Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 26-11-2022 Uruchomiony przez Browar (administrator) BROWAR-PC (ASUSTeK Computer Inc. K53SC) (27-11-2022 14:18:02) Uruchomiony z C:\Users\Browar\Downloads Załadowane profile: Browar Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.2130 (X64) Język: Angielski (Stany Zjednoczone) -> Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe (C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe (C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe (C:\Program Files\Synaptics\SynTP\SynTPEnh.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (explorer.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\Rainlendar2\Rainlendar2.exe (explorer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (explorer.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (FBAgent.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe (FBAgent.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Windows\AsScrPro.exe (FBAgent.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Dism.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13> (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe (services.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe (services.exe ->) (Atheros Communications Inc. -> Atheros) [Brak podpisu cyfrowego] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe (services.exe ->) (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe (services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUS) C:\Program Files\P4G\BatteryLife.exe (svchost.exe ->) (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe (svchost.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.20970.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2180_none_7e328fe47c714aab\TiWorker.exe (svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation -> NVIDIA Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2785064 2011-05-05] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [196608 2022-09-29] () [Brak podpisu cyfrowego] HKLM\...\Run: [] => [X] HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe /FORCE (Brak pliku) HKLM\...\Policies\Explorer: [NoInstrumentation] 1 HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKU\S-1-5-19\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe (Brak pliku) HKU\S-1-5-20\...\RunOnce: [mctadmin] => C:\Windows\System32\mctadmin.exe (Brak pliku) HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Run: [Rainlendar2] => C:\Program Files\Rainlendar2\Rainlendar2.exe [3820032 2011-08-12] () [Brak podpisu cyfrowego] HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38650192 2022-11-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Run: [] => [X] HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Policies\system: [shell] explorer.exe <==== UWAGA HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Policies\Explorer: [NoWinkeys] 0 HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-21-2675937309-2342803569-238252381-1000\...\Policies\Explorer: [NoViewContextMenu] 0 HKLM\...\Windows x64\Print Processors\Canon TR4500 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDEU.DLL [482816 2018-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ FAX Language Monitor TR4500 series: C:\Windows\system32\CNCALEU.DLL [254464 2018-03-22] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor TR4500 series: C:\Windows\system32\CNMLMEU.DLL [1303040 2018-03-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\EPSON XP-205 207 Series 64MonitorBE: C:\Windows\system32\E_ILMILE.DLL [120320 2011-04-20] (SEIKO EPSON CORPORATION) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.127\Installer\chrmstp.exe [2022-09-17] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\106.1.44.101\Installer\chrmstp.exe [2022-09-28] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\...\Authentication\Credential Providers: [{503739d0-4c5e-4cfd-b3ba-d881334f0df2}] -> AppInit_DLLs: C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_20c0bba34ffd86ca\nvinitx.