Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 19-01-2025 Uruchomiony przez ITI1032 (administrator) ITI10 (Gigabyte Technology Co., Ltd. B560M DS3H) (20-01-2025 14:10:09) Uruchomiony z E:\test\FRST64.exe Załadowane profile: ITI1032 Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.5371 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Axence Inc. -> Axence Inc.) C:\Program Files (x86)\Axence\nVision Agent 2\AxenceSvcGuard.exe (C:\Program Files (x86)\Comarch\ComarchCryptoProvider\watchdog_service.exe ->) (Comarch S.A. -> ) C:\Program Files (x86)\Comarch\ComarchCryptoProvider\ComarchCryptoServer.exe <2> (C:\Program Files (x86)\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpnserv.exe ->) (OpenVPN Technologies, Inc. -> The OpenVPN Project) C:\Program Files (x86)\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpn.exe (C:\Program Files\mks_vir\bin\mks_virmon.exe ->) ("Arcabit" Sp. z o.o. -> ) C:\Program Files\mks_vir\bin\scanenginecon.exe (C:\Program Files\mks_vir\bin\mks_virsv.exe ->) ("Arcabit" Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virmenu.exe (C:\Program Files\mks_vir\bin\mks_virsv.exe ->) ("Arcabit" Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virmon.exe (DriverStore\FileRepository\cui_dch.inf_amd64_2fd56aca57cf42dd\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2fd56aca57cf42dd\igfxEMN.exe (explorer.exe ->) (AXENCE INC. -> Axence Inc.) C:\Program Files (x86)\Axence\nVision\nVision.exe (explorer.exe ->) (CSG SA -> Green Cell) C:\Program Files\gcups\gcups.exe <4> (explorer.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe (explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <19> (NXP Semiconductors Austria GmbH -> Athena Smartcard Solutions) C:\Program Files (x86)\NXP Semiconductors\IDProtect Client\Utils\IDProtect Monitor.exe (services.exe ->) ("Arcabit" Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virsv.exe (services.exe ->) () [Brak podpisu cyfrowego] D:\Program Files\BCS Manager\BCSService.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (services.exe ->) (AXENCE INC. -> Axence Inc.) C:\Program Files (x86)\Axence\nVision Agent 2\AxDBSrvrA.exe (services.exe ->) (AXENCE INC. -> Axence Inc.) C:\Program Files (x86)\Axence\nVision Agent 2\nVisionA.exe (services.exe ->) (Comarch S.A. -> ) C:\Program Files (x86)\Comarch\ComarchCryptoProvider\watchdog_service.exe <2> (services.exe ->) (Comarch S.A. -> ComArch S.A.) C:\Program Files (x86)\Comarch\ComarchSmartCard\CardServer.exe (services.exe ->) (DUC FABULOUS CO.,LTD -> ) C:\Program Files (x86)\UltraViewer\UltraViewer_Service.exe (services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_2fd56aca57cf42dd\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_9d19662e01abea6b\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_0797c0ea8580ae89\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Paweł Kania Ferro Software -> FERRO Software) C:\Program Files (x86)\FERRO Software\Ferro Backup System\FBSWorker.exe (services.exe ->) (Podatnik S.A. -> Podatnik S.A.) D:\Program Files (x86)\Podatnik.info\PIT pro 2023\pproupd.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe <2> (services.exe ->) (The OpenVPN Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpnserv.exe (services.exe ->) (The OpenVPN Project) [Brak podpisu cyfrowego] D:\Program Files\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpnserv.exe (services.exe ->) (Zhou Huabing -> ) C:\Program Files\RustDesk\RustDesk.exe <3> (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2411.1.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe <2> ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bc81681eb27bc1ae\RtkAudUService64.exe [1231864 2021-02-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [CryptoCard Suite Cert Monitor] => C:\Program Files (x86)\CryptoTech\CryptoCard\CCMonitor.exe [947440 2015-07-27] (CryptoTech -> CryptoTech Sp. z o.o.) HKLM-x32\...\Run: [WatchDogUserAutostart] => C:\Program Files (x86)\Comarch\ComarchCryptoProvider\watchdog_service.exe [435968 2020-11-25] (Comarch S.A. -> ) HKLM-x32\...