Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-12-2022 Uruchomiony przez Włodek (administrator) WINDOWS-8 (Acer Aspire G7713) (11-12-2022 21:26:34) Uruchomiony z C:\Users\Włodek\Desktop Załadowane profile: Włodek Platform: Microsoft Windows 8.1 Pro (Update) (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files (x86)\Przypominacz JT\Przypominacz JT.exe (atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (C:\Windows\SysWOW64\srvany.exe ->) () [Brak podpisu cyfrowego] C:\Windows\KMService.exe (explorer.exe ->) (Honeygain, UAB -> ) C:\Users\Włodek\AppData\Roaming\Honeygain\Honeygain.exe (explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (explorer.exe ->) (Winstep Software Technologies) [Brak podpisu cyfrowego] C:\Program Files (x86)\Winstep\Nexus.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <18> (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe (rundll32.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (services.exe ->) () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\srvany.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (services.exe ->) (MIXBYTE, INC. -> Freemake) C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe (services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe (services.exe ->) (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe (services.exe ->) (The Within Network, LLC) [Brak podpisu cyfrowego] C:\Windows\unsignedthemes.exe (services.exe ->) (Tonalio GmbH -> Sandboxie-Plus.com) C:\Program Files\Sandboxie-Plus\SbieSvc.exe (services.exe ->) (voidtools -> voidtools) C:\Program Files\Everything\Everything.exe <2> (services.exe ->) (Winstep Software Technologies) [Brak podpisu cyfrowego] C:\Program Files (x86)\Winstep\WsxService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572528 2022-10-07] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] HKLM\...\Run: [BCSSync] => C:\Program Files\Microsoft Office\Office14\BCSSync.exe [108144 2012-11-05] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [UXTheme Launcher] => C:\Program Files (x86)\UXTheme Multi-Patcher\themeengine.exe [292756 2016-09-20] (Windows X) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [Przypominacz JT] => C:\Program Files (x86)\Przypominacz JT\Przypominacz JT.exe [984064 2015-05-20] () [Brak podpisu cyfrowego] HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [168456 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [460944 2022-09-01] (Power Software Limited -> Power Software Ltd) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1675107270-3473818411-2658658411-1001\...\Run: [Nexus] => C:\Program Files (x86)\Winstep\Nexus.exe [13047936 2016-06-27] (Winstep Software Technologies) [Brak podpisu cyfrowego] HKU\S-1-5-21-1675107270-3473818411-2658658411-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38789456 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-1675107270-3473818411-2658658411-1001\...\Run: [Honeygain] => C:\Users\Włodek\AppData\Roaming\Honeygain\Honeygain.exe [6425960 2022-10-13] (Honeygain, UAB -> ) <==== UWAGA HKU\S-1-5-21-1675107270-3473818411-2658658411-1001\...\Run: [MicrosoftEdgeAutoLaunch_0AB92BD6D0553A73198AA9E97C9A33BD] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3877280 2022-12-08] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1675107270-3473818411-2658658411-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\ssText3d.scr [217088 2014-11-21] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\SCX425PC: C:\Windows\System32\spool\prtprocs\x64\scx425pc.dll [27648 2007-01-24] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider) HKLM\...\Print\Monitors\doPDF 7 Monitor: C:\Windows\system32\dopdfmn7.dll [24392 2010-12-14] (Softland -> Softland) HKLM\...\Print\Monitors\SCX425 Langmon: C:\Windows\system32\scx425l6.dll [22016 2007-01-24] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\108.0.5359.99\Installer\chrmstp.exe [2022-12-08] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\108.1.46.140\Installer\chrmstp.exe [2022-12-08] (Brave Software, Inc. -> Brave Software, Inc.) Startup: C:\Users\Włodek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HoneygainUpdater.lnk [2022-08-10] ShortcutTarget: HoneygainUpdater.lnk -> C:\Users\Włodek\AppData\Roaming\Honeygain\HoneygainUpdater.exe (Honeygain, UAB -> Honeygain) GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicyScripts: Ograniczenia <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {044C0ECB-D77C-4D85-A7C5-01275585901D} - \Microsoft\Windows\Autochk\Proxy -> Brak pliku <==== UWAGA Task: {1B43D4C9-F228-44BF-82AF-EC19434FDA88} - System32\Tasks\VivaldiUpdateCheck-153df008c2777c0e => C:\Users\Włodek\AppData\Local\Vivaldi\Application\update_notifier.exe [3426152 2022-12-09] (Vivaldi Technologies AS -> Vivaldi Technologies AS) Task: {28A982E3-53BD-4A8A-88CD-B376977B6205} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {2B4E7975-BF79-41F7-B8A5-FA9B154414F3} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AEC79F2-AE45-4C1A-83AC-46BF38580560} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-17] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {37BBAC2F-91C2-4339-B713-B214250C206E} - System32\Tasks\Microsoft\Windows\WindowsCalendar\Reminders - Włodek => C:\Program Files\Windows Calendar\WinCal.exe [967680 2009-04-11] (Microsoft Corporation) [Brak podpisu cyfrowego] Task: {562B5A11-6DEA-4C2F-8456-BD05CE9540F6} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "1805dc32-d07a-4623-9b88-13a7682d2cf6" --version "6.05.10110" --silent Task: {74E87624-0715-4499-9176-FE0D3FBC87E5} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB" Task: {78647EF3-FCCB-4770-916E-FC3B61F100D3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-23] (Google LLC -> Google LLC) Task: {8A10980D-1CCE-4E7E-BBB0-C7029F0D437B} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2021-11-23] (Google LLC -> Google LLC) Task: {A2C4E815-9879-4C77-9667-31B7AB3D7608} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{0E5A64B0-9051-4150-98B1-B410F18F5F89} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-17] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {A9E4B837-EC43-4566-BDFC-9BC85CA37B58} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-10-20] (Piriform Software Ltd -> Piriform) Task: {B20AA9F9-1314-4405-B8F6-218C2808721E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.) Task: {E4E6BCE0-F548-4A45-848B-7E011488A052} - System32\Tasks\Microsoft\Windows\.NET Framework\NlsLexicoernat => rundll32.exe C:\Users\Włodek\AppData\Local\TabletDownload\PassWuiue\Tze_6ePaibidrs.dll,agqm_Yfq50 Task: {F4A6B446-4044-49F0-9D1A-58A0DE91967B} - System32\Tasks\CCleanerSkipUAC - Włodek => C:\Program Files\CCleaner\CCleaner.exe [32472400 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {FFD360E8-88A8-4BBD-830E-C268D15CB914} - System32\Tasks\Opera scheduled Autoupdate 1641929602 => C:\Users\Włodek\AppData\Local\Programs\Opera\launcher.exe [2631112 2022-12-01] (Opera Norway AS -> Opera Software) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.2.1 Tcpip\..\Interfaces\{352DC91B-77B8-484E-82E3-0648A9579453}: [DhcpNameServer] 192.168.2.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default [2022-12-11] Edge HomePage: Default -> hxxp://www.google.pl/ Edge StartupUrls: Default -> "hxxps://www.google.pl/?gws_rd=ssl" Edge Extension: (Tłumacz Google) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-11-29] Edge Extension: (ySense Addon) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\anobgajmajgjnfaapoobabennkemmgdm [2022-11-29] Edge Extension: (Video Downloader professional) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2022-11-29] Edge Extension: (Netpanel) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2022-11-29] Edge Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-11-29] Edge Extension: (Session Manager) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2022-11-29] Edge Extension: (ImTranslator: Tłumacz, Słownik, Głos) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2022-11-29] Edge Extension: (Bloker reklam AdGuard) - C:\Users\Włodek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pdffkfellgipmhklpdmokmckkkfcopbh [2022-11-29] FireFox: ======== FF DefaultProfile: nmbxtb6o.default FF ProfilePath: C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\nmbxtb6o.default [2022-01-27] FF ProfilePath: C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release [2022-12-08] FF DownloadDir: C:\Users\Włodek\Desktop FF Homepage: Mozilla\Firefox\Profiles\k8hb7rd8.default-release -> hxxps://www.google.pl/ FF Extension: (Facebook Container) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\@contain-facebook.xpi [2022-11-14] FF Extension: (Bloker reklam AdGuard) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\adguardadblocker@adguard.com.xpi [2022-11-14] FF Extension: (Ant Video downloader) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\anttoolbar@ant.com.xpi [2022-01-19] FF Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\cashback_letyshops@LetyShops.xpi [2022-11-14] FF Extension: (Close Tab Button) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\close-tab-single@codefisher.org.xpi [2021-12-16] FF Extension: (Close Tab Button) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\closeTab@fmarin.com.xpi [2021-12-16] FF Extension: (Video Downloader professional) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\ffext_basicvideoext@startpage24.xpi [2022-04-20] FF Extension: (SaveFrom.net helper) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\helper@savefrom.net.xpi [2022-11-14] FF Extension: (Privacy Badger) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2022-10-17] FF Extension: (noflash) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\jid1-n8wH2cBfc2QaUj@jetpack.xpi [2021-12-16] FF Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2022-11-14] FF