Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-08.2024 Uruchomiony przez HP (administrator) HP (HP HP ProBook 450 G7) (01-09-2024 20:32:36) Uruchomiony z E:\_bieżące\FRST64.exe Załadowane profile: HP Platforma: Microsoft Windows 11 Pro Wersja 23H2 22631.4112 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.18500.10.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.54\msedgewebview2.exe <6> (DriverStore\FileRepository\cui_dch.inf_amd64_2bee269ff6068a49\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2bee269ff6068a49\igfxEM.exe (DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\BridgeCommunication.exe (explorer.exe ->) (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] C:\Users\Admin\Documents\efile\efileID\bin\efileIDAsystent.exe (explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE (explorer.exe ->) (SOFTLAND SRL -> ) C:\Program Files\Softland\novaPDF 11\Driver\Tray.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <14> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (SECOMN64.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOCL64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (services.exe ->) (charismathics GmbH) [Brak podpisu cyfrowego] C:\Windows\System32\cmEvtSrv64.exe (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe (services.exe ->) (Gen Digital Inc. -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\AppHelperCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\DiagsCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\NetworkCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\SysInfoCap.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2bee269ff6068a49\igfxCUIService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_b56b111c605faf54\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d26492756b3b82be\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_d26492756b3b82be\IntelCpHeciSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvbl.inf_amd64_04aeef3da3f64507\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09723e4e021177a6\RtkAudUService64.exe <3> (services.exe ->) (Shenzhen Moyea Software -> Leawo Software) C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe (services.exe ->) (SOFTLAND SRL -> Microsoft) C:\Program Files\Softland\novaPDF 11\Server\novapdfs.exe (services.exe ->) (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24072.45.0_x64__cw5n1h2txyewy\CrossDeviceService.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.18500.10.0_x64__cw5n1h2txyewy\Dashboard\WidgetService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09723e4e021177a6\RtkAudUService64.exe [1996744 2024-06-18] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [doPDF 11 doPdf_Softland Tray] => C:\Program Files\Softland\novaPDF 11\Driver\Tray.exe [120216 2024-03-20] (SOFTLAND SRL -> ) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-3837700969-235637646-1051282025-1001\...\Run: [MicrosoftEdgeAutoLaunch_5EFC0ECB77A7585FE9DCDD0B2E946A2B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741120 2024-08-29] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3837700969-235637646-1051282025-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45120304 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd) HKU\S-1-5-21-3837700969-235637646-1051282025-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4407656 2024-07-17] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3837700969-235637646-1051282025-1001\...\Run: [e-file [ID] - Asystent] => C:\Users\Admin\Documents\efile\efileID\bin\efileIDAsystent.exe [265216 2024-04-12] (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] HKU\S-1-5-21-3837700969-235637646-1051282025-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [61440 2024-05-14] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [221696 2023-08-09] (Bullzip) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\novaPDF 11 Port Monitor: C:\Windows\system32\novamn11.dll [19456 2024-03-20] (Softland) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\pdfcmon: C:\Windows\system32\pdfcmon.dll [116224 2024-02-28] (pdfforge GmbH) [Brak podpisu cyfrowego] HKLM\...