Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-09-2021 02 Uruchomiony przez De5il (administrator) DESKTOP-GMUO61M (ASUS All Series) (25-09-2021 07:08:46) Uruchomiony z F:\Users\devil\Desktop\FRST64 Załadowane profile: De5il Platform: Windows 10 Pro Wersja Dev 21390.2025 (X64) Język: Polski (Polska) Domyślna przeglądarka: "C:\Users\devil\AppData\Local\Google\Chrome SxS\Application\chrome.exe" --single-argument %1 Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\WINDOWS\SysWOW64\msus.exe () [Brak podpisu cyfrowego] I:\pierdoły pulpit\NetMeterEvo.exe (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) [Brak podpisu cyfrowego] C:\WINDOWS\System32\PrintCtrl.exe (AOMEI International Network Limited -> AOMEI International Network Limited) C:\Program Files\AOMEI Backupper\ABService.exe (ASUSTeK Computer Inc. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe (ASUSTeK Computer Inc. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBclk.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\AsusMiniBar.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNoticeMonitor.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotify_PCCtrl.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe (ASUSTeK Computer Inc. -> ) C:\Program Files (x86)\ASUS\KeyBot\KeyBot.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr64.exe (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.16\AsusFanControlService.exe (AVerMedia TECHNOLOGIES, Inc. -> AVerMedia TECHNOLOGIES, Inc.) C:\Program Files (x86)\AVerMedia1212\AVerMedia RECentral 4\RECentralService.exe (Broadcom Corporation -> Broadcom Corporation.) C:\WINDOWS\System32\BtwRSupportService.exe (cFos Software GmbH -> cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe (cFos Software GmbH) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files\cFosSpeed\cfosspeed.exe (Flexera Software LLC -> Flexera Software LLC) X:\SW2016_SP4.0_Full-SSQ\_SolidSQUAD_\_SolidSQUAD_\SolidWorksPDM\LicenseServer\lmgrd.exe <2> (GlassWire -> SecureMix LLC) C:\Program Files (x86)\GlassWire\GWIdlMon.exe (Google LLC -> Google LLC) C:\Users\devil\AppData\Local\Google\Chrome SxS\Application\chrome.exe <38> (GuinpinSoft inc) [Brak podpisu cyfrowego] C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe (Hot-World GmbH & Co. KG -> ) C:\Program Files (x86)\Repetier-Server\bin\RepetierServer.exe (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Intel Corporation -> Intel(R) Corporation) C:\WINDOWS\SysWOW64\XtuService.exe (Intel(R) Intel Network Drivers -> Intel Corporation) C:\WINDOWS\System32\IPROSetMonitor.exe (Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe (Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel(R) Software Development Products -> Intel(R) Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM_SR300\bin\win32\RealSenseDCMSR300.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCAvSvc.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCService.exe <2> (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\Monitor.exe (IObit Information Technology -> IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe (Mad Catz Inc) [Brak podpisu cyfrowego] C:\Program Files (x86)\Mad Catz\Sentinel\MultiplexerServer.exe (Mad Catz Inc) [Brak podpisu cyfrowego] C:\Program Files (x86)\Mad Catz\Sentinel\SentinelSystemControl.exe (Mad Catz) [Brak podpisu cyfrowego] C:\Program Files (x86)\Mad Catz\Sentinel\Sentinel.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\devil\AppData\Roaming\system32\svchost.exe <3> (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2110.1000.23.0_x64__8wekyb3d8bbwe\XboxAppServices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2110.1000.23.0_x64__8wekyb3d8bbwe\XboxPcApp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.57.20004.0_x64__8wekyb3d8bbwe\gamingservices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.57.20004.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12107.1001.15.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> ) C:\WINDOWS\System32\AggregatorHost.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\dllhost.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\WINDOWS\System32\rundll32.exe (Nero AG -> Nero AG) C:\Program Files (x86)\Common Files\Nero\Nero BackItUp 4\NBService.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Nvidia Corporation -> NVIDIA Corporation) C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b8346c359fcd6093\Display.NvContainer\NVDisplay.Container.exe <2> (Opera Software AS -> Opera Software) C:\Users\devil\AppData\Local\Programs\Opera GX\78.0.4093.186\opera.exe <38> (Opera Software AS -> Opera Software) C:\Users\devil\AppData\Local\Programs\Opera GX\78.0.4093.186\opera_crashreporter.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Saitek) [Brak podpisu cyfrowego] C:\Program Files\SmartTechnology\Software\ProfilerU.exe (Saitek) [Brak podpisu cyfrowego] C:\Program Files\SmartTechnology\Software\SaiMfd.exe (Samsung Electronics CO., LTD. -> ) C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (SecureMix LLC) [Brak podpisu cyfrowego] C:\Program Files (x86)\GlassWire\GlassWire.exe (SecureMix LLC) [Brak podpisu cyfrowego] C:\Program Files (x86)\GlassWire\GWCtlSrv.exe (VMware, Inc. -> ) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.) C:\WINDOWS\SysWOW64\vmnat.exe (VMware, Inc. -> VMware, Inc.) C:\WINDOWS\SysWOW64\vmnetdhcp.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7660760 2014-10-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ProfilerU] => C:\Program Files\SmartTechnology\Software\ProfilerU.exe [454656 2015-11-12] (Saitek) [Brak podpisu cyfrowego] HKLM\...\Run: [SaiMfd] => C:\Program Files\SmartTechnology\Software\SaiMfd.exe [157696 2015-11-12] (Saitek) [Brak podpisu cyfrowego] HKLM\...\Run: [cFosSpeed] => C:\Program Files\cFosSpeed\cFosSpeed.exe [1714688 2019-03-28] (cFos Software GmbH) [Brak podpisu cyfrowego] [Plik w użyciu] HKLM\...\Run: [PrintDisp] => C:\WINDOWS\system32\PrintDisp.exe [975360 2010-07-23] (ActMask Co.,Ltd - hxxp://www.all2pdf.com) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [ASUS AiChargerPlus Execute] => C:\Program Files (x86)\InstallShield Installation Information\{E6931688-DA2B-4E16-8539-3D323D69C677}\AiChargerPlus.exe [550272 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) HKLM-x32\...\Run: [IObit Malware Fighter] => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6932176 2021-08-27] (IObit CO., LTD -> IObit) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1512624719-2573985483-417533279-1001\...\Run: [GlassWire] => C:\Program Files (x86)\GlassWire\glasswire.exe [18631680 2019-06-14] (SecureMix LLC) [Brak podpisu cyfrowego] HKU\S-1-5-21-1512624719-2573985483-417533279-1001\...\Run: [NetMeter Evo] => I:\pierdoły pulpit\NetMeterEvo.exe [1192448 2013-08-12] () [Brak podpisu cyfrowego] HKU\S-1-5-21-1512624719-2573985483-417533279-1001\...\Run: [Advanced SystemCare Ultimate] => "C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCTray.exe" /Auto HKU\S-1-5-21-1512624719-2573985483-417533279-1001\...\MountPoints2: {281a6eb4-cac3-11eb-ab74-80a5899e586a} - "P:\cda_menu.exe" HKLM\...\Windows NT x86\Print Processors\us005PC: C:\Windows\System32\spool\prtprocs\W32X86\us005pc.dll [29696 2017-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) HKLM\...\Windows x64\Print Processors\us005PC: C:\Windows\System32\spool\prtprocs\x64\us005pc.dll [43520 2017-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) HKLM\...\Windows x64\Print Processors\us015PC: C:\Windows\System32\spool\prtprocs\x64\us015pc.dll [52088 2019-06-20] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) HKLM\...