Extension: (Multiple URL Opener) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\multiple-url-opener-toolbarteam101@gmail.com.xpi [2021-12-16] FF Extension: (Tab Session Manager) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\Tab-Session-Manager@sienori.xpi [2022-09-22] FF Extension: (Google Translator for Firefox) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\translator@zoli.bod.xpi [2021-12-16] FF Extension: (uBlock Origin) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\uBlock0@raymondhill.net.xpi [2022-11-14] FF Extension: (Print/Print Preview) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\{4e6c9475-6f44-463a-999a-cb7895cc5d04}.xpi [2021-12-16] FF Extension: (QuickCut) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\{6c593866-3790-4c8e-8a38-7d06ea71b960}.xpi [2021-12-16] FF Extension: (Video DownloadHelper) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2022-01-27] FF Extension: (Behind The Overlay Revival) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\{c0e1baea-b4cb-4b62-97f0-278392ff8c37}.xpi [2021-12-16] FF Extension: (searchBarShortcut) - C:\Users\Włodek\AppData\Roaming\Mozilla\Firefox\Profiles\k8hb7rd8.default-release\Extensions\{cdb10d05-9277-48dd-afc3-e01eca7fbcce}.xpi [2021-12-16] FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-11-14] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default [2022-12-11] CHR DownloadDir: C:\Users\Włodek\Desktop CHR Notifications: Default -> hxxps://talkonlinepanel.com CHR HomePage: Default -> hxxp://www.google.pl/ CHR StartupUrls: Default -> "hxxps://www.google.pl/?gws_rd=ssl" CHR Extension: (Tłumacz Google) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-09] CHR Extension: (Bloker reklam AdGuard) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-11-24] CHR Extension: (Video Downloader professional) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2022-11-01] CHR Extension: (Dokumenty Google offline) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-12-01] CHR Extension: (ySense Addon) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\hjnhcgkngeeahimbfhejeaiijecekhba [2021-11-23] CHR Extension: (Netpanel) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2022-11-24] CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-11-15] CHR Extension: (Session Manager) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2021-11-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-11-23] CHR Extension: (ImTranslator: Tłumacz, Słownik, Głos) - C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2022-11-28] CHR Profile: C:\Users\Włodek\AppData\Local\Google\Chrome\User Data\System Profile [2022-12-08] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] Opera: ======= OPR Profile: C:\Users\Włodek\AppData\Roaming\Opera Software\Opera Stable [2022-12-11] OPR DownloadDir: C:\Users\Włodek\Desktop OPR StartupUrls: Opera Stable -> "hxxp://www.google.pl/" OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\Włodek\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-11-01] OPR Extension: (Opera Wallet) - C:\Users\Włodek\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-11-01] OPR Extension: (Amazon Assistant Promotion) - C:\Users\Włodek\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-01-11] Brave: ======= BRA Profile: C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2022-12-08] BRA HomePage: Default -> hxxp://www.google.pl/ BRA Extension: (Tłumacz Google) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-08-17] BRA Extension: (Bloker reklam AdGuard) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-10-20] BRA Extension: (alerabat.com | kupony i cashback) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2022-10-23] BRA Extension: (ySense Addon) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hjnhcgkngeeahimbfhejeaiijecekhba [2022-08-17] BRA Extension: (CPX Log Version 2.1) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ifkljhpjfghjeofndeoiapodnlbokljn [2022-08-17] BRA Extension: (Netpanel) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kbidbgoheiddfilfipcobicemncfogno [2022-10-23] BRA Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-10-23] BRA Extension: (Session Manager) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\mghenlmbmjcpehccoangkdpagbcbkdpc [2022-08-17] BRA Extension: (ImTranslator: Tłumacz, Słownik, Głos) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\noaijdpnepcgjemiklgfkcfbkokogabh [2022-10-18] BRA Extension: (e-pity - dodatek) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2022-08-17] BRA Extension: (Brave Local Data Files Updater) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2022-10-25] BRA Extension: (Brave NTP background images) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2022-08-17] BRA Extension: (Wallet Data Files Updater) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2022-09-24] BRA Extension: (Brave Ad Block Updater (Default)) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\cffkpbalmllkdoenhmdmpbkajipdjfam [2022-10-25] BRA Extension: (Brave Ads Resources) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\feeklcgpaolphdiamjaolkkcpbeihkbh [2022-10-18] BRA Extension: (Brave Ads Resources) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\fojhemdeemkcacelmecilmibcjallejo [2022-08-17] BRA Extension: (Brave NTP sponsored images) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2022-10-25] BRA Extension: (Brave SpeedReader Updater) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\jicbkmdloagakknpihibphagfckhjdih [2022-08-17] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2022-10-25] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka, uBlocka Origin i AdGuarda)) - C:\Users\Włodek\AppData\Local\BraveSoftware\Brave-Browser\User Data\paoecjnjjbclkgbempaeemcbeldldlbo [2022-10-25] Vivaldi: ======= VIV Profile: C:\Users\Włodek\AppData\Local\Vivaldi\User Data\Default [2022-12-08] VIV DownloadDir: C:\Users\Włodek\Downloads VIV HomePage: Default -> hxxp://www.google.pl/ VIV Extension: (e-pity - dodatek) - C:\Users\Włodek\AppData\Local\Vivaldi\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2022-10-28] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-17] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174976 2022-08-17] (Brave Software, Inc. -> BraveSoftware Inc.) R2 Everything; C:\Program Files\Everything\Everything.exe [2265096 2022-10-10] (voidtools -> voidtools) R2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [87432 2022-04-05] (MIXBYTE, INC. -> Freemake) S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [347408 2022-11-22] (Underwriters Laboratories Inc. -> Futuremark) R2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2021-12-04] () [Brak podpisu cyfrowego] R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [96632 2021-05-26] (Panda Security S.L. -> Panda Security, S.L.) S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [84176 2019-02-19] (Panda Security S.L. -> Panda Security, S.L.) R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [59440 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R2 SbieSvc; C:\Program Files\Sandboxie-Plus\SbieSvc.exe [366032 2022-11-08] (Tonalio GmbH -> Sandboxie-Plus.com) R2 UnsignedThemes; C:\Windows\unsignedthemes.exe [13824 2013-09-23] (The Within Network, LLC) [Brak podpisu cyfrowego] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [112144 2021-05-18] (Microsoft Corporation -> Microsoft Corporation) R2 Winstep Xtreme Service; C:\Program Files (x86)\Winstep\WsxService.exe [774656 2016-06-07] (Winstep Software Technologies) [Brak podpisu cyfrowego] S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\108.1.46.140\elevation_service.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aftap0901; C:\Windows\system32\DRIVERS\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) S0 amdkmafd; C:\Windows\System32\drivers\amdkmafd.sys [23240 2015-08-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S1 ASPI32; C:\Windows\SysWow64\Drivers\ASPI32.sys [25244 2006-05-11] (Adaptec) [Brak podpisu cyfrowego] R3 bthav; C:\Windows\system32\drivers\bthav.sys [40448 2022-10-07] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc) S2 DgiVecp; C:\Windows\system32\Drivers\DgiVecp.sys [53816 2009-03-02] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [18016 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2014-11-18] (CHENGDU YIWO Tech Development Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 MHIKEY10; C:\Windows\System32\Drivers\MHIKEY10x64.sys [60288 2010-09-15] (Microsoft Windows Hardware Compatibility Publisher -> Generic USB smartcard reader) R1 NNSDNS; C:\Windows\System32\DRIVERS\NNSDns.sys [141344 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [213432 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [125888 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [132568 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\system32\DRIVERS\NNSNAHSL.sys [111296 2020-11-23] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [153168 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [102688 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [135664 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [348880 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [354264 2021-05-23] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [123328 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [329304 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R3 NVHDA; C:\Windows\system32\drivers\nvhda64v.sys [136848 2022-10-31] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R3 nvlddmkm; C:\Windows\system32\DRIVERS\nvlddmkm.sys [37085104 2022-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [198240 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [172496 2021-05-24] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [219592 