\Print\Monitors\SHARP SS0I Language Monitor: C:\Windows\system32\SS0ILMON.dll [82432 2008-10-29] (Microsoft Windows Hardware Compatibility Publisher -> SHARP CORPORATION) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\128.0.6613.113\Installer\chrmstp.exe [2024-08-30] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {167C7788-032F-4B88-A939-4F12F8F70AEC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1563080 2024-07-31] (Adobe Inc. -> Adobe Inc.) Task: {52331DCA-029C-4C86-9079-24AFBB85630F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc.) Task: {A162DF2A-F88C-490B-B3E8-24EB0816E41A} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5075248 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "2bce5f94-d809-4878-94bc-a75958837bf4" --version "6.27.11214" --silent Task: {9BD792E9-015D-427C-88F1-B2E3C3F0A2F0} - System32\Tasks\CCleanerSkipUAC - HP => C:\Program Files\CCleaner\CCleaner.exe [39072560 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd) Task: {3E4D3137-6940-4CFC-943F-C27455A2E809} - System32\Tasks\CorelUpdateHelperTask-8F46946A641FCE118DC9B7DFA32B2774 => C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE [3834384 2024-01-24] (Corel Corporation -> Corel Corporation) Task: {90DBFD13-E7F0-4338-884E-6C5B03A5A60F} - System32\Tasks\CorelUpdateHelperTaskCore => c:\Program Files (x86)\Corel\CUH\v2\CUH.EXE [3834384 2024-01-24] (Corel Corporation -> Corel Corporation) Task: {97FEBBE8-957D-45EC-8DCF-22BF812A460B} - System32\Tasks\doPDF 11 Telemetry => C:\Program Files\Softland\novaPDF 11\Driver\GoogleAnalytics.exe [46488 2024-03-20] (SOFTLAND SRL -> ) Task: {ED3E9B8E-825E-47C2-8C08-1B90C1A9E2BD} - System32\Tasks\doPDF 11 Update => C:\Program Files\Softland\novaPDF 11\Driver\UpdateApplication.exe [96152 2024-03-20] (SOFTLAND SRL -> ) Task: {80B4D219-63D1-4F1F-93F2-5D0404BC831C} - System32\Tasks\e-pity2023_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [35328 2024-04-25] (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {F9B37111-7A3A-4ADA-B08F-B484F52C83E5} - System32\Tasks\e-pity2023_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [35328 2024-04-25] (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {D6709B3F-2BE7-4FBF-BA57-95E1D7A88402} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{02653227-B341-4B5C-BB39-BEA7409B38CD} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC) Task: {14312140-BF60-4B65-8323-A77104C10088} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2113024 2024-02-15] () [Brak podpisu cyfrowego] Task: {9021234B-A00A-430C-94D2-12BD6D712140} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) Task: {C5E0FFDC-E400-4013-97F5-14F179BD6553} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28605656 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) Task: {60A77DA1-8841-4AD3-8366-25510E314D0C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Task: {22E3451E-D73E-472E-950B-0DEB4CB2DD7E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [312520 2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Task: {770B8B2D-93BD-41F7-AF32-19F1C5900D67} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [187024 2024-08-30] (Microsoft Corporation -> Microsoft Corporation) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) Task: {1C88573C-267C-421F-92E7-2E1CAC786BDE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {759472BE-5F26-4C76-A813-B2D4FF203203} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {97781266-9AB3-4E79-B02F-131439001961} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2C83A762-2F78-482E-9B65-D8166318A96E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C4923DF1-4B91-4C55-A533-E9D55E651139} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3837700969-235637646-1051282025-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676936 2024-08-21] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {91D75093-5732-4145-A978-E527832EB63E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34376 2024-08-21] (Mozilla Corporation -> Mozilla Foundation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}: [DhcpDomain] homerouter.cpe Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}\44947494D283031413: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}\4596D65727: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}\4596D65727: [DhcpDomain] homerouter.cpe Tcpip\..\Interfaces\{c5e8eb11-647d-4cc6-bd6d-f5ea534a144b}\B4F627A756E6: [DhcpNameServer] 192.168.201.39 Tcpip\..\Interfaces\{e432bdda-75b2-4d95-b4dd-dbc566775206}: [DhcpNameServer] 192.168.3.254 Tcpip\..\Interfaces\{e432bdda-75b2-4d95-b4dd-dbc566775206}: [DhcpDomain] liniasc Edge: ======= Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2024-08-30] Edge Extension: (Dokumenty Google offline) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-02-21] Edge Extension: (Edge relevant text changes) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-21] FireFox: ======== FF DefaultProfile: kv6fqi93.default FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\kv6fqi93.default [2024-02-21] FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\tnqvzrl3.default-release [2024-09-01] FF Notifications: Mozilla\Firefox\Profiles\tnqvzrl3.default-release -> hxxps://www.komputerswiat.pl; hxxps://www.pkobp.pl; hxxps://www.roviniete.ro FF Extension: (Szafir SDK Web) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\tnqvzrl3.default-release\Extensions\{5e118bad-a840-4256-bd31-296194533aac}.xpi [2024-05-12] [UpdateUrl:hxxps://www.elektronicznypodpis.pl/download/webmodule/firefox/updates.json] FF