Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-12-2021 Uruchomiony przez moons (administrator) DESKTOP-V1FOO7R (Micro-Star International Co., Ltd MS-7C02) (25-12-2021 18:48:16) Uruchomiony z C:\Users\moons\Downloads Załadowane profile: moons Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.1415 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (EIZO Corporation -> ) C:\Program Files\EIZO\ColorNavigator 6\ColorNavigator 6.exe (EIZO Corporation -> ) C:\Program Files\EIZO\ColorNavigator 6\core\cn6_eacore.exe (Glarysoft LTD -> Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\GUBootService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (M-Audio -> Avid Technology, Inc.) C:\Windows\SysWOW64\MAFWTray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20544.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCopyAccelerator.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI.CentralServer.exe (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <15> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe <2> ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [M-Audio Taskbar Icon] => C:\Windows\SysWOW64\MAFWTray.exe [252424 2009-07-29] (M-Audio -> Avid Technology, Inc.) HKU\S-1-5-21-868864574-754023539-434053955-1003\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [44416 2021-09-26] (Glarysoft LTD -> Glarysoft Ltd) HKU\S-1-5-21-868864574-754023539-434053955-1003\...\MountPoints2: {5fc44fce-986c-11eb-ae50-806e6f6e6963} - "E:\autorun.exe" Startup: C:\Users\moons\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ColorNavigator 6.lnk [2021-04-08] ShortcutTarget: ColorNavigator 6.lnk -> C:\Program Files\EIZO\ColorNavigator 6\ColorNavigator 6.exe (EIZO Corporation -> ) BootExecute: autocheck autochk * ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {1339120F-1FB2-491D-A9D1-9418D86B1503} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {27A2840E-7511-4E66-A277-AD5456F868E2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {3BD8F430-887F-45E4-AC82-37BC412E0CA9} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {5CCA66C3-951A-49AA-A0F7-BD5DE03F723C} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2021-11-05] () [Brak podpisu cyfrowego] Task: {5ED59CD8-CF8F-4509-B656-4106064BA6B2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {6545168F-69D2-4322-880C-EDBFCD59AA52} - System32\Tasks\GU5SkipUAC => C:\Program Files (x86)\Glary Utilities 5\Integrator.exe [919936 2021-09-26] (Glarysoft LTD -> Glarysoft Ltd) Task: {6B94A240-B495-4652-8D9B-F267A64542FA} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649216 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {6C8273D9-6592-415A-949D-26A047FA5E45} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {79651ECE-7699-4B60-A8F0-E0A2D6B6AF6F} - System32\Tasks\MSI Task Host - DisplayID => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74736 2021-01-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {A09EBA4D-7171-4487-A52F-48AB47D9AA03} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {ADBA14AD-AA8B-483C-BC42-19D98C0ED4F1} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {B736771A-6BDA-4604-8B54-DE72AEBBBEB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BB57F044-B5F3-42D9-A336-9E00B5A32CFC} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {BB92F90C-3CF4-4CFA-B6E2-DA192FD56DA1} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {C0494DF6-80E7-4B1E-A35B-94FF62D4CEB2} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {C47312F8-891F-4CB4-A3DC-A90D23FC5D18} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation) Task: {CE520067-5C2E-4A76-81AB-626FD7C98024} - System32\Tasks\MSI Task Host - Detect_Monitor => C:\Program Files (x86)\MSI\One Dragon Center\MSI.NotifyServer.exe [74736 2021-01-31] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) Task: {E0C30191-89AD-4506-920B-FD323DB7140F} - System32\Tasks\WiseCleaner\WDCSkipUAC => C:\Program Files (x86)\Wise\Wise Disk Cleaner\WiseDiskCleaner.exe [12176632 2021-10-23] (Lespeed Technology Co., Ltd -> WiseCleaner.com) Task: {FC5182CC-E80E-40DB-A870-843320661D18} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341312 2021-12-09] (Nvidia Corporation -> NVIDIA Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{955e4c25-b473-40d6-ae47-d105a646fa5a}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\moons\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-20] Edge StartupUrls: Default -> "hxxp://google.com/" FireFox: ======== FF DefaultProfile: i6vdxile.default FF ProfilePath: C:\Users\moons\AppData\Roaming\Mozilla\Firefox\Profiles\i6vdxile.default [2021-06-22] FF ProfilePath: C:\Users\moons\AppData\Roaming\Mozilla\Firefox\Profiles\slum10oc.default-release [2021-12-25] FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\moons\AppData\Roaming\Mozilla\Firefox\Profiles\slum10oc.default-release\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2021-10-02] FF Plugin: @java.com/DTPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\dtplugin\npDeployJava1.dll [2021-10-27] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.311.2 -> C:\Program Files\Java\jre1.8.0_311\bin\plugin2\npjp2.dll [2021-10-27] (Oracle America, Inc. -> Oracle Corporation) Chrome: ======= CHR Profile: C:\Users\moons\AppData\Local\Google\Chrome\User Data\Default [2021-12-20] CHR StartupUrls: Default -> "" CHR Extension: (pro grey) - C:\Users\moons\AppData\Local\Google\Chrome\User Data\Default\Extensions\enhpebdanojkmhbbneclbkmpleemilaj [2021-06-21] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\moons\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-21] CHR Extension: (Chrome Media Router) - C:\Users\moons\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-06-21] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 GUBootService; C:\Program Files (x86)\Glary Utilities 5\GUBootService.exe [867712 2021-09-26] (Glarysoft LTD -> Glarysoft Ltd) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7901368 2021-12-15] (Malwarebytes Inc -> Malwarebytes) R2 MSI_Central_Service; C:\Program Files (x86)\MSI\One Dragon Center\MSI_Central_Service.exe [147088 2020-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6138112 2021-12-15] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_0bc9105c62ca22fb\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 colormunki; C:\Windows\System32\Drivers\colormunki_x64.sys [51600 2017-09-28] (USBIO Test -> Thesycon GmbH, Germany) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 DxVGrb; C:\Windows\system32\drivers\DxVGrb.sys [226944 2013-05-02] (Microsoft Windows Hardware Compatibility Publisher -> Dexetek) R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [30720 2021-04-08] (Microsoft Windows Hardware Compatibility Publisher -> Glarysoft Ltd) R3 MAFW; C:\Windows\System32\drivers\mafw.sys [231944 2009-07-29] (M-Audio -> Avid Technology, Inc.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [210352 2021-12-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-06-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-11-05] (Malwarebytes Inc -> Malwarebytes) R3 MpKsl636be676; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E8A61B0F-8754-4D13-9EBC-A88B72073B67}\MpKslDrv.sys [134376 2021-12-25] (Microsoft Windows -> Microsoft Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2021-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [435432 2021-12-16] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-16] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-12-25 