\Run: [IDProtect Monitor] => C:\Program Files (x86)\NXP Semiconductors\IDProtect Client\Utils\IDProtect Monitor.exe [416424 2018-12-09] (NXP Semiconductors Austria GmbH -> Athena Smartcard Solutions) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [711288 2023-01-09] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [st_global] => D:\FunPlus\StormShot\Launcher.exe (Brak pliku) HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3588608 2021-04-02] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.) HKLM-x32\...\Run: [WidgetPodatnikInfo] => D:\Program Files (x86)\Podatnik.info\PIT pro 2023\Widget.exe [274344 2025-01-07] (Podatnik S.A. -> Podatnik S.A.) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\Run: [gcups] => C:\Program Files\gcups\gcups.exe [162129112 2023-06-02] (CSG SA -> Green Cell) HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\Run: [MicrosoftEdgeAutoLaunch_F9DD321172C629C79F4ACE84063C9F43] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3923496 2025-01-17] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated) HKU\S-1-5-21-1999557217-327936263-3457369781-1001\...\MountPoints2: {b985026f-2879-11ef-8acc-18c04dc47848} - "G:\SISetup.exe" HKU\S-1-5-21-1999557217-327936263-3457369781-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5006864 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-1999557217-327936263-3457369781-1002\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [5006864 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\HP1020PrintProc: C:\Windows\System32\spool\prtprocs\x64\pphp1020.dll [65024 2012-09-18] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2011-04-02] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Windows x64\Print Processors\KOAXVA_P: C:\Windows\System32\spool\prtprocs\x64\KOAXVA_P.DLL [50680 2017-08-21] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\368SeriesPCL Language Monitor: C:\WINDOWS\system32\KOAXVJ_L.DLL [25600 2017-09-07] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\368SeriesPS Language Monitor: C:\WINDOWS\system32\KOAXVA_L.DLL [25600 2017-08-21] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\HP1100LM: C:\WINDOWS\system32\HP1100LM.DLL [290304 2011-04-02] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\HPLJ1020LM: C:\WINDOWS\system32\zlhp1020.dll [192512 2012-09-18] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.266\Installer\chrmstp.exe [2025-01-15] (Google LLC -> Google LLC) Startup: C:\Users\ITI1032\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Stormshield SSL VPN Client.lnk [2024-11-21] ShortcutTarget: Stormshield SSL VPN Client.lnk -> D:\Program Files\Stormshield\Stormshield SSL VPN Client\sslvpn_client.exe (Stormshield) [Brak podpisu cyfrowego] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2025-01-09] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\RustDesk Tray.lnk [2023-05-02] ShortcutTarget: RustDesk Tray.lnk -> C:\Program Files\RustDesk\RustDesk.exe (Zhou Huabing -> ) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Stormshield SSL VPN Client.lnk [2024-06-17] ShortcutTarget: Stormshield SSL VPN Client.lnk -> C:\Program Files (x86)\Stormshield\Stormshield SSL VPN Client\sslvpn_client.exe (Stormshield) [Brak podpisu cyfrowego] ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {55656AF1-DDE5-4DB9-8787-3B09DE7AC919} - System32\Tasks\e-pity2023_kwiecien => "D:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe" notify 2 30.04.2025 (Brak pliku) Task: {0B374BF2-423D-4C65-AAB6-0FFBEE21CA84} - System32\Tasks\e-pity2023_styczen => "D:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe" notify 2 30.04.2025 (Brak pliku) Task: {F02BCDDA-3826-4257-B6AC-4CB75110634A} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem134.0.6944.0{4DB53847-5095-47CE-B493-C5510DE57D4F} => C:\Program Files (x86)\Google\GoogleUpdater\134.0.6944.0\updater.exe [5660768 2025-01-08] (Google LLC -> Google LLC) Task: {0DA478E8-60C5-41EB-88F3-FD8601AF7B97} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation) Task: {EB8A020B-021B-439E-9976-1806D051D3C9} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28707056 2025-01-20] (Microsoft Corporation -> Microsoft Corporation) Task: {B28511C5-5C2F-4330-949D-0560E27AD2A6} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28707056 