Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 04-08-2022 Uruchomiony przez RafałKubiak (administrator) 024RKUBIAK5 (LENOVO 20NX006QMX) (11-08-2022 18:43:20) Uruchomiony z C:\Users\RafałKubiak\Downloads Załadowane profile: False <==== UWAGA (Profil tymczasowy?) Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.1826 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> ) C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud Helper.exe <2> (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe (C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe (C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe <2> (C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe ->) (OpenJS Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe ->) (Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7epasrv64x.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Siemens\Automation\UserManagement\BIN\IPCSecCom.exe ->) (Siemens UMC -> SIEMENS AG) C:\Program Files\Siemens\Automation\UserManagement\BIN\um.Ris.exe (C:\Program Files\Siemens\Automation\UserManagement\BIN\IPCSecCom.exe ->) (Siemens UMC -> SIEMENS AG) C:\Program Files\Siemens\Automation\UserManagement\BIN\um.sso.exe (DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxEM.exe (DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\shtctky.exe (DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\tphkload.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\tposd.exe (ETDService.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe (explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (explorer.exe ->) (Manhattan Engineering Incorporated -> Kite) C:\Program Files\Kite\kited.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (explorer.exe ->) (Microsoft Corporation -> Sysinternals - www.sysinternals.com) C:\Users\RafałKubiak\Downloads\ZoomIt\ZoomIt64.exe (explorer.exe ->) (OpenVPN Inc. -> ) C:\Program Files\OpenVPN\bin\openvpn-gui.exe (explorer.exe ->) (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung DeX\SamsungDeX.exe (explorer.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe <2> (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe (services.exe ->) (GLAVSOFT, OOO -> GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe <2> (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_003a6d3c4c50c291\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_1dc9fc8d5e442f6a\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\sgx_psw.inf_amd64_1e59f5ec7049260a\aesm_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\ThunderboltService.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_183917c66152901d\lib\SocketHeciServer.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\System32\DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\tphkload.exe (services.exe ->) (Lenovo -> Lenovo Group Limited) C:\Windows\SysWOW64\EasyResume.exe (services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\ibmpmsvc.exe (services.exe ->) (Lenovo -> Lenovo.) C:\Windows\System32\LITSSvc.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Manhattan Engineering Incorporated -> Kite) C:\Program Files\Kite\KiteService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Microsoft Update Health Tools\uhssvc.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe (services.exe ->) (Node.js Foundation -> Node.js) C:\Program Files\Siemens\Automation\TIAADMIN\server\node.exe <2> (services.exe ->) (OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bbb0597391852f64\RtkAudUService64.exe <3> (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (Siemens AG -> Siemens AG) C:\Program Files (x86)\Siemens\Automation\WinCC RT Advanced\SmartServer.exe (services.exe ->) (Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe (services.exe ->) (Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe (services.exe ->) (Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64x.exe (services.exe ->) (Siemens AG -> SIEMENS AG) C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe (services.exe ->) (Siemens AG -> SoftwareOption GmbH) C:\Program Files\Common Files\Siemens\SimNetCom\TraceConceptX.exe (services.exe ->) (Siemens AG) [Brak podpisu cyfrowego] C:\Program Files\Common Files\Siemens\TelemetryConnector\bin\Siemens.Simatic.TelemetryConnector.WindowsService.exe (services.exe ->) (Siemens UMC -> SIEMENS AG) C:\Program Files\Siemens\Automation\UserManagement\BIN\IPCSecCom.exe (services.exe ->) (Smart Sound Technology -> Intel) C:\Windows\System32\cAVS\Intel(R) Audio Service\IntelAudioService.exe (services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated.) C:\Windows\System32\SynRpcServer.exe (services.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe (services.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe (svchost.exe ->) (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc\AdobeNotificationClient.exe (svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_12ed482042e0dee5\igfxext.exe (svchost.exe ->) (Lenovo -> Lenovo) C:\Windows\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.1790_none_7df2aec07ca10e81\TiWorker.exe (svchost.exe ->) (Siemens AG -> Siemens AG) C:\Program Files\Common Files\Siemens\AlmPanelPlugin\ALMPanelPlugin.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [tvncontrol] => C:\Program Files\TightVNC\tvnserver.exe [1803440 2020-12-17] (GLAVSOFT, OOO -> GlavSoft LLC.) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> ) HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5929680 2022-08-02] (Adobe Inc. -> Adobe Systems Inc.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707256 2021-12-15] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [1067528 2022-07-25] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [289560 2022-08-09] (Intel Corporation -> Intel) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [com.squirrel.Teams.Teams] => C:\Users\RafałKubiak\AppData\Local\Microsoft\Teams\Update.exe [2508520 2022-08-10] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [ZoomIt] => C:\Users\RafałKubiak\Downloads\ZoomIt\ZoomIt64.exe [588152 2021-05-12] (Microsoft Corporation -> Sysinternals - www.sysinternals.com) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [OpenVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [825720 2021-04-21] (OpenVPN Inc. -> ) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5491920 2022-08-02] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [Samsung DeX] => C:\Program Files (x86)\Samsung\Samsung DeX\SamsungDeX.exe [10929320 2021-12-03] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) HKU\S-1-12-1-823460234-1297740821-3199230651-3912469372\...\Run: [Kite] => C:\Program Files\Kite\kited.exe [562179520 2021-06-10] (Manhattan Engineering Incorporated -> Kite) HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc) HKLM\...\Print\Monitors\C3851SeriesPCL Language Monitor: C:\WINDOWS\system32\KOAXPJ_L.DLL [25496 2021-04-29] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\Software\...\AppCompatFlags\Custom\Siemens.Automation.Portal.exe: [{479eafda-32b8-47e0-9c89-d68f3b8a098f}.sdb] -> Siemens.Automation.Portal.exe HKLM\Software\...\AppCompatFlags\Custom\Siemens.Simatic.Pct.ApplicationLoader.exe: [{15861d9f-b664-4b88-9140-dad52ba7ee41}.sdb] -> SIMATIC S7-PCT Advanced Services HKLM\Software\...\AppCompatFlags\InstalledSDB\{15861d9f-b664-4b88-9140-dad52ba7ee41}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{15861d9f-b664-4b88-9140-dad52ba7ee41}.sdb [2019-03-04] HKLM\Software\...\AppCompatFlags\InstalledSDB\{479eafda-32b8-47e0-9c89-d68f3b8a098f}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{479eafda-32b8-47e0-9c89-d68f3b8a098f}.sdb [2019-10-23] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\104.0.5112.81\Installer\chrmstp.exe [2022-08-09] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{E5931AF4-2A8F-48A5-AFC8-0E8A268358A0}] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodeMeter Control Center.lnk [2021-07-20] ShortcutTarget: CodeMeter Control Center.lnk -> C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2021-08-03] ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Network Server.lnk [2021-07-20] ShortcutTarget: Network Server.lnk -> C:\Program Files (x86)\WIBUKEY\Server\WkSvMgr.