18:48 - 2021-12-25 18:48 - 000015733 _____ C:\Users\moons\Downloads\FRST.txt 2021-12-25 18:48 - 2021-12-25 18:48 - 000000000 ____D C:\Users\moons\Downloads\FRST-OlderVersion 2021-12-25 18:47 - 2021-12-25 18:48 - 002311168 _____ (Farbar) C:\Users\moons\Downloads\FRST64.exe 2021-12-25 18:47 - 2021-12-25 18:48 - 000000000 ____D C:\FRST 2021-12-23 16:01 - 2021-12-23 16:01 - 008302592 _____ C:\Users\moons\Documents\Untitled_1.39.3.dpx 2021-12-23 16:01 - 2021-12-23 16:01 - 008302592 _____ C:\Users\moons\Documents\Untitled_1.39.2.dpx 2021-12-23 16:01 - 2021-12-23 16:01 - 008302592 _____ C:\Users\moons\Documents\Untitled_1.39.1.dpx 2021-12-22 17:10 - 2021-12-22 17:10 - 000000000 ____D C:\Users\moons\Downloads\Holygrain 2021-12-22 17:09 - 2021-12-22 17:09 - 198045327 _____ C:\Users\moons\Downloads\Holygrain.zip 2021-12-22 12:21 - 2021-12-22 12:21 - 000001988 _____ C:\Users\moons\Desktop\DaVinci Resolve.lnk 2021-12-22 12:21 - 2021-12-22 12:21 - 000000000 ____D C:\Users\moons\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackmagic Design 2021-12-22 12:11 - 2021-12-22 12:11 - 000001107 _____ C:\Users\moons\Downloads\Fairlane - Enough feat. Nevve (Description).txt 2021-12-21 22:01 - 2021-12-21 22:01 - 000210352 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-12-21 12:40 - 2021-12-21 12:40 - 000331328 _____ C:\Windows\system32\FNTCACHE.DAT 2021-12-21 00:11 - 2021-12-21 00:11 - 000000000 ____D C:\Windows\LastGood.Tmp 2021-12-21 00:07 - 2021-12-15 21:58 - 001450200 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2021-12-21 00:07 - 2021-12-15 21:58 - 001450200 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2021-12-21 00:07 - 2021-12-15 21:57 - 001874648 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2021-12-21 00:07 - 2021-12-15 21:57 - 001874648 _____ C:\Windows\system32\vulkaninfo.exe 2021-12-21 00:07 - 2021-12-15 21:57 - 001209312 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2021-12-21 00:07 - 2021-12-15 21:57 - 001112336 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2021-12-21 00:07 - 2021-12-15 21:57 - 001112336 _____ C:\Windows\system32\vulkan-1.dll 2021-12-21 00:07 - 2021-12-15 21:57 - 000966416 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2021-12-21 00:07 - 2021-12-15 21:57 - 000966416 _____ C:\Windows\SysWOW64\vulkan-1.dll 2021-12-21 00:07 - 2021-12-15 21:52 - 005732320 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2021-12-21 00:06 - 2021-12-21 00:06 - 000000000 ____D C:\Users\moons\AppData\Roaming\Geek Uninstaller 2021-12-21 00:06 - 2021-12-15 21:54 - 001524392 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2021-12-21 00:06 - 2021-12-15 21:54 - 000802216 _____ C:\Windows\system32\nvofapi64.dll 2021-12-21 00:06 - 2021-12-15 21:54 - 000679384 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2021-12-21 00:06 - 2021-12-15 21:54 - 000636840 _____ C:\Windows\SysWOW64\nvofapi.dll 2021-12-21 00:06 - 2021-12-15 21:54 - 000565416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2021-12-21 00:06 - 2021-12-15 21:53 - 002116520 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2021-12-21 00:06 - 2021-12-15 21:53 - 001597552 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2021-12-21 00:06 - 2021-12-15 21:53 - 001175512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2021-12-21 00:06 - 2021-12-15 21:53 - 000794024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2021-12-21 00:06 - 2021-12-15 21:53 - 000708776 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe 2021-12-21 00:06 - 2021-12-15 21:52 - 007843968 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2021-12-21 00:06 - 2021-12-15 21:52 - 004938880 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2021-12-21 