2025-01-20] (Microsoft Corporation -> Microsoft Corporation) Task: {FDADD86C-53DE-4C74-82C7-0BAE97B9494D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222840 2025-01-20] (Microsoft Corporation -> Microsoft Corporation) Task: {BC8F4099-C5A1-4C40-8C33-A9CE0DF3BE70} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [222840 2025-01-20] (Microsoft Corporation -> Microsoft Corporation) Task: {96DFF430-44A9-4E89-B23D-BCB81EA41B1D} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {A7C0E6E5-7C66-4AD3-8247-577DC27627EC} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34368 2025-01-15] (Mozilla Corporation -> Mozilla Foundation) Task: {F814F3E7-1742-4B18-91F1-6B4C4E3505CF} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [815 2022-08-18] () [Brak podpisu cyfrowego] Task: {E3CFEF9A-0D09-4AA6-A352-D76F816FED5D} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214800 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) Task: {8CC1602D-83AA-4B08-B795-78ACBE0B09EB} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214800 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) Task: {86E72ED7-BB94-4E59-8AA5-DD8CBB7833EE} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214800 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) Task: {68F7F4F6-03DE-413A-BCF6-6926F6FE66E7} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1003 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4214800 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\Intel PTT EK Recertification.job => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{684e8a53-a2e5-4913-93df-809b56c720a8}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{684e8a53-a2e5-4913-93df-809b56c720a8}: [DhcpDomain] home Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\ITI1032\AppData\Local\Microsoft\Edge\User Data\Default [2025-01-20] Edge HomePage: Default -> hxxp://192.168.1.10:82/ Edge StartupUrls: Default -> "hxxp://192.168.1.10:82/" Edge Extension: (Dokumenty Google offline) - C:\Users\ITI1032\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-23] Edge Extension: (Edge relevant text changes) - C:\Users\ITI1032\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24] FireFox: ======== FF DefaultProfile: nx2e1ana.default FF ProfilePath: C:\Users\ITI1032\AppData\Roaming\Mozilla\Firefox\Profiles\nx2e1ana.default [2025-01-20] FF ProfilePath: C:\Users\ITI1032\AppData\Roaming\Mozilla\Firefox\Profiles\4r8l3gep.default-release [2025-01-20] FF Homepage: Mozilla\Firefox\Profiles\4r8l3gep.default-release -> about:blank FF Extension: (Authenticator\n) - C:\Users\ITI1032\AppData\Roaming\Mozilla\Firefox\Profiles\4r8l3gep.default-release\Extensions\authenticator@mymindstorm.xpi [2024-09-20] FF Extension: (uBlock Origin) - C:\Users\ITI1032\AppData\Roaming\Mozilla\Firefox\Profiles\4r8l3gep.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-01-20] FF Extension: (Szafir SDK Web) - C:\Users\ITI1032\AppData\Roaming\Mozilla\Firefox\Profiles\4r8l3gep.default-release\Extensions\{5e118bad-a840-4256-bd31-296194533aac}.xpi [2024-10-15] [UpdateUrl:hxxps://www.elektronicznypodpis.pl/download/webmodule/firefox/updates.json] FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-12-05] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @DVR/npplugin,version=3.1.0.4 -> C:\Program Files (x86)\webrec\WEB30\WebPlugin\npPlugin.dll [2015-07-29] (Zhejiang Dahua Technology CO.,LTD. -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @surveillance.com/npnetsdkplayer.ipc.nb -> C:\Program Files (x86)\Surveillance Viewer\Surveillance Viewer IPC NB\npnetsdkplayer.dll [2020-08-03] (BCS BEST COMPLEX SOLUTIONS -> Surveillance Viewer) FF Plugin-x32: Web Components -> C:\Program Files (x86)\Web Components\npWebVideoPlugin.dll [2018-12-10] () [Brak podpisu cyfrowego] Chrome: ======= CHR Profile: C:\Users\ITI1032\AppData\Local\Google\Chrome\User Data\Default [2025-01-17] CHR StartupUrls: Default -> "hxxps://accounts.google.com/signin/v2/identifier?continue=https%3A%2F%2Fmail.google.com%2Fmail%2F&service=mail&sacu=1&rip=1&flowName=GlifWebSignIn&flowEntry=ServiceLogin" CHR Extension: (Dokumenty Google