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) Startup: C:\Users\RafałKubiak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2022-08-10] ShortcutTarget: Wysyłanie do programu OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {02A1FBA7-BFE8-4384-8EA1-C5391D230DAD} - System32\Tasks\Lenovo\Power Manager\Uninstall task => C:\WINDOWS\SysWOW64\PowerMgrInst.exe [62152 2020-12-20] (Lenovo -> ) Task: {23E3E18F-4799-428A-B846-AC4BE77CCE3D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) Task: {2C90E53E-DD24-43E4-B0B7-C696453970E4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {2CD7A880-24A2-47A8-830B-29EAB4F00B2F} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145328 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) Task: {3C56987F-2F6F-41DF-9C68-D3D258F7C73A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {400156A3-3202-40A5-B76B-2A26647779EE} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) Task: {41AE50E6-98D6-48B0-B217-11BADD0F2720} - System32\Tasks\Opera scheduled Autoupdate 1637621702 => C:\Users\RafałKubiak\AppData\Local\Programs\Opera\launcher.exe [2527216 2022-08-03] (Opera Norway AS -> Opera Software) Task: {4DB233EC-314F-4FC8-862C-0E0BF52ACD60} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1897824 2022-03-09] (Lenovo -> ) Task: {60F81814-F2F8-49CC-A0E8-3D6DA99C76D7} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3427104 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {699B42C6-8DD9-40AB-8312-020ACD798991} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1907712 2021-02-25] () [Brak podpisu cyfrowego] Task: {6B5541E8-E66C-4EB4-A151-13D52F810B9C} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [66480 2021-12-04] (Microsoft Corporation -> Microsoft) Task: {6F0AF8D7-49F8-43C3-A03B-1BF98B8BCC75} - System32\Tasks\CorelUpdateHelperTask-D4F2250D57A03796C361945D6E693D65 => c:\Program Files (x86)\Corel\CUH\v2\CUH.exe -resume (Brak pliku) Task: {702B57EA-7C4D-41AE-9CF4-1030F42C1FBC} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {74450185-0682-4D28-A5D1-E039ED2FC19D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23713200 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) Task: {7452FDE2-8649-4EAF-8005-50D446B570F7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC) Task: {75468531-5813-4384-ADDF-94B89C0E033E} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1897824 2022-03-09] (Lenovo -> ) Task: {781AD0B9-7305-44E5-9756-0FC305A7A3EE} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (Brak pliku) Task: {91312BA2-14BF-4F5F-B31A-C8484744B548} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC) Task: {9157468C-CAAF-4FB8-90BE-DC0302C05F90} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bbb0597391852f64\RtkAudUService64.exe [3495904 2022-05-19] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {B45694F3-FBC0-41CA-9BCA-F7FAFBB6D5B0} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [61856 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) Task: {C657CE73-8FB6-4E50-9F8A-7509B3C2B256} - System32\Tasks\Lenovo\Power Manager\Background monitor => C:\WINDOWS\SysWOW64\Lenovo\PowerMgr\PowerMgr.exe [128976 2022-05-17] (Lenovo -> Lenovo) Task: {C9423ABA-528A-462E-BAC8-179C1A4B205B} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation) Task: {D97D900B-5A6E-4C29-9CCF-016CB0874681} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [145328 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) Task: {E5D26E6B-ED91-466B-B7CF-3C15EC35FD18} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\WINDOWS\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0985aab2-c8fd-4fa1-8255-f36123ccc6dd}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{654989df-5305-4c0f-8be1-0ca1741ba7e4}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Profile: C:\Users\RafałKubiak\AppData\Local\Microsoft\Edge\User Data\Default [2022-08-11] FireFox: ======== FF DefaultProfile: bo3m9pso.default FF DefaultProfile: 9nrhdhsq.default FF ProfilePath: C:\Users\RafałKubiak\AppData\Roaming\Zotero\Zotero\Profiles\bo3m9pso.default [2022-03-08] FF ProfilePath: C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\9nrhdhsq.default [2021-04-30] FF ProfilePath: C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release [2022-08-11] FF Extension: (Facebook Container) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\@contain-facebook.xpi [2022-03-17] FF Extension: (I don't care about cookies) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [2022-06-22] FF Extension: (DuckDuckGo Privacy Essentials) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\jid1-ZAdIEUB7XOzOJw@jetpack.xpi [2022-08-04] FF Extension: (NordVPN - A VPN Proxy Extension for Firefox) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\nordvpnproxy@nordvpn.com.xpi [2022-08-10] FF Extension: (uBlock Origin) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-06-22] FF Extension: (Zotero Connector) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\zotero@chnm.gmu.edu.xpi [2022-07-03] [UpdateUrl:hxxps://www.zotero.org/download/connector/firefox/release/updates.json] FF Extension: (Startpage.com – prywatna wyszukiwarka) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{20fc2e06-e3e4-4b2b-812b-ab431220cada}.xpi [2021-11-14] FF Extension: (Bitwarden - darmowy menedżer haseł) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{446900e4-71c2-419f-a6a7-df9c091e268b}.xpi [2022-08-09] FF Extension: (Absolute Right Click) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{9350bc42-47fb-4598-ae0f-825e3dd9ceba}.xpi [2022-02-14] FF Extension: (Selenium IDE) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{a6fd85ed-e919-4a43-a5af-8da18bda539f}.xpi [2022-02-11] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2022-04-19] FF Extension: (Video DownloadHelper) - C:\Users\RafałKubiak\AppData\Roaming\Mozilla\Firefox\Profiles\ke6sep4l.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-07-03] FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-04-27] FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi FF Plugin: @java.com/DTPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\dtplugin\npDeployJava1.dll [2022-03-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.321.2 -> C:\Program Files\Java\jre1.8.0_321\bin\plugin2\npjp2.dll [2022-03-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2022-07-25] (Adobe Inc. -> Adobe Systems) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-03-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-07-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-08-02] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2022-07-25] (Adobe Inc. -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default [2022-08-11] CHR Extension: (uBlock Origin) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-06-22] CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-07-27] CHR Extension: (I don't care about cookies) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihnjjcciajhdojfnbdddfaoknhalnja [2022-06-22] CHR Extension: (Google Docs Offline) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-07-22] CHR Extension: (Selenium IDE) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\mooikfkahbdckldjjndioackbalphokd [2021-12-08] CHR Extension: (Chrome Web Store Payments) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-12] CHR Extension: (Bitwarden - Free Password Manager) - C:\Users\RafałKubiak\AppData\Local\Google\Chrome\User Data\Default\Extensions\nngceckbapebfimnlniiiahkandclblb [2022-08-10] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] Opera: ======= OPR Profile: C:\Users\RafałKubiak\AppData\Roaming\Opera Software\Opera Stable [2022-08-11] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\RafałKubiak\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-07-04] OPR Extension: (Opera Crypto Wallet) - C:\Users\RafałKubiak\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-07-20] OPR Extension: (Amazon Assistant