00:06 - 2021-12-15 21:52 - 000452224 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe 2021-12-21 00:06 - 2021-12-15 21:51 - 000851936 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe 2021-12-21 00:06 - 2021-12-15 21:50 - 006438112 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2021-12-21 00:06 - 2021-12-15 13:16 - 000085698 _____ C:\Windows\system32\nvinfo.pb 2021-12-20 01:15 - 2021-12-21 12:40 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-12-18 21:59 - 2021-12-18 21:59 - 000035629 _____ C:\Users\moons\Downloads\PSA Diagbox 9.68 (VMware) 2020 [04 2020] [rutracker-5988650].torrent 2021-12-18 21:52 - 2021-12-18 21:52 - 000159431 _____ C:\Users\moons\Downloads\Peugeot 508 napełnianie zbiornika dodatku(1).pdf 2021-12-18 21:51 - 2021-12-18 21:51 - 012195432 _____ C:\Users\moons\Downloads\Instrukcja obslugi peugeot508.pdf 2021-12-18 21:50 - 2021-12-18 21:50 - 000987868 _____ C:\Users\moons\Downloads\poradnik.pdf 2021-12-16 21:35 - 2021-12-16 21:37 - 649226366 _____ C:\Users\moons\Downloads\Ania&Krzysiek.mp4 2021-12-15 23:28 - 2021-12-15 23:28 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-12-15 22:00 - 2021-12-23 16:01 - 000314439 _____ C:\Users\moons\Documents\Untitled_1.39.3.drx 2021-12-15 22:00 - 2021-12-23 16:01 - 000314439 _____ C:\Users\moons\Documents\Untitled_1.39.2.drx 2021-12-15 22:00 - 2021-12-23 16:01 - 000314439 _____ C:\Users\moons\Documents\Untitled_1.39.1.drx 2021-12-15 12:22 - 2021-12-15 12:22 - 000000000 ____D C:\Users\moons\AppData\Local\Topaz Labs LLC 2021-12-15 12:21 - 2021-12-15 17:38 - 000002241 _____ C:\Users\Public\Desktop\Topaz Gigapixel AI.lnk 2021-12-15 12:21 - 2021-12-15 12:21 - 000000000 ____D C:\Users\moons\AppData\Roaming\Topaz Labs LLC 2021-12-15 11:44 - 2021-12-15 11:44 - 000000000 ____D C:\ProgramData\Topaz Labs LLC 2021-12-15 11:44 - 2021-12-15 11:44 - 000000000 ____D C:\Program Files\Topaz Labs LLC 2021-12-15 03:11 - 2021-12-15 03:11 - 000000000 ____D C:\Windows\SystemTemp 2021-12-15 03:09 - 2021-12-15 03:09 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2021-12-15 03:09 - 2021-12-15 03:09 - 000011979 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-12-15 03:08 - 2021-12-15 03:08 - 000272384 _____ C:\Windows\system32\TpmTool.exe 2021-12-15 03:08 - 2021-12-15 03:08 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-12-15 03:04 - 2021-12-15 03:04 - 000000000 ___HD C:\$WinREAgent 2021-12-14 16:31 - 2021-12-14 16:31 - 000044119 _____ C:\Users\moons\Downloads\list_przewozowy_602797256156416013923040.pdf 2021-12-14 16:31 - 2021-12-14 16:31 - 000043832 _____ C:\Users\moons\Downloads\list_przewozowy_602797256156400016580200.pdf 2021-12-13 18:14 - 2021-12-13 18:20 - 000000000 ____D C:\Users\moons\Desktop\Nowy folder (2) 2021-12-11 17:08 - 2021-12-11 17:08 - 000327779 _____ C:\Users\moons\Downloads\Schowek-demontaż.pdf 2021-12-11 17:06 - 2021-12-11 17:06 - 012195432 _____ C:\Users\moons\Downloads\książka serwisowa Peugeot 508.pdf 2021-12-11 00:12 - 2021-12-11 00:12 - 000097527 _____ C:\Users\moons\Documents\Ania i Krzysiu.pdf 2021-12-11 00:08 - 2021-12-11 00:08 - 000098233 _____ C:\Users\moons\Documents\Kinga i Szymon.pdf 2021-12-10 20:21 - 2021-12-10 20:21 - 000000000 ____D C:\Users\moons\Desktop\Gośki mama 2021-12-09 22:37 - 2020-11-11 03:54 - 000167280 _____ (Samsung Electronics Co., Ltd.) C:\Windows\system32\Drivers\ssudmdm.sys 2021-12-09 15:20 - 2021-12-09 15:25 - 000042962 _____ C:\Users\moons\Documents\My New Project.saproj 2021-12-07 21:04 - 2021-12-09 15:25 - 000129346 _____ C:\Users\moons\Documents\Kinga i Szymon.saproj 2021-12-02 01:39 - 2021-12-02 01:39 - 000387472 _____ C:\Users\moons\Desktop\5z6k9kqTURBXy8yYmMwNzZiNjg1NzA2NjJjZDBjNmExZjFjNTk4ZWMxYy5qcGVnkZUCzQMUAMLDgaEwBQ.webp ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-12-25 18:44 - 2021-06-22 11:12 - 000000000 ____D C:\ProgramData\Mozilla 2021-12-25 18:43 - 2021-06-22 11:12 - 000000000 ____D C:\Users\moons\AppData\LocalLow\Mozilla 2021-12-25 18:06 - 2021-04-08 14:54 - 000000000 ____D C:\ProgramData\NVIDIA 2021-12-25 02:42 - 2021-04-10 21:04 - 000000000 ____D C:\Users\moons\AppData\Roaming\vlc 2021-12-25 02:40 - 2021-04-15 11:45 - 000000358 _____ C:\Users\moons\Desktop\Ethernet — skrót.lnk 2021-12-25 01:24 - 2020-11-18 23:38 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-12-24 22:43 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-12-24 21:39 - 2021-04-08 14:02 - 001768984 _____ C:\Windows\system32\PerfStringBackup.INI 2021-12-24 21:39 - 2019-12-07 16:09 - 000784578 _____ C:\Windows\system32\perfh015.dat 2021-12-24 21:39 - 2019-12-07 16:09 - 000152474 _____ C:\Windows\system32\perfc015.dat 2021-12-24 21:39 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2021-12-24 21:32 - 2021-09-27 16:12 - 000008192 ___SH C:\DumpStack.log.tmp 2021-12-24 21:32 - 2020-11-19 00:39 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-12-23 23:16 - 2021-04-14 20:39 - 000000000 ____D C:\vol0 2021-12-23 12:27 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-12-23 12:27 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2021-12-23 11:47 - 2021-04-08 14:06 - 000000000 ____D C:\Users\moons 2021-12-22 20:41 - 2021-04-09 21:59 - 000000000 ____D C:\Users\moons\AppData\Roaming\AIMP 2021-12-22 12:13 - 2021-04-20 21:51 - 000000000 ____D C:\Users\moons\AppData\Local\JDownloader 2.0 2021-12-22 02:33 - 2021-04-12 11:11 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5 2021-12-21 17:12 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2021-12-21 12:40 - 2021-06-22 11:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-12-21 00:03 - 2021-07-19 21:28 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:28 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:27 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-07-19 21:27 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2021-12-21 00:03 - 2021-04-08 15:12 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2021-12-21 00:03 - 2021-04-08 14:01 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2021-12-21 00:03 - 2021-04-08 14:01 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2021-12-20 12:50 - 2021-10-09 23:49 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-12-20 12:50 - 2021-06-22 11:12 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-12-19 21:10 - 2021-04-08 14:24 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-12-18 21:36 - 2020-11-19 00:41 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-12-16 16:34 - 2021-04-12 11:15 - 000000000 ____D C:\Users\moons\AppData\Roaming\Wise Disk Cleaner 2021-12-16 12:14 - 2020-11-19 00:39 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-12-15 23:43 - 2021-04-08 20:52 - 000000000 ____D C:\Users\moons\AppData\Local\CaptureOne 2021-12-15 23:28 - 2021-06-21 23:05 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-12-15 23:27 - 2021-06-21 23:04 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-12-15 23:27 - 2021-06-21 23:04 - 000000000 ____D C:\Program Files\Malwarebytes 2021-12-15 22:41 - 2021-10-23 22:45 - 000000000 ____D C:\Users\moons\Desktop\508 (kontaktmotoswiat) 2021-12-15 21:57 - 2021-11-17 01:21 - 001466024 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2021-12-15 21:54 - 2021-11-17 01:21 - 000658344 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll 2021-12-15 21:53 - 2021-11-17 01:21 - 000982952 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2021-12-15 21:52 - 2021-11-17 01:21 - 008725160 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2021-12-15 