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [150480 2020-12-27] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [162376 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [131744 2020-12-02] (Panda Security S.L. -> Panda Security, S.L.) U3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [72792 2019-02-20] (Panda Security S.L. -> Panda Security, S.L.) R3 SbieDrv; C:\Program Files\Sandboxie-Plus\SbieDrv.sys [250896 2022-11-08] (Microsoft Windows Hardware Compatibility Publisher -> Sandboxie-Plus.com) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> ) R2 uxstyle; C:\Windows\system32\Drivers\uxstyle.sys [31440 2013-09-23] (The Within Network, LLC -> The Within Network, LLC) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation) U4 dmwappushservice; Brak ImagePath S4 nvvad_WaveExtensible; \SystemRoot\system32\drivers\nvvad64v.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-12-11 21:26 - 2022-12-11 21:26 - 000032921 _____ C:\Users\Włodek\Desktop\FRST.txt 2022-12-11 21:24 - 2022-12-11 21:26 - 000000000 ____D C:\FRST 2022-12-11 21:23 - 2022-12-11 21:23 - 002375680 _____ (Farbar) C:\Users\Włodek\Desktop\FRST64.exe 2022-12-11 20:04 - 2022-12-11 20:04 - 000000069 _____ C:\Users\Włodek\Desktop\(5) Transport Fever 2 (PC 2020 Full Version) - Free Download - Pobierz Za Darmo - YouTube.url 2022-12-11 19:56 - 2022-12-11 20:57 - 1063004405 _____ C:\Users\Włodek\Desktop\Transport_Fever_2_v27600_Repack-Razor1911.part1.rar 2022-12-11 18:20 - 2022-12-11 20:03 - 000000000 ____D C:\Users\Włodek\Desktop\Transport Fever 2 informacje 2022-12-11 18:08 - 2022-12-11 20:43 - 1063004405 _____ C:\Users\Włodek\Desktop\Transport_Fever_2_v27600_Repack-Razor1911.part2.rar 2022-12-11 18:06 - 2022-12-11 19:50 - 443223761 _____ C:\Users\Włodek\Desktop\Transport_Fever_2_v27600_Repack-Razor1911.part3.rar 2022-12-11 14:20 - 2022-12-11 14:20 - 000078513 _____ C:\Users\Włodek\Desktop\stdout.txt 2022-12-11 13:17 - 2019-02-20 15:10 - 000072792 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2022-12-10 23:33 - 2022-12-10 23:33 - 000000000 ____D C:\Users\Włodek\.gstreamer-0.10 2022-12-10 23:32 - 2022-12-10 23:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Chomikuj.pl 2022-12-10 23:32 - 2022-12-10 23:32 - 000000000 ____D C:\Program Files (x86)\ChomikBox 2022-12-08 17:21 - 2022-12-08 20:02 - 000000150 _____ C:\Windows\Reimage.ini 2022-12-08 02:15 - 2022-12-08 02:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ScanSpeeder 2022-12-07 14:16 - 2022-12-07 14:17 - 120465002 _____ C:\Users\Włodek\Desktop\SUPER LEKKI WINDOWS 10 PRZYSPIESZ SWÓJ KOMPUTER (NAJ. USTAWIENIA). PORADY INFORMATYKA RGBtech.avi 2022-12-05 22:20 - 2022-12-05 22:20 - 000000069 _____ C:\Users\Włodek\Desktop\(21) SĄSIEDZI - POLSKI DRAMAT WOJENNY FULL HD, WYSTĘPUJĄ- JÓZEF NOWAK, MARIAN OPANIA, JAN MACHULSKI - YouTube.url 2022-12-04 23:02 - 2022-12-04 23:02 - 000000000 ____D C:\Program Files (x86)\Futuremark 2022-12-04 12:11 - 2022-12-04 12:11 - 000000000 ___RD C:\Sandbox 2022-12-04 12:09 - 2022-12-04 12:09 - 000000978 _____ C:\Users\Włodek\Desktop\Przeglądarka WWW w trybie piaskownicy.lnk 2022-12-04 12:08 - 2022-12-04 12:10 - 000001412 _____ C:\Windows\Sandboxie.ini 2022-12-04 12:08 - 2022-12-04 12:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie-Plus 2022-12-04 12:08 - 2022-12-04 12:08 - 000000000 ____D C:\Program Files\Sandboxie-Plus 2022-12-04 00:09 - 2022-12-04 00:09 - 000000000 ____D C:\Users\Włodek\Documents\My Cheat Tables 2022-12-03 22:21 - 2022-12-05 02:30 - 000000000 ____D C:\Users\WGLCache 2022-12-03 22:21 - 2022-12-03 22:21 - 000000000 ____D C:\Users\W 2022-12-03 20:35 - 2022-12-03 20:35 - 000000058 _____ C:\Users\Włodek\Desktop\ElAmigos official site.url 2022-12-03 20:25 - 2022-12-03 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transport Fever 2 2022-12-03 20:16 - 2022-12-03 20:28 - 000000000 ____D C:\Program Files\Transport Fever 2 2022-12-03 16:10 - 2022-10-31 06:18 - 000994344 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2022-12-03 16:10 - 2022-10-31 06:18 - 000085544 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2022-12-03 16:10 - 2022-03-02 06:34 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2022-12-03 16:09 - 2022-12-03 16:10 - 000000000 ____D C:\Windows\LastGood 2022-12-03 16:09 - 2022-12-03 16:09 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2022-12-03 16:09 - 2022-11-01 22:27 - 017703424 _____ (NVIDIA Corporation) C:\Windows\system32\nvvm64_40_0.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 001859728 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2022-12-03 16:09 - 2022-11-01 22:27 - 001859728 _____ C:\Windows\system32\vulkaninfo.exe 2022-12-03 16:09 - 2022-11-01 22:27 - 001439872 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2022-12-03 16:09 - 2022-11-01 22:27 - 001439872 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2022-12-03 16:09 - 2022-11-01 22:27 - 001098928 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 001098928 _____ C:\Windows\system32\vulkan-1.