Promotion) - C:\Users\RafałKubiak\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-11-23] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [923656 2022-07-25] (Adobe Inc. -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3815712 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3580200 2022-04-13] (Adobe Inc. -> Adobe Systems, Incorporated) R2 almservice; C:\Program Files\Common Files\Siemens\sws\almsrv\almsrv64x.exe [2240376 2019-09-13] (Siemens AG -> SIEMENS AG) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12102608 2022-08-08] (Microsoft Corporation -> Microsoft Corporation) R2 CmWebAdmin.exe; C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe [12002208 2019-12-16] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) U2 cortsmartserver; C:\Program Files (x86)\Siemens\Automation\WinCC RT Advanced\SmartServer.exe [906616 2019-10-23] (Siemens AG -> Siemens AG) R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_0222c12a396c055f\DAX3API.exe [2301912 2021-01-04] (Dolby Laboratories, Inc. -> Dolby Laboratories) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [40728 2022-08-09] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [188696 2022-08-09] (Intel Corporation -> Intel) R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [437680 2022-01-24] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 KiteService; C:\Program Files\Kite\KiteService.exe [140864 2021-06-10] (Manhattan Engineering Incorporated -> Kite) R2 Lenovo Instant On; C:\WINDOWS\SysWOW64\EasyResume.exe [2351304 2020-12-20] (Lenovo -> Lenovo Group Limited) R2 LITSSVC; C:\WINDOWS\System32\LITSSvc.exe [1217488 2022-04-12] (Lenovo -> Lenovo.) S2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [906216 2022-03-27] (Lenovo -> Lenovo) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8680192 2022-08-11] (Malwarebytes Inc. -> Malwarebytes) R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [73592 2021-04-21] (OpenVPN Inc. -> The OpenVPN Project) S2 S7DOS SCP Remote; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\S7O.TunnelServiceHost.exe [67304 2019-02-27] (Siemens AG -> Siemens AG) R2 s7oiehsx64; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oiehsx64.exe [161144 2019-10-16] (Siemens AG -> SIEMENS AG) R2 S7TraceServiceX; C:\Program Files\Common Files\Siemens\Automation\TraceEngine\bin\S7TraceService64X.exe [276344 2019-10-16] (Siemens AG -> SIEMENS AG) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6232176 2022-07-17] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Siemens Diagnostics Data Collector Service; C:\Program Files\Common Files\Siemens\ETWEventCollector\bin\Siemens.Automation.Tracing.ETW.EventCollector.ServiceHost.exe [30160 2019-10-23] (SIEMENS AG -> Siemens AG) R2 Siemens Telemetry Connector Service; C:\Program Files\Common Files\Siemens\TelemetryConnector\bin\Siemens.Simatic.TelemetryConnector.WindowsService.exe [8704 2019-10-16] (Siemens AG) [Brak podpisu cyfrowego] R2 SiemensTiaAdmin; C:\Program Files\Siemens\Automation\TIAADMIN\server\node.exe [20608664 2019-10-14] (Node.js Foundation -> Node.js) R2 SIMATIC PnDiscovery Service; C:\Program Files\Common Files\Siemens\Automation\Simatic OAM\bin\s7oPNDiscoveryx64.exe [781688 2019-10-16] (Siemens AG -> SIEMENS AG) S3 ss_conn_launcher_service; C:\WINDOWS\System32\Samsung\EasySetup\ss_conn_launcher.exe [182392 2021-10-14] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2021-09-24] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [920768 2021-09-24] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 SynHsaService; C:\WINDOWS\System32\SynRpcServer.exe [196040 2022-06-13] (Synaptics Incorporated -> Synaptics Incorporated.) R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [254088 2021-10-11] (Intel Corporation -> Intel Corporation) R2 TPHKLOAD; C:\WINDOWS\System32\DriverStore\FileRepository\fn.inf_amd64_6df953d54d3099b9\driver\TPHKLOAD.exe [465192 2021-03-30] (Lenovo -> Lenovo Group Limited) R2 TraceConceptX; C:\Program Files\Common Files\Siemens\SimNetCom\TraceConceptX.exe [87416 2019-04-09] (Siemens AG -> SoftwareOption GmbH) R2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [1803440 2020-12-17] (GLAVSOFT, OOO -> GlavSoft LLC.) S4 UMC Service; C:\Program Files\Siemens\Automation\UserManagement\BIN\UMCService.exe [341344 2019-09-26] (Siemens UMC -> SIEMENS AG) R2 umscsvc; C:\Program Files\Siemens\Automation\UserManagement\BIN\IPCSecCom.exe [476512 2019-09-26] (Siemens UMC -> SIEMENS AG) S4 UP Service; C:\Program Files\Siemens\Automation\UserManagement\BIN\UPService.exe [197472 2019-09-26] (Siemens UMC -> SIEMENS AG) S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [746736 2021-10-18] (Oracle Corporation -> Oracle Corporation) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [147392 2019-05-01] (Microsoft Corporation -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\NisSrv.exe [3120992 2022-06-26] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2205.7-0\MsMpEng.exe [133544 2022-06-26] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AKCCID; C:\WINDOWS\System32\drivers\AKCCID.sys [96384 2019-11-26] (Alcorlink Corp. -> Generic) S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) R3 cortkbdrtmwdf; C:\WINDOWS\system32\drivers\cortkbdrtmwdf.sys [25576 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-14] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 dpmconv; C:\WINDOWS\System32\drivers\dpmconv.sys [275504 2019-02-27] (Siemens AG -> Siemens AG) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [158640 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-08-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [192960 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [74704 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2022-08-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [181992 2022-08-11] (Malwarebytes Inc. -> Malwarebytes) R1 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [38888 2022-03-27] (Lenovo -> Lenovo) R3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1140584 2022-04-19] (Realtek Semiconductor Corp. -> Realtek Corporation) R3 s7odpx2x64; C:\WINDOWS\System32\drivers\s7odpx2x64.sys [94432 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7oppilx64; C:\WINDOWS\System32\Drivers\s7oppilx64.sys [47448 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7oppinx64; C:\WINDOWS\System32\drivers\s7oppinx64.sys [117472 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7oserix64; C:\WINDOWS\System32\Drivers\s7oserix64.sys [148312 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7osmcax64; C:\WINDOWS\System32\drivers\s7osmcax64.sys [228064 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7osobux64; C:\WINDOWS\System32\drivers\s7osobux64.sys [120608 2019-02-27] (Microsoft Windows Hardware Compatibility Publisher -> SIEMENS AG) R3 s7otmcd64x; C:\WINDOWS\System32\Drivers\s7otmcd64x.sys [202976 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7otranx64; C:\WINDOWS\System32\drivers\s7otranx64.sys [281904 2019-02-27] (Siemens AG -> SIEMENS AG) R3 s7otsadx64; C:\WINDOWS\System32\drivers\s7otsadx64.sys [221920 2019-02-27] (Siemens AG -> SIEMENS AG) R2 s7ousbu64x; C:\WINDOWS\System32\drivers\s7ousbu64x.sys [157528 2019-02-27] (Siemens AG -> SIEMENS AG) R2 s7PnDiscoveryDriver; C:\WINDOWS\system32\DRIVERS\s7PnDiscoveryDriver.sys [46384 2019-02-27] (Siemens AG -> SIEMENS AG) R2 Snpnio; C:\WINDOWS\system32\DRIVERS\snpnio.sys [107568 2019-02-27] (Siemens AG -> Windows (R) Win 7 DDK provider) R2 SNTIE; C:\WINDOWS\system32\DRIVERS\sntie.sys [305856 2019-02-27] (Siemens AG -> Siemens AG) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-14] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [43640 2021-10-14] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2021-06-17] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 TbtP2pNdisDrv; C:\WINDOWS\System32\drivers\TbtP2pNdisDrv.sys [435664 2019-12-18] (TBT_DCH_DRV_PROD -> Intel Corporation) R3 usbaud; C:\WINDOWS\System32\drivers\usbaud64w10.sys [99672 2021-07-27] (Synaptics Incorporated -> Synaptics Inc.) R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [239664 2021-10-18] (Oracle Corporation -> Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [249568 2021-10-18] (Oracle Corporation -> Oracle Corporation) R3 vsnl2ada; C:\WINDOWS\System32\drivers\vsnl2ada.sys [143920 2019-02-27] (Siemens AG -> SIEMENS AG) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [452856 2022-06-26] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [91384 2022-06-26] (Microsoft Windows -> Microsoft Corporation) R2 WIBUKEY; C:\WINDOWS\System32\DRIVERS\WibuKey64.sys [118200 2020-03-18] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) R3 WiMan; C:\WINDOWS\System32\DriverStore\FileRepository\wiman.inf_amd64_c34c898c5c4d0406\WiMan\WiMan.sys [168008 2021-12-08] (Intel Corporation -> Intel Corporation) R3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2021-06-17] (WireGuard LLC -> WireGuard LLC) S3 MpKslda080802; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0FA7540E-07A9-4663-9094-E830747A9D6F}\MpKslDrv.