Plugin: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-08-23] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-04-05] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2024-08-30] CHR HomePage: Default -> hxxps://www.allplayer.com CHR StartupUrls: Default -> "hxxps://www.allplayer.com" CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-08-05] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-02-21] CHR HKU\S-1-5-21-3837700969-235637646-1051282025-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-07-31] (Adobe Inc. -> Adobe Inc.) R2 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1086256 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd) R2 CdRomAccessAgentService; C:\Program Files (x86)\Common Files\cdagtsvc\cdagtsvc_v1.0.0_x86.exe [110672 2024-07-13] (Shenzhen Moyea Software -> Leawo Software) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14042624 2024-08-25] (Microsoft Corporation -> Microsoft Corporation) R2 cmevtsrv; C:\Windows\system32\cmEvtSrv64.exe [192512 2015-06-24] (charismathics GmbH) [Brak podpisu cyfrowego] R2 FMAPOService; C:\Windows\System32\FMService64.exe [550320 2022-09-11] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) R2 HotKeyServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HotKeyServiceUWP.exe [1497672 2024-04-30] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\AppHelperCap.exe [928192 2024-06-12] (HP Inc. -> HP Inc.) R2 HPAudioAnalytics; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\HPAudioAnalytics.exe [541152 2024-04-30] (HP Inc. -> HP Inc.) R2 HPDiagsCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\DiagsCap.exe [926760 2024-06-12] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\NetworkCap.exe [922560 2024-06-12] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_910b03e63a222912\x64\SysInfoCap.exe [927680 2024-06-12] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_273967626e857c15\x64\TouchpointAnalyticsClientService.exe [568896 2024-05-07] (HP Inc. -> HP Inc.) S2 IntelAudioService; C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_581d7e91d349facc\AS\IAS\IntelAudioService.exe [402464 2022-10-20] (Intel Corporation -> Intel) R2 LanWlanWwanSwitchingServiceUWP; C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_fa320f297f405a33\LanWlanWwanSwitchingServiceUWP.exe [605152 2024-04-30] (HP Inc. -> HP Inc.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe [1427024 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NovaPdf11Server; C:\Program Files\Softland\novaPDF 11\Server\novapdfs.exe [47512 2024-03-20] (SOFTLAND SRL -> Microsoft) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvbl.inf_amd64_04aeef3da3f64507\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-04-21] (NVIDIA Corporation -> NVIDIA Corporation) R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [530448 2024-09-01] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21242680 2024-02-19] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S2 WbfPolicyService110; C:\Windows\System32\WbfPolicyService110.exe [715704 2022-07-29] (Synaptics Incorporated -> Synaptics Incorporated.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe [3199648 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe [133704 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> ) R3 BHTPCRDR; C:\Windows\System32\drivers\bhtpcrdr.sys [201424 2019-09-23] (BayHub Technology Inc. -> BayHubTech/O2Micro) S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> ) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R0 fse; C:\Windows\System32\drivers\fse.sys [218488 2024-09-01] (Microsoft Windows -> Microsoft Corporation) R3 HPCustomCapDriver; C:\Windows\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.) R3 MpKslcd76f907; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DC5E01F4-D3D5-4DA0-9FCB-8EB33C838510}\MpKslDrv.sys [271640 2024-09-01] (Microsoft Windows -> Microsoft Corporation) S3 PHYMEM2; C:\Program Files (x86)\Leawo\Blu-ray Player\phymem_ext64.sys [16032 2021-12-16] (Shenzhen Moyea Software -> ) R3 rt68cx21; C:\Windows\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_fbf50634f3ddb33d\rt68cx21x64.sys [779728 2023-12-05] (Realtek Semiconductor Corp. -> Realtek) S3 rtcx21; C:\Windows\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 vmbusproxy; C:\Windows\system32\drivers\vmbusproxy.sys [94208 2024-06-10] (Microsoft Windows -> ) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22080 2024-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [602504 2024-08-08] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-08-08] (Microsoft Windows -> Microsoft Corporation) R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [40200 2023-11-17] (HP Inc. -> HP) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-09-01 20:28 - 2024-09-01 20:32 - 000000000 ____D C:\FRST 2024-09-01 19:59 - 2024-09-01 19:59 - 000800970 _____ C:\Windows\system32\perfh015.dat 2024-09-01 19:59 - 2024-09-01 19:59 - 000158968 _____ C:\Windows\system32\perfc015.dat 2024-09-01 18:10 - 2024-09-01 18:10 - 000001109 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ImageToPDForXPS.lnk 2024-09-01 18:05 - 2024-09-01 18:05 - 000000000 ____D C:\Users\Admin\AppData\Local\Softland 2024-08-30 23:58 - 2024-08-30 23:58 - 000060802 _____ C:\Users\Admin\Downloads\document_20240830235843.pdf 2024-08-30 23:56 - 2024-08-30 23:56 - 000061458 _____ C:\Users\Admin\Downloads\document_20240830235613.pdf 2024-08-30 23:37 - 2024-08-30 23:37 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2024-08-19 13:46 - 2024-08-19 13:46 - 000218896 _____ C:\Users\Admin\Downloads\000044877045_Invoice and Payment for invoice confir_202408191346.pdf 2024-08-14 15:16 - 2024-08-14 15:16 - 000026169 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-08-14 15:16 - 2024-08-14 15:16 - 000026169 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json 2024-08-10 16:16 - 2024-08-10 16:16 - 000000040 _____ C:\Users\Admin\Desktop\BLOCKREPLACE - zamienia jeden blok .txt 2024-08-08 12:10 - 2024-08-08 12:10 - 000240070 _____ C:\Users\Admin\Desktop\old_W2_Lok_14.pdf 2024-08-07 21:09 - 2024-08-07 21:09 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Notes (new).lnk 2024-08-07 15:05 - 2024-08-07 15:05 - 000137848 _____ C:\Users\Admin\Desktop\Faktura 110_01651_24_1_114 - DTR92988.pdf 2024-08-07 12:37 - 2024-08-07 12:37 - 000000064 _____ C:\Users\Admin\Documents\Lokalizacje masztów.qix 2024-08-07 12:34 - 2024-08-07 12:37 - 000000377 _____ C:\Users\Admin\Documents\Lokalizacje masztów.dbf 2024-08-07 12:34 - 2024-08-07 12:37 - 000000128 _____ C:\Users\Admin\Documents\Lokalizacje masztów.shp 2024-08-07 12:34 - 2024-08-07 12:37 - 000000108 _____ C:\Users\Admin\Documents\Lokalizacje masztów.shx 2024-08-07 12:34 - 2024-08-07 12:34 - 000000145 _____ C:\Users\Admin\Documents\Lokalizacje masztów.prj 2024-08-07 12:34 - 2024-08-07 12:34 - 000000004 _____ C:\Users\Admin\Documents\Lokalizacje masztów.cpg 2024-08-06 20:27 - 2024-08-06 20:27 - 000324851 _____ C:\Users\Admin\Downloads\Polisa 317326068.pdf 2024-08-06 20:25 - 2024-08-06 20:25 - 000050688 _____ C:\Users\Admin\Downloads\Potwierdzenie_transakcji_nr_0193033146_060824.pdf 2024-08-06 20:23 - 2024-08-06 20:23 - 000050655 _____ C:\Users\Admin\Downloads\Potwierdzenie_transakcji_nr_0193033027_060824.pdf 2024-08-06 20:23 - 2024-08-06 20:23 - 000050563 _____ C:\Users\Admin\Downloads\Potwierdzenie_transakcji_nr_0193033054_060824.pdf 2024-08-06 20:20 - 2024-08-06 20:20 - 000050262 _____ C:\Users\Admin\Downloads\Potwierdzenie_transakcji_nr_0193032895_060824.pdf 2024-08-06 13:38 - 2024-08-06 13:38 - 000061207 _____ C:\Users\Admin\Downloads\document_20240806133829.pdf 2024-08-06 13:37 - 2024-08-06 13:37 - 000060802 _____ C:\Users\Admin\Downloads\document_20240806133728.pdf 2024-08-04 17:24 - 2024-08-04 17:24 - 000107955 _____ C:\Users\Admin\Downloads\PAR_4536_07_2024_D.pdf 2024-08-04 17:22 - 2024-08-04 17:22 - 000106438 _____ C:\Users\Admin\Downloads\PAR_4738_07_2024_D.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-09-01 20:12 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\AppReadiness 2024-09-01 20:08 - 2024-02-21 17:33 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2024-09-01 20:07 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-09-01 20:02 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemTemp 2024-09-01 19:59 - 2024-02-21 16:20 - 001797776 _____ C:\Windows\system32\PerfStringBackup.INI 2024-09-01 19:59 - 2022-05-07 07:22 - 000000000 ____D C:\Windows\INF 2024-09-01 19:55 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2024-09-01 19:53 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2024-09-01 19:52 - 2024-03-01 12:50 - 000000000 ____D C:\Program Files\TeamViewer 2024-09-01 19:52 - 2024-02-21 16:09 - 000000000 ____D C:\Windows\system32\SleepStudy 2024-09-01 19:51 - 2024-02-21 16:50 - 000000000 ____D C:\ProgramData\NVIDIA 2024-09-01 19:51 - 2024-02-21 16:47 - 000000000 ____D C:\Intel 2024-09-01 19:51 - 2024-02-21 16:09 - 000012288 ___SH C:\DumpStack.log.tmp 2024-09-01 19:51 - 2024-02-21 16:09 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2024-09-01 19:51 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ServiceState 2024-09-01 19:51 - 2022-05-07 07:17 - 000786432 _____ C:\Windows\system32\config\BBI 2024-09-01 19:50 - 2024-02-21 16:14 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages 2024-09-01 19:49 - 2022-05-07 07:24 - 000000000 ___RD C:\Windows\PrintDialog 2024-09-01 19:48 - 2024-02-21 16:14 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows 2024-09-01 19:43 - 2024-02-21 16:12 - 000001623 _____ C:\Windows\system32\config\VSMIDK 2024-09-01 19:42 - 2024-02-21 16:09 - 000610424 _____ C:\Windows\system32\FNTCACHE.DAT 2024-09-01 19:41 - 2022-05-07 12:41 