-05-31 15:09 - 000001069 _____ C:\Users\gabinet\Downloads\04b2c406-8002-4bf4-9752-f0b24b9d4551.xml 2020-05-26 08:26 - 2020-05-26 08:26 - 004254544 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(16).exe 2020-05-21 18:18 - 2020-05-21 18:18 - 000002464 _____ C:\Users\gabinet\Downloads\0903138902202001_5_202005191540.umx 2020-05-20 10:04 - 2020-05-20 10:06 - 000000000 ____D C:\Users\gabinet\AppData\Local\TeamViewer 2020-05-20 10:03 - 2020-05-20 10:03 - 018090608 _____ (TeamViewer) C:\Users\gabinet\Downloads\TeamViewerQS (1).exe ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-06-14 19:56 - 2009-07-14 06:45 - 000031088 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-06-14 19:56 - 2009-07-14 06:45 - 000031088 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-06-14 19:50 - 2019-06-21 20:19 - 000002956 _____ C:\windows\system32\Tasks\HPCustPartic.exe_{D9590E41-E04A-44D9-B886-91EF13681670} 2020-06-14 19:50 - 2019-06-21 20:18 - 000003582 _____ C:\windows\system32\Tasks\HPCustParticipation HP LaserJet MFP M129-M134 2020-06-14 19:50 - 2018-09-07 11:47 - 000003198 _____ C:\windows\system32\Tasks\HPCeeScheduleForgabinet 2020-06-14 19:50 - 2018-09-07 11:47 - 000000340 _____ C:\windows\Tasks\HPCeeScheduleForgabinet.job 2020-06-14 19:50 - 2018-09-07 08:20 - 000003870 _____ C:\windows\system32\Tasks\CCleaner Update 2020-06-14 19:50 - 2017-12-06 19:06 - 000000000 ____D C:\windows\system32\Tasks\Avast Software 2020-06-14 19:50 - 2017-01-19 17:59 - 000003118 _____ C:\windows\system32\Tasks\{511ACD67-A941-49B0-A050-DB3AEE183934} 2020-06-14 19:50 - 2017-01-19 17:48 - 000003646 _____ C:\windows\system32\Tasks\Intel PTT EK Recertification 2020-06-14 19:50 - 2016-11-28 08:16 - 000003484 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineUA 2020-06-14 19:50 - 2016-11-28 08:16 - 000003356 _____ C:\windows\system32\Tasks\GoogleUpdateTaskMachineCore 2020-06-14 19:50 - 2016-06-28 00:30 - 000002798 _____ C:\windows\system32\Tasks\CCleanerSkipUAC 2020-06-14 19:50 - 2016-06-25 13:12 - 000003148 _____ C:\windows\system32\Tasks\SidebarExecute 2020-06-14 19:50 - 2016-06-25 12:17 - 000004412 _____ C:\windows\system32\Tasks\Adobe Flash Player Updater 2020-06-14 18:10 - 2018-02-12 15:58 - 000000000 ____D C:\Users\gabinet\AppData\LocalLow\Mozilla 2020-06-14 18:07 - 2015-11-18 20:22 - 000741136 _____ C:\windows\system32\perfh015.dat 2020-06-14 18:07 - 2015-11-18 20:22 - 000156208 _____ C:\windows\system32\perfc015.dat 2020-06-14 18:07 - 2009-07-14 07:13 - 001672436 _____ C:\windows\system32\PerfStringBackup.INI 2020-06-14 18:07 - 2009-07-14 05:20 - 000000000 ____D C:\windows\inf 2020-06-14 18:02 - 2016-06-23 20:14 - 000000000 __SHD C:\Users\gabinet\IntelGraphicsProfiles 2020-06-14 18:02 - 2009-07-14 07:08 - 000000006 ____H C:\windows\Tasks\SA.DAT 2020-06-14 17:50 - 2018-09-25 16:19 - 000004168 _____ C:\windows\system32\Tasks\Avast Emergency Update 2020-06-14 16:50 - 2009-07-14 05:20 - 000000000 ____D C:\windows\system32\NDF 2020-06-14 15:54 - 2016-06-25 12:15 - 000000000 ____D C:\Users\gabinet\AppData\Local\Adobe 2020-06-14 15:52 - 2016-06-25 12:16 - 000000000 ____D C:\Program Files (x86)\Adobe 2020-06-14 15:24 - 2013-12-03 22:26 - 001644106 _____ C:\windows\SysWOW64\PerfStringBackup.INI 2020-06-14 15:09 - 2016-12-10 14:32 - 000000000 ____D C:\Users\gabinet\AppData\Local\HP 2020-06-14 15:09 - 2015-11-18 20:52 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2020-06-14 15:04 - 2016-06-23 20:14 - 000000000 ____D C:\Users\gabinet\AppData\Roaming\hpqlog 2020-06-14 14:50 - 2019-02-26 13:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2020-06-14 14:50 - 2017-12-06 19:06 - 000000000 ____D C:\Program Files\Common Files\Avast Software 2020-06-14 14:50 - 2016-06-25 11:32 - 000000000 ____D C:\ProgramData\AVAST Software 2020-06-14 14:48 - 2019-11-12 19:30 - 000000972 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-06-14 