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-08-11 18:43 - 2022-08-11 18:43 - 000044482 _____ C:\Users\RafałKubiak\Downloads\FRST.txt 2022-08-11 18:43 - 2022-08-11 18:43 - 000000000 ____D C:\Users\RafałKubiak\Downloads\FRST-OlderVersion 2022-08-11 18:43 - 2022-08-11 18:43 - 000000000 ____D C:\FRST 2022-08-11 18:42 - 2022-08-11 18:43 - 002370048 _____ (Farbar) C:\Users\RafałKubiak\Downloads\FRST64.exe 2022-08-11 18:30 - 2022-08-11 18:30 - 000192960 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2022-08-11 18:30 - 2022-08-11 18:30 - 000181992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2022-08-11 18:30 - 2022-08-11 18:30 - 000074704 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2022-08-11 18:29 - 2022-08-11 18:29 - 000002033 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-08-11 18:29 - 2022-08-11 18:29 - 000002021 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-08-11 18:29 - 2022-08-11 18:29 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\mbam 2022-08-11 18:28 - 2022-08-11 18:28 - 002556344 _____ (Malwarebytes) C:\Users\RafałKubiak\Downloads\MBSetup.exe 2022-08-11 18:28 - 2022-08-11 18:28 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-08-11 18:28 - 2022-08-11 18:28 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-08-11 18:28 - 2022-08-11 18:28 - 000158640 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2022-08-11 18:28 - 2022-08-11 18:28 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2022-08-11 18:28 - 2022-08-11 18:28 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-08-11 18:28 - 2022-08-11 18:28 - 000000000 ____D C:\Program Files\Malwarebytes 2022-08-10 20:33 - 2022-08-10 20:33 - 000062047 _____ C:\Users\RafałKubiak\Downloads\APK-33603-2022-08-36.pdf 2022-08-10 20:30 - 2022-08-10 20:30 - 000208104 _____ C:\Users\RafałKubiak\Downloads\wypowiedzenie PO6VC82.pdf 2022-08-10 19:57 - 2022-08-10 19:57 - 000144829 _____ C:\Users\RafałKubiak\Downloads\pinsyg.zip 2022-08-10 19:56 - 2022-08-10 19:56 - 000112720 _____ C:\Users\RafałKubiak\Downloads\Oferta_4187175_2.pdf 2022-08-10 19:50 - 2022-08-10 19:50 - 000041003 _____ C:\Users\RafałKubiak\Downloads\Propozycja+ubezpieczenia+nr+T1315602824.pdf 2022-08-10 19:06 - 2022-08-10 19:06 - 000776662 _____ C:\Users\RafałKubiak\Downloads\RKU 911028152956.pdf 2022-08-10 18:52 - 2022-08-10 18:52 - 000001510 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2022-08-10 18:25 - 2022-08-10 18:25 - 000190240 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-15-15181-1_3675.pdf 2022-08-10 18:04 - 2022-08-11 18:27 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-08-09 18:33 - 2022-08-09 18:33 - 000000112 ___SH C:\bootTel.dat 2022-08-09 18:08 - 2022-08-09 18:08 - 000712787 _____ C:\Users\RafałKubiak\Downloads\zlommebdruk.pdf 2022-08-08 20:18 - 2022-08-08 20:18 - 000034237 _____ C:\Users\RafałKubiak\Downloads\transfer_20220808.pdf 2022-08-08 19:45 - 2022-08-08 19:45 - 000212314 _____ C:\Users\RafałKubiak\Downloads\giemza VFR wypowiedzenie 2021.pdf 2022-08-08 19:35 - 2022-08-08 19:35 - 000290910 _____ C:\Users\RafałKubiak\Downloads\RKU KMHP1225294.pdf 2022-08-08 19:34 - 2022-08-08 19:34 - 000061800 _____ C:\Users\RafałKubiak\Downloads\pobierz APK.pdf 2022-08-08 19:23 - 2022-08-08 19:24 - 000000000 ___HD C:\adobeTemp 2022-08-08 16:28 - 2022-08-08 16:28 - 000025800 _____ C:\Users\RafałKubiak\Downloads\config.bin 2022-08-06 14:30 - 2022-08-06 14:30 - 000000020 _____ C:\Users\RafałKubiak\Downloads\marianna.txt 2022-08-06 13:32 - 2022-08-06 13:32 - 000005967 _____ C:\Users\RafałKubiak\Downloads\client(3).ovpn 2022-08-05 16:29 - 2022-08-05 16:29 - 000045399 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 14_2022-1.pdf 2022-08-05 16:27 - 2022-08-05 16:27 - 000045399 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 14_2022.pdf 2022-07-31 23:29 - 2022-07-31 23:29 - 000411125 _____ C:\Users\RafałKubiak\Downloads\polisa+920025845667.pdf 2022-07-28 13:12 - 2022-07-04 18:27 - 001319536 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCtrl.exe 2022-07-28 13:12 - 2022-07-04 18:27 - 000732808 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETD.sys 2022-07-28 13:12 - 2022-07-04 18:27 - 000642160 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDCmds.dll 2022-07-28 13:12 - 2022-07-04 18:27 - 000483464 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\ETDApix.dll 2022-07-28 13:12 - 2022-07-04 18:27 - 000474224 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDFavorite.dll 2022-07-28 13:12 - 2022-07-04 18:27 - 000446064 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDUn_inst.exe 2022-07-28 13:12 - 2022-07-04 18:27 - 000434288 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\LenovoAPI.dll 2022-07-28 13:12 - 2022-07-04 18:27 - 000255600 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\ETDService.exe 2022-07-28 13:12 - 2022-07-04 18:27 - 000040048 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDSMBus.sys 2022-07-28 13:12 - 2022-07-04 18:27 - 000035952 _____ (ELAN Microelectronics Corp.) C:\WINDOWS\system32\Drivers\ETDHSA.sys 2022-07-28 13:12 - 2022-07-04 18:27 - 000029808 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDMiniPTP.sys 2022-07-28 13:12 - 2022-05-01 16:09 - 008818272 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw08.sys 2022-07-28 13:12 - 2022-05-01 16:09 - 002687540 _____ C:\WINDOWS\system32\Drivers\Netwfw08.dat 2022-07-28 13:12 - 2022-05-01 16:09 - 001626216 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter08.dll 2022-07-28 11:59 - 2022-07-28 13:22 - 000016775 _____ C:\Users\RafałKubiak\Downloads\OBWODY ELEKTRYCZNE.xlsx 2022-07-28 11:59 - 2022-07-28 11:59 - 000000165 ____H C:\Users\RafałKubiak\Downloads\~$OBWODY ELEKTRYCZNE.xlsx 2022-07-27 12:59 - 2022-07-27 12:59 - 000371984 _____ C:\Users\RafałKubiak\Desktop\czerniak.pdf 2022-07-25 22:05 - 2022-07-25 22:06 - 000000000 ____D C:\Users\RafałKubiak\Downloads\sowin 2022-07-25 17:04 - 2022-07-25 17:04 - 000001394 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2022-07-20 17:49 - 2022-07-20 17:49 - 005425155 _____ C:\Users\RafałKubiak\Desktop\pdfjs.pdf 2022-07-20 14:35 - 2022-07-20 14:35 - 000190017 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-14-15181-1_9005.pdf 2022-07-20 14:35 - 2022-07-20 14:35 - 000189994 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-13-15181-1_6003.pdf 2022-07-20 14:34 - 2022-07-20 14:34 - 000190157 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-12-15181-1_7088.pdf 2022-07-20 14:33 - 2022-07-20 14:33 - 000392448 _____ C:\Users\RafałKubiak\Downloads\Niezbędnik_inspekcja_zdjeciowa_AC.pdf 2022-07-20 14:12 - 2022-07-20 14:12 - 000000194 _____ C:\WINDOWS\system32\k900_type_0_restore.txt 2022-07-19 09:18 - 2022-07-19 09:18 - 001168434 _____ C:\Users\RafałKubiak\Downloads\287CECD185.pdf 2022-07-19 08:48 - 2022-07-19 08:48 - 000000000 ____D C:\Users\RafałKubiak\Downloads\820002251387 2022-07-18 23:03 - 2022-05-19 01:01 - 051057688 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT 2022-07-17 18:51 - 2022-07-17 18:51 - 000693248 _____ C:\WINDOWS\system32\FsNVSDeviceSource.dll 2022-07-17 18:51 - 2022-07-17 18:51 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe 2022-07-17 18:51 - 2022-07-17 18:51 - 000026624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mode.com 2022-07-17 18:51 - 2022-07-17 18:51 - 000018944 _____ C:\WINDOWS\SysWOW64\WsdProviderUtil.dll 2022-07-17 18:51 - 2022-07-17 18:51 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tree.com 2022-07-17 18:51 - 2022-07-17 18:51 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\chcp.com 2022-07-17 18:50 - 2022-07-17 18:50 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000640512 _____ C:\WINDOWS\system32\SettingSyncDownloadHelper.