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_20c0bba34ffd86ca\nvinitx.dll [208800 2018-02-13] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) AppInit_DLLs-x32: C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_20c0bba34ffd86ca\nvinit.dll => C:\WINDOWS\system32\DriverStore\FileRepository\nvam.inf_amd64_20c0bba34ffd86ca\nvinit.dll [182272 2018-02-13] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AutorunsDisabled [2021-03-13] GroupPolicy-Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {04305901-9654-4875-9C89-BFD0A4ABF1C0} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {07E62B81-6AAE-4D51-BD3C-E238C660197E} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-11-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "3dba3ccd-6f61-4564-b9c0-309cf6e99e66" --version "6.06.10144" --silent Task: {07F150E2-DEAA-45FC-AE06-B954E928B65A} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163840 2022-09-29] () [Brak podpisu cyfrowego] Task: {0B216B17-81ED-49AB-94CE-1B67C6AE9E79} - System32\Tasks\Microsoft\Windows\SideShow\AutoWake => {E51DFD48-AA36-4B45-BB52-E831F02E8316} Task: {1FF642BE-876A-4AF3-8BA8-2559373A159A} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe do-task "E7CF176E110C211B" Task: {209E537E-29B6-41AA-AAF1-12D481541E81} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {2EBAC61C-3DAF-4290-A261-D783536C5C2F} - System32\Tasks\Microsoft\Windows\MobilePC\HotStart => {06DA0625-9701-43DA-BFD7-FBEEA2180A1E} Task: {300E3F17-C9A3-4725-B96F-329775DB7082} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [257824 2022-11-11] (Avira Operations GmbH -> Avira Operations GmbH) Task: {30986B2B-8CED-490F-9675-72E76D838E1D} - System32\Tasks\Microsoft\Windows\SideShow\GadgetManager => {FF87090D-4A9A-4F47-879B-29A80C355D61} Task: {3D26643B-BAF6-4A61-9059-5BFCCD871A7E} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {48355577-7704-412E-91CE-416936C49DBE} - System32\Tasks\Microsoft\Windows\End Of Support\Notify2 => C:\WINDOWS\system32\sipnotify.exe -Daily (Brak pliku) Task: {486D715E-6AA2-44CF-BC48-B6990CBB53C6} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControlsMigration => {343D770D-7788-47C2-B62A-B7C4CED925CB} Task: {50AB374C-8B1F-404E-BB64-49F5813761F4} - \Microsoft\Windows\Setup\EOSNotify2 -> Brak pliku <==== UWAGA Task: {574C8D28-28CA-4032-9ABE-2F10AF496FD8} - System32\Tasks\ASUS P4G => C:\Program Files\P4G\BatteryLife.exe [977024 2010-12-01] (ASUSTeK Computer Inc. -> ASUS) Task: {5B42DD9C-5A26-4F27-BB95-34603F0997E5} - System32\Tasks\Microsoft\Windows\Shell\WindowsParentalControls => {DFA14C43-F385-4170-99CC-1B7765FA0E4A} Task: {5BCF288F-FF1D-4E4B-B087-6D3F7A5BFCFA} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [5732992 2010-08-17] (ASUSTeK Computer Inc. -> ASUS) Task: {62B3BA93-B8D6-4B65-80E8-D236C426A6E7} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-11-09] (Piriform Software Ltd -> Piriform) Task: {69711EF4-BDA4-40BE-804A-F15777CE2466} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry Task: {69711EF4-BDA4-40BE-804A-F15777CE2466} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog Task: {69711EF4-BDA4-40BE-804A-F15777CE2466} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector Task: {70D41DB6-0309-43EF-B59D-420CC1BFFF47} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [31903744 2022-09-29] () [Brak podpisu cyfrowego] Task: {72CF28B7-4EAD-4430-90E7-0A0462D55F35} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [147456 2022-09-29] () [Brak podpisu cyfrowego] Task: {8110CC4D-6D93-47F8-8124-0CD3790B58C5} - System32\Tasks\CCleanerSkipUAC - Browar => C:\Program Files\CCleaner\CCleaner.exe [32325456 2022-11-09] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {830966E7-C6DC-42FB-AE78-EF3DCC542A96} - System32\Tasks\HP Photo Creations Communicator => C:\Users\Browar\AppData\Roaming\HP Photo Creations\Communicator.exe [188416 2022-10-02] () [Brak podpisu cyfrowego] Task: {86D294C2-AFF0-4625-92BD-5EA5F4AF7900} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {87BF67AA-2623-4E00-8D26-2B3EBC0A2B58} - System32\Tasks\Microsoft\Windows\End Of Support\Notify1 => C:\WINDOWS\system32\sipnotify.exe -LogonOrUnlock (Brak pliku) Task: {8ACA8B2F-FA4C-4C1B-A422-F651B12624F5} - System32\Tasks\Mozilla\Firefox Background Update