Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 12-07-2023 Uruchomiony przez jozwi (administrator) DESKTOP-N20G001 (Dell Inc. Latitude 7280) (12-07-2023 20:39:18) Uruchomiony z C:\Users\jozwi\Downloads\FRST64.exe Załadowane profile: jozwi Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.3208 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApntEx.exe (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE CO., LTD.) C:\Windows\System32\DellTPad\ApMsgFwd.exe (DellTPad\Apoint.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\hidfind.exe (DellTPad\Apoint.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\ApRemote.exe (DellTPad\HidMonitorSvc.exe ->) (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\Apoint.exe (DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxEM.exe (explorer.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (explorer.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.272\GoogleCrashHandler64.exe (Intel\DPTF\esif_uf.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) C:\Windows\System32\DellTPad\HidMonitorSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_e6d6f5a306002a89\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_e192e6f3fb1cfc71\RstMwService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_141eb88527011137\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d0b39b11619fd0c4\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\ThunderboltService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (services.exe ->) (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe (svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5131.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (svchost.exe ->) (Intel(R) Client Connectivity Division SW -> Intel Corporation) C:\Program Files (x86)\Intel\Thunderbolt Software\ConditionalAppStarter.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21490.0_x64__8wekyb3d8bbwe\HxOutlook.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.21490.0_x64__8wekyb3d8bbwe\HxTsr.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\PrintIsolationHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3205_none_7e1f4da67c811930\TiWorker.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [11102816 2021-01-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3618096 2021-01-22] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [WavesSvc] => c:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1236688 2020-12-04] (Waves Inc -> Waves Audio Ltd.) HKU\S-1-5-21-3172094519-2388512429-803142040-1001\...\MountPoints2: {952a44ed-f955-11eb-87f1-1c4d704eca45} - "D:\startme.exe" HKLM\...\Windows x64\Print Processors\Canon iP7200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDBA.DLL [30208 2012-04-16] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJ Language Monitor iP7200 series: C:\WINDOWS\system32\CNMLMBA.DLL [389120 2012-04-16] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\Canon BJNP Port: C:\WINDOWS\system32\CNMN6PPM.DLL [359936 2012-06-14] (CANON INC.) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\114.0.5735.199\Installer\chrmstp.exe [2023-07-03] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma Loader.exe.lnk [2020-10-28] ShortcutTarget: Adobe Gamma Loader.exe.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Brak podpisu cyfrowego] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AOM.lnk [2022-12-03] ShortcutTarget: AOM.lnk -> C:\Program Files (x86)\Common Files\Adobe\Web\AOM.exe (Adobe Systems, Incorporated) [Brak podpisu cyfrowego] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Windows Defender.lnk [2023-06-16] ShortcutTarget: Windows Defender.lnk -> C:\Program Files (x86)\Setup\metaads.bat () [Brak podpisu cyfrowego] ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {5CF885CA-448B-4882-990A-81CFF5FEE3CD} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {970781A5-D059-4EF2-8B7A-8EF9760BBD7E} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-28] (Google LLC -> Google LLC) Task: {929D4496-F64B-4A21-8D03-4CBD971D5C55} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-28] (Google LLC -> Google LLC) Task: {3E0E8680-1FFB-4980-9CAD-87D671EB827C} - System32\Tasks\Intel\Intel® Management and Security Status => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [219848 2022-08-21] (Intel Corporation -> Intel Corporation) -> "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe" 60 Task: {700AFC45-5233-4329-8317-FE681567E2B6} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on login if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {4DE40F76-91B9-4FB5-AC70-B06AB606BD2C} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application on switch user if service is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {2B408FF4-3C69-4138-8E6B-3EF7AC794246} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt application when