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe 2022-07-17 18:50 - 2022-07-17 18:50 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000270848 _____ C:\WINDOWS\system32\EsclScan.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000152064 _____ C:\WINDOWS\system32\EsclProtocol.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000061952 _____ C:\WINDOWS\system32\printticketvalidation.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000057344 _____ C:\WINDOWS\system32\APMonUI.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\mode.com 2022-07-17 18:50 - 2022-07-17 18:50 - 000024576 _____ C:\WINDOWS\system32\WsdProviderUtil.dll 2022-07-17 18:50 - 2022-07-17 18:50 - 000020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\tree.com 2022-07-17 18:50 - 2022-07-17 18:50 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\chcp.com 2022-07-17 18:50 - 2022-07-17 18:50 - 000011811 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-07-17 18:43 - 2022-07-17 18:43 - 000000000 ___HD C:\$WinREAgent 2022-07-15 10:11 - 2022-07-15 10:12 - 000209060 _____ C:\Users\RafałKubiak\Downloads\wypowiedzenie CLIO klimacki.pdf 2022-07-15 10:09 - 2022-07-15 10:09 - 000771005 _____ C:\Users\RafałKubiak\Downloads\wydruk (25).pdf 2022-07-14 21:13 - 2022-06-13 01:55 - 002251288 _____ (Intel Corporation) C:\WINDOWS\system32\qve.signed.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 002104328 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_dcap_quoteverify.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000805928 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_quote_ex.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000693768 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_quote_ex.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000693768 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_epid.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000688136 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_launch.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000173064 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_dcap_ql.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000130600 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_urts.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000106504 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_urts.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000057864 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_enclave_common.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000047128 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_platform.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000042528 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_uae_service.dll 2022-07-14 21:13 - 2022-06-13 01:55 - 000035848 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\sgx_uae_service.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 001113120 _____ (Intel Corporation) C:\WINDOWS\system32\qe3.signed.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000806432 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_epid.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000801824 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_launch.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000712216 _____ (Intel Corporation) C:\WINDOWS\system32\pce.signed.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000145944 _____ (Intel Corporation) C:\WINDOWS\system32\id_enclave.signed.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000072736 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_enclave_common.dll 2022-07-14 21:13 - 2022-06-13 01:54 - 000057896 _____ (Intel Corporation) C:\WINDOWS\system32\sgx_platform.dll 2022-07-13 23:45 - 2022-07-13 23:45 - 000399246 _____ C:\Users\RafałKubiak\Downloads\wydruk (24).pdf 2022-07-11 18:22 - 2022-07-11 18:22 - 000134177 _____ C:\Users\RafałKubiak\Downloads\3437238_1_polisy.zip 2022-07-11 18:19 - 2022-07-11 18:19 - 000116160 _____ C:\Users\RafałKubiak\Downloads\Oferta_3437238_1.pdf 2022-07-10 15:31 - 2022-07-10 15:31 - 000536442 _____ C:\Users\RafałKubiak\Downloads\820002251387.zip 2022-07-07 14:22 - 2020-12-09 09:03 - 014198961 _____ C:\Users\RafałKubiak\Desktop\Axial final v3.pbix 2022-07-06 22:53 - 2022-07-06 22:53 - 000033613 _____ C:\Users\RafałKubiak\Downloads\transfer_20220706.pdf 2022-07-06 10:22 - 2022-07-06 10:22 - 000501292 _____ C:\Users\RafałKubiak\Documents\Risk+Management+-+Dual+Protocol.mht 2022-07-05 18:36 - 2022-07-05 18:36 - 000049578 _____ C:\Users\RafałKubiak\Downloads\potwierdzenie_30766329100.pdf 2022-07-05 17:39 - 2022-07-05 17:39 - 000057166 _____ C:\Users\RafałKubiak\Desktop\Ubicredi c22070516350.pdf 2022-07-05 14:19 - 2022-07-05 14:19 - 000045302 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 13_2022.pdf 2022-07-05 10:02 - 2022-07-05 10:02 - 000123122 _____ C:\Users\RafałKubiak\Downloads\Informacja dla dyplomantów - 30092022 r.zip 2022-07-04 02:11 - 2022-07-04 02:13 - 000466341 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi - schedule.pdf 2022-07-04 02:07 - 2022-07-04 02:07 - 000300201 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi 2022-07-03.pdf 2022-07-04 01:16 - 2022-07-06 10:23 - 000065372 _____ C:\Users\RafałKubiak\Downloads\aps for ubicredi PERT.pptx 2022-07-04 00:37 - 2022-07-04 00:37 - 347830989 _____ C:\Users\RafałKubiak\Downloads\ZP Lab 7-8.mkv 2022-07-03 23:47 - 2022-07-06 10:23 - 000112107 _____ C:\Users\RafałKubiak\Downloads\aps for ubicredi.pptx 2022-07-03 23:20 - 2022-07-05 09:08 - 000017797 _____ C:\Users\RafałKubiak\Downloads\Harmonogramu projektu aplikacji dla Ubicredi.xlsx 2022-07-03 22:10 - 2022-07-03 22:10 - 000219662 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi final.doc.pdf 2022-07-03 22:08 - 2022-07-03 22:08 - 000218964 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi .doc.pdf 2022-07-03 22:08 - 2022-07-03 22:08 - 000200299 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi.pdf 2022-07-03 20:34 - 2022-07-03 22:07 - 000202672 _____ C:\Users\RafałKubiak\Downloads\Apps for Ubicredi.doc.pdf 2022-07-03 18:49 - 2022-07-03 18:49 - 000114678 _____ C:\Users\RafałKubiak\Downloads\gantt-chart_L.xlsx 2022-07-03 18:49 - 2022-07-03 18:49 - 000016868 _____ C:\Users\RafałKubiak\Downloads\Szablon_harmonogramu.xlsx 2022-06-30 23:31 - 2022-06-30 23:31 - 039191782 _____ C:\Users\RafałKubiak\Downloads\SKRYPT_2011.pdf 2022-06-30 23:04 - 2022-06-13 15:42 - 003789792 _____ (Synaptics Incorporated.) C:\WINDOWS\system32\AuthenticateFAM_SecureFP_UI.dll 2022-06-30 23:04 - 2022-06-13 15:42 - 003764168 _____ (Synaptics Incorporated.) C:\WINDOWS\SysWOW64\AuthenticateFAM_SecureFP_UI.dll 2022-06-30 23:04 - 2022-06-13 15:42 - 000509424 _____ (Synaptics Incorporated.) C:\WINDOWS\system32\AuthenticateFAM_SecureFP.dll 2022-06-30 23:04 - 2022-06-13 15:42 - 000376808 _____ (Synaptics Incorporated.) C:\WINDOWS\SysWOW64\AuthenticateFAM_SecureFP.dll 2022-06-29 20:11 - 2022-06-29 20:11 - 000047957 _____ C:\Users\RafałKubiak\Downloads\potwierdzenie_30798801700.pdf 2022-06-27 21:33 - 2022-06-27 21:33 - 000214934 _____ C:\Malwina - wypo.pdf 2022-06-27 21:30 - 2022-06-27 21:30 - 000000000 ____D C:\Users\RafałKubiak\.ms-ad 2022-06-27 21:29 - 2022-06-27 21:29 - 000871292 _____ C:\Users\RafałKubiak\Downloads\1656358187167.zip 2022-06-27 19:05 - 2022-08-11 00:19 - 000000004 ____H C:\ProgramData\cm-lock 2022-06-26 22:12 - 2022-06-26 22:12 - 000873866 _____ C:\Users\RafałKubiak\Downloads\1656274318105.zip 2022-06-20 