E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {8FBCCBFE-EC69-4BB7-85EC-19D32E7C6D3D} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163840 2022-09-29] () [Brak podpisu cyfrowego] Task: {90A35613-405C-4F2B-B8B1-2920BA25EA67} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {92FA6BE6-892F-4F0E-A8FB-592816D89CB9} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineUA => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [217088 2022-09-29] () [Brak podpisu cyfrowego] Task: {9AC1A9F8-2D55-4524-8C44-89AB869FCA0C} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1660640 2022-11-11] (Avira Operations GmbH -> Avira Operations GmbH) Task: {A6308951-6BC9-4D33-8A0D-5562AE239F22} - System32\Tasks\ASUS Live Update => C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe [1545856 2011-08-31] (ASUSTeK Computer Inc. -> ASUSTeK Computer Inc.) Task: {A7697CAE-0086-4CC3-BA42-9C972C6B1E40} - System32\Tasks\{C835F57C-5C2B-488F-B6EA-CD8D114811AF} => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [2161624 2020-05-03] (TomTom International B.V. -> TomTom) Task: {B0CBAB43-44FC-469B-A4CE-87426761FDCE} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {B21FD4E6-0B33-4A8B-90FC-8B554E1D4F6E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2252800 2022-09-29] () [Brak podpisu cyfrowego] Task: {B507D9C7-2C59-42DE-9DBC-6F3287634176} - System32\Tasks\Microsoft\Internet Explorer\Supprimer les versions précédentes d’Internet Explorer => C:\Windows\SYSTEM32\ie4uinit.EXE [254464 2022-03-09] (Microsoft Windows -> Microsoft Corporation) Task: {B834B5C1-75B0-4489-AAC9-92244B04A248} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => C:\Program Files\RUXIM\PLUGscheduler.exe [372736 2022-09-29] () [Brak podpisu cyfrowego] Task: {C46FE7E2-EC17-44A1-ACD9-0BED66B4E3A8} - System32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d717d6c118f1ba => C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [217088 2022-09-29] () [Brak podpisu cyfrowego] Task: {C890D6A5-9572-40CD-948B-844948A8C38E} - System32\Tasks\Microsoft\Windows\SideShow\SessionAgent => {45F26E9E-6199-477F-85DA-AF1EDFE067B1} Task: {D740E2E2-A4F9-475F-AF67-4D696DC78E50} - \Microsoft\Windows\Setup\EOSNotify -> Brak pliku <==== UWAGA Task: {EA642554-AC3D-47A6-9A23-654EFA473FCF} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {EB59EA98-7A81-460D-87F3-BC39B66A718C} - System32\Tasks\Microsoft\Windows\SideShow\SystemDataProviders => {7CCA6768-8373-4D28-8876-83E8B4E3A969} Task: {EF746245-759B-49E6-809E-879BCE5A274A} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [147456 2022-09-29] () [Brak podpisu cyfrowego] (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\HP Photo Creations Communicator.job => C:\Users\Browar\AppData\Roaming\HP Photo Creations\Communicator.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) HKLM\SOFTWARE\Policies\Microsoft\Windows\CurrentVersion\Internet Settings\Zones\3: <==== UWAGA (Ograniczenia - Zones) Tcpip\Parameters: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{58ED39E0-90C8-475C-BE8A-4543D940BC53}: [NameServer] 127.0.0.1 Tcpip\..\Interfaces\{81421DB6-E0D0-43B4-860C-9C194D21B3DC}: [DhcpNameServer] 192.168.0.254 Tcpip\..\Interfaces\{C001A67A-65FB-43AC-98EB-E4693B773A37}: [DhcpNameServer] 192.168.0.254 Edge: ======= DownloadDir: C:\Users\Browar\Downloads Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-24] Edge Extension: (Outlook) - C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2021-03-13] Edge Extension: (MetaMask) - C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejbalbakoplchlghecdalmeeeajnimhm [2022-11-24] Edge Extension: (Word) - C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hikhggiobiflkdfdgdajcfklmcibbopi [2021-03-13] Edge Extension: (Excel) - C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2021-03-13] Edge Extension: (PowerPoint) - C:\Users\Browar\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2021-03-13] FireFox: ======== FF DefaultProfile: g14joap3.default-1479714086334 FF ProfilePath: C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release [2022-11-27] FF Homepage: Mozilla\Firefox\Profiles\e9isk1vv.default-release -> hxxps://www.google.com FF NewTabOverride: Mozilla\Firefox\Profiles\e9isk1vv.default-release -> Enabled: {66E978CD-981F-47DF-AC42-E3CF417C1467} FF NewTabOverride: Mozilla\Firefox\Profiles\e9isk1vv.default-release -> Enabled: uBlock0@raymondhill.net FF Extension: (Dictionnaire français) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2022-10-17] FF Extension: (Français Language Pack) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release\Extensions\langpack-fr@firefox.mozilla.org.xpi [2022-11-18] FF Extension: (uBlock Origin) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-11-15] FF Extension: (TWP - Translate Web Pages) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2022-10-04] FF Extension: (New Tab Homepage) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\e9isk1vv.default-release\Extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi [2022-10-02] FF ProfilePath: C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\g14joap3.default-1479714086334 [2022-11-27] FF Homepage: Mozilla\Firefox\Profiles\g14joap3.default-1479714086334 -> hxxp://www.google.pl/ FF NewTabOverride: Mozilla\Firefox\Profiles\g14joap3.default-1479714086334 -> Enabled: {66E978CD-981F-47DF-AC42-E3CF417C1467} FF NewTabOverride: Mozilla\Firefox\Profiles\g14joap3.default-1479714086334 -> Enabled: wikipedia@search.mozilla.org FF NewTabOverride: Mozilla\Firefox\Profiles\g14joap3.default-1479714086334 -> Enabled: google@search.mozilla.org FF Extension: (Dictionnaire français) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\g14joap3.default-1479714086334\Extensions\fr-dicollecte@dictionaries.addons.mozilla.org.xpi [2020-05-30] FF Extension: (uBlock Origin) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\g14joap3.default-1479714086334\Extensions\uBlock0@raymondhill.net.xpi [2021-01-04] FF Extension: (MetaMask) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\g14joap3.default-1479714086334\Extensions\webextension@metamask.io.xpi [2022-09-17] FF Extension: (New Tab Homepage) - C:\Users\Browar\AppData\Roaming\Mozilla\Firefox\Profiles\g14joap3.default-1479714086334\Extensions\{66E978CD-981F-47DF-AC42-E3CF417C1467}.xpi [2017-11-15] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-11-14] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [Brak pliku] FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google Inc -> Google, Inc.) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-19] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Brak podpisu cyfrowego] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-19] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Brak podpisu cyfrowego] FF Plugin-x32: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Browar\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife -> RocketLife, LLP) FF Plugin HKU\S-1-5-21-2675937309-2342803569-238252381-1000: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Browar\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife -> RocketLife, LLP) Chrome: ======= CHR Profile: C:\Users\Browar\AppData\Local\Google\Chrome\User Data\Default [2022-11-27] CHR Extension: (Dokumenty Google offline) - C:\Users\Browar\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-02-25] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Browar\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-25] Opera: ======= OPR Profile: C:\Users\Browar\AppData\Roaming\Opera Software\Opera Stable [2022-10-16] OPR Extension: (Rich Hints Agent) - C:\Users\Browar\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-03-09] Brave: ======= BRA Profile: C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-11-24] BRA Notifications: Default -> hxxps://pl.tradingview.com; hxxps://www.facebook.com; hxxps://www.youtube.com BRA DefaultSearchKeyword: Default -> :g BRA Extension: (Tłumacz Google) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-11] BRA Extension: (MetaMask) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2022-11-15] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-11-24] BRA Extension: (Brave Ads Resources) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\aijecnhpjljblhnogamehknbmljlbfgn [2021-05-26] BRA Extension: (Brave NTP background images) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-23] BRA Extension: (Wallet Data Files Updater) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-11-15] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-11-24] BRA Extension: (Brave Ads Resources) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\feeklcgpaolphdiamjaolkkcpbeihkbh [2022-11-12] BRA Extension: (Brave Ads Resources) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\fojhemdeemkcacelmecilmibcjallejo [2022-03-31] BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2021-02-13] BRA Extension: (Brave NTP sponsored images) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2022-11-24] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-03-11] BRA Extension: (Brave Ad Block Updater (Easylist-Cookie List - Filter Obtrusive Cookie Notices)) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\lfgnenkkneohplacnfabidofpgcdpofm [2022-11-24] BRA Extension: (Crypto Wallets) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\odbfpeeihdkbihmopkbjmoonfanlbfcl [2022-03-16] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-11-24] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka, uBlocka Origin i AdGuarda)) - C:\Users\Browar\AppData\Local\BraveSoftware\Brave-Browser\User Data\paoecjnjjbclkgbempaeemcbeldldlbo [2022-11-24] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) R3 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros Communications Inc. -> Atheros) [Brak podpisu cyfrowego] R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3004688 2022-07-22] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [386864 2022-03-30] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [266432 2022-11-11] (Avira Operations GmbH -> Avira Operations GmbH) S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [292304 2022-11-11] (Avira Operations GmbH -> Avira Operations GmbH) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163840 2022-09-29] () [Brak podpisu cyfrowego] S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [163840 2022-09-29] () [Brak podpisu cyfrowego] S2 edgeupdate; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [217088 2022-09-29] () [Brak podpisu cyfrowego] S3 edgeupdatem; C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [217088 2022-09-29] () [Brak podpisu cyfrowego] R2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8789568 2022-11-21] (Avira Operations GmbH -> Avira Operations GmbH) S3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [8789568 2022-11-21] (Avira Operations GmbH -> Avira Operations GmbH) S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [147456 2022-09-29] () [Brak podpisu cyfrowego] S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [147456 2022-09-29] () [Brak podpisu cyfrowego] R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [445432 2021-04-19] (Canon Inc. -> ) S4 PuranDefrag; C:\Windows\system32\PuranDefragS.exe [292736 2013-08-15] (Vishal Gupta -> Puran Software) [Brak podpisu cyfrowego] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224192 2022-09-14] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2207.7-0\NisSrv.exe [3125112 2022-10-02] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2207.7-0\MsMpEng.exe [133560 2022-10-02] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 BdNet; C:\WINDOWS\System32\DRIVERS\BdNet.sys [185704 2022-06-13] (NortonLifeLock Inc. -> BullGuard Ltd.) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [230520 2022-06-21] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [15416 2009-07-20] (ASUSTeK Computer Inc. -> ) R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [42696 2012-08-30] (Tages SA -> ) R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [100128 2022-06-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R3 phantomtap; C:\WINDOWS\System32\drivers\phantomtap.sys [50248 2020-12-01] (Avira Operations GmbH & Co. KG -> The OpenVPN Project) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> ) S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> ) S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [26624 2022-10-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH) R2 