14:48 - 2019-11-12 19:30 - 000000972 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-06-14 14:48 - 2019-05-09 18:27 - 000002591 _____ C:\Users\Public\Desktop\eKopia w Chmurze.lnk 2020-06-14 14:48 - 2019-05-09 18:27 - 000002591 _____ C:\ProgramData\Desktop\eKopia w Chmurze.lnk 2020-06-14 14:48 - 2018-09-25 16:20 - 000000000 ____D C:\Users\gabinet\AppData\Roaming\AVAST Software 2020-06-14 14:48 - 2018-09-25 16:17 - 000000000 ____D C:\Program Files\AVAST Software 2020-06-14 14:48 - 2017-10-31 15:27 - 000000000 ____D C:\ProgramData\Backuplogs 2020-06-14 14:48 - 2016-06-28 00:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-06-14 14:48 - 2015-11-18 20:59 - 000000000 ____D C:\Program Files (x86)\CyberLink 2020-06-14 14:48 - 2015-11-18 20:57 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2020-06-14 14:48 - 2015-11-18 20:53 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2020-06-14 14:44 - 2020-01-31 12:36 - 000000000 ____D C:\Program Files (x86)\Avast Driver Updater 2020-06-10 17:11 - 2018-09-25 16:20 - 000000000 ____D C:\Users\gabinet\AppData\Local\AVAST Software 2020-06-10 17:10 - 2018-09-25 16:18 - 000322256 _____ (AVAST Software) C:\windows\system32\Drivers\aswVmm.sys 2020-06-10 17:09 - 2020-04-24 07:39 - 000506152 _____ (AVAST Software) C:\windows\system32\Drivers\aswNetHub.sys 2020-06-10 17:09 - 2019-01-14 16:48 - 000235088 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsdriver.sys 2020-06-10 17:09 - 2019-01-07 13:22 - 000178768 _____ (AVAST Software) C:\windows\system32\Drivers\aswbidsh.sys 2020-06-10 17:09 - 2019-01-07 13:22 - 000060496 _____ (AVAST Software) C:\windows\system32\Drivers\aswbuniv.sys 2020-06-10 17:09 - 2018-10-22 06:06 - 000042784 _____ (AVAST Software) C:\windows\system32\Drivers\aswKbd.sys 2020-06-10 17:09 - 2018-09-25 16:18 - 000851608 _____ (AVAST Software) C:\windows\system32\Drivers\aswSnx.sys 2020-06-10 17:09 - 2018-09-25 16:18 - 000462600 _____ (AVAST Software) C:\windows\system32\Drivers\aswSP.sys 2020-06-10 17:09 - 2018-09-25 16:18 - 000205896 _____ (AVAST Software) C:\windows\system32\Drivers\aswArPot.sys 2020-06-10 17:09 - 2018-09-25 16:18 - 000109280 _____ (AVAST Software) C:\windows\system32\Drivers\aswRdr2.sys 2020-06-10 17:09 - 2018-09-25 16:18 - 000084856 _____ (AVAST Software) C:\windows\system32\Drivers\aswRvrt.sys 2020-06-10 16:58 - 2017-01-13 13:13 - 000000000 ____D C:\Users\gabinet\AppData\Roaming\TeamViewer 2020-06-10 13:04 - 2019-02-26 13:32 - 000000000 ____D C:\Program Files (x86)\AVAST Software 2020-06-10 06:57 - 2019-02-26 13:37 - 000001318 _____ C:\Users\Public\Desktop\Skype.lnk 2020-06-10 06:57 - 2019-02-26 13:37 - 000001318 _____ C:\ProgramData\Desktop\Skype.lnk 2020-06-10 06:57 - 2019-02-26 13:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-06-10 06:57 - 2016-06-25 11:55 - 000000000 ____D C:\Users\gabinet\AppData\Roaming\Skype 2020-06-10 06:56 - 2019-03-26 07:08 - 000001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2020-06-10 06:56 - 2017-10-22 22:06 - 000000000 ____D C:\Users\gabinet\AppData\Roaming\Notepad++ 2020-06-10 06:54 - 2016-06-25 12:17 - 000842296 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerApp.exe 2020-06-10 06:54 - 2016-06-25 12:17 - 000175160 _____ (Adobe) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl 2020-06-10 06:54 - 2016-06-25 12:17 - 000000000 ____D C:\windows\SysWOW64\Macromed 2020-06-10 06:54 - 2016-06-25 12:17 - 000000000 ____D C:\windows\system32\Macromed 2020-06-08 05:53 - 2018-02-12 15:58 - 000000000 ____D C:\Program Files\Mozilla Firefox 2020-06-04 06:56 - 2016-11-28 08:17 - 000002238 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-06-04 06:56 - 2016-11-28 08:17 - 000002197 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-06-04 06:56 - 2016-11-28 08:17 - 000002197 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-05-26 19:30 - 2019-06-21 20:49 - 000000000 _____ C:\windows\system32\last.dump 2020-05-15 09:00 - 2016-06-27 23:44 - 000000000 ____D C:\windows\system32\MRT 2020-05-15 08:58 - 2016-06-27 23:44 - 120636720 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe ==================== SigCheckExt ========================= 2008-03-11 09:00 - 2008-03-11 08:00 - 000279040 _____ (CANON INC.) C:\windows\system32\CNMLM9M.DLL 2016-12-10 14:32 - 2014-10-20 16:09 - 000311296 _____ (Hewlett-Packard) C:\windows\system32\hpbcoinsx64.dll 2015-11-18 20:58 - 2014-06-11 19:53 - 000423936 _____ (Hewlett-Packard) C:\windows\system32\hpbprtmon.dll 2015-11-18 20:58 - 2014-06-11 19:52 - 000231424 _____ (Hewlett-Packard) C:\windows\system32\hpbprtmonui.dll 2015-11-18 20:58 - 2014-06-11 19:53 - 000413184 _____ (Hewlett-Packard) C:\windows\system32\hpbrprtmon.dll 2015-11-18 20:54 - 2015-08-12 03:26 - 000135168 _____ (Hewlett-Packard) C:\windows\system32\HPMUIDir.exe 2015-09-06 20:49 - 2015-09-06 20:49 - 000206848 _____ (Intel Corporation) C:\windows\system32\igfxCoIn_v4279.dll 2016-06-23 23:38 - 2016-06-23 23:37 - 000190464 _____ (Intel Corporation) C:\windows\system32\igfxCoIn_v4404.dll 2010-04-02 06:33 - 2010-04-02 06:33 - 000025299 _____ (Brother Industries, Ltd) C:\windows\SysWOW64\BRLM03A.DLL 2004-08-09 07:42 - 2004-08-09 07:42 - 000077824 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BRLMW03A.DLL 2010-02-05 03:42 - 2010-02-05 03:42 - 000180224 _____ (Brother Industries, Ltd.) C:\windows\SysWOW64\BROSNMP.DLL 2005-01-17 08:10 - 2005-01-17 08:10 - 000045056 _____ C:\windows\SysWOW64\BRTCPCON.DLL 2015-05-22 11:00 - 2015-05-22 11:00 - 000002560 _____ (Intel(R) Corporation) C:\windows\SysWOW64\IusEventLog.dll 2016-06-25 13:10 - 2016-06-25 13:10 - 001045776 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSJET35.DLL 2016-06-25 13:10 - 2016-06-25 13:10 - 000123664 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSJINT35.DLL 2016-06-25 13:10 - 2016-06-25 13:10 - 000024848 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSJTER35.DLL 2016-06-25 13:10 - 2016-06-25 13:10 - 000252176 _____ (Microsoft Corporation) C:\windows\SysWOW64\MSRD2X35.DLL 2003-04-18 17:29 - 2003-04-18 17:29 - 000082432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml4r.dll 2016-06-25 13:10 - 2016-06-25 13:10 - 000368912 _____ (Microsoft Corporation) C:\windows\SysWOW64\VBAR332.DLL 2015-11-18 20:55 - 2016-06-23 23:41 - 000041984 _____ (Intel Corporation) C:\windows\system32\Drivers\USB3Ver.dll 2020-06-14 16:50 - 2020-06-14 16:50 - 002013184 _____ (Farbar) C:\Users\gabinet\Downloads\FRST (1).exe 2020-06-14 16:50 - 2020-06-14 16:50 - 002013184 _____ (Farbar) C:\Users\gabinet\Downloads\FRST.exe 2020-06-14 16:51 - 2020-06-14 16:51 - 002289152 _____ (Farbar) C:\Users\gabinet\Downloads\FRST64.exe 2019-10-01 12:36 - 2019-10-01 12:42 - 111932928 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmFullInstall (1).exe 2019-07-26 14:56 - 2019-07-26 14:58 - 101640704 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmFullInstall-6-2-2-1.exe 2019-12-23 19:03 - 2019-12-23 19:03 - 114606592 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmFullInstall-6410.exe 2019-10-01 10:20 - 2019-10-01 10:24 - 102640640 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmFullInstall.exe 2019-10-29 19:35 - 2019-10-29 19:36 - 100266496 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmFullInstall_ 6_3_2_0.exe 2019-07-08 18:20 - 2019-07-08 18:20 - 001508352 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(1).exe 2020-01-19 18:20 - 2020-01-19 18:20 - 004062720 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(10).exe 2020-01-25 20:34 - 2020-01-25 20:34 - 004062720 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(11).exe 2020-02-14 09:24 - 2020-02-14 09:24 - 004061696 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(13).exe 2019-07-26 14:12 - 2019-07-26 14:12 - 001507328 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(2).exe 2019-07-26 14:18 - 2019-07-26 14:18 - 001507328 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(3).exe 2019-10-01 10:38 - 2019-10-01 10:38 - 003128832 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(4).exe 2019-10-01 10:49 - 2019-10-01 10:49 - 003128832 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(5).exe 2019-11-04 19:04 - 2019-11-04 19:04 - 003130368 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(6).exe 2019-11-04 19:04 - 2019-11-04 19:04 - 003130368 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(7).exe 2019-11-28 19:48 - 2019-11-28 19:48 - 004060160 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup(8).exe 2019-12-31 14:07 - 2019-12-31 14:07 - 009751552 _____ C:\Users\gabinet\Downloads\mmSetup(9).exe 2019-07-08 18:14 - 2019-07-08 18:14 - 001508352 _____ (Microsoft Corporation) C:\Users\gabinet\Downloads\mmSetup.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Mened�er rozruchu systemu Windows --------------------------------- Identyfikator {bootmgr} device partition=\Device\HarddiskVolume2 description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {04d43925-8e24-11e5-b6c0-3464a9309b60} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Modu� �aduj�cy rozruchu systemu Windows --------------------------------------- Identyfikator {current} device partition=C: path \windows\system32\winload.exe description Windows 7 locale pl-PL inherit {bootloadersettings} recoverysequence {2857b040-396e-11e6-9fcb-3464a9309b60} recoveryenabled Yes osdevice partition=C: systemroot \windows resumeobject {04d43925-8e24-11e5-b6c0-3464a9309b60} nx OptIn Modu� �aduj�cy rozruchu systemu Windows --------------------------------------- Identyfikator {2857b040-396e-11e6-9fcb-3464a9309b60} device ramdisk=[\Device\HarddiskVolume2]\Recovery\WindowsRE\Winre.wim,{2857b041-396e-11e6-9fcb-3464a9309b60} path \windows\system32\winload.exe description Windows Recovery Environment inherit {bootloadersettings} osdevice ramdisk=[\Device\HarddiskVolume2]\Recovery\WindowsRE\Winre.wim,{2857b041-396e-11e6-9fcb-3464a9309b60} systemroot \windows nx OptIn winpe Yes Wznawianie ze stanu hibernacji ------------------------------ Identyfikator {04d43925-8e24-11e5-b6c0-3464a9309b60} device partition=C: path \windows\system32\winresume.exe description Windows Resume Application locale pl-PL inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys debugoptionenabled No Modu� testuj�cy pami�� systemu Windows -------------------------------------- Identyfikator {memdiag} device partition=\Device\HarddiskVolume2 path \boot\memtest.exe description Windows Memory Diagnostic locale pl-PL inherit {globalsettings} badmemoryaccess Yes Ustawienia us�ug EMS -------------------- Identyfikator {emssettings} bootems Yes Ustawienia debugera ------------------- Identyfikator {dbgsettings} debugtype Serial debugport 1 baudrate 115200 Uszkodzenia pami�ci RAM ----------------------- Identyfikator {badmemory} Ustawienia globalne ------------------- Identyfikator {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Ustawienia modu�u �aduj�cego rozruchu ------------------------------------- Identyfikator {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Ustawienia funkcji hypervisor ----------------------------- Identyfikator {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Ustawienia modu�u �aduj�cego wznawiania --------------------------------------- Identyfikator {resumeloadersettings} inherit {globalsettings} Opcje urz�dzenia ---------------- Identyfikator {2857b041-396e-11e6-9fcb-3464a9309b60} description Ramdisk Options ramdisksdidevice partition=\Device\HarddiskVolume2 ramdisksdipath \Recovery\WindowsRE\boot.sdi LastRegBack: 2020-06-08 06:43 ==================== Koniec FRST.txt ========================