offline) - C:\Users\ITI1032\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-20] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\ITI1032\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-09-17] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [5512512 2025-01-09] (AnyDesk Software GmbH -> AnyDesk Software GmbH) R2 AxDBSrvrA; C:\Program Files (x86)\Axence\nVision Agent 2\AxDBSrvrA.exe [6098888 2021-09-28] (AXENCE INC. -> Axence Inc.) R2 Axence nVision Agent 2; C:\Program Files (x86)\Axence\nVision Agent 2\nVisionA.exe [16114872 2021-09-28] (AXENCE INC. -> Axence Inc.) R2 BCSService; d:\Program Files\BCS Manager\BCSService.exe [3304960 2024-03-04] () [Brak podpisu cyfrowego] S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13572312 2025-01-13] (Microsoft Corporation -> Microsoft Corporation) R2 ComarchCardServer; C:\Program Files (x86)\Comarch\ComarchSmartCard\CardServer.exe [1870824 2020-02-11] (Comarch S.A. -> ComArch S.A.) R2 ComarchCryptoWatchdog; C:\Program Files (x86)\Comarch\ComarchCryptoProvider\watchdog_service.exe [435968 2020-11-25] (Comarch S.A. -> ) R2 FBSWorker; C:\Program Files (x86)\FERRO Software\Ferro Backup System\FBSWorker.exe [704120 2023-02-21] (Paweł Kania Ferro Software -> FERRO Software) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.232.1118.0003\FileSyncHelper.exe [3528248 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-01-10] (HP Inc. -> HP Inc.) R2 HPSIService; C:\WINDOWS\system32\HPSIsvc.exe [126520 2011-05-11] (Hewlett-Packard Company -> HP) R2 mks_virsv; C:\Program Files\mks_vir\bin\mks_virsv.exe [4263696 2024-10-08] ("Arcabit" Sp. z o.o. -> mks_vir) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.232.1118.0003\OneDriveUpdaterService.exe [3873296 2025-01-15] (Microsoft Corporation -> Microsoft Corporation) R2 pproupd; D:\Program Files (x86)\Podatnik.info\PIT pro 2023\pproupd.exe [72616 2025-01-07] (Podatnik S.A. -> Podatnik S.A.) R2 RustDesk; C:\Program Files\RustDesk\RustDesk.exe [15250920 2022-07-13] (Zhou Huabing -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 Stormshield SSL VPNService; C:\Program Files (x86)\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpnserv.exe [74752 2016-02-10] (The OpenVPN Project) [Brak podpisu cyfrowego] R2 StormshieldSSLVPNService; D:\Program Files\Stormshield\Stormshield SSL VPN Client\OpenVPN\bin\openvpnserv.exe [165376 2024-05-24] (The OpenVPN Project) [Brak podpisu cyfrowego] R2 UltraViewService; C:\Program Files (x86)\UltraViewer\UltraViewer_Service.exe [230736 2022-11-12] (DUC FABULOUS CO.,LTD -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\NisSrv.exe [2909208 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MsMpEng.exe [128376 2022-02-28] (Microsoft Windows Publisher -> Microsoft Corporation) S3 ZeroTierOneService; C:\ProgramData\ZeroTier\One\zerotier-one_x64.exe [1694240 2021-09-23] (ZeroTier, Inc. -> ) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AcxHdAudio; C:\WINDOWS\System32\drivers\AcxHdAudio.sys [526848 2024-05-15] (Microsoft Windows -> Microsoft Corporation) S0 arcael; C:\WINDOWS\System32\drivers\arcael.sys [18432 2024-10-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Arcabit/mks_vir) R3 ArcaFsAv; C:\WINDOWS\System32\DRIVERS\arcafsav.sys [44880 2025-01-20] (Arcabit Sp. z o.o. -> ) R2 arcasd; C:\Program Files\mks_vir\bin\arcasd10.sys [238488 2022-02-28] (Microsoft Windows Hardware Compatibility Publisher -> ArcaBit) S3 ArcaUsb; C:\Program Files\mks_vir\bin\arcausb10.sys [93080 2022-02-28] (Microsoft Windows Hardware Compatibility Publisher -> Arcabit sp. z o.o.) R1 arcawfp; C:\WINDOWS\System32\drivers\arcawfp.sys [125288 2024-12-03] ("Arcabit" Sp. z o.o. -> Windows (R) Win 7 DDK provider) R1 axnetdrv; C:\WINDOWS\System32\drivers\axnetdrv.sys [103776 2021-08-10] (Axence Inc. -> Axence Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [284672 2021-04-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [153088 2021-08-31] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 GemCCID; C:\WINDOWS\System32\drivers\GemCCID.sys [137712 2016-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Gemalto) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_cb8dd04b85ac9a58\iaLPSS2_GPIO2_TGL.sys [128680 2020-12-23] (Intel Corporation -> Intel Corporation) S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2011-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.) R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [77336 2022-08-19] (Insecure.Com LLC -> Insecure.Com LLC.) S4 npcap_wifi; C:\WINDOWS\system32\DRIVERS\npcap.sys [77336 2022-08-19] (Insecure.Com LLC -> Insecure.Com LLC.) R3 S3XXx64; C:\WINDOWS\system32\DRIVERS\S3XXx64.sys [73856 2015-02-17] (Microsoft Windows Hardware Compatibility Publisher -> Identiv) R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [41000 2024-05-16] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) R3 USBPcap; C:\WINDOWS\system32\DRIVERS\USBPcap.sys [52872 2020-05-22] (Tomasz Moń -> USBPcap) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2022-02-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [438520 2022-02-28] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-02-28] (Microsoft Windows -> Microsoft Corporation) S3 zttap300; C:\WINDOWS\System32\drivers\zttap300.sys [31744 2020-11-24] (Microsoft Windows Hardware Compatibility Publisher -> ZeroTier Networks LLC) S3 NPF; system32\drivers\NPF.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-01-20 14:10 - 2025-01-20 14:10 - 000000000 ____D C:\FRST 2025-01-20 14:08 - 2025-01-20 14:08 - 002402816 _____ (Farbar) C:\Users\ITI1032\Downloads\FRST64.exe 2025-01-20 09:30 - 2021-08-10 07:25 - 000103776 _____ (Axence Inc.) C:\WINDOWS\system32\Drivers\axnetdrv.sys 2025-01-17 14:06 - 2025-01-17 14:07 - 000234842 _____ C:\Users\ITI1032\Downloads\WhatsApp Image 2025-01-17 at 13.00.45.jpeg 2025-01-17 10:42 - 2025-01-17 10:42 - 000121487 ____R C:\Users\ITI1032\Downloads\wydruk-5.pdf 2025-01-17 10:25 - 2025-01-17 10:25 - 000099462 ____R C:\Users\ITI1032\Downloads\wydruk-4.pdf 2025-01-17 10:07 - 2025-01-17 10:07 - 000049938 ____R C:\Users\ITI1032\Downloads\spr_rzeszow_G-02b.pdf 2025-01-17 07:46 - 2025-01-17 07:46 - 000730301 ____R C:\Users\ITI1032\Downloads\G-02b.pdf 2025-01-17 07:46 - 2025-01-17 07:46 - 000446304 ____R C:\Users\ITI1032\Downloads\G-02o.pdf 2025-01-16 13:52 - 2025-01-16 13:52 - 000103567 ____R C:\Users\ITI1032\Downloads\Wniosek_ID455004_20250116135254.pdf 2025-01-16 13:50 - 2025-01-16 13:50 - 000054370 ____R C:\Users\ITI1032\Downloads\Wniosek_ID455004_20250116135038.pdf 2025-01-16 11:12 - 2025-01-16 11:12 - 002221762 ____R C:\Users\ITI1032\Downloads\D20042135Lj.pdf 2025-01-16 11:04 - 2025-01-16 11:05 - 000071127 ____R C:\Users\ITI1032\Downloads\0539-ozimek-wniosek-o-przyjecie-do-zol.pdf 2025-01-16 10:37 - 2025-01-16 10:37 - 000168604 ____R C:\Users\ITI1032\Downloads\pzpbdo.pdf 2025-01-16 08:46 - 2025-01-16 08:46 - 000000000 ___HD C:\$WinREAgent 2025-01-16 08:31 - 2025-01-16 08:31 - 000110329 ____R C:\Users\ITI1032\Downloads\wydruk-3.pdf 2025-01-16 07:14 - 2025-01-16 07:27 - 000000000 ____D C:\Users\ITI1032\Desktop\reklamacja meble 2025-01-15 09:44 - 2025-01-15 09:44 - 003489208 ____R C:\Users\ITI1032\Downloads\mM-Modul-Menedzer-eksportow.pdf 2025-01-15 09:41 - 2025-01-15 09:41 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2025-01-15 08:28 - 2025-01-16 07:12 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-01-14 07:39 - 2025-01-14 07:39 - 000006541 _____ C:\Users\ITI1032\Desktop\lek.xlsx 2025-01-13 12:54 - 2025-01-13 13:06 - 000035005 _____ C:\Users\ITI1032\Downloads\Użytkownicy_2025-01-13_12-53-59.SLK 2025-01-10 13:36 - 2025-01-10 13:36 - 000258293 _____ C:\Users\ITI1032\Downloads\dzieci 2006-2021L.pdf 2025-01-10 12:49 - 2025-01-10 12:49 - 000066795 _____ C:\Users\ITI1032\Downloads\Downloads.7z 2025-01-10 12:46 - 2025-01-10 12:48 - 000039526 _____ C:\Users\ITI1032\Downloads\dzieci 2006-2024P.xlsx 2025-01-10 12:43 - 2025-01-10 12:43 - 000506627 _____ C:\Users\ITI1032\Downloads\Przegląd_deklaracji_2025-01-10_12-42-59.SLK 2025-01-10 12:41 - 2025-01-10 12:47 - 000038609 _____ C:\Users\ITI1032\Downloads\dzieci 2006-2024L.xlsx 2025-01-10 12:37 - 2025-01-10 12:37 - 000465645 _____ C:\Users\ITI1032\Downloads\Przegląd_deklaracji_2025-01-10_12-36-56.SLK 2025-01-10 12:30 - 2025-01-10 12:30 - 000000190 _____ C:\Users\ITI1032\Desktop\wentylator kuchnia.url 2025-01-10 