21:52 - 2021-11-17 01:21 - 002852280 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2021-12-15 21:50 - 2021-04-08 14:01 - 007586784 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2021-12-15 17:26 - 2021-04-15 12:06 - 000000000 ____D C:\Users\moons\AppData\Local\D3DSCache 2021-12-15 17:20 - 2021-04-08 14:09 - 000000000 ____D C:\Users\moons\AppData\Local\Packages 2021-12-15 17:13 - 2021-04-08 15:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2021-12-15 12:16 - 2021-09-15 20:43 - 000000000 ____D C:\Users\moons\Desktop\renowacje 2021-12-15 03:11 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lv-LV 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lt-LT 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\et-EE 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-12-15 03:11 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2021-12-15 03:10 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2021-12-15 03:00 - 2021-04-08 14:25 - 000000000 ____D C:\Windows\system32\MRT 2021-12-15 02:58 - 2021-04-08 14:24 - 137938848 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-12-15 02:57 - 2021-04-18 18:10 - 000000000 ____D C:\Users\moons\Desktop\Untitled Export 2021-12-14 22:33 - 2018-10-25 11:15 - 000000000 ____D C:\Users\moons\Desktop\Do vegasa 2021-12-14 21:08 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports 2021-12-12 21:44 - 2021-04-07 13:39 - 000000000 ____D C:\Users\moons\Downloads\pobrane 2021-12-12 00:37 - 2021-04-20 23:34 - 000000000 ____D C:\Users\moons\AppData\Local\ChomikBox 2021-12-12 00:19 - 2021-04-20 23:34 - 000000000 ____D C:\Users\moons\.gstreamer-0.10 2021-12-11 17:03 - 2021-10-27 22:24 - 000000000 ____D C:\Users\moons\Downloads\508 2021-12-11 01:33 - 2021-10-29 22:13 - 000000000 ____D C:\Users\moons\Desktop\DiagBox 6.22 Citroen Peugeot 2012 Diagnostyka Lexia i PP [PL] (piotr-31) 2021-12-11 01:26 - 2021-09-29 18:28 - 000000000 ____D C:\Users\moons\Desktop\mazda 2021-12-11 01:18 - 2021-06-04 22:31 - 000000000 ____D C:\Users\moons\Desktop\128 2021-12-11 01:15 - 2021-08-13 22:22 - 000000000 ____D C:\Users\moons\Desktop\Nowy folder (5) 2021-12-11 01:14 - 2021-09-09 17:31 - 000000000 ____D C:\Users\moons\Desktop\Nowy folder (6) 2021-12-10 23:18 - 2021-04-08 15:15 - 000001039 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Affinity Designer.lnk 2021-12-10 23:17 - 2021-04-08 15:13 - 000000000 ____D C:\Program Files\Affinity 2021-12-09 20:09 - 2021-04-08 14:11 - 000000000 ____D C:\Users\moons\AppData\Local\PlaceholderTileLogoFolder 2021-12-09 15:27 - 2021-04-08 16:49 - 000000000 ____D C:\Users\moons\AppData\Local\ElevatedDiagnostics 2021-12-09 15:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2021-12-09 00:34 - 2021-06-21 02:37 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-12-09 00:34 - 2021-06-21 02:37 - 000003386 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-12-08 08:19 - 2021-04-12 11:25 - 002851840 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2021-12-08 08:19 - 2021-04-12 11:25 - 002197504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2021-12-08 08:19 - 2021-04-12 11:25 - 001294024 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2021-12-06 02:53 - 2021-04-10 19:56 - 000000000 ____D C:\Users\moons\AppData\Roaming\MPC-HC 2021-12-01 22:41 - 2021-04-08 15:09 - 000000000 ____D C:\Users\moons\AppData\Local\NVIDIA ==================== Pliki w katalogu głównym wybranych folderów ======== 2021-11-20 18:04 - 2021-11-20 18:04 - 000003584 _____ () C:\Users\moons\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2021-04-15 12:08 - 2021-04-15 12:08 - 000007605 _____ () C:\Users\moons\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================