hardware is detected => C:\Program Files (x86)\Intel\Thunderbolt Software\\ConditionalAppStarter.exe [226008 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {96DE73BF-393A-475F-999C-DF14DE551650} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service on boot if driver is up => C:\Program Files (x86)\Intel\Thunderbolt Software\\tbtsvc.exe [2302168 ] (Intel(R) Client Connectivity Division SW -> Intel Corporation) Task: {94A316E0-76C8-4C2E-8991-852FBCF14E33} - System32\Tasks\Intel\Thunderbolt\Start Thunderbolt service when hardware is detected => C:\WINDOWS\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start ThunderboltService Task: {53CFF5C1-A8D3-4BB3-ADEB-37D3381F6020} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {60AC78B5-2F9E-4E16-A173-DFCCD0E3EFF4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {5867DB62-5D36-40EF-BCFE-85CAB8D54B28} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {085E6D16-DC75-48CB-8A84-BB0193EB2B36} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{d4efdd5d-b727-4b1f-92d4-92dc8453d8da}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{e26bbf8e-28d7-4d96-b4e4-0e12837411b6}: [DhcpNameServer] 192.168.1.1 HKLM\System\...\Parameters\PersistentRoutes: [169.254.0.0,255.255.0.0,192.168.1.19,1] Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\jozwi\AppData\Local\Microsoft\Edge\User Data\Default [2023-07-12] Edge Extension: (Edge relevant text changes) - C:\Users\jozwi\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-07-12] FireFox: ======== FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default [2023-07-12] CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.pl/" CHR Extension: (Earth View from Google Earth) - C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhloflhklmhfpedakmangadcdofhnnoh [2023-07-12] CHR Extension: (Slinky Elegancki) - C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2023-07-11] CHR Extension: (Dokumenty Google offline) - C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-07-12] CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-07-11] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\jozwi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-07-12] CHR Extension: (Google Translate) - C:\Program Files (x86)\Setup\nmmhkkegccagdldgiimedpiccmgmiedagg4 [2023-06-16] CHR HKU\S-1-5-21-3172094519-2388512429-803142040-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) R2 ApHidMonitorService; C:\WINDOWS\system32\DellTPad\HidMonitorSvc.exe [894848 2021-05-25] (ALPS ALPINE CO., LTD. -> ALPSALPINE Co., Ltd.) S2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [458960 2023-03-14] (Dell Inc -> Dell Technologies Inc.) S2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [161488 2023-03-14] (Dell Inc -> Dell Technologies Inc.) S2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [484560 2023-03-14] (Dell Inc -> Dell Technologies Inc.) S2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [49880 2023-01-19] (Dell Inc -> ) S2 DellTechHub; C:\Program Files\Dell\TechHub\Dell.TechHub.exe [156064 2022-12-09] (Dell Inc -> Dell) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402216 2023-07-12] (Microsoft Windows Publisher -> Microsoft Corporation) S2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [160096 2023-04-07] (Dell Inc -> Dell Inc.) R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [256608 2022-06-29] (Intel Corporation -> Intel Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe [3232576 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe [133592 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 ApHidfiltrService; C:\WINDOWS\System32\drivers\ApHidfiltr.sys [371312 2021-05-25] (ALPS ALPINE CO.,LTD. -> ALPSALPINE Co., Ltd.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2020-10-25] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 CH341SER_A64; C:\WINDOWS\System32\Drivers\CH341S64.SYS [78328 2021-08-25] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com) S3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [43400 2021-09-09] (Microsoft Windows Hardware Compatibility Publisher -> Dell Technologies) R3 DellInstrumentation; C:\WINDOWS\System32\drivers\DellInstrumentation.sys [46528 2023-03-14] (Microsoft Windows Hardware Compatibility Publisher -> Dell) S3 DPMDriver; C:\WINDOWS\System32\drivers\DPMDriver.sys [139680 2022-12-08] (IndiLogic LLC -> Dell Inc.) S4 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [207344 2023-04-14] (Disc Soft Ltd -> Duplex Secure Ltd) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2023-06-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [498944 2023-06-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99568 2023-06-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-07-12 19:51 - 2023-07-12 20:37 - 000001510 _____ C:\Users\jozwi\Downloads\Fixlog.txt 2023-07-12 15:14 - 2023-07-12 15:14 - 