14:09 - 2022-06-20 14:09 - 000033778 _____ C:\Users\RafałKubiak\Downloads\transfer_20220620.pdf 2022-06-20 14:08 - 2022-06-20 14:08 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2022-06-20 14:08 - 2022-06-20 14:08 - 000479744 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2022-06-20 14:08 - 2022-06-20 14:08 - 000232288 _____ C:\WINDOWS\system32\containerdevicemanagement.dll 2022-06-20 14:08 - 2022-06-20 14:08 - 000104448 _____ C:\WINDOWS\system32\nettraceex.dll 2022-06-20 14:08 - 2022-06-20 14:08 - 000040960 _____ C:\WINDOWS\system32\uwfservicingapi.dll 2022-06-15 22:17 - 2022-06-15 22:17 - 000000165 ____H C:\Users\RafałKubiak\Downloads\~$3_CWICZENIE.xlsx 2022-06-15 18:51 - 2022-06-15 18:51 - 000189986 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-10-15181-1_5228.pdf 2022-06-15 18:51 - 2022-06-15 18:51 - 000189985 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-11-15181-1_7409 (1).pdf 2022-06-15 18:50 - 2022-06-15 18:50 - 000190082 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-11-15181-1_7409.pdf 2022-06-15 00:15 - 2022-06-15 00:15 - 000233183 _____ C:\Users\RafałKubiak\Downloads\polisa_50009750399.pdf 2022-06-13 10:23 - 2022-06-13 10:23 - 000000000 ____D C:\Users\RafałKubiak\Downloads\Master-20220613T080758Z-001 2022-06-13 10:08 - 2022-06-13 10:08 - 105290292 _____ C:\Users\RafałKubiak\Downloads\Master-20220613T080758Z-001.zip 2022-06-12 20:57 - 2022-06-12 20:57 - 000098737 _____ C:\Users\RafałKubiak\Downloads\wydruk (23).pdf 2022-06-12 20:56 - 2022-06-12 20:57 - 000549190 _____ C:\Users\RafałKubiak\Downloads\wydruk (22).pdf 2022-06-11 15:04 - 2022-06-11 15:04 - 000220537 _____ C:\Users\RafałKubiak\Downloads\Polisa_50009727130_11062022_150414.pdf 2022-06-09 19:49 - 2022-06-09 19:49 - 000218650 _____ C:\Users\RafałKubiak\Downloads\List marketingowy certyfikat (6).pdf 2022-06-09 19:48 - 2022-06-09 19:48 - 000295645 _____ C:\Users\RafałKubiak\Downloads\Polisa (5).pdf 2022-06-09 19:46 - 2022-06-09 19:46 - 000138531 _____ C:\Users\RafałKubiak\Downloads\Wniosek ubezpieczeniowy (4).pdf 2022-06-09 19:45 - 2022-06-09 19:45 - 002299343 _____ C:\Users\RafałKubiak\Downloads\owu_2021-04-10 (10).pdf 2022-06-09 19:45 - 2022-06-09 19:45 - 000052610 _____ C:\Users\RafałKubiak\Downloads\PIDA_CP_Assistance_2021-04-10 (9).pdf 2022-06-09 19:45 - 2022-06-09 19:45 - 000050913 _____ C:\Users\RafałKubiak\Downloads\PIDA_CP_ZK_2021-04-10 (9).pdf 2022-06-09 19:45 - 2022-06-09 19:45 - 000049371 _____ C:\Users\RafałKubiak\Downloads\PIDA_CP_OC_2021-04-10 (10).pdf 2022-06-09 19:45 - 2022-06-09 19:45 - 000046328 _____ C:\Users\RafałKubiak\Downloads\PIDA_CP_NNW_2021-04-10 (5).pdf 2022-06-07 16:58 - 2022-06-07 16:58 - 000191038 _____ C:\Users\RafałKubiak\Downloads\Policy_290_4000230.pdf 2022-06-07 16:58 - 2022-06-07 16:58 - 000122936 _____ C:\Users\RafałKubiak\Downloads\Offer_290_959391191 (1).pdf 2022-06-07 16:55 - 2022-06-07 16:55 - 000122973 _____ C:\Users\RafałKubiak\Downloads\Offer_290_959391191.pdf 2022-06-06 16:22 - 2022-06-06 16:22 - 000045490 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 11_2022.pdf 2022-05-31 14:42 - 2022-05-31 14:42 - 000061564 _____ C:\Users\RafałKubiak\Downloads\APK-39988-2022-05-22.pdf 2022-05-31 14:40 - 2022-05-31 14:40 - 000205484 _____ C:\Users\RafałKubiak\Downloads\Wypowiedzenie POBPN87.pdf 2022-05-31 14:34 - 2022-05-31 14:34 - 003207484 _____ C:\Users\RafałKubiak\Documents\generuj wypowiedzenie v3.0.pdf 2022-05-29 11:32 - 2022-07-06 10:22 - 000031743 _____ C:\Users\RafałKubiak\Downloads\3_CWICZENIE.xlsx 2022-05-29 11:30 - 2022-05-29 11:30 - 000348101 _____ C:\Users\RafałKubiak\Downloads\3_CWICZENIE.pdf 2022-05-28 13:15 - 2022-05-28 13:15 - 000770549 _____ C:\Users\RafałKubiak\Downloads\wydruk (21).pdf 2022-05-25 14:07 - 2022-05-25 14:07 - 000061522 _____ C:\Users\RafałKubiak\Downloads\APK-39988-2022-05-19.pdf 2022-05-25 12:07 - 2022-05-25 12:07 - 000024969 _____ C:\Users\RafałKubiak\Downloads\NRDCH-055240.pdf 2022-05-25 12:06 - 2022-05-25 12:06 - 000025050 _____ C:\Users\RafałKubiak\Downloads\NRDCH-055239.pdf 2022-05-25 12:05 - 2022-05-25 12:05 - 000024982 _____ C:\Users\RafałKubiak\Downloads\NRDCH-055238.pdf 2022-05-25 12:04 - 2022-05-25 12:04 - 000025055 _____ C:\Users\RafałKubiak\Downloads\NRDCH-055237.pdf 2022-05-25 11:54 - 2022-05-25 11:55 - 000023701 _____ C:\Users\RafałKubiak\Downloads\kopia Konsultant Rafał Kubiak - PM - Poznań - Karol Rzepczyński.xlsx 2022-05-25 11:22 - 2022-05-25 11:22 - 000022965 _____ C:\Users\RafałKubiak\Downloads\Konsultant Rafał Kubiak - PM - Poznań - Karol Rzepczyński.xlsx 2022-05-25 10:33 - 2022-05-25 10:33 - 000546557 _____ C:\Users\RafałKubiak\Downloads\wydruk (20).pdf 2022-05-24 23:05 - 2022-05-24 23:05 - 000846378 _____ C:\Users\RafałKubiak\Downloads\wydruk (19).pdf 2022-05-23 16:44 - 2022-05-23 16:44 - 000268096 _____ C:\Users\RafałKubiak\Downloads\KOM20220523_635369.pdf 2022-05-23 16:37 - 2022-05-23 16:37 - 001454774 _____ C:\Users\RafałKubiak\Downloads\OWU_Pakiet AUTO (3).Pdf 2022-05-23 16:37 - 2022-05-23 16:37 - 000208088 _____ C:\Users\RafałKubiak\Downloads\Karta IDD Pakiet AUTO - OC (1).Pdf 2022-05-23 16:37 - 2022-05-23 16:37 - 000194371 _____ C:\Users\RafałKubiak\Downloads\Karta IDD Pakiet AUTO - ubezpieczenia dobrowolne (1).Pdf 2022-05-23 14:06 - 2022-05-23 14:06 - 000061658 _____ C:\Users\RafałKubiak\Downloads\APK-39988-2022-05-16.pdf 2022-05-23 14:04 - 2022-05-23 14:05 - 000208233 _____ C:\Users\RafałKubiak\Downloads\Wypowiedzenie PO7S832.pdf 2022-05-23 14:00 - 2022-05-23 14:00 - 000583579 _____ C:\Users\RafałKubiak\Downloads\wydruk (18).pdf 2022-05-23 13:51 - 2022-05-23 13:51 - 000528901 _____ C:\Users\RafałKubiak\Downloads\polisa+920020277541.pdf 2022-05-23 13:37 - 2022-05-23 13:37 - 000622583 _____ C:\Users\RafałKubiak\Downloads\dokumenty.zip 2022-05-23 13:19 - 2022-05-23 13:19 - 000189790 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-9-15181-1_6078.pdf 2022-05-23 12:45 - 2022-05-23 12:45 - 000268324 _____ C:\Users\RafałKubiak\Downloads\Niezbędnik_inspekcja_zdjeciowa.pdf 2022-05-23 09:51 - 2022-05-23 09:51 - 000215387 _____ C:\Users\RafałKubiak\Downloads\rca 2022 POPRAWIONE.pdf 2022-05-23 09:50 - 2022-05-23 09:50 - 000215387 _____ C:\Users\RafałKubiak\Downloads\7822893447_23_4_2022(9 50)_wydruk.pdf 2022-05-21 13:19 - 2022-06-01 11:30 - 000843045 _____ C:\Users\RafałKubiak\Documents\Prosty system automatyki domowej.pptx 2022-05-20 23:11 - 2022-05-20 23:13 - 000580157 _____ C:\Users\RafałKubiak\Documents\Aneks Bączyk.pdf 2022-05-20 20:54 - 2022-05-05 17:44 - 000041816 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys 2022-05-20 20:53 - 2022-05-20 20:53 - 000003670 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2022-05-20 17:57 - 2022-05-20 17:57 - 001864994 _____ C:\Users\RafałKubiak\Downloads\42503363_Skonsolidowany_raport_za_I_kwartal_2022_1.pdf 2022-05-20 17:31 - 2022-05-20 17:31 - 000330864 _____ C:\Users\RafałKubiak\Downloads\wydruk (17).pdf 2022-05-20 16:21 - 2022-05-20 16:21 - 009843909 _____ C:\Users\RafałKubiak\Downloads\Materiały_KNF (1).zip 2022-05-20 14:26 - 2022-05-20 14:26 - 000055102 _____ C:\Users\RafałKubiak\Downloads\document.pdf 2022-05-20 13:54 - 2022-05-20 13:54 - 000024705 _____ C:\Users\RafałKubiak\Downloads\FVS_1_04_2022_UBICREDI_WOJCIECH.pdf 2022-05-20 13:51 - 2022-05-20 13:51 - 000044667 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 10_2022.pdf 2022-05-20 13:41 - 2022-05-20 13:42 - 000044622 _____ C:\Users\RafałKubiak\Downloads\Faktura FBV 9_2022.pdf 2022-05-20 12:55 - 2022-05-20 12:55 - 000189752 _____ C:\Users\RafałKubiak\Downloads\Dokument_2022-7-15181-1_9097.pdf 2022-05-20 11:00 - 2022-05-20 11:00 - 000570346 _____ C:\Users\RafałKubiak\Downloads\wydruk (16).pdf 2022-05-18 12:15 - 2022-05-18 12:15 - 000019022 _____ C:\Users\RafałKubiak\Downloads\Zaswiadczenie2.pdf 2022-05-17 18:49 - 2022-05-17 18:49 - 000383222 _____ C:\Users\RafałKubiak\Downloads\wydruk (15).pdf 2022-05-17 17:12 - 2022-05-17 17:12 - 000204263 _____ C:\Users\RafałKubiak\Downloads\wypowiedzenie PZ906XS.pdf 2022-05-17 17:09 - 2022-05-17 17:09 - 000584422 _____ C:\Users\RafałKubiak\Downloads\wydruk (14).pdf 2022-05-17 