\Print\Monitors\us005 Langmon: C:\Windows\system32\us005lm.dll [22528 2017-06-14] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\us013 Langmon: C:\Windows\system32\us013lm.dll [22528 2015-03-12] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\us015 Langmon: C:\Windows\system32\us015lm.dll [31096 2019-06-20] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> HKLM\Software\...\Winlogon\GPExtensions: [{8472C2C4-6B70-4301-A20D-A6CEA5F82B7E}] -> C:\WINDOWS\System32\StartTileData.dll [2021-05-22] (Microsoft Windows -> Microsoft Corporation) IFEO\mpcmdrun.exe: [Debugger] C:\WINDOWS\System32\systray.exe Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {030662E5-EF39-437E-BC20-D71ACBBD9A79} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {07523750-B244-413D-8982-F8B5737AE706} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {077026F8-905D-4DD7-B5EB-25F628CE5009} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339120 2021-06-15] (NVIDIA Corporation -> NVIDIA Corporation) Task: {0D86A582-5F16-400B-A248-592CEDE863F9} - System32\Tasks\S-1-5-21-1512624719-2573985483-417533279-1001\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe [176640 2021-01-13] (Microsoft Corporation) [Brak podpisu cyfrowego] Task: {0F10B4D7-FDE0-431A-AACB-86A7DC1B1B03} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_pepper.exe [1499704 2020-12-13] (Adobe Inc. -> Adobe) Task: {12469F3F-5031-4F7B-8132-E18178931DA8} - System32\Tasks\Microsoft\Windows\Shell\UpdateAgentTask_SetCBSEndOfLife => C:\WINDOWS\System32\ShellUpdateAgentTask.exe [70656 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {14623A32-7414-4016-BE36-1DFD01778EBB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {213446E9-0761-4D33-9647-654565FF18AE} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1615976820 => C:\Users\devil\AppData\Local\Programs\Opera GX\launcher.exe [3774160 2021-08-25] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\devil\AppData\Local\Programs\Opera GX\assistant" $(Arg0) Task: {2161C2E5-21B4-4F6C-B89A-27B37CF75CF1} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" Task: {21CDB615-AB41-49ED-83C9-BC7F8AE045CE} - System32\Tasks\ASUS\Push Notice Server Execute => C:\Program Files (x86)\ASUS\AI Suite III\Push Notice\PushNotifyServer.exe [3646264 2014-05-28] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {22F05032-2F04-4541-B379-896E85574DA3} - System32\Tasks\IMF_SkipUAC_De5il => C:\Program Files (x86)\IObit\IObit Malware Fighter\IMF.exe [6932176 2021-08-27] (IObit CO., LTD -> IObit) Task: {28BFD509-CC36-44BB-9B72-B9DC10A2DE38} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-13] (Adobe Inc. -> Adobe) Task: {33F4A1A8-66DC-45AA-B099-685289C1ECD8} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [752200 2018-05-21] (HP Inc. -> ) Task: {374F9400-92F5-4C83-8E13-DDE4F879AA8A} - System32\Tasks\ASUS\ASUS AISuiteIII => C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe [1839896 2014-11-17] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {379DF88D-08EE-4275-9075-B4D700B3AAB3} - System32\Tasks\Microsoft\Windows\Printing\PrinterCleanupTask => {C56F065E-DE49-4E42-BE7C-305C45609D25} C:\Windows\System32\PrinterCleanupTask.dll [118784 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {39E3F0B5-1815-4100-A078-CEFD94E022D9} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {3A1190E8-6558-499B-8380-E1B26BF98D82} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel(R) Software Development Products -> Intel Corporation) Task: {3B945F77-EE4A-4117-89AF-DDAA236F2199} - System32\Tasks\Microsoft\Windows\AppListBackup\Backup => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\WINDOWS\system32\AppListBackupLauncher.dll [110592 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {3E203737-9E4D-43D7-BEC3-8B8D2242E93C} - System32\Tasks\ASUS\ASUS DIPAwayMode => C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe [1271096 2014-12-04] (ASUSTeK Computer Inc. -> ) Task: {4426F2A3-7CCF-470E-A1C9-478BDF9B674A} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114024 2021-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {488BA6F2-BDBA-471F-8D29-320132B3818E} - System32\Tasks\ASUS\KeyBot Execute => C:\Program Files (x86)\ASUS\KeyBot\KeyBot.exe [1608504 2014-06-11] (ASUSTeK Computer Inc. -> ) Task: {4F81C229-1655-4020-B31B-8FD23302DF4A} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080864 2021-07-30] (Microsoft Corporation -> Microsoft Corporation) Task: {51BC5C2D-6191-483A-AFA1-024786F73C37} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe Task: {5A7B58D1-CE41-4C5B-B700-D3C6E5FA97A7} - System32\Tasks\Microsoft\Windows\Shell\ThemesSyncedImageDownload => {79F8E185-4E45-4B74-8182-02AA430661E4} C:\Windows\System32\Themes.SsfDownload.ScheduledTask.dll [200704 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {6C0D9967-CD8A-4636-806A-C46992D7C871} - System32\Tasks\Microsoft\Windows\Shell\UpdateAgentTask_AcquireFOD => C:\WINDOWS\System32\ShellUpdateAgentTask.exe [70656 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {6CE46BF1-7293-4555-8444-29331B96D48C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4004288 2021-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {6ECD726B-4C31-4979-8EDA-38570BA5465C} - System32\Tasks\cFos\Registration Tasks\Open Browser => "c:\users\devil\appdata\local\google\chrome sxs\application\chrome.exe" "http://localhost:1487/cfosspeed/text-console.htm" Task: {71509BA9-E999-493C-8018-9E4520B1DCB5} - System32\Tasks\Microsoft\Windows\Shell\UpdateAgentTask_RemoveFOD => C:\WINDOWS\System32\ShellUpdateAgentTask.exe [70656 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {73412459-839E-44E6-A71F-B28F1C48C38D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {7AF922E2-481A-48DC-8C9B-692F6D73701F} - System32\Tasks\Microsoft\Windows\Management\Provisioning\MdmDiagnosticsCleanup => C:\WINDOWS\system32\MdmDiagnosticsTool.exe [90112 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {7D9AD92B-2C4E-4E7F-B93D-432B0BEDB850} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [114024 2021-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {7EB60139-0C3F-4863-BA52-CD7DC7D61FFD} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1652536 2018-11-05] (Intel(R) Software -> Intel Corporation) Task: {85E80D00-D346-4673-9395-0EE5F37D49EE} - System32\Tasks\ASUS\RC TweakIt Server Execute => C:\Program Files (x86)\ASUS\ASUS ROG Connect Plus\RC TweakIt Server\AsBCLK.exe [2004112 2014-08-08] (ASUSTeK Computer Inc. -> ) [Brak podpisu cyfrowego] Task: {8C22D1EA-5700-4670-886D-A11146ED37DB} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [645488 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8C7C7E58-3514-4632-8E2C-C8D61995FACB} - System32\Tasks\CCleaner Update => C:\Program Files\CCleanerxx\CCUpdate.exe [686384 2020-03-19] (Piriform Software Ltd -> Piriform Software Ltd) Task: {92604494-D27A-4AA2-96C0-37701B1A4872} - System32\Tasks\SecurityHealthService => C:\Users\devil\AppData\Roaming\windows\microsoft.foundation.diagnostics.exe Task: {99DE29CC-5419-45B0-884C-E534E14B9951} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel(R) Software Development Products -> Intel Corporation) Task: {9B417A36-432D-4E22-8CF3-A566F4D6FBB8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A510B67F-D2B2-4FA1-BAA0-7E77CFEC46AD} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {A68FE909-C9EA-481F-B59E-6064D5EF1BFD} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B81B1614-88FD-47E2-8D55-700099CA6037} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BBCDB860-C67A-4141-B01D-E8350E1CE8B1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080864 2021-07-30] (Microsoft Corporation -> Microsoft Corporation) Task: {BFB7A246-72BE-40AD-A724-9BE219683B69} - System32\Tasks\microsoft\windows\capabilityaccessmanager\maintenancetasks => %windir%\system32\rundll32.exe %windir%\system32\CapabilityAccessManager.dll,CapabilityAccessManagerDoStoreMaintenance Task: {C1DDD706-5B90-4730-B275-6512DE37D216} - System32\Tasks\ASUS\ASUS Media Streamer DMR => C:\Program Files (x86)\ASUS\HomeCloud\Media Streamer\ASUS Media Streamer\DLNA\DMR\AODMR.exe Task: {C3BC8E0A-24F3-4902-A087-4488BE234ABF} - System32\Tasks\Opera GX scheduled Autoupdate 1574103582 => C:\Users\devil\AppData\Local\Programs\Opera GX\launcher.exe [3774160 2021-08-25] (Opera Software AS -> Opera Software) Task: {C3CD5DF6-18AF-4972-B235-7F28B6F02872} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MpCmdRun.exe [851472 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C5708D88-E25B-426C-A468-69F68E7A2CE6} - System32\Tasks\Microsoft\Windows\Kernel\La57Cleanup => C:\WINDOWS\system32\la57setup.exe [36864 2021-05-22] (Microsoft Windows -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe Task: {CDE660F3-1C2C-437F-8878-8F41701E3176} - System32\Tasks\ASUS\Ez Update => C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzUpdt.exe [1430328 2014-10-09] (ASUSTeK Computer Inc. -> ) Task: {D084324D-8BAE-40FC-ABA5-66010C3D6302} - System32\Tasks\{D1C75E69-751C-48D7-98A4-F5D670535FDE} => "c:\program files (x86)\google\chrome\application\chrome.exe" http://www.skype.com/go/downloading?source=lightinstaller&ver=7.4.0.102&LastError=12007 Task: {D67F5A70-96A9-49B1-8E39-FED0ADD09A29} - System32\Tasks\MicrosoftOneDriveStandalone => C:\Users\devil\AppData\Roaming\windows\SecurityCryptography.exe [2767872 2021-09-03] (Microsoft Corporation) [Brak podpisu cyfrowego] Task: {D945A682-C188-4CC4-B720-73FA8858765E} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-05-04] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {D9FF208C-95E2-48D8-BF83-8D571F6C0FA8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905072 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {DBE8DE3D-0890-44AF-ADCD-C66E716520A4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4004288 2021-08-27] (Microsoft Corporation -> Microsoft Corporation) Task: {E016D7FA-7494-4532-9F0A-F75B343DBE86} - System32\Tasks\ASUS\USB 3.0 Boost Service => C:\Program Files (x86)\ASUS\AI Suite III\USB 3.0 Boost\U3BoostSvr.exe [238392 2013-07-24] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {E83AF133-8AA4-43DB-BE01-A42ECA20AF06} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK Task: {F6178A99-0270-40D0-A853-FF2731E86BF6} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1261424 2021-06-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FED3A56C-5296-41C6-9219-002260701B87} - System32\Tasks\ASCU_PerformanceMonitor => C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\Monitor.exe [3292624 2021-01-14] (IObit Information Technology -> IObit) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 07 C:\WINDOWS\SysWOW64\nlansp_c.dll [83456 2021-05-22] (Microsoft Windows -> Microsoft Corporation) UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\NLAapi.dll" Winsock: Catalog5-x64 07 C:\Windows\system32\nlansp_c.dll [126976 2021-05-22] (Microsoft Windows -> Microsoft Corporation) UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\NLAapi.dll" Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\..\Interfaces\{02084abe-5d67-463f-a13b-8cea0a41e21e}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{ac40ed07-4c95-4ad6-9c79-1b3198eeb42a}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ac40ed07-4c95-4ad6-9c79-1b3198eeb42a}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{ccaffb7a-360c-409c-b27d-c9907c24d3b9}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{ccaffb7a-360c-409c-b27d-c9907c24d3b9}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\devil\AppData\Local\Microsoft\Edge\User Data\Default [2021-09-25] Edge HomePage: Default -> hxxp://google.pl/ Edge Extension: (MyJDownloader Browser Extension) - C:\Users\devil\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ieapabanbplofifeaapjocpaogdhncdd [2021-09-06] FireFox: ======== FF DefaultProfile: mkethuw7.default FF ProfilePath: C:\Users\devil\AppData\Roaming\Mozilla\Firefox\Profiles\mkethuw7.default [2021-04-24] FF ProfilePath: C:\Users\devil\AppData\Roaming\Mozilla\Firefox\Profiles\5o49sdo0.default-release-1609700658273 [2021-09-24] FF Session Restore: Mozilla\Firefox\Profiles\5o49sdo0.default-release-1609700658273 -> [funkcja włączona] FF HKLM-x32\...\Firefox\Extensions: [{6A36C275-788C-41e8-8DE5-5297CC29A7A1}] - C:\Program Files (x86)\Vitato\Video Downloader Pro\VDP_FF.xpi FF Extension: (Video Downloader Pro Extension) - C:\Program Files (x86)\Vitato\Video Downloader Pro\VDP_FF.xpi [2018-05-22] [Przestarzałe] [Brak podpisu cyfrowego] FF Plugin: @java.com/DTPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\dtplugin\npDeployJava1.dll [2020-11-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.271.2 -> C:\Program Files\Java\jre1.8.0_271\bin\plugin2\npjp2.dll [2020-11-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google Inc -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=10.21.2 -> C:\WINDOWS\SysWOW64\npDeployJava1.dll [2019-07-10] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-08-27] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-08-27] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=3.0.10 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default [2021-09-24] CHR StartupUrls: Default -> "hxxps://www.facebook.com/?ref=logo","hxxp://www.efilmy.net/filmy,rok-2014,p8.html","hxxp://www.efilmy.net/film,23241,Apokalipsa-w-LA-LA-Apocalypse-2014-Lektor-PL.html","hxxp://www.efilmy.net/film,23189,When-the-Game-Stands-Tall-2014-Lektor-PL.html","hxxp://www.efilmy.net/film,23112,Day-of-the-Mummy-2014-ENG.html","hxxp://www.efilmy.net/film,23084,REC-4-Apocalypse-2014-ENG.html","hxxp://www.efilmy.net/film,2165,Milosc-w-rytmie-Rap-Cool-As-Ice-1991-Lektor-PL.html","hxxp://www.efilmy.net/film,13933,Ogrod-czarownicy-The-Good-Witchs-Garden-2009-Lektor-PL.html","hxxp://www.efilmy.net/film,9533,Czarodziejka-The-Good-Witch-2008-Lektor-PL.html","hxxp://www.efilmy.net/film,22843,Przeznaczenie-Predestination-2014-Lektor-PL.html","hxxp://www.efilmy.net/film,3056,Seks-i-milosc-Sexo-con-amor-2003-Lektor-PL.html","hxxp://www.efilmy.net/film,3142,Slizg-Shred-2008-Lektor-PL.html","hxxp://www.efilmy.net/film,3143,Slizg-2-Revenge-of-the-Boarding-School-Dropouts-2009-Lektor-PL.html","hxxp://www.efilmy.net/film,4117,Lapcie-te-dziewczyne-Catch-That-Kid-2004-Lektor-PL.html","hxxp://www.efilmy.net/film,4158,Hot-Rod-2007-Lektor-PL.html","hxxp://www.efilmy.net/film,4194,Dziewczyny-i-chlopaki-Boys-and-Girls-2000-Napisy-PL.html","hxxp://www.efilmy.net/film,4355,Dziewczyna-z-Komputera-Weird-Science-1985-Lektor-PL.html","hxxp://www.efilmy.net/film,4364,Wieczny-student-Van-Wilder-2002-Lektor-PL.html","hxxp://www.efilmy.net/film,4497,Apetyt-na-seks-A-Dirty-Shame-2004-Lektor-PL.html","hxxp://www.efilmy.net/film,4475,Szalona-impreza-Cant-Hardly-Wait-1998-Lektor-PL.html","hxxp://www.efilmy.net/film,4630,Ten-pierwszy-raz-Trojan-War-1997-Lektor-PL.html","hxxp://www.efilmy.net/film,4726,Sposob-na-kobiete-Home-of-Phobia-2004-Lektor-PL.html","hxxp://www.efilmy.net/film,7024,Wiosla-w-dlon-Zew-Natury-Without-a-Paddle-Natures-Calling-2009-Lektor-PL.html","hxxp://www.efilmy.net/serial,527,The-Walking-Dead-2010-2012,sezon-5,odcinek-8.html","hxxp://www.efilmy.net/serial,354,Nie-z-tego-swiata-Supernatural-2005-2011.html","hxxp://www.efilmy.net/serial,612,Arrow-2012,sezon-3,odcinek-9.html","hxxp://www.efilmy.net/serial,590,Zagubieni-Lost-2004-2010.html","hxxp://www.efilmy.net/serial,759,The-100-2014,sezon-1,odcinek-8.html","","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxp://www.google.com/","hxxp://mail.ru/cnt/10445?gp=blackbear5","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.pl/?gws_rd=ssl","hxxps://www.duckduckgo.com","hxxp://google.pl/" CHR