11:49 - 2025-01-10 11:49 - 002637089 ____R C:\Users\ITI1032\Downloads\R600_WebUserManual.pdf 2025-01-10 09:05 - 2025-01-10 09:05 - 000078047 ____R C:\Users\ITI1032\Downloads\wydruk-2.pdf 2025-01-09 14:36 - 2025-01-09 14:36 - 000179959 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454258_20250109143618.pdf 2025-01-09 14:35 - 2025-01-09 14:35 - 000091641 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454266_20250109143543.pdf 2025-01-09 14:07 - 2025-01-09 14:07 - 000175612 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454220_20250109140727.pdf 2025-01-09 14:05 - 2025-01-09 14:06 - 000092347 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454246_20250109140559.pdf 2025-01-09 14:01 - 2025-01-09 14:01 - 000086359 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454246_20250109140120.pdf 2025-01-09 13:52 - 2025-01-09 13:52 - 000175387 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454220_20250109135223.pdf 2025-01-09 13:28 - 2025-01-09 13:28 - 000092185 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454221_20250109132844.pdf 2025-01-09 13:25 - 2025-01-09 13:25 - 000092178 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454221_20250109132550.pdf 2025-01-09 13:19 - 2025-01-09 13:19 - 000092260 ____R C:\Users\ITI1032\Downloads\Wniosek_ID454221_20250109131948.pdf 2025-01-09 11:31 - 2025-01-09 11:31 - 005512512 _____ (AnyDesk Software GmbH) C:\Users\ITI1032\Downloads\AnyDesk.exe 2025-01-09 11:31 - 2025-01-09 11:31 - 005512512 _____ (AnyDesk Software GmbH) C:\Users\ITI1032\Downloads\AnyDesk (1).exe 2025-01-09 11:31 - 2025-01-09 11:31 - 000001957 _____ C:\Users\Public\Desktop\AnyDesk.lnk 2025-01-09 11:31 - 2025-01-09 11:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AnyDesk 2025-01-09 08:00 - 2025-01-09 08:00 - 000075057 ____R C:\Users\ITI1032\Downloads\Potwierdzenie_b6f6d17a-9d04-48ad-bf19-f96741212a7f.pdf 2025-01-09 07:51 - 2025-01-09 07:52 - 000033263 _____ C:\Users\ITI1032\Downloads\be37f2af-ba71-4a7f-88ec-e6d0ad67bc16.xml 2025-01-08 12:07 - 2025-01-08 12:07 - 000218042 ____R C:\Users\ITI1032\Downloads\08dd2fcd-abdb-6f13-b558-c30001014329-1.pdf 2025-01-08 12:06 - 2025-01-08 12:06 - 000216328 ____R C:\Users\ITI1032\Downloads\08dd2fcd-abdb-6f13-b558-c30001014329.pdf 2025-01-08 10:16 - 2025-01-08 10:16 - 003004668 ____R C:\Users\ITI1032\Downloads\Postepowania-5.2.pdf 2025-01-08 09:46 - 2025-01-08 09:46 - 000017226 _____ C:\Users\ITI1032\Downloads\weryfikacja 2024-12.xlsx 2025-01-08 07:45 - 2025-01-08 07:45 - 000039810 _____ C:\Users\ITI1032\Downloads\swiadczenia(1).xls 2025-01-07 14:30 - 2025-01-07 14:30 - 000188053 ____R C:\Users\ITI1032\Downloads\Pismo przypominające o obowiązku sprawozdawczym-1.pdf 2025-01-07 12:10 - 2025-01-07 12:10 - 000131273 _____ C:\Users\ITI1032\Downloads\Wizyty_2025-01-07_12-10-29.SLK 2025-01-07 07:50 - 2025-01-07 07:50 - 001232750 _____ C:\Users\ITI1032\Downloads\Dane_rozliczeniowe_2025-01-07_07-50-54.SLK 2025-01-07 07:45 - 2025-01-07 07:45 - 001055244 _____ C:\Users\ITI1032\Downloads\Dane_rozliczeniowe_2025-01-07_07-44-59.SLK 2025-01-02 14:35 - 2025-01-02 14:35 - 000003547 _____ C:\Users\ITI1032\Downloads\0901003105202501_1_202501021427.umx 2025-01-02 13:02 - 2025-01-02 13:02 - 000007894 _____ C:\Users\ITI1032\Downloads\Pozycje_pakietu_2025-01-02_13-02-18.SLK 2025-01-02 11:15 - 2025-01-02 11:15 - 000434505 ____R C:\Users\ITI1032\Downloads\EUmowa_0901003105202501_AneksNr_1_GUID_b7a116d7-b876-42c6-820d-64a8a62d3290.pdf 2025-01-02 11:09 - 2025-01-02 11:09 - 000002321 _____ C:\Users\ITI1032\Downloads\0901003114202501_1_202412311340.umx 2025-01-02 09:34 - 2025-01-02 09:34 - 000433913 ____R C:\Users\ITI1032\Downloads\raport_o_stanie_zapewniania_dostepnosci_.pdf 2024-12-31 08:38 - 2024-12-31 08:38 - 000001145 _____ C:\Users\ITI1032\Desktop\Nowy ZOL zdjęcia — skrót.lnk 2024-12-30 11:10 - 2024-12-30 11:10 - 000685746 ____R C:\Users\ITI1032\Downloads\Zawiadomienie o unieważnieniu postępowania.pdf 2024-12-30 08:14 - 2024-12-30 08:14 - 000094813 _____ C:\Users\ITI1032\Downloads\jawit raport_z_weryfikacji_pliku_5_2024-12-30_08-14.pdf 2024-12-27 13:03 - 2024-12-27 13:50 - 000317952 _____ C:\Users\ITI1032\Downloads\magazyn leki 2024-2025.xls 