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents 2024-09-01 19:41 - 2022-05-07 12:41 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ___SD C:\Windows\SysWOW64\F12 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ___SD C:\Windows\system32\F12 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\WUModels 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\Dism 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemResources 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\oobe 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\HealthAttestationClient 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Dism 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellExperiences 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\Provisioning 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\PolicyDefinitions 2024-09-01 19:41 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\bcastdvr 2024-09-01 19:40 - 2022-05-07 07:17 - 000000000 ____D C:\Windows\CbsTemp 2024-09-01 19:38 - 2024-02-21 16:11 - 003212800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2024-09-01 19:09 - 2024-03-14 19:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\MPC-HC 2024-09-01 19:04 - 2024-02-23 14:34 - 000000666 _____ C:\Windows\Tasks\CCleanerCrashReporting.job 2024-09-01 19:04 - 2024-02-23 14:34 - 000000000 ____D C:\Program Files\CCleaner 2024-09-01 19:04 - 2024-02-21 17:33 - 000000000 ____D C:\Program Files\Mozilla Firefox 2024-09-01 19:04 - 2024-02-21 17:33 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-09-01 19:01 - 2024-03-14 18:42 - 000000000 ____D C:\Users\Admin\AppData\Roaming\XnConvert 2024-09-01 19:01 - 2024-03-01 12:47 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps 2024-09-01 17:53 - 2024-02-21 22:15 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Word 2024-09-01 16:26 - 2024-02-21 22:19 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Excel 2024-09-01 15:39 - 2024-02-25 14:26 - 000000000 ____D C:\Program Files (x86)\Steam 2024-09-01 11:05 - 2024-02-21 16:18 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache 2024-09-01 10:45 - 2024-02-21 16:12 - 000000000 ____D C:\ProgramData\Packages 2024-09-01 10:44 - 2024-02-21 16:09 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-08-31 11:14 - 2024-02-23 14:34 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2024-08-31 11:14 - 2024-02-23 14:34 - 000003380 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting 2024-08-30 23:37 - 2024-02-27 00:07 - 000000000 ____D C:\Users\Admin\AppData\Roaming\XnView 2024-08-30 23:36 - 2024-02-21 22:07 - 000000000 ____D C:\Program Files\Microsoft Office 2024-08-30 23:33 - 2024-03-07 10:41 - 000000000 ____D C:\Users\Admin\AppData\Roaming\electron-net 2024-08-30 23:24 - 2024-02-21 17:19 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-08-27 19:11 - 2024-05-07 13:29 - 000003426 _____ C:\Windows\system32\Tasks\CorelUpdateHelperTask-8F46946A641FCE118DC9B7DFA32B2774 2024-08-27 18:59 - 2024-02-21 17:35 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2024-08-27 18:59 - 2024-02-21 17:35 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2024-08-21 22:50 - 2024-02-21 17:33 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2024-08-21 22:50 - 2024-02-21 17:33 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2024-08-20 08:45 - 2024-03-01 11:38 - 000000000 ____D C:\Users\Admin\AppData\Roaming\FreeFileSync 2024-08-16 20:36 - 2024-02-21 16:14 - 000000000 ____D C:\Users\Admin 2024-08-15 08:32 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2024-08-14 22:48 - 2024-02-21 22:29 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2024-08-14 22:47 - 2023-11-09 18:15 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView 2024-08-14 22:47 - 2022-05-07 12:41 - 000000000 ___SD C:\Windows\system32\AppV 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\UUS 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\SystemApps 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\WinMetadata 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\Sgrm 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\system32\appraiser 2024-08-14 22:47 - 2022-05-07 07:24 - 000000000 ____D C:\Windows\ShellComponents 2024-08-14 22:13 - 2024-02-21 17:32 - 000000885 _____ C:\Users\Admin\Desktop\linki.txt 2024-08-14 15:33 - 2024-02-21 16:19 - 000000000 ____D C:\Windows\system32\MRT 2024-08-14 15:30 - 2024-02-21 16:19 - 197093640 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2024-08-14 15:19 - 2022-05-07 07:25 - 000209920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll 2024-08-14 15:19 - 2022-05-07 07:24 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll 2024-08-08 10:50 - 2024-02-21 16:09 - 000000000 ____D C:\Windows\system32\Drivers\wd 2024-08-07 20:34 - 2024-02-21 22:29 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================