000031355 _____ C:\Users\jozwi\Downloads\Shortcut.txt 2023-07-12 15:06 - 2023-07-12 15:14 - 000039070 _____ C:\Users\jozwi\Downloads\Addition.txt 2023-07-12 15:02 - 2023-07-12 20:39 - 000000000 ____D C:\FRST 2023-07-12 15:01 - 2023-07-12 15:01 - 002384384 _____ (Farbar) C:\Users\jozwi\Downloads\FRST64.exe 2023-07-12 14:55 - 2023-07-12 14:55 - 000339856 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-07-12 14:31 - 2023-07-12 20:39 - 000018966 _____ C:\Users\jozwi\Downloads\FRST.txt 2023-07-12 13:51 - 2023-07-12 13:51 - 000000000 ___HD C:\$WinREAgent 2023-07-12 11:14 - 2023-07-12 11:14 - 000736096 _____ (Dell Inc.) C:\Users\jozwi\Downloads\SupportAssistInstaller.exe 2023-07-12 10:14 - 2023-07-12 10:14 - 000000000 ___SD C:\Users\defaultuser100000\AppData\Roaming\Microsoft\SystemCertificates 2023-07-12 10:14 - 2023-07-12 10:14 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\packages 2023-07-12 10:13 - 2023-07-12 10:13 - 000000000 ____D C:\Users\defaultuser100000\AppData\LocalLow\Intel 2023-07-12 10:12 - 2023-07-12 11:33 - 000000000 ____D C:\Users\defaultuser100000 2023-07-12 10:12 - 2023-07-12 10:13 - 000000000 ____D C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\Ustawienia lokalne 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\Szablony 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\Moje dokumenty 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\Menu Start 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\Dane aplikacji 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Tymczasowe pliki internetowe 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Historia 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Dane aplikacji 2023-07-12 10:12 - 2023-07-12 10:12 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\ConnectedDevicesPlatform 2023-07-12 10:12 - 2020-10-28 15:05 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\Microsoft Help 2023-07-12 07:40 - 2023-07-12 07:41 - 000000000 ____D C:\AdwCleaner 2023-07-06 20:29 - 2023-07-06 20:29 - 000061290 _____ C:\Users\jozwi\Downloads\uv_k5_01_26_rssi_sbar_encoded.bin 2023-07-06 20:22 - 2023-07-06 20:22 - 000061230 _____ C:\Users\jozwi\Downloads\uv_k5_01_26_most_useless_mod_encoded.bin 2023-07-03 13:44 - 2023-07-03 13:44 - 000061378 _____ C:\Users\jozwi\Downloads\uv_k5_01_26_rssi_printer_encoded_fix_01.bin 2023-06-25 22:01 - 2023-06-25 22:02 - 000000000 ____D C:\Program Files (x86)\CHIRP 2023-06-25 22:01 - 2023-06-25 22:01 - 023733048 _____ C:\Users\jozwi\Downloads\chirp-next-20230622-installer.exe 2023-06-16 08:47 - 2023-06-16 08:47 - 000000000 ____D C:\Program Files (x86)\Setup 2023-06-16 08:46 - 2023-06-16 08:46 - 000307864 _____ C:\Users\jozwi\Downloads\Google_AI.rar 2023-06-14 19:09 - 2023-06-14 19:09 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Radio Update Tools 2023-06-14 19:07 - 2023-06-14 19:09 - 000000000 ____D C:\Program Files (x86)\Anonym 2023-06-14 19:07 - 2023-06-14 19:07 - 000000000 ____D C:\Users\jozwi\Downloads\UV-K5_Firmware_Upgration_2023.05.13 2023-06-14 19:07 - 2023-06-14 19:07 - 000000000 ____D C:\Users\jozwi\Downloads\UV-K5 Programming Software-Neutral 2023-06-14 19:07 - 2023-06-14 19:07 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Portable Radio CPS 2023-06-14 19:04 - 2023-06-14 19:04 - 052696126 _____ C:\Users\jozwi\Downloads\UV-K5 Programming Software-Neutral.zip 2023-06-14 19:04 - 2023-06-14 19:04 - 037818308 _____ C:\Users\jozwi\Downloads\UV-K5_Firmware_Upgration_2023.05.13.zip ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-07-12 20:40 - 2021-12-28 10:15 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-07-12 20:40 - 2020-10-28 01:24 - 000000000 ____D C:\Program Files (x86)\Google 2023-07-12 20:38 - 2020-10-28 01:05 - 000000000 __SHD C:\Users\jozwi\IntelGraphicsProfiles 2023-07-12 20:38 - 2020-10-28 00:58 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-07-12 20:38 - 2020-10-28 00:58 - 000000000 ____D C:\Intel 2023-07-12 20:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\ServiceState 2023-07-12 20:38 - 2020-10-28 00:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-07-12 20:37 - 2020-10-28 00:57 - 000008192 ___SH C:\DumpStack.log.tmp 2023-07-12 20:37 - 2020-10-28 00:48 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-07-12 20:16 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-07-12 20:06 - 2020-10-28 01:05 - 001678234 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-07-12 20:06 - 2020-10-28 00:54 - 000750338 _____ C:\WINDOWS\system32\perfh015.dat 2023-07-12 20:06 - 2020-10-28 00:54 - 000145032 _____ C:\WINDOWS\system32\perfc015.dat 2023-07-12 20:06 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\INF 2023-07-12 19:51 - 2020-10-28 00:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2023-07-12 19:49 - 2020-10-29 22:42 - 000000000 ____D C:\ProgramData\Package Cache 2023-07-12 19:49 - 