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 000953008 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 000953008 _____ C:\Windows\SysWOW64\vulkan-1.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 000529384 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 000461872 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2022-12-03 16:09 - 2022-11-01 22:27 - 000359976 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2022-12-03 16:09 - 2022-11-01 22:26 - 076683240 _____ (NVIDIA Corporation) C:\Windows\system32\nvrtum64.dll 2022-12-03 16:09 - 2022-11-01 22:26 - 008807912 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler64.dll 2022-12-03 16:09 - 2022-11-01 22:26 - 007756288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler32.dll 2022-12-03 16:09 - 2022-11-01 22:26 - 000454120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2022-12-03 16:09 - 2022-11-01 22:25 - 233664048 _____ (NVIDIA Corporation) C:\Windows\system32\nvoptix.dll 2022-12-03 16:09 - 2022-11-01 22:25 - 044592120 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2022-12-03 16:09 - 2022-11-01 22:25 - 018606104 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl64.dll 2022-12-03 16:09 - 2022-11-01 22:25 - 016135720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl32.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 037085104 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2022-12-03 16:09 - 2022-11-01 22:24 - 033648136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 001522680 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 001172456 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000678912 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000566768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000432640 _____ C:\Windows\system32\nvofapi64.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000386056 _____ C:\Windows\SysWOW64\nvofapi.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000227336 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000205320 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000192504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2022-12-03 16:09 - 2022-11-01 22:24 - 000171512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 002115064 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 001735176 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6447406.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 001595896 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 001494008 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6447406.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 000550920 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2022-12-03 16:09 - 2022-11-01 22:23 - 000478216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 046113328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler64.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 041376304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler32.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 022713328 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 019834352 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 008446504 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 007624752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2022-12-03 16:09 - 2022-11-01 22:22 - 000695856 _____ (NVIDIA Corporation) C:\Windows\system32\nvcbl64.dll 2022-12-03 16:09 - 2022-11-01 22:16 - 076492864 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2022-12-03 16:09 - 2022-11-01 22:16 - 032521224 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2022-12-03 16:09 - 2022-11-01 22:16 - 025667032 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2022-12-03 16:09 - 2022-11-01 22:16 - 000218184 _____ (NVIDIA Corporation) C:\Windows\system32\nvdlistx.dll 2022-12-03 16:09 - 2022-11-01 22:16 - 000183760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvdlist.dll 2022-12-03 16:09 - 2022-11-01 22:15 - 021949856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2022-12-03 16:09 - 2022-11-01 22:15 - 007481864 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2022-12-03 16:09 - 2022-11-01 22:15 - 006334104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2022-12-03 16:09 - 2022-10-31 10:00 - 001689256 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2022-12-03 16:09 - 2022-10-31 10:00 - 000136848 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2022-12-03 16:09 - 2022-10-31 10:00 - 000044544 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2022-12-03 16:09 - 2022-10-31 10:00 - 000000671 _____ C:\Windows\SysWOW64\nv-vk32.json 2022-12-03 16:09 - 2022-10-31 10:00 - 000000671 _____ C:\Windows\system32\nv-vk64.json 2022-12-02 00:47 - 2022-12-02 00:51 - 206284452 _____ C:\Users\Włodek\Desktop\lenovo-rozbiórka laptopa od tyłu.avi 2022-12-01 17:15 - 2022-12-01 17:30 - 000000000 ____D