17:00 - 2022-05-17 17:01 - 000331353 _____ C:\Users\RafałKubiak\Downloads\wydruk (13).pdf 2022-05-17 16:57 - 2022-05-17 16:57 - 000331076 _____ C:\Users\RafałKubiak\Downloads\wydruk (12).pdf 2022-05-17 07:57 - 2022-05-17 07:57 - 000138609 _____ C:\Users\RafałKubiak\Downloads\Oferta_agenta.pdf 2022-05-14 13:38 - 2022-05-14 13:38 - 000188928 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2022-05-14 13:37 - 2022-05-14 13:37 - 000093696 _____ C:\WINDOWS\system32\Drivers\cimfs.sys ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-08-11 18:40 - 2022-02-19 12:15 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-08-11 18:39 - 2021-04-30 08:12 - 000000000 ____D C:\Users\RafałKubiak\AppData\LocalLow\Mozilla 2022-08-11 18:34 - 2021-04-30 00:57 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2022-08-11 18:30 - 2021-05-13 22:32 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData 2022-08-11 18:29 - 2021-10-26 19:36 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\CrashDumps 2022-08-11 18:29 - 2021-05-13 22:40 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk 2022-08-11 18:29 - 2021-05-13 22:40 - 000002103 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-08-11 18:29 - 2021-05-12 10:18 - 000000000 ____D C:\Program Files (x86)\Google 2022-08-11 18:29 - 2021-04-30 01:00 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-08-11 18:28 - 2021-04-30 01:00 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-08-11 18:27 - 2021-10-11 16:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-08-11 18:27 - 2021-04-30 08:12 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-08-11 18:27 - 2021-04-30 08:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-08-11 18:26 - 2021-10-12 19:20 - 000000000 ___RD C:\Users\RafałKubiak\Creative Cloud Files 2022-08-11 18:26 - 2021-04-30 00:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-08-11 00:41 - 2022-03-01 00:39 - 000000000 ____D C:\Users\RafałKubiak\Desktop\Proseminarium 2022-08-11 00:41 - 2021-08-08 20:41 - 000000000 ____D C:\Users\RafałKubiak\GRAPHISOFT 2022-08-11 00:40 - 2021-08-08 20:41 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\GRAPHISOFT 2022-08-11 00:23 - 2021-04-30 08:04 - 001769048 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-08-11 00:23 - 2021-04-30 01:02 - 000787304 _____ C:\WINDOWS\system32\perfh015.dat 2022-08-11 00:23 - 2021-04-30 01:02 - 000153148 _____ C:\WINDOWS\system32\perfc015.dat 2022-08-11 00:23 - 2021-04-30 00:59 - 000000000 ____D C:\WINDOWS\INF 2022-08-11 00:20 - 2021-04-30 08:09 - 000000000 __SHD C:\Users\RafałKubiak\IntelGraphicsProfiles 2022-08-11 00:19 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\ServiceState 2022-08-11 00:19 - 2021-04-30 00:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-08-11 00:19 - 2021-04-30 00:08 - 000000000 ____D C:\Intel 2022-08-11 00:19 - 2021-04-30 00:07 - 000008192 ___SH C:\DumpStack.log.tmp 2022-08-10 21:00 - 2021-04-30 08:09 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\D3DSCache 2022-08-10 18:53 - 2021-05-13 22:32 - 000000000 ____D C:\ProgramData\Package Cache 2022-08-10 18:52 - 2021-10-21 18:37 - 000000000 ____D C:\Program Files (x86)\Intel 2022-08-10 18:26 - 2021-04-30 09:08 - 000002406 _____ C:\Users\RafałKubiak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2022-08-10 18:18 - 2021-04-30 12:44 - 000000000 ____D C:\Users\RafałKubiak\AppData\Roaming\Signal 2022-08-10 18:00 - 2021-04-30 08:16 - 000000000 ____D C:\WINDOWS\TempInst 2022-08-10 17:58 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-08-09 10:00 - 2021-05-12 10:18 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-08-08 19:57 - 2021-04-30 08:18 - 000000000 ____D C:\Program Files\Microsoft Office 2022-08-08 19:23 - 2021-05-13 22:31 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-08-07 19:23 - 2021-04-30 08:09 - 000000000 ____D C:\Users\RafałKubiak 2022-08-07 00:00 - 2021-04-30 01:00 - 000000000 ___HD C:\Program Files\WindowsApps 2022-08-07 00:00 - 2021-04-30 00:08 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-08-06 00:08 - 2021-04-30 00:57 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2022-08-05 23:05 - 2021-04-30 00:08 - 000000000 ____D C:\WINDOWS\system32\dolbyaposvc 2022-08-05 10:48 - 2021-11-23 00:55 - 000004248 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1637621702 2022-08-05 10:48 - 2021-11-23 00:55 - 000001505 _____ C:\Users\RafałKubiak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2022-08-04 22:08 - 2021-04-30 00:57 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-07-31 17:54 - 2021-04-30 08:57 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\PlaceholderTileLogoFolder 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ___RD C:\WINDOWS\PrintDialog 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\SystemResources 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\setup 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\DDFs 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\ShellComponents 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-07-31 17:31 - 2021-04-30 01:00 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-07-31 17:31 - 2021-04-30 00:07 - 000795920 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-07-28 11:59 - 2021-04-30 08:09 - 000000000 ____D C:\Users\RafałKubiak\AppData\Local\Packages 2022-07-28 00:49 - 2021-12-11 15:09 - 000003612 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-12-1-823460234-1297740821-3199230651-3912469372 2022-07-28 00:49 - 2021-04-30 08:11 - 000003386 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-12-1-823460234-1297740821-3199230651-3912469372 2022-07-28 00:49 - 2021-04-30 08:09 - 000002453 _____ C:\Users\RafałKubiak\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-07-27 12:26 - 2021-04-30 00:08 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-07-27 12:26 - 2021-04-30 00:08 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-07-27 12:26 - 2021-04-30 00:08 - 000003366 _____ C:\WINDOWS\system32\Tasks\RtkAudUService64_BG 2022-07-25 17:04 - 2021-10-21 18:33 - 000000000 ____D C:\Users\RafałKubiak\AppData\Roaming\com.adobe.dunamis 2022-07-25 17:04 - 2021-05-13 22:31 - 000000000 ____D C:\Program Files\Adobe 2022-07-25 17:04 - 2021-05-13 22:31 - 000000000 ____D C:\Program Files (x86)\Adobe 2022-07-17 18:50 - 2021-04-30 08:02 - 003010560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-07-16 23:31 - 2021-05-03 15:27 - 146546848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-07-16 23:31 - 2021-05-03 15:27 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-07-14 21:11 - 2021-04-30 01:00 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-07-13 23:58 - 2021-05-05 10:52 - 000000000 ____D C:\Users\RafałKubiak\AppData\Roaming\XnView 2022-07-13 23:50 - 2021-04-30 01:05 - 000000000 ____D C:\WINDOWS\Panther ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-02-22 01:57 - 2022-06-30 23:10 - 000004254 _____ () C:\Users\RafałKubiak\AppData\Roaming\LTspiceXVII.ini 2021-12-14 15:29 - 2022-04-25 23:23 - 000000000 _____ () C:\Users\RafałKubiak\AppData\Roaming\Spyder.launch.pyw.log 2021-12-14 19:56 - 2021-12-14 19:56 - 000007755 _____ () C:\Users\RafałKubiak\AppData\Roaming\Wartości oddzielone przecinkami.EML 2021-10-08 20:10 - 2021-10-08 20:10 - 000000891 _____ () C:\Users\RafałKubiak\AppData\Local\recently-used.xbel ==================== SigCheckExt ========================= 2020-12-02 05:41 - 2020-12-02 05:41 - 000459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dref9.dll 2022-02-24 01:45 - 1998-10-29 17:45 - 000306688 _____ (InstallShield Software Corporation) C:\WINDOWS\IsUninst.exe 2003-03-19 05:05 - 2003-03-19 05:05 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 2022-02-24 01:46 - 1998-11-24 12:02 - 000081408 _____ (hxxp://www.mvps.org/vb) C:\WINDOWS\SysWOW64\ccrpTmr.dll 2020-11-25 20:37 - 2020-11-25 20:37 - 000332800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D2D1Debug2.dll 2020-06-23 17:54 - 2020-06-23 17:54 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11sdklayers.dll 2020-06-23 17:54 - 2020-06-23 17:54 - 