NewTab: Default -> Active:"chrome-extension://mhccfjbjefijbinaonefdiggcjbmlfph/start/index.html" CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Tłumacz Google) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2021-02-13] CHR Extension: (Prezentacje) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-02-13] CHR Extension: (Magic Actions for YouTube™) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\abjcfabbhafbcdfjoecdgepllmpfceif [2021-05-31] CHR Extension: (TikTok) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahoadnkmomodgfkfokbclmabbfdaejpe [2021-02-13] CHR Extension: (Dokumenty) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-02-13] CHR Extension: (Dysk Google) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-02-13] CHR Extension: (YouTube) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-02-13] CHR Extension: (uBlock Origin) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-05-31] CHR Extension: (FastSave na Instagram) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdedigfpeejoaoicpppjcpicekleaedb [2021-05-31] CHR Extension: (Arkusze) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-02-13] CHR Extension: (Stylish - Custom themes for any website) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2021-02-13] CHR Extension: (Dokumenty Google offline) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-31] CHR Extension: (Click&Clean) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghgabhipcejejjmhhchfonmamedcbeod [2021-05-31] CHR Extension: (Zapisz na Dysku Google) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2021-02-13] CHR Extension: (LastPass: Free Password Manager) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2021-02-13] CHR Extension: (CDA Downloader) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjimfkhkcjoadjpldapeomibodflgdpa [2021-02-13] CHR Extension: (Chomikuj.pl) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\mabmeicndgkgfompmmdkijoamfleoadk [2021-02-13] CHR Extension: (The Division Wallpaper NewTab - freeaddon.com) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\mhccfjbjefijbinaonefdiggcjbmlfph [2021-02-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-13] CHR Extension: (Tom Clancy The Division - Theme) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\oamoamjmfcalcljfncbcjcpaciclfkac [2021-02-13] CHR Extension: (Sprawdzanie ortografii i gramatyki – LanguageTool) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji [2021-02-13] CHR Extension: (vidIQ Vision for YouTube) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2021-02-13] CHR Extension: (Gmail) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-02-13] CHR Extension: (Chrome Media Router) - C:\Users\devil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-13] Opera: ======= StartMenuInternet: (HKU\S-1-5-21-1512624719-2573985483-417533279-1001) Opera GXStable - "C:\Users\devil\AppData\Local\Programs\Opera GX\Launcher.exe" ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S4 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-13] (Adobe Inc. -> Adobe) R2 AdvancedSystemCareService14; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCService.exe [1896720 2020-12-29] (IObit Information Technology -> IObit) U2 AdvancedSystemCareService8; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ASCService.exe [1896720 2020-12-29] (IObit Information Technology -> IObit) R2 ASCAntivirusSrv; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\ascavsvc.exe [1745352 2020-12-31] (IObit Information Technology -> IObit) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2014-01-28] (ASUSTeK Computer Inc. -> ) R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.22\aaHMSvc.exe [954648 2014-09-09] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2014-04-24] (ASUSTeK Computer Inc. -> ) [Brak podpisu cyfrowego] R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.06.16\AsusFanControlService.exe [394040 2014-12-04] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R2 Backupper Service; C:\Program Files\AOMEI Backupper\ABService.exe [898216 2020-09-07] (AOMEI International Network Limited -> AOMEI International Network Limited) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8895512 2021-02-24] (BattlEye Innovations e.K. -> ) R2 CdRomArbiterService; C:\Program Files\Common Files\cdarbsvc\cdarbsvc_v1.0.0_x64.exe [8704 2020-05-12] (GuinpinSoft inc) [Brak podpisu cyfrowego] R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [595288 2019-03-21] (cFos Software GmbH -> cFos Software GmbH) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8689024 2021-07-09] (Microsoft Corporation -> Microsoft Corporation) S3 cloudidsvc; C:\WINDOWS\system32\cloudidsvc.dll [135168 2021-05-22] (Microsoft Windows -> Microsoft Corporation) S3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusServiceUltra.exe [7226736 2019-11-28] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2020-05-22] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R3 FrameServerMonitor; C:\WINDOWS\system32\FrameServerMonitor.dll [319488 2021-05-22] (Microsoft Windows -> Microsoft Corporation) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1874272 2021-04-04] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6840672 2021-04-04] (GOG Sp. z o.o. -> GOG.com) R2 GlassWire; C:\Program Files (x86)\GlassWire\GWCtlSrv.exe [15824099 2019-06-14] (SecureMix LLC) [Brak podpisu cyfrowego] S2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [156944 2020-05-25] (IObit Information Technology -> IObit) R3 lfsvc; C:\WINDOWS\SysWOW64\lfsvc.dll [22528 2019-11-12] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 MakesoftUpdaterService; C:\WINDOWS\SysWOW64\msus.exe [15872 2018-10-03] () [Brak podpisu cyfrowego] S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6562472 2019-02-01] (Malwarebytes Corporation -> Malwarebytes) S3 McpManagementService; C:\WINDOWS\System32\McpManagementService.dll [319488 2021-06-09] (Microsoft Windows -> Microsoft Corporation) R2 MSSQL$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\sqlservr.exe [43130032 2015-03-30] (Microsoft Corporation -> Microsoft Corporation) S3 NPSMSvc; C:\WINDOWS\System32\npsm.dll [233472 2021-05-22] (Microsoft Windows -> Microsoft Corporation) S3 NPSMSvc; C:\WINDOWS\SysWOW64\npsm.dll [163840 2021-05-22] (Microsoft Windows -> Microsoft Corporation) S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2536536 2021-04-09] (Electronic Arts, Inc. -> Electronic Arts) S4 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3481176 2021-04-09] (Electronic Arts, Inc. -> Electronic Arts) S3 P9RdrService; C:\WINDOWS\system32\p9rdrservice.dll [122880 2021-05-22] (Microsoft Windows -> Microsoft Corporation) R2 Printer Control; C:\WINDOWS\system32\PrintCtrl.exe [65536 2009-10-28] (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) [Brak podpisu cyfrowego] R2 RealSenseDCMSR300; C:\Program Files (x86)\Common Files\Intel\RSDCM_SR300\bin\win32\RealSenseDCMSR300.exe [3898096 2016-09-22] (Intel(R) Software Development Products -> Intel(R) Corporation) R2 RECentralService; C:\Program Files (x86)\AVerMedia1212\AVerMedia RECentral 4\RECentralService.exe [3286448 2020-02-21] (AVerMedia TECHNOLOGIES, Inc. -> AVerMedia TECHNOLOGIES, Inc.) R2 RepetierServer; C:\Program Files (x86)\Repetier-Server\bin\RepetierServer.exe [7591464 2019-12-16] (Hot-World GmbH & Co. KG -> ) S4 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1705088 2020-05-12] (Rockstar Games, Inc. -> Rockstar Games) R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [143664 2019-07-10] (Samsung Electronics CO., LTD. -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5528984 