2024-12-27 10:47 - 2024-12-27 10:47 - 001691872 ____R C:\Users\ITI1032\Downloads\650022_instrukcja_obs__ugi_____multi.pdf 2024-12-27 08:33 - 2024-12-27 08:33 - 000581588 ____R C:\Users\ITI1032\Downloads\EUmowa_0901003114202501_AneksNr_1_GUID_405c4023-2588-44f9-bdf6-1ccd9b4fec0e.pdf 2024-12-27 08:29 - 2024-12-27 08:29 - 000179746 ____R C:\Users\ITI1032\Downloads\Pismo do świadczeniodawców-1.pdf 2024-12-27 08:29 - 2024-12-27 08:29 - 000094560 ____R C:\Users\ITI1032\Downloads\Komunikat dot. kar umowynych 23.12.2024r.Sekcja Skarg i Wniosków.pdf 2024-12-23 12:51 - 2024-12-23 12:51 - 000176899 _____ C:\Users\ITI1032\Documents\BN2024.pdf 2024-12-23 08:44 - 2024-12-23 08:44 - 000000040 _____ C:\Users\ITI1032\AppData\Roaming\cdr.ini 2024-12-23 08:44 - 2024-12-23 08:44 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\Eusing 2024-12-23 07:24 - 2024-12-23 07:25 - 000017157 _____ C:\Users\ITI1032\Desktop\Re_ prośba o ofertę cenową na nabiał.eml ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-01-20 14:00 - 2024-12-12 07:33 - 000000000 ____D C:\Users\ITI1032\Documents\umowa IT-HOSP 2025-01-20 14:00 - 2021-09-07 07:42 - 000000000 ____D C:\Users\ITI1032\AppData\Local\Packages 2025-01-20 13:53 - 2021-09-07 08:33 - 000786566 _____ C:\WINDOWS\system32\perfh015.dat 2025-01-20 13:53 - 2021-09-07 08:33 - 000153208 _____ C:\WINDOWS\system32\perfc015.dat 2025-01-20 13:53 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\INF 2025-01-20 13:53 - 2021-09-07 07:42 - 001774808 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-01-20 13:45 - 2024-12-03 07:04 - 000044880 _____ C:\WINDOWS\system32\Drivers\arcafsav.sys 2025-01-20 13:45 - 2024-04-24 12:26 - 000000000 ____D C:\ProgramData\BCSManager 2025-01-20 13:45 - 2023-06-16 11:59 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\gcups 2025-01-20 13:45 - 2022-02-11 08:29 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-01-20 13:45 - 2021-09-07 08:32 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-01-20 13:45 - 2021-09-07 07:42 - 000000000 __SHD C:\Users\ITI1032\IntelGraphicsProfiles 2025-01-20 13:45 - 2021-09-07 07:37 - 000008192 ___SH C:\DumpStack.log.tmp 2025-01-20 13:45 - 2021-09-07 07:37 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-01-20 13:45 - 2021-09-07 07:37 - 000000000 ____D C:\Intel 2025-01-20 13:44 - 2021-09-07 08:30 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2025-01-20 13:44 - 2021-09-07 07:41 - 000000000 ____D C:\Users\ITI1032 2025-01-20 13:37 - 2021-09-07 10:46 - 000000000 ____D C:\Users\ITI1032\AppData\Local\ClassicShell 2025-01-20 12:43 - 2021-09-20 10:33 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\Microsoft\Excel 2025-01-20 12:11 - 2023-08-01 09:53 - 000000000 ____D C:\Users\ITI1032\Documents\polityka bezpieczeństwa ZOL 2025-01-20 11:45 - 2024-05-15 06:52 - 000000000 ____D C:\Users\ITI1032\Documents\- IT 2025-01-20 11:44 - 2021-09-13 09:38 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\Microsoft\Word 2025-01-20 11:42 - 2021-09-20 11:45 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\Microsoft\Access 2025-01-20 11:07 - 2021-09-07 07:37 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-01-20 10:43 - 2021-09-17 12:12 - 000000000 ____D C:\Users\ITI1032\Documents\- Kadry 2025-01-20 09:29 - 2021-09-07 07:37 - 000451992 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-01-20 07:33 - 2021-09-13 09:34 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2025-01-20 07:31 - 2021-09-07 08:32 - 000000000 ___HD C:\Program Files\WindowsApps 2025-01-20 07:31 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-01-20 07:26 - 2021-09-17 12:12 - 000000000 ____D C:\Users\ITI1032\Documents\- Dyrektor 2025-01-20 07:22 - 2023-01-17 07:06 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-01-20 07:22 - 2021-09-07 07:37 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-01-20 07:13 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\SystemResources 2025-01-20 07:13 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-01-20 07:13 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\system32\appraiser 2025-01-20 07:13 - 2021-09-07 08:32 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-01-17 