rtp_filesystem_filter; C:\WINDOWS\System32\DRIVERS\rtp_filesystem_filter.sys [224848 2022-11-18] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_process_monitor; C:\WINDOWS\system32\DRIVERS\rtp_process_monitor.sys [219040 2022-11-18] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [61376 2022-10-16] (Avira Operations GmbH -> Avira Operations GmbH) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [49152 2021-03-12] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49576 2022-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [453904 2022-10-02] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [94480 2022-10-02] (Microsoft Windows -> Microsoft Corporation) U3 idsvc; Brak ImagePath S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-11-27 14:18 - 2022-11-27 14:22 - 000035104 _____ C:\Users\Browar\Downloads\FRST.txt 2022-11-27 14:13 - 2022-11-27 14:21 - 000000000 ____D C:\FRST 2022-11-27 14:12 - 2022-11-27 14:12 - 002375680 _____ (Farbar) C:\Users\Browar\Downloads\FRST64.exe 2022-11-27 13:37 - 2022-11-27 13:37 - 000000000 ___HD C:\$WinREAgent 2022-11-26 19:45 - 2022-11-26 19:45 - 000000000 ____D C:\Users\Browar\AppData\Local\ElevatedDiagnostics 2022-11-22 10:14 - 2022-11-22 10:14 - 000205381 _____ C:\Users\Browar\Downloads\CertificatAffiliation.pdf 2022-11-22 10:11 - 2022-11-22 10:11 - 001017523 _____ C:\Users\Browar\Downloads\henner-7.pdf 2022-11-18 09:34 - 2022-11-18 09:34 - 000059908 _____ C:\Users\Browar\Desktop\bulletins-de-paie-periode-du-01-au-31-mai-2022.pdf 2022-11-18 09:34 - 2022-11-18 09:34 - 000045935 _____ C:\Users\Browar\Desktop\bulletins-de-paie-periode-du-01-au-31-octobre-2022.pdf 2022-11-18 09:33 - 2022-11-18 09:33 - 000059908 _____ C:\Users\Browar\Downloads\bulletins-de-paie-periode-du-01-au-31-mai-2022.pdf 2022-11-18 09:29 - 2022-11-18 09:29 - 000045935 _____ C:\Users\Browar\Downloads\bulletins-de-paie-periode-du-01-au-31-octobre-2022.pdf 2022-11-18 07:45 - 2022-11-18 12:35 - 000003474 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2022-11-17 06:55 - 2022-11-17 06:55 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance 2022-11-17 06:55 - 2022-11-17 06:55 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog 2022-11-17 06:55 - 2022-11-17 06:55 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray 2022-11-15 13:25 - 2022-11-15 13:25 - 000111315 _____ C:\Users\Browar\Downloads\henner-6.pdf 2022-11-15 13:06 - 2022-11-15 13:06 - 000111315 _____ C:\Users\Browar\Downloads\henner-5.pdf 2022-11-15 12:57 - 2022-11-15 12:57 - 000308979 _____ C:\Users\Browar\Downloads\card-9.pdf 2022-11-09 12:17 - 2022-11-09 12:17 - 000045343 _____ C:\Users\Browar\Downloads\PJ221103084-1.pdf 2022-11-05 13:24 - 2022-11-05 13:24 - 000190911 _____ C:\Users\Browar\Desktop\CONSIGNES PUNAISES DE LIT.pdf 2022-11-03 17:44 - 2022-11-03 17:44 - 000045338 _____ C:\Users\Browar\Downloads\PJ221103084.pdf 2022-11-03 17:41 - 2022-11-03 17:41 - 000115653 _____ C:\Users\Browar\Downloads\henner-4.pdf 2022-10-31 09:23 - 2022-10-31 09:23 - 000115653 _____ C:\Users\Browar\Downloads\henner-3.pdf 2022-10-31 09:17 - 2022-10-31 09:17 - 000115980 _____ C:\Users\Browar\Downloads\henner-2.pdf 2022-10-31 09:16 - 2022-10-31 09:16 - 000115653 _____ C:\Users\Browar\Downloads\henner-1.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-11-27 14:20 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-11-27 14:10 - 2022-02-09 09:09 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-11-27 14:09 - 2016-11-18 12:46 - 000000000 ____D C:\Users\Browar\AppData\LocalLow\Mozilla 2022-11-27 14:07 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-11-27 14:07 - 2012-03-27 22:07 - 000000000 ____D C:\Program Files\CCleaner 2022-11-27 14:06 - 2012-05-25 18:35 - 000000000 ____D C:\Users\Browar\.rainlendar2 2022-11-27 14:03 - 2021-03-13 08:19 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-11-27 14:03 - 2012-03-26 22:37 - 000000000 ____D C:\ProgramData\NVIDIA 2022-11-27 14:02 - 2022-07-03 18:41 - 006404032 _____ C:\WINDOWS\system32\rtp.db 2022-11-27 14:02 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-11-27 13:53 - 2021-03-13 07:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-11-27 13:33 