2021-05-22] (Microsoft Windows Publisher -> Microsoft Corporation) R2 Sentinel; C:\Program Files (x86)\Mad Catz\Sentinel\Sentinel.exe [8192 2014-04-11] (Mad Catz) [Brak podpisu cyfrowego] R2 SolidNetSSQ Server; X:\SW2016_SP4.0_Full-SSQ\_SolidSQUAD_\_SolidSQUAD_\SolidWorksPDM\LicenseServer\lmgrd.exe [1448752 2015-06-12] (Flexera Software LLC -> Flexera Software LLC) S4 SQLAgent$ASUSHOMECLOUD; c:\Program Files (x86)\Microsoft SQL Server\MSSQL10_50.ASUSHOMECLOUD\MSSQL\Binn\SQLAGENT.EXE [381104 2015-03-30] (Microsoft Corporation -> Microsoft Corporation) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-11-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [919992 2020-11-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Brak podpisu cyfrowego] S3 tomcat6; C:\Program Files\ASUS\HomeCloud\Tomcat\Tomcat_OmniStore\bin\tomcat6.exe [80896 2013-04-29] (Apache Software Foundation) [Brak podpisu cyfrowego] R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15228976 2020-09-14] (VMware, Inc. -> ) S4 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\NisSrv.exe [2772856 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) S4 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2108.7-0\MsMpEng.exe [136640 2021-09-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b8346c359fcd6093\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_b8346c359fcd6093\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AiChargerPlus; C:\Windows\SysWow64\drivers\AiChargerPlus.sys [14848 2013-01-28] (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) S3 AIDA64Driver; C:\Program Files (x86)\AIDA64\kerneld.x64 [68592 2020-04-06] (FinalWire Kft. -> ) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [51120 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [171952 2016-12-21] (CHENGDU AOMEI Tech Co., Ltd. -> ) R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [38320 2017-09-01] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 AscFileFilter; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win10_amd64\AscFileFilter.sys [46008 2020-11-19] (IObit Information Technology -> IObit) R3 AscRegistryFilter; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win10_amd64\AscRegistryFilter.sys [46008 2019-07-15] (IObit Information Technology -> IObit) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-01-28] (ASUSTeK Computer Inc. -> ) R3 ASMTFilter; C:\Windows\SysWow64\drivers\asmtufdriver.sys [24792 2014-06-13] (ASMedia Technology Inc. -> hxxp://www.asmedia.com.tw) R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-24] (ASUSTeK Computer Inc. -> ) R3 AVMU3GC55064; C:\WINDOWS\system32\drivers\avmu3_x64.sys [1150760 2020-06-01] (AVerMedia TECHNOLOGIES, Inc. -> AVerMedia TECHNOLOGIES, Inc.) R1 cbfs5; C:\Windows\system32\drivers\cbfs5.sys [416960 2014-03-06] (EldoS Corporation -> EldoS Corporation) R1 cFosSpeed; C:\WINDOWS\system32\DRIVERS\cfosspeed6.sys [1595456 2019-03-21] (cFos Software GmbH -> cFos Software GmbH) S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [69024 2019-05-29] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com) R3 cpuz145; C:\WINDOWS\temp\cpuz145\cpuz145_x64.sys [49968 2021-09-25] (CPUID -> CPUID) R3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [42256 2021-04-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3436320 2021-05-22] (Microsoft Windows -> Marvell Semiconductor Inc.) S0 ebdrv0; C:\WINDOWS\System32\drivers\evbd0a.sys [3418912 2021-05-22] (Microsoft Windows -> QLogic Corporation) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [34744 2019-02-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [32696 2019-02-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) S3 ExecutionContext; C:\WINDOWS\System32\Drivers\ExecutionContext.sys [61440 2021-05-22] (Microsoft Windows -> Microsoft Corporation) R1 gwdrv; C:\WINDOWS\system32\DRIVERS\gwdrv.sys [33152 2015-05-29] (GlassWire -> SecureMix LLC) R2 gzflt; C:\WINDOWS\System32\DRIVERS\gzflt.sys [176112 2020-10-23] (Bitdefender SRL -> BitDefender LLC) S3 HidSpiCx; C:\WINDOWS\System32\drivers\HidSpiCx.sys [118784 2021-05-22] (Microsoft Windows -> Microsoft Corporation) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2020-05-31] (Martin Malik - REALiX -> REALiX(tm)) S3 Imf8HpRegFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpRegFilter.sys [41848 2019-12-17] (IObit Information Technology -> IObit) S3 IMFDownProtect; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\IMFDownProtect.sys [40920 2021-07-30] (IObit CO., LTD -> IObit) S3 IMFForceDelete; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\IMFForceDelete.sys [34192 2019-06-11] (IObit Information Technology -> IObit) S3 ImfHpFileFilter; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfHpFileFilter.sys [45432 2019-12-17] (IObit Information Technology -> IObit) S3 ImfObCallback; C:\Program Files (x86)\IObit\IObit Malware Fighter\drivers\win10_amd64\ImfObCallback.sys [33984 2020-03-12] (IObit Information Technology -> IObit) R0 IntelPMT; C:\WINDOWS\System32\drivers\IntelPMT.sys [69952 2021-05-22] (Microsoft Windows Hardware Abstraction Layer Publisher -> Microsoft Corporation) R3 iobit_monitor_server; C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\Monitor_win10_x64.sys [32520 2020-11-27] (IObit Information Technology -> IObit) R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2014-10-02] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) R3 IreulBus; C:\WINDOWS\System32\drivers\IreulBus.sys [52984 2020-02-21] (Rainway, Inc. -> Rainway, Inc.) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.) R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [44104 2020-05-25] (IObit Information Technology -> IObit) R3 IUProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUProcessFilter.sys [37328 2020-05-25] (IObit Information Technology -> IObit) R3 IURegistryFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegistryFilter.sys [49800 2020-05-25] (IObit Information Technology -> IObit) S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [52832 2019-12-20] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net) S3 libusbK; C:\WINDOWS\System32\drivers\libusbK.sys [47928 2019-12-20] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-02-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [274416 2021-09-11] (Malwarebytes Corporation -> Malwarebytes) S0 megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [96032 2021-05-22] (Microsoft Windows -> Broadcom Inc) S0 mpi3drvi; C:\WINDOWS\System32\drivers\mpi3drvi.sys [83232 2021-05-22] (Microsoft Windows -> Broadcom Limited) S3 NDKPerf; C:\WINDOWS\System32\drivers\NDKPerf.sys [74016 2021-05-22] (Microsoft Windows -> ) S0 nvmedisk; C:\WINDOWS\System32\drivers\nvmedisk.sys [78112 2021-05-22] (Microsoft Windows -> Microsoft Corporation) R3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_ce036cb7afc84405\rtcx21x64.sys [431592 2021-05-16] (Realtek Semiconductor Corp. -> Realtek) S3 RtNdPt640; C:\WINDOWS\system32\DRIVERS\RtNdPt640.sys [58464 2020-12-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) S3 RTTEAMPT640; C:\WINDOWS\system32\DRIVERS\RtTeam640.sys [79968 2020-12-29] (Realtek Semiconductor Corp. -> Realtek Corporation) S3 RTVLANPT640; C:\WINDOWS\system32\DRIVERS\RtVlan640.sys [55904 2020-12-29] (Realtek Semiconductor Corp. -> Realtek Corporation) R3 SaiKa109; C:\WINDOWS\system32\DRIVERS\SaiKa109.sys [179904 2014-04-14] (Mad Catz Inc -> Saitek) R3 SaiMini; C:\WINDOWS\System32\drivers\SaiMini.sys [24040 2014-04-14] (Madcatz Europe Ltd -> Saitek) R3 SaiNtBus; C:\WINDOWS\system32\drivers\SaiBus.sys [51560 2014-04-14] (Madcatz Europe Ltd -> Saitek) R3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [168968 2020-12-09] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 