2020-10-29 22:10 - 000000000 ____D C:\ProgramData\Dell 2023-07-12 19:49 - 2020-10-29 22:10 - 000000000 ____D C:\Program Files\Dell 2023-07-12 15:01 - 2020-11-15 17:17 - 000000000 ____D C:\Users\jozwi\AppData\Local\D3DSCache 2023-07-12 14:50 - 2020-10-29 22:44 - 000019632 _____ C:\WINDOWS\SysWOW64\RtkMsgs.dll 2023-07-12 14:27 - 2023-03-06 10:00 - 000000000 ____D C:\WINDOWS\Minidump 2023-07-12 14:25 - 2020-10-28 19:17 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Microsoft\MMC 2023-07-12 14:23 - 2020-10-28 01:05 - 000000000 ____D C:\Users\jozwi\AppData\Local\Packages 2023-07-12 14:18 - 2020-10-28 00:49 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SystemResources 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\setup 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-07-12 14:00 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-07-12 13:56 - 2020-10-28 01:02 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-07-12 13:50 - 2022-04-02 10:44 - 000000000 ____D C:\Program Files\dotnet 2023-07-12 13:48 - 2020-10-28 15:09 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-07-12 13:35 - 2020-10-28 15:09 - 173351160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-07-12 13:24 - 2020-10-29 22:10 - 000000000 ____D C:\Program Files (x86)\Dell 2023-07-12 13:11 - 2023-04-14 10:31 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Disc-Soft 2023-07-12 13:11 - 2023-04-14 10:31 - 000000000 ____D C:\ProgramData\Disc-Soft 2023-07-12 12:12 - 2020-10-28 00:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-07-12 11:38 - 2020-10-28 00:55 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2023-07-12 11:38 - 2020-10-28 00:54 - 000000000 ____D C:\WINDOWS\SysWOW64\pl 2023-07-12 11:38 - 2020-10-28 00:54 - 000000000 ____D C:\WINDOWS\system32\pl 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\system32\F12 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\system32\dsc 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___SD C:\WINDOWS\system32\AppV 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\Keywords 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\ias 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\downlevel 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\Com 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\IME 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\DiagTrack 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Windows Portable Devices 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Common Files\System 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-07-12 11:38 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2023-07-12 11:38 - 2020-10-28 00:48 - 000000000 ____D C:\WINDOWS\servicing 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\MUI 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2023-07-12 11:37 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\system32\IME 2023-07-12 11:33 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\schemas 2023-07-12 11:33 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\Containers 2023-07-12 11:33 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\Branding 2023-07-12 11:33 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Windows Security 2023-07-12 11:33 - 2020-10-28 00:52 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2023-07-12 11:28 - 2020-10-28 00:52 - 000000000 ___HD C:\Program Files\WindowsApps 2023-07-12 11:27 - 2020-10-28 00:52 - 000000000 ____D C:\WINDOWS\registration 2023-07-12 11:22 - 2020-10-28 01:24 - 000000000 ____D C:\Users\jozwi\AppData\Local\Google 2023-07-12 11:21 - 2020-10-29 22:09 - 000000000 ____D C:\ProgramData\SupportAssist 2023-07-12 10:59 - 2020-10-31 13:08 - 000000000 ____D C:\Users\jozwi\AppData\Local\CrashDumps 2023-07-12 10:44 - 2020-10-28 01:03 - 000000000 ____D C:\Users\jozwi 2023-07-12 00:40 - 2021-07-20 22:15 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2023-07-12 00:40 - 2020-10-29 22:12 - 000000000 ____D C:\Users\jozwi\AppData\Local\Dell Inc 2023-07-11 20:01 - 2020-10-28 01:12 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-07-11 19:55 - 2020-10-28 01:10 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-07-11 19:55 - 2020-10-28 01:10 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-07-03 13:10 - 2020-10-28 01:27 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-06-26 22:12 - 2020-10-28 01:32 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Microsoft\Word 2023-06-26 22:12 - 2020-10-28 01:32 - 000000000 ____D C:\Users\jozwi\AppData\Roaming\Microsoft\Szablony 2023-06-19 19:47 - 2020-10-28 01:24 - 000003864 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2023-06-19 19:47 - 2020-10-28 01:24 - 000003740 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2023-06-14 19:10 - 2020-10-28 00:58 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================