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-11-27 13:32 - 2012-03-26 22:47 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2022-11-27 13:28 - 2021-03-13 00:04 - 000000000 ____D C:\Users\Browar 2022-11-27 09:10 - 2012-03-27 14:50 - 000000000 ____D C:\Users\Browar\AppData\Local\CrashDumps 2022-11-27 00:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-11-27 00:05 - 2021-03-13 08:14 - 002895644 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-11-27 00:05 - 2021-03-12 22:25 - 000815688 _____ C:\WINDOWS\system32\perfh00C.dat 2022-11-27 00:05 - 2021-03-12 22:25 - 000165382 _____ C:\WINDOWS\system32\perfc00C.dat 2022-11-27 00:05 - 2021-03-12 22:13 - 000818924 _____ C:\WINDOWS\system32\perfh015.dat 2022-11-27 00:05 - 2021-03-12 22:13 - 000169608 _____ C:\WINDOWS\system32\perfc015.dat 2022-11-26 19:55 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-11-26 19:37 - 2022-10-02 20:05 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-26 19:37 - 2022-09-23 20:19 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2022-11-26 19:37 - 2017-01-16 11:53 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2022-11-26 19:37 - 2012-09-07 20:42 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-25 17:53 - 2021-03-13 08:19 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2022-11-20 20:17 - 2018-01-29 21:33 - 000001169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2022-11-19 16:15 - 2022-09-12 13:29 - 000000000 ____D C:\Users\Browar\AppData\Roaming\com.adobe.dunamis 2022-11-18 09:18 - 2022-10-02 20:05 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-18 09:18 - 2021-10-09 14:30 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2022-11-18 08:15 - 2022-10-26 17:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2022-11-18 08:15 - 2022-10-26 17:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2022-11-18 08:15 - 2021-03-13 08:19 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-11-18 07:07 - 2022-07-03 18:39 - 000224848 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filesystem_filter.sys 2022-11-18 07:07 - 2022-07-03 18:39 - 000219040 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_process_monitor.sys 2022-11-17 07:02 - 2021-03-13 08:19 - 000003260 _____ C:\WINDOWS\system32\Tasks\RtHDVBg_ListenToDevice 2022-11-17 07:01 - 2021-03-13 08:19 - 000003216 _____ C:\WINDOWS\system32\Tasks\RTKCPL 2022-11-17 06:55 - 2021-03-13 08:19 - 000003476 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update 2022-11-10 18:12 - 2020-01-11 17:07 - 000000000 ____D C:\Users\Browar\AppData\Local\Packages 2022-11-08 20:28 - 2014-11-12 14:22 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-11-08 20:20 - 2012-03-26 23:52 - 146960040 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-11-06 15:45 - 2021-12-08 21:33 - 000000000 ____D C:\ProgramData\CanonIJPLM 2022-11-06 15:33 - 2021-03-13 07:47 - 000008192 ___SH C:\DumpStack.log.tmp 2022-10-30 17:18 - 2012-03-26 23:52 - 000000000 ___RD C:\Users\Browar\Desktop\Skróty Pulpitu 2022-10-29 19:35 - 2020-01-11 17:53 - 000000000 ____D C:\Users\Browar\AppData\Local\D3DSCache ==================== Pliki w katalogu głównym wybranych folderów ======== 2011-01-18 16:16 - 2011-01-18 16:16 - 130026159 _____ () C:\Program Files (x86)\openofficeorg1.cab 2011-01-18 16:20 - 2011-01-18 16:20 - 002994688 _____ () C:\Program Files (x86)\openofficeorg33.msi 2011-01-18 16:18 - 2011-01-18 16:18 - 000475016 _____ () C:\Program Files (x86)\setup.exe 2011-01-18 15:29 - 2011-01-18 15:29 - 000000290 _____ () C:\Program Files (x86)\setup.ini 2017-08-29 21:40 - 2017-08-29 21:40 - 000099678 _____ () C:\Users\Browar\AppData\Roaming\logo_bigfarm_desktop.ico 2012-08-24 13:52 - 2016-09-16 11:02 - 000010752 _____ () C:\Users\Browar\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-04-24 21:15 - 2015-05-04 21:17 - 000000600 _____ () C:\Users\Browar\AppData\Local\PUTTY.RND 2012-03-28 16:59 - 2017-01-01 20:14 - 000007600 _____ () C:\Users\Browar\AppData\Local\Resmon.ResmonCfg 2022-06-10 22:34 - 2022-06-10 22:34 - 000001459 _____ () C:\Users\Browar\AppData\Local\Roblox — skrót .lnk ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================