Trufos; C:\WINDOWS\System32\DRIVERS\TRUFOS.sys [439928 2020-10-23] (Bitdefender SRL -> BitDefender S.R.L.) R1 UimBus; C:\WINDOWS\System32\drivers\uimbus.sys [108896 2017-09-12] (Paragon Software GmbH -> Paragon Software GmbH) R1 Uim_DEVIM; C:\WINDOWS\System32\drivers\uimdevim.sys [44904 2017-09-12] (Paragon Software GmbH -> Paragon Software GmbH) S3 Usb4DeviceRouter; C:\WINDOWS\System32\DriverStore\FileRepository\usb4devicerouter.inf_amd64_9f6d680e75a57995\Usb4DeviceRouter.sys [827680 2021-05-22] (Microsoft Windows -> Microsoft Corporation) S3 Usb4HostRouter; C:\WINDOWS\System32\DriverStore\FileRepository\usb4hostrouter.inf_amd64_cd0f44882a83a62c\Usb4HostRouter.sys [536864 2021-05-22] (Microsoft Windows -> Microsoft Corporation) R1 VD_FileDisk; C:\Windows\System32\Drivers\VD_FileDisk.sys [30312 2011-01-26] (Ghisler Software GmbH -> CaptainFlint Software) R1 VD_FileDisk; C:\Windows\SysWow64\Drivers\VD_FileDisk.sys [15872 2006-01-13] (Flint Incorporation) [Brak podpisu cyfrowego] S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [90112 2021-05-23] (Microsoft Windows -> ) R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [68544 2020-09-14] (VMware, Inc. -> VMware, Inc.) R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [105912 2020-08-11] (VMware, Inc. -> VMware, Inc.) R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [54592 2020-08-11] (VMware, Inc. -> VMware, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-09-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S4 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [433384 2021-09-04] (Microsoft Windows -> Microsoft Corporation) S4 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86264 2021-09-04] (Microsoft Windows -> Microsoft Corporation) S3 EuGdiDrv; \SystemRoot\system32\EuGdiDrv.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-09-24 12:09 - 2021-09-24 12:09 - 000000008 __RSH C:\ProgramData\ntuser.pol 2021-09-24 12:05 - 2021-09-25 07:08 - 000000000 ____D C:\FRST 2021-09-23 13:00 - 2021-09-23 13:00 - 000000000 ____D C:\Users\devil\AppData\Local\INetHistory 2021-09-23 07:57 - 2021-09-23 08:07 - 135548112 _____ (WhatsApp) C:\Users\devil\Downloads\WhatsAppSetup.exe 2021-09-23 07:29 - 2021-09-23 07:29 - 001220848 _____ () C:\Users\devil\Downloads\fix-it-center-6628215390898305-AsystentPobierania_v1.244.455.134.exe 2021-09-23 07:24 - 2021-09-23 07:24 - 048001584 _____ (Tweaking.com) C:\Users\devil\Downloads\tweaking.com_windows_repair_aio_setup.exe 2021-09-23 07:00 - 2021-09-23 07:00 - 000000000 ____D C:\Users\Default\AppData\Local\D3DSCache 2021-09-18 14:47 - 2021-09-18 14:47 - 008553680 _____ (Malwarebytes) C:\Users\devil\Downloads\adwcleaner_8.3.0.exe 2021-09-18 13:36 - 2021-09-18 13:36 - 000455515 _____ C:\Users\devil\Downloads\dControl.zip 2021-09-18 13:21 - 2021-09-18 13:21 - 000001299 _____ C:\Users\Public\Desktop\IObit Malware Fighter.lnk 2021-09-18 13:21 - 2021-09-18 13:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Malware Fighter 2021-09-18 12:54 - 2021-09-18 13:13 - 066764330 _____ C:\Users\devil\Downloads\IObit.Malware.Fighter.Pro.zip 2021-09-18 08:21 - 2021-09-18 08:21 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1512624719-2573985483-417533279-1001 2021-09-18 08:21 - 2021-09-18 08:21 - 000002433 _____ C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-09-11 11:57 - 2021-09-11 11:57 - 000274416 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2021-09-11 11:57 - 2021-09-11 11:57 - 000001922 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-09-11 11:57 - 2021-09-11 11:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2021-09-11 11:57 - 2019-02-01 11:20 - 000020936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2021-09-11 11:57 - 2019-01-08 15:32 - 000153328 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2021-09-11 07:06 - 2021-09-25 06:22 - 000000443 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2021-09-11 07:04 - 2021-09-11 07:04 - 000000000 ___SD C:\WINDOWS\system32\containers 2021-09-11 07:04 - 2021-09-11 07:04 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2021-09-11 07:04 - 2021-09-11 07:04 - 000000000 ____D C:\Users\Public\Documents\Hyper-V 2021-09-11 07:04 - 2021-09-11 07:04 - 000000000 ____D C:\Program Files\Hyper-V 2021-09-10 07:24 - 2021-09-11 12:24 - 000000000 ____D C:\Users\devil\AppData\Roaming\system32 2021-09-09 11:25 - 2021-09-11 06:32 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-09-09 09:13 - 2021-09-09 10:02 - 000000000 ____D C:\Users\devil\AppData\LocalLow\BitTorrent 2021-09-09 07:31 - 2021-09-09 07:31 - 000421824 _____ (Ashampoo GmbH & Co. KG) C:\Users\devil\Downloads\ashampoo-antispy-for-windows-10-1-1-0-1.exe 2021-09-04 08:06 - 2021-09-04 08:06 - 000001417 _____ C:\Users\Public\Desktop\Testy na prawo jazdy 2017 - pytania oficjalne.lnk 2021-09-04 08:06 - 2021-09-04 08:06 - 000000000 ____D C:\Users\devil\AppData\Roaming\Digibit 2021-09-04 08:06 - 2021-09-04 08:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Testy na prawo jazdy 2017 - pytania oficjalne 2021-09-04 08:06 - 2021-09-04 08:06 - 000000000 ____D C:\Program Files (x86)\Testy na prawo jazdy 2017 - pytania oficjalne 2021-09-04 07:58 - 2021-09-04 07:58 - 000003076 _____ C:\WINDOWS\system32\Tasks\HWiNFO 2021-09-04 07:58 - 2021-09-04 07:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO64 2021-09-04 07:58 - 2021-09-04 07:58 - 000000000 ____D C:\Program Files\HWiNFO64 2021-09-04 07:43 - 2021-09-04 07:43 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2021-09-04 07:41 - 2021-08-27 18:54 - 000136472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2021-09-04 07:41 - 2021-08-27 18:54 - 000067464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2021-09-04 07:41 - 2021-08-27 18:54 - 000037664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll 2021-09-04 07:34 - 2021-09-04 07:34 - 000000000 ___HD C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by Starter) 2021-09-04 07:34 - 2021-09-04 07:34 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup (Disabled by Starter) 2021-09-04 07:33 - 2021-09-04 07:33 - 000000000 ____D C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeStuff Starter 2021-09-04 07:33 - 2021-09-04 07:33 - 000000000 ____D C:\Program Files (x86)\CodeStuff 2021-09-04 07:27 - 2021-09-04 09:05 - 1339394048 _____ C:\Users\devil\Downloads\Obraz plyty Niezbednika 201704.iso 2021-09-04 07:07 - 2021-09-04 07:07 - 000002908 _____ C:\WINDOWS\system32\Tasks\IMF_SkipUAC_De5il 2021-09-04 07:05 - 2021-08-28 14:25 - 001858664 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2021-09-04 07:05 - 2021-08-28 14:25 - 001858664 _____ C:\WINDOWS\system32\vulkaninfo.exe 2021-09-04 07:05 - 2021-08-28 14:25 - 001474704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2021-09-04 07:05 - 2021-08-28 14:25 - 001438848 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-09-04 07:05 - 2021-08-28 14:25 - 001438848 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2021-09-04 07:05 - 2021-08-28 14:25 - 001212536 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2021-09-04 07:05 - 2021-08-28 14:25 - 001097856 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2021-09-04 07:05 - 2021-08-28 14:25 - 001097856 _____ C:\WINDOWS\system32\vulkan-1.dll 2021-09-04 07:05 - 2021-08-28 14:25 - 000951936 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2021-09-04 07:05 - 2021-08-28 14:25 - 000951936 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 001520760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 001171064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 000716920 _____ C:\WINDOWS\system32\nvofapi64.