000698368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_1sdklayers.dll 2020-06-23 17:54 - 2020-06-23 17:54 - 000936960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_2sdklayers.dll 2020-12-02 05:14 - 2020-12-02 05:14 - 000376832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dref9.dll 2005-06-10 09:46 - 2005-06-10 09:46 - 000049152 ____R () C:\WINDOWS\SysWOW64\FDT100.dll 2019-10-23 16:25 - 2019-10-23 16:25 - 000041025 _____ (SIEMENS AG) C:\WINDOWS\SysWOW64\MelbReg.dll 2003-03-19 06:20 - 2003-03-19 06:20 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71.dll 2003-03-19 06:12 - 2003-03-19 06:12 - 001047552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc71u.dll 2022-02-24 01:46 - 1997-07-19 16:55 - 001347344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Msvbvm50.dll 2003-03-19 05:14 - 2003-03-19 05:14 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2003-02-21 13:42 - 2003-02-21 13:42 - 000348160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2019-10-23 16:25 - 2019-10-23 16:25 - 000054864 _____ (Siemens AG) C:\WINDOWS\SysWOW64\Tastdr32.dll 2001-03-12 17:07 - 2001-03-12 17:07 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tlbinf32.dll 2021-05-10 14:12 - 2021-05-10 14:12 - 001447178 _____ (Igor Pavlov) C:\Users\RafałKubiak\Downloads\7z1900-x64.exe 2022-02-22 00:11 - 2022-02-22 00:12 - 136437512 _____ (MiKTeX.org) C:\Users\RafałKubiak\Downloads\basic-miktex-21.12-x64.exe 2021-05-05 10:37 - 2021-05-05 10:37 - 007930874 _____ ( ) C:\Users\RafałKubiak\Downloads\doublecmd-0.9.10.x86_64-win64.exe 2022-01-09 22:54 - 2022-01-09 22:54 - 000245760 _____ (Microsoft) C:\Users\RafałKubiak\Downloads\FreeRecover.exe 2022-08-11 18:42 - 2022-08-11 18:43 - 002370048 _____ (Farbar) C:\Users\RafałKubiak\Downloads\FRST64.exe 2022-01-09 23:03 - 2022-01-09 23:03 - 000198144 _____ (Joey Scarr) C:\Users\RafałKubiak\Downloads\KickassUndelete_1.5.5.exe 2021-07-13 23:05 - 2021-07-13 23:05 - 168861126 _____ (Scilab Enterprises ) C:\Users\RafałKubiak\Downloads\scilab-6.1.0.exe 2021-04-30 12:52 - 2021-04-30 12:52 - 007896399 _____ (ShareX Team ) C:\Users\RafałKubiak\Downloads\ShareX-13.4.0-setup.exe 2022-02-22 00:09 - 2022-02-22 00:09 - 012631003 _____ (The TeXnicCenter Team ) C:\Users\RafałKubiak\Downloads\TXCSetup_2.02Stable_x64.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} {07e88375-801b-11eb-840d-f34ac1597b1e} {07e88376-801b-11eb-840d-f34ac1597b1e} {07e88377-801b-11eb-840d-f34ac1597b1e} {07e88378-801b-11eb-840d-f34ac1597b1e} {07e88379-801b-11eb-840d-f34ac1597b1e} {07e8837a-801b-11eb-840d-f34ac1597b1e} {07e8837b-801b-11eb-840d-f34ac1597b1e} {07e8837c-801b-11eb-840d-f34ac1597b1e} {07e8837d-801b-11eb-840d-f34ac1597b1e} {07e8837e-801b-11eb-840d-f34ac1597b1e} {07e88370-801b-11eb-840d-f34ac1597b1e} {07e8836f-801b-11eb-840d-f34ac1597b1e} timeout 0 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\bootmgfw.efi description Windows Boot Manager locale pl-PL inherit {globalsettings} isolatedcontext Yes default {current} resumeobject {4af62ed5-a93f-11eb-8cce-9dfda950e765} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Firmware Application (101fffff) ------------------------------- identifier {07e88366-801b-11eb-840d-f34ac1597b1e} description ThinkShield secure wipe isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88367-801b-11eb-840d-f34ac1597b1e} description Setup isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88368-801b-11eb-840d-f34ac1597b1e} description Boot Menu isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88369-801b-11eb-840d-f34ac1597b1e} description Diagnostic Splash Screen isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836a-801b-11eb-840d-f34ac1597b1e} description Lenovo Diagnostics isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836b-801b-11eb-840d-f34ac1597b1e} description Regulatory Information isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836c-801b-11eb-840d-f34ac1597b1e} description Startup Interrupt Menu isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836d-801b-11eb-840d-f34ac1597b1e} description Rescue and Recovery isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836e-801b-11eb-840d-f34ac1597b1e} description MEBx Hot Key isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8836f-801b-11eb-840d-f34ac1597b1e} description Other CD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88370-801b-11eb-840d-f34ac1597b1e} description Other HDD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88371-801b-11eb-840d-f34ac1597b1e} description IDER BOOT CDROM isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88372-801b-11eb-840d-f34ac1597b1e} description IDER BOOT Floppy isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88373-801b-11eb-840d-f34ac1597b1e} description ATA HDD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88374-801b-11eb-840d-f34ac1597b1e} description ATAPI CD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88375-801b-11eb-840d-f34ac1597b1e} description USB CD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88376-801b-11eb-840d-f34ac1597b1e} description USB FDD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88377-801b-11eb-840d-f34ac1597b1e} description NVMe0 isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88378-801b-11eb-840d-f34ac1597b1e} description NVMe1 isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e88379-801b-11eb-840d-f34ac1597b1e} description ATA HDD0 isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8837a-801b-11eb-840d-f34ac1597b1e} description ATA HDD1 isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8837b-801b-11eb-840d-f34ac1597b1e} description USB HDD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8837c-801b-11eb-840d-f34ac1597b1e} description PXE BOOT isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8837d-801b-11eb-840d-f34ac1597b1e} description HTTPS BOOT isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {07e8837e-801b-11eb-840d-f34ac1597b1e} description LENOVO CLOUD isolatedcontext Yes Firmware Application (101fffff) ------------------------------- identifier {79cb9457-94b1-11ec-879a-806e6f6e6963} description LENOVO CLOUD isolatedcontext Yes Windows Boot Loader ------------------- identifier {07e88381-801b-11eb-840d-f34ac1597b1e} device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{07e88382-801b-11eb-840d-f34ac1597b1e} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-pl inherit {bootloadersettings} displaymessage Recovery displaymessageoverride PushButtonReset isolatedcontext Yes osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{07e88382-801b-11eb-840d-f34ac1597b1e} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 10 locale pl-PL inherit {bootloadersettings} recoverysequence {07e88381-801b-11eb-840d-f34ac1597b1e} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {4af62ed5-a93f-11eb-8cce-9dfda950e765} nx OptIn bootmenupolicy Standard Resume from Hibernate --------------------- identifier {4af62ed5-a93f-11eb-8cce-9dfda950e765} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {07e88381-801b-11eb-840d-f34ac1597b1e} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume1 path \EFI\Microsoft\Boot\memtest.efi description Diagnostyka pami©ci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes isolatedcontext Yes EMS Settings ------------ identifier {emssettings} bootems No isolatedcontext Yes Debugger Settings ----------------- identifier {dbgsettings} debugtype Local isolatedcontext Yes RAM Defects ----------- identifier {badmemory} isolatedcontext Yes Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} isolatedcontext Yes Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} isolatedcontext Yes Hypervisor Settings ------------------- identifier {hypervisorsettings} isolatedcontext Yes hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} isolatedcontext Yes Device options -------------- identifier {07e88382-801b-11eb-840d-f34ac1597b1e} description Windows Recovery isolatedcontext Yes ramdisksdidevice partition=\Device\HarddiskVolume4 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Koniec FRST.txt ========================