C:\Users\Włodek\Desktop\balabolka 2022-11-30 17:38 - 2022-12-06 22:53 - 000000000 ____D C:\Users\Włodek\Desktop\Nowy folder 2022-11-29 02:25 - 2022-11-29 02:25 - 000000069 _____ C:\Users\Włodek\Desktop\(3) mały perkusista - YouTube.url 2022-11-27 01:19 - 2022-11-27 01:19 - 000000000 ____D C:\Program Files (x86)\MSECache 2022-11-26 01:18 - 2022-11-26 01:18 - 000000069 _____ C:\Users\Włodek\Desktop\(6) Niezwykłe i tajemnicze miejsca w Polsce cz.1 - Lektor PL - 42 min. - 4K - YouTube.url 2022-11-25 01:53 - 2022-11-25 01:54 - 035781539 _____ C:\Users\Włodek\Desktop\X2Convert.com caroline_campbell_csa_rda_s_v_monti_4559123202681700523.mp4 2022-11-20 23:50 - 2022-11-20 23:50 - 000047999 _____ C:\Users\Włodek\Desktop\5702721400_1531387008.jpeg 2022-11-16 23:48 - 2022-11-16 23:49 - 000000000 ____D C:\Windows\LastGood.Tmp 2022-11-16 23:45 - 2022-11-16 23:45 - 000000000 ____D C:\Program Files\NVIDIA 2022-11-16 23:08 - 2022-12-03 20:41 - 000000000 ____D C:\Users\Włodek\Desktop\SKRÓTY MAŁO UŻYWANE 2022-11-16 22:33 - 2022-11-16 22:33 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\RapidCRC 2022-11-16 22:30 - 2022-11-16 22:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Railway Empire 2022-11-16 22:27 - 2022-11-16 23:14 - 000000000 ____D C:\Program Files\Railway Empire 2022-11-16 12:15 - 2022-11-16 12:15 - 000000000 ____D C:\Users\Włodek\Documents\My Games 2022-11-16 12:15 - 2022-11-16 12:15 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Kalypso Media 2022-11-16 11:46 - 2022-11-16 11:46 - 000000000 ____D C:\Users\Włodek\Documents\Bandicut 2022-11-16 11:46 - 2022-11-16 11:46 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\BANDISOFT 2022-11-16 11:45 - 2022-11-16 11:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bandicut 2022-11-16 11:45 - 2022-11-16 11:45 - 000000000 ____D C:\Program Files (x86)\Bandicut 2022-11-16 02:17 - 2022-11-16 02:17 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\ow-electron 2022-11-15 12:54 - 2022-11-15 12:54 - 000006871 _____ C:\Users\Włodek\Desktop\Zobacz_temat___Domofon___zdalne_otwieranie_z_innego_pomieszczenia.htm 2022-11-14 22:51 - 2022-11-14 22:51 - 002421488 _____ C:\Users\Włodek\Desktop\Instrukcja monitora Samsung 932MP A.pdf 2022-11-14 22:41 - 2022-11-14 22:42 - 000000000 ____D C:\Users\Włodek\AppData\LocalLow\Netopsystems 2022-11-12 18:25 - 2022-11-16 12:28 - 000000000 ____D C:\Program Files (x86)\Max2k 2022-11-12 00:39 - 2022-11-12 01:25 - 000000000 ____D C:\Program Files (x86)\Transport Giant - Zlota Edycja 2022-11-12 00:39 - 2022-11-12 00:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transport Giant - Złota Edycja ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-12-11 21:26 - 2021-11-20 19:56 - 000000000 ____D C:\TEMP 2022-12-11 21:15 - 2021-11-23 17:52 - 000000000 ____D C:\Program Files (x86)\Google 2022-12-11 20:14 - 2021-12-13 16:51 - 000000000 ____D C:\Users\Włodek\AppData\LocalLow\Mozilla 2022-12-11 20:03 - 2021-12-03 00:00 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Everything 2022-12-11 18:25 - 2021-12-04 23:39 - 007437312 ___SH C:\Users\Włodek\Desktop\Thumbs.db 2022-12-11 15:13 - 2021-11-20 18:57 - 000003600 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1675107270-3473818411-2658658411-1001 2022-12-11 13:29 - 2022-09-30 10:41 - 000003346 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2022-12-11 13:29 - 2022-09-30 10:41 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2022-12-11 13:29 - 2021-12-07 23:58 - 000000000 ____D C:\Program Files\CCleaner 2022-12-11 13:27 - 2014-11-21 05:46 - 001827818 _____ C:\Windows\system32\PerfStringBackup.INI 2022-12-11 13:27 - 2014-11-21 05:07 - 000806816 _____ C:\Windows\system32\perfh015.dat 2022-12-11 13:27 - 2014-11-21 05:07 - 000163610 _____ C:\Windows\system32\perfc015.dat 2022-12-11 13:27 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf 2022-12-11 13:17 - 2022-10-09 19:01 - 000000026 _____ C:\Users\Włodek\Documents\Przypominacz JT - zaplanowane przypomnienia.txt 2022-12-11 13:17 - 2021-12-11 12:52 - 000000000 ____D C:\ProgramData\NVIDIA 2022-12-11 13:17 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-12-11 02:49 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI 2022-12-10 23:33 - 2021-11-20 18:46 - 000000000 ____D C:\Users\Włodek 2022-12-10 23:10 - 2021-12-04 22:10 - 000003652 _____ C:\Users\Włodek\Documents\Przypominacz JT - archiwalne przypomnienia.txt 2022-12-10 18:21 - 2021-11-22 20:31 - 000002259 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-12-10 18:15 - 2021-12-03 11:25 - 000000000 ____D C:\Program Files (x86)\OEClassic 2022-12-09 22:33 - 2022-10-28 21:32 - 000002382 _____ C:\Users\Włodek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk 2022-12-08 22:17 - 2021-11-23 17:53 - 000002202 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-12-08 22:06 - 2022-08-17 00:55 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2022-12-08 17:29 - 2021-12-02 23:52 - 000000000 ____D C:\Users\Public\Documents\Winstep 2022-12-08 02:15 - 2022-08-17 22:13 - 000000000 ____D C:\Program Files (x86)\ScanSpeeder 2022-12-08 02:11 - 2021-12-20 13:21 - 000000000 ____D C:\Program Files (x86)\Steam 2022-12-04 02:18 - 2022-11-06 23:00 - 000000000 ____D C:\Users\Włodek\Desktop\GRY 2022-12-04 02:10 - 2021-12-29 23:29 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome 2022-12-03 18:11 - 2021-12-11 12:52 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-12-03 16:27 - 2022-07-11 22:25 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Smart Driver Manager 2022-12-03 16:11 - 2021-12-11 12:52 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-12-03 16:11 - 2021-12-11 12:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-12-03 16:10 - 2021-12-11 13:07 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\NVIDIA 2022-12-03 15:56 - 2022-01-11 20:33 - 000004110 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1641929602 2022-12-03 15:56 - 2022-01-11 20:33 - 000001448 _____ C:\Users\Włodek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2022-11-29 21:04 - 2021-12-25 00:53 - 000000000 ____D C:\Users\Włodek\.smplayer 2022-11-27 15:03 - 2021-12-20 13:33 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2022-11-27 14:41 - 2021-12-13 01:21 - 000000000 ____D C:\Program Files (x86)\Trains and Trucks Tycoon 2022-11-24 23:45 - 2021-12-11 13:24 - 000000000 ____D C:\Users\Włodek\Documents\OpenTTD 2022-11-24 22:19 - 2022-11-06 22:46 - 000466456 _____ (Creative Labs) C:\Windows\system32\wrap_oal.dll 2022-11-24 22:19 - 2022-11-06 22:46 - 000444952 _____ (Creative Labs) C:\Windows\SysWOW64\wrap_oal.dll 2022-11-24 22:19 - 2022-11-06 22:46 - 000122904 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\system32\OpenAL32.dll 2022-11-24 22:19 - 2022-11-06 22:46 - 000109080 _____ (Portions (C) Creative Labs Inc. and NVIDIA Corp.) C:\Windows\SysWOW64\OpenAL32.dll 2022-11-24 00:20 - 2022-01-05 16:35 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\vlc 2022-11-22 01:07 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\system32\NDF 2022-11-20 00:33 - 2022-11-06 02:27 - 000000000 ____D C:\Users\Włodek\Documents\Euro Truck Simulator 2 2022-11-18 20:49 - 2022-09-10 20:54 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\com.adobe.dunamis 2022-11-18 00:02 - 2022-10-13 02:07 - 000002085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk 2022-11-16 16:08 - 2022-10-28 21:32 - 000000527 _____ C:\Users\Włodek\.vivaldi_reporting_data 2022-11-16 12:47 - 2022-09-10 23:12 - 000000000 ____D C:\Program Files\JDownloader 2022-11-16 12:21 - 2021-12-08 00:48 - 000000000 ____D C:\Windows\SysWOW64\directx 2022-11-15 18:29 - 2022-11-02 22:22 - 000000000 ____D C:\Users\Włodek\Documents\Euro Truck Simulator 2022-11-15 12:06 - 2021-12-13 16:51 - 000000000 ____D C:\Program Files\Mozilla Firefox 2022-11-15 12:06 - 2021-12-13 16:51 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-11-14 23:51 - 2022-03-02 18:14 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-11-14 23:50 - 2022-01-19 20:23 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2022-11-14 23:50 - 2021-12-13 16:51 - 000000954 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2022-11-14 21:58 - 2021-11-22 20:29 - 000003466 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-11-14 21:58 - 2021-11-22 20:29 - 000003338 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-11-13 13:20 - 2021-12-04 23:13 - 000000000 ____D C:\Users\Włodek\Documents\Pliki programu Outlook 2022-11-12 23:18 - 2021-12-03 02:28 - 000000000 ____D C:\Program Files (x86)\SpeedFan 2022-11-12 00:39 - 2021-12-13 01:21 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2022-11-11 16:45 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\rescache 2022-11-11 01:22 - 2022-11-10 16:49 - 000000000 ____D C:\Program Files (x86)\TS12 2022-11-11 01:22 - 2021-12-13 16:51 - 000000000 ____D C:\Users\Włodek\AppData\Roaming\Mozilla ==================== Pliki w katalogu głównym wybranych folderów ======== 2021-12-07 00:18 - 2019-01-11 21:30 - 000000224 _____ () C:\ProgramData\prtdbsot.dll 2021-12-22 01:30 - 2021-12-22 01:30 - 000000000 _____ () C:\Users\Włodek\AppData\Roaming\FileIn.cns 2021-12-22 01:30 - 2021-12-22 01:30 - 000000000 _____ () C:\Users\Włodek\AppData\Roaming\FileOut.cns 2022-11-01 02:11 - 2022-11-01 02:11 - 050123776 _____ () C:\Users\Włodek\AppData\Local\ffmpeg.exe 2022-11-01 02:11 - 2022-11-01 02:11 - 050029056 _____ () C:\Users\Włodek\AppData\Local\ffprobe.exe 2022-12-01 22:54 - 2022-12-01 22:54 - 000000776 _____ () C:\Users\Włodek\AppData\Local\recently-used.xbel 2022-10-11 01:22 - 2022-12-09 03:09 - 000007609 _____ () C:\Users\Włodek\AppData\Local\resmon.resmoncfg 2022-11-01 02:11 - 2022-11-01 02:11 - 008102192 _____ () C:\Users\Włodek\AppData\Local\ui.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2022-12-05 15:03 ==================== Koniec FRST.txt ========================