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 000676480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 000645240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 000577168 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2021-09-04 07:05 - 2021-08-28 14:22 - 000564344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2021-09-04 07:05 - 2021-08-28 14:21 - 002112128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2021-09-04 07:05 - 2021-08-28 14:21 - 001595536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2021-09-04 07:05 - 2021-08-28 14:21 - 000919184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2021-09-04 07:05 - 2021-08-28 14:21 - 000750224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2021-09-04 07:05 - 2021-08-28 14:21 - 000706192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2021-09-04 07:05 - 2021-08-28 14:20 - 008854144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2021-09-04 07:05 - 2021-08-28 14:20 - 007920760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2021-09-04 07:05 - 2021-08-28 14:20 - 005681280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2021-09-04 07:05 - 2021-08-28 14:20 - 004987512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2021-09-04 07:05 - 2021-08-28 14:20 - 002925688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2021-09-04 07:05 - 2021-08-28 14:20 - 000447104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2021-09-04 07:05 - 2021-08-28 14:19 - 000849016 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2021-09-04 07:05 - 2021-08-28 14:18 - 007280848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2021-09-04 07:05 - 2021-08-28 14:18 - 006216336 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2021-09-04 07:05 - 2021-08-27 18:54 - 000083133 _____ C:\WINDOWS\system32\nvinfo.pb 2021-09-03 06:54 - 2021-09-11 12:24 - 000000000 ____D C:\Users\devil\AppData\Roaming\Install 2021-09-03 06:54 - 2021-09-07 06:47 - 000000000 ____D C:\Users\devil\AppData\Roaming\Vitato 2021-09-03 06:54 - 2021-09-04 07:09 - 000000000 ____D C:\Users\devil\AppData\Roaming\windows 2021-09-03 06:54 - 2021-09-03 06:54 - 000003656 _____ C:\WINDOWS\system32\Tasks\SecurityHealthService 2021-09-03 06:54 - 2021-09-03 06:54 - 000003646 _____ C:\WINDOWS\system32\Tasks\MicrosoftOneDriveStandalone 2021-09-03 06:54 - 2021-09-03 06:54 - 000001386 _____ C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VitatoVDPatch.lnk 2021-09-03 06:53 - 2021-09-03 06:53 - 000001361 _____ C:\Users\Public\Desktop\Video Downloader Pro.lnk 2021-09-03 06:53 - 2021-09-03 06:53 - 000001354 _____ C:\Users\Public\Desktop\Video Converter Pro.lnk 2021-09-03 06:53 - 2021-09-03 06:53 - 000001318 _____ C:\Users\Public\Desktop\Video Player.lnk 2021-09-03 06:53 - 2021-09-03 06:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Video Downloader Pro 2021-09-03 06:53 - 2021-09-03 06:53 - 000000000 ____D C:\Program Files (x86)\Vitato 2021-09-01 06:26 - 2021-09-01 06:26 - 000004264 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1574103582 2021-09-01 06:26 - 2021-09-01 06:26 - 000001444 _____ C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk 2021-08-28 13:39 - 2021-08-28 13:39 - 000000000 ___HD C:\$WINDOWS.~BT 2021-08-28 13:38 - 2021-08-28 13:38 - 000000000 ___HD C:\$WinREAgent 2021-08-28 06:35 - 2021-09-24 11:49 - 000000000 ____D C:\Users\devil\Downloads\a70 2021-08-28 06:08 - 2021-08-28 06:08 - 000000000 ____D C:\Windows10Upgrade 2021-08-28 05:45 - 2021-08-28 05:45 - 000000000 ___HD C:\$Windows.~WS 2021-08-27 08:05 - 2021-08-27 08:05 - 000002620 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype dla firm.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002523 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002511 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002490 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-08-27 08:05 - 2021-08-27 08:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2021-08-26 08:50 - 2021-08-26 09:39 - 000000000 ____D C:\Users\devil\AppData\Local\EZ CD Audio Converter 2021-08-26 08:50 - 2021-08-26 08:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZ CD Audio Converter 2021-08-26 08:49 - 2021-08-26 08:50 - 000000000 ____D C:\Program Files\EZ CD Audio Converter 2021-08-26 08:49 - 2021-08-26 08:49 - 000000000 ____D C:\ProgramData\EZ CD Audio Converter 2021-07-10 16:54 - 2021-07-10 17:00 - 000000000 ____D C:\Users\devil\AppData\Roaming\Bitwarden 2021-07-10 16:03 - 2021-07-10 16:03 - 103395536 _____ (LogMeIn Inc.) C:\Users\devil\Downloads\lastpass-4-75-0.exe 2021-07-10 16:03 - 2021-07-10 16:03 - 000001966 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bitwarden.lnk 2021-07-10 16:03 - 2021-07-10 16:03 - 000000000 ____D C:\Users\devil\AppData\Local\bitwarden-updater 2021-07-10 16:00 - 2021-07-10 16:03 - 000000000 ____D C:\Program Files\Bitwarden 2021-07-10 16:00 - 2021-07-10 16:00 - 000710928 _____ (Bitwarden Inc.) C:\Users\devil\Downloads\bitwarden-1-25-1.exe 2021-07-10 14:22 - 2021-07-10 14:22 - 000279147 _____ C:\Users\devil\Downloads\webbrowserpassview-2-07 (1).exe 2021-07-10 14:20 - 2021-07-13 17:35 - 000000000 ____D C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NirSoft WebBrowserPassView 2021-07-10 14:20 - 2021-07-10 14:20 - 000279147 _____ C:\Users\devil\Downloads\webbrowserpassview-2-07.exe 2021-07-10 14:20 - 2021-07-10 14:20 - 000000000 ____D C:\Program Files (x86)\NirSoft 2021-07-06 22:51 - 2021-07-06 22:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MPC-HC x64 2021-07-06 22:51 - 2021-07-06 22:51 - 000000000 ____D C:\Program Files\MPC-HC 2021-07-05 13:16 - 2021-07-06 12:22 - 000000000 ____D C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Mirillis Splash 2021-07-05 13:16 - 2021-07-05 13:16 - 000000000 ____D C:\Users\devil\AppData\Roaming\Mirillis 2021-07-05 13:16 - 2021-07-05 13:16 - 000000000 ____D C:\ProgramData\Mirillis 2021-07-05 13:10 - 2021-07-08 23:38 - 000000000 ____D C:\Users\devil\AppData\Local\Mirillis 2021-07-05 13:10 - 2021-07-05 13:16 - 000000000 ____D C:\Program Files (x86)\Mirillis 2021-07-05 13:10 - 2021-07-05 13:10 - 000001285 _____ C:\Users\Public\Desktop\Mirillis Action.lnk 2021-07-05 13:10 - 2021-07-05 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mirillis 2021-07-05 13:10 - 2021-07-05 13:10 - 000000000 ____D C:\Action! 2021-07-05 13:10 - 2013-05-28 22:23 - 000652288 _____ C:\WINDOWS\SysWOW64\ficvdec_x64.dll 2021-07-05 13:10 - 2013-05-28 22:22 - 000641024 _____ C:\WINDOWS\SysWOW64\ficvdec_x86.dll 2021-07-05 11:48 - 2021-07-05 11:48 - 000000000 ____D C:\Users\devil\AppData\Roaming\Apple Computer 2021-07-05 11:45 - 2021-07-06 12:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Advanced SystemCare 8 2021-07-05 11:45 - 2021-07-05 11:45 - 000001484 _____ C:\Users\Public\Desktop\Advanced SystemCare 8.lnk 2021-07-02 00:55 - 2021-08-18 11:43 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d75a6828e5b2c4 2021-06-29 05:43 - 2021-06-29 05:43 - 000159864 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys 2021-06-27 12:16 - 2021-06-27 12:16 - 000000028 _____ C:\WINDOWS\OutLog.txt ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-09-25 07:00 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-09-25 07:00 - 2021-05-22 14:46 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-09-25 06:57 - 2019-07-10 17:09 - 000000000 _____ C:\WINDOWS\Path.idx 2021-09-25 06:26 - 2021-06-06 17:26 - 001905140 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-09-25 06:26 - 2021-05-22 20:53 - 000802764 _____ C:\WINDOWS\system32\perfh015.dat 2021-09-25 06:26 - 2021-05-22 20:53 - 000160422 _____ C:\WINDOWS\system32\perfc015.dat 2021-09-25 06:26 - 2021-05-22 14:44 - 000000000 ____D C:\WINDOWS\INF 2021-09-25 06:24 - 2019-07-10 16:54 - 000000000 ____D C:\ProgramData\NVIDIA 2021-09-25 06:23 - 2021-05-22 14:46 - 000000000 ___HD C:\Program