Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 18-03-2025 Uruchomiony przez Users (administrator) ANNA-DESKTOP-RT (Dell Inc. Latitude E5530 non-vPro) (23-03-2025 20:34:44) Uruchomiony z C:\Users\Users\Downloads\FRST64.exe Załadowane profile: Users Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.5487 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApntEx.exe (C:\Program Files (x86)\Epson Software\Epson Printer Connection Checker\EPPCCMON.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (C:\Program Files\DellTPad\Apoint.exe ->) (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\ApMsgFwd.exe (C:\Program Files\DellTPad\Apoint.exe ->) (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\hidfind.exe (explorer.exe ->) (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) C:\Program Files\DellTPad\Apoint.exe (explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <15> (explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Epson Printer Connection Checker\EPPCCMON.EXE (explorer.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\spool\drivers\x64\3\E_YATIYIE.EXE <2> (explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.138.3203.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <6> (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe (services.exe ->) (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Apoint] => C:\Program Files\DellTPad\Apoint.exe [779376 2019-05-09] (ALPS ELECTRIC CO., LTD. -> Alps Electric Co., Ltd.) HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [455968 2023-05-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [2756368 2023-08-09] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-12-04] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-2385923311-781784147-3047078187-1001\...\Run: [MicrosoftEdgeAutoLaunch_3250699E464B17C04A15332F6451998E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4291128 2025-03-15] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2385923311-781784147-3047078187-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIYIE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-21-2385923311-781784147-3047078187-1001\...\Run: [EPLTarget\P0000000000000001] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIYIE.EXE [485976 2020-09-11] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> HKLM\...\Print\Monitors\EPSON L6270 Series 64MonitorBE: C:\Windows\system32\E_YLMBYIE.DLL [187392 2018-06-15] (Microsoft Windows Hardware Compatibility Publisher -> Seiko Epson Corporation) HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\134.0.6998.118\Installer\chrmstp.exe [2025-03-23] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {08B7A974-9296-4ADC-BBB7-741F017F3F53} - System32\Tasks\EPSON L6270 Series Update {44163AC4-631F-4F39-88A3-D6730B79903D} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYIE.EXE [680440 2017-06-06] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {C3D7E20B-C690-4A4E-8368-6D2CD2F2720B} - System32\Tasks\EPSON L6270 Series Update {C4579414-93A2-4092-9CED-5588B7E31DB6} => C:\Windows\System32\spool\drivers\x64\3\E_YTSYIE.EXE [680440 2017-06-06] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) Task: {9B3635A2-48D7-42EF-B211-20130E55B96C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem135.0.7023.0{4A21E9A6-5944-4BD0-815B-23AD7CF53C3E} => C:\Program Files (x86)\Google\GoogleUpdater\135.0.7023.0\updater.exe [5745760 2025-02-19] (Google LLC -> Google LLC) Task: {3B189328-A9B9-41ED-BD1B-1D43616A79F7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {654B3E0C-B162-4DB2-8FE6-5DBA250C1ED9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EA0FAAC6-3D77-4B0B-B2E5-E794CE03B4CC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {64E427BC-2DF8-4FE8-93B2-BFD1C304540D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpCmdRun.exe [1732816 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B4FDD4E8-DCB3-43AD-A817-5F59F2E5A27F} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2385923311-781784147-3047078187-1001Core{6A575FAB-8E5F-4124-AEB9-6ACF1044FD8A} => C:\Users\Users\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206288 2023-06-05] (Microsoft Corporation -> Microsoft Corporation) Task: {6C57FAB9-93CF-4574-AE0B-9CE0E2986BA0} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2385923311-781784147-3047078187-1001UA{BA493BBB-A81B-407F-85E0-5A82A7BB083D} => C:\Users\Users\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [206288 2023-06-05] (Microsoft Corporation -> Microsoft Corporation) Task: {FD1D8A09-A369-4494-B9D8-A2F8B0D0413D} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2385923311-781784147-3047078187-1001 => C:\Users\Users\AppData\Local\Microsoft\OneDrive\25.031.0217.0003\OneDriveLauncher.exe [669528 2025-03-23] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\EPSON L6270 Series Update {44163AC4-631F-4F39-88A3-D6730B79903D}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYIE.EXE:/EXE:{44163AC4-631F-4F39-88A3-D6730B79903D} /F:UpdateWORKGROUP\ANNA-DESKTOP-RT$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi Task: C:\Windows\Tasks\EPSON L6270 Series Update {C4579414-93A2-4092-9CED-5588B7E31DB6}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSYIE.EXE:/EXE:{C4579414-93A2-4092-9CED-5588B7E31DB6} /F:UpdateWORKGROUP\ANNA-DESKTOP-RT$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{16d4c99e-8845-4cfb-9cb0-0c32f2c62bb8}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{16d4c99e-8845-4cfb-9cb0-0c32f2c62bb8}: [DhcpDomain] home Tcpip\..\Interfaces\{dad68f36-cb5c-477d-8947-73cea0eb6321}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{dad68f36-cb5c-477d-8947-73cea0eb6321}: [DhcpDomain] home Tcpip\..\Interfaces\{dad68f36-cb5c-477d-8947-73cea0eb6321}\7416C61687970214132363936493: [DhcpNameServer] 192.168.35.37 Tcpip\..\Interfaces\{dad68f36-cb5c-477d-8947-73cea0eb6321}\7416C6168797021423035624645373: [DhcpNameServer] 192.168.236.21 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default [2025-03-07] Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2024-11-19]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx Edge Extension: (Dokumenty Google offline) - C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-06]hxxps://clients2.google.com/service/update2/crx Edge Extension: (Edge relevant text changes) - C:\Users\Users\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-04-17]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn] FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google Inc -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.441.