12:02 - 2021-09-15 09:58 - 000002366 ____H C:\Users\ITI1032\Documents\Default.rdp 2025-01-17 10:50 - 2024-04-30 08:44 - 000000000 ____D C:\czytaj.to 2025-01-17 09:25 - 2021-12-29 10:25 - 000000000 ____D C:\Users\ITI1032\AppData\Local\CrashDumps 2025-01-17 06:59 - 2021-12-20 13:52 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-01-16 09:38 - 2024-11-25 09:37 - 000009930 _____ C:\Users\ITI1032\Desktop\centrala.xlsx 2025-01-16 08:49 - 2021-09-07 08:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-01-16 08:48 - 2021-09-07 07:40 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-01-16 08:19 - 2021-09-07 12:22 - 000000000 ____D C:\WINDOWS\system32\MRT 2025-01-16 08:17 - 2021-09-07 12:22 - 206927936 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2025-01-16 07:12 - 2021-09-09 07:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-01-15 09:59 - 2022-02-11 14:33 - 000059354 _____ C:\Users\ITI1032\Desktop\Nowy dokument tekstowy.txt 2025-01-15 09:41 - 2021-09-09 07:50 - 000001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-01-15 07:27 - 2021-09-21 06:09 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2025-01-15 07:16 - 2021-12-13 07:15 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1003 2025-01-15 07:16 - 2021-12-13 07:15 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1002 2025-01-15 07:16 - 2021-12-13 07:15 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1999557217-327936263-3457369781-1001 2025-01-15 07:16 - 2021-09-17 12:19 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-01-15 07:16 - 2021-09-17 12:19 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2025-01-15 07:16 - 2021-09-15 09:37 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2025-01-15 07:16 - 2021-09-15 09:37 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-01-14 13:48 - 2024-03-19 14:06 - 000001092 _____ C:\Users\ITI1032\Desktop\TeamViewer (Axence).lnk 2025-01-10 13:17 - 2021-09-17 12:23 - 000000000 ____D C:\Users\ITI1032\Documents\Na drzwi 2025-01-10 07:21 - 2024-08-08 08:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2025-01-10 07:21 - 2024-06-21 08:29 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2025-01-09 14:43 - 2022-10-13 10:26 - 000000000 ____D C:\Program Files (x86)\AnyDesk 2025-01-09 11:31 - 2022-10-13 10:26 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\AnyDesk 2025-01-09 11:31 - 2022-10-13 10:26 - 000000000 ____D C:\ProgramData\AnyDesk 2025-01-09 11:14 - 2021-09-17 12:12 - 000657920 _____ C:\Users\ITI1032\Documents\komp zol.xls 2025-01-09 08:11 - 2022-12-27 07:21 - 000000000 ____D C:\Users\ITI1032\Documents\umowy INfomedic 2025-01-08 14:20 - 2021-09-09 07:50 - 000001077 _____ C:\Users\Public\Desktop\Firefox.lnk 2025-01-08 10:21 - 2024-08-27 12:07 - 000102570 _____ C:\Users\ITI1032\Desktop\personel medyczny.xlsx 2025-01-07 14:25 - 2021-09-13 09:38 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\Microsoft\Office 2025-01-07 13:38 - 2021-09-17 12:13 - 000000000 ____D C:\Users\ITI1032\Documents\- Medyczne 2025-01-07 07:21 - 2021-09-13 11:37 - 000000000 ____D C:\Users\ITI1032\AppData\Roaming\mMedica 2024-12-27 13:45 - 2024-09-30 09:10 - 009072640 _____ C:\Users\ITI1032\Desktop\zam-farm24 — 25.accdb 2024-12-23 07:18 - 2021-09-07 07:37 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-12-23 07:18 - 2021-09-07 07:37 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore ==================== Pliki w katalogu głównym wybranych folderów ======== 2024-12-23 08:44 - 2024-12-23 08:44 - 000000040 _____ () C:\Users\ITI1032\AppData\Roaming\cdr.ini 2024-09-09 09:04 - 2024-09-09 09:07 - 000000128 _____ () C:\Users\ITI1032\AppData\Roaming\winscp.rnd 2023-12-15 11:49 - 2023-12-15 11:49 - 000000791 _____ () C:\Users\ITI1032\AppData\Local\recently-used.xbel 2023-03-07 12:16 - 2024-08-14 07:50 - 000007596 _____ () C:\Users\ITI1032\AppData\Local\resmon.resmoncfg 2023-05-12 06:08 - 2023-05-12 06:08 - 000000000 _____ () C:\Users\ITI1032\AppData\Local\{0929C7CC-E74B-4643-B8FD-6E1583091D39} ==================== FLock ============================== 2021-09-20 07:26 C:\ProgramData\Brother ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================