Files\WindowsApps 2021-09-25 06:23 - 2020-07-19 21:52 - 000000000 ____D C:\Users\devil\AppData\Local\CrashDumps 2021-09-25 06:22 - 2021-06-18 13:41 - 000000000 ____D C:\ProgramData\VMware 2021-09-25 06:22 - 2021-06-06 02:11 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-09-25 06:22 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\ServiceState 2021-09-25 06:22 - 2020-09-11 20:45 - 000000208 _____ C:\WINDOWS\SysWOW64\AbBakConfig.dat 2021-09-25 06:22 - 2020-09-11 20:45 - 000000150 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2021-09-25 06:22 - 2020-09-11 20:40 - 000000000 ____D C:\Program Files\AOMEI Backupper 2021-09-25 06:22 - 2020-06-25 21:44 - 000012288 ___SH C:\DumpStack.log.tmp 2021-09-25 06:22 - 2019-07-10 17:04 - 001048576 _____ C:\WINDOWS\PE_Rom.dll 2021-09-24 14:26 - 2021-06-06 02:07 - 000000000 ____D C:\Users\devil 2021-09-24 14:26 - 2021-06-06 02:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-09-24 14:26 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\SystemTemp 2021-09-24 14:26 - 2021-05-22 14:36 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-09-24 14:07 - 2019-07-12 14:35 - 000000000 ____D C:\ProgramData\Mozilla 2021-09-24 14:06 - 2021-01-03 20:41 - 000000000 ____D C:\Users\devil\AppData\LocalLow\Mozilla 2021-09-24 12:06 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2021-09-24 12:06 - 2018-09-15 09:33 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2021-09-24 11:53 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-09-23 12:28 - 2021-03-27 18:38 - 000000000 ____D C:\Users\devil\AppData\Roaming\WhatsApp 2021-09-23 08:06 - 2021-03-27 18:38 - 000000000 ____D C:\Users\devil\AppData\Local\WhatsApp 2021-09-22 08:22 - 2021-05-22 14:46 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-09-22 07:55 - 2020-01-11 00:40 - 000000000 ____D C:\Users\devil\AppData\Local\ElevatedDiagnostics 2021-09-22 07:54 - 2019-07-10 18:15 - 000000000 ____D C:\Users\devil\AppData\Local\D3DSCache 2021-09-22 07:47 - 2021-05-22 14:46 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-09-22 07:38 - 2020-01-11 00:49 - 002208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2021-09-22 07:36 - 2020-06-26 22:03 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2021-09-22 07:35 - 2021-05-22 14:36 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-09-22 07:18 - 2020-01-11 00:49 - 000188880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2021-09-22 07:18 - 2020-01-11 00:49 - 000061880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe 2021-09-21 18:55 - 2020-12-27 19:15 - 000000000 ____D C:\Users\devil\AppData\Roaming\Messenger 2021-09-21 18:55 - 2020-12-27 19:15 - 000000000 ____D C:\Users\devil\AppData\Local\Messenger 2021-09-21 18:54 - 2019-07-09 17:59 - 000000000 ____D C:\Users\devil\AppData\Local\Packages 2021-09-20 13:24 - 2019-07-10 18:13 - 000000000 ____D C:\Program Files (x86)\Steam 2021-09-18 15:08 - 2020-07-19 21:30 - 000000000 ____D C:\Users\devil\AppData\Roaming\IObit 2021-09-18 15:08 - 2020-05-31 20:17 - 000000000 ____D C:\ProgramData\IObit 2021-09-18 15:07 - 2020-07-20 18:55 - 000000000 ____D C:\Users\devil\AppData\LocalLow\IObit 2021-09-18 14:52 - 2020-10-01 23:03 - 000000000 ____D C:\Program Files\Total Uninstall 6 2021-09-18 14:50 - 2021-05-12 22:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2021-09-18 14:50 - 2019-07-10 19:07 - 000000000 ____D C:\Users\devil\AppData\Roaming\Samsung 2021-09-18 14:49 - 2020-05-31 20:17 - 000000000 ____D C:\Program Files (x86)\IObit 2021-09-18 08:49 - 2020-06-10 18:25 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-09-18 08:49 - 2020-06-10 18:25 - 000002296 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-09-18 08:09 - 2020-05-31 20:17 - 000000000 ____D C:\ProgramData\ProductData 2021-09-18 08:08 - 2019-07-12 19:34 - 000000000 ____D C:\Users\devil\AppData\Roaming\BitTorrent 2021-09-11 11:58 - 2019-07-10 16:23 - 000000000 ____D C:\ProgramData\Packages 2021-09-11 11:57 - 2021-05-22 14:46 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-09-11 11:57 - 2020-03-02 21:49 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-09-11 07:07 - 2019-07-10 16:16 - 000000000 ____D C:\Users\devil\AppData\Local\PlaceholderTileLogoFolder 2021-09-11 07:04 - 2021-05-22 14:46 - 000000000 ____D C:\WINDOWS\schemas 2021-09-11 06:32 - 2019-10-12 15:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-09-10 12:02 - 2021-01-03 20:53 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-09-10 11:32 - 2021-06-06 02:05 - 005185048 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-09-10 11:31 - 2021-05-22 14:46 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss 2021-09-10 11:31 - 2021-05-22 14:46 - 000000000 ___SD C:\WINDOWS\system32\lxss 2021-09-10 09:38 - 2019-11-12 19:02 - 000000000 ____D C:\Program Files (x86)\DLL Suite 2021-09-09 10:02 - 2020-08-20 20:46 - 000000000 ____D C:\Users\devil\AppData\Roaming\vlc 2021-09-09 09:14 - 2020-06-24 19:35 - 000000000 ____D C:\Users\devil\AppData\Local\BitTorrentHelper 2021-09-09 08:14 - 2019-07-11 20:41 - 000000000 ____D C:\Users\devil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-09-09 08:09 - 2019-07-10 17:54 - 000000000 ____D C:\Users\devil\AppData\Local\Ubisoft Game Launcher 2021-09-08 13:11 - 2019-07-10 18:30 - 000000000 ____D C:\Users\devil\AppData\Roaming\AIMP 2021-09-04 07:44 - 2019-07-10 22:02 - 000000000 ____D C:\Users\devil\AppData\Local\NVIDIA 2021-09-04 07:43 - 2019-07-10 16:43 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-09-04 07:42 - 2019-07-10 22:02 - 000000000 ____D C:\Users\devil\AppData\Local\NVIDIA Corporation 2021-09-04 07:41 - 2019-07-10 16:43 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-09-04 07:13 - 2019-07-09 17:53 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-09-04 07:03 - 2021-05-26 22:20 - 000000000 ___DC C:\WINDOWS\Panther 2021-09-03 07:05 - 2020-09-17 23:06 - 000000000 ____D C:\Users\devil\.cache 2021-09-03 06:56 - 2019-07-10 17:08 - 001923408 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2021-08-31 07:04 - 2019-07-10 16:17 - 000803176 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2021-08-28 06:38 - 2019-07-10 16:21 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-08-28 06:32 - 2019-07-10 16:21 - 133215968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-08-28 06:08 - 2020-04-22 13:27 - 000000761 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asystent aktualizacji do systemu Windows 10.lnk 2021-08-28 05:45 - 2021-06-06 02:11 - 000087503 _____ C:\WINDOWS\diagwrn.xml 2021-08-28 05:45 - 2021-06-06 02:11 - 000062868 _____ C:\WINDOWS\diagerr.xml 2021-08-27 08:05 - 2019-07-30 22:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Office ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-12-12 21:39 - 2021-04-23 22:21 - 000000004 _____ () C:\ProgramData\lock.dat 2019-12-12 21:40 - 2021-04-23 22:24 - 000000004 _____ () C:\ProgramData\rc.dat 2019-12-12 21:39 - 2019-12-12 21:39 - 000000008 _____ () C:\ProgramData\ts.dat 2019-07-10 17:28 - 2018-07-10 12:46 - 000259918 _____ () C:\Users\devil\kmp moj.reg 2020-08-31 17:31 - 2020-08-31 17:31 - 019445016 _____ (Microsoft Corporation) C:\Users\devil\MediaCreationTool2004.exe 2019-12-15 20:20 - 2019-12-15 20:20 - 000602112 _____ (OldTimer Tools) C:\Users\devil\OTL.exe 2020-08-28 22:05 - 2020-08-28 22:05 - 000000114 _____ () C:\Users\devil\Simultus_EDU_PLUS_843CD147.dat 2020-08-31 17:28 - 2020-08-31 17:28 - 006260552 _____ (Microsoft Corporation) C:\Users\devil\Windows10Upgrade9252.exe 2019-07-10 17:10 - 2019-07-10 17:10 - 000000123 _____ () C:\Program Files\IntelRemoteWakeAgent.ini 2021-06-12 12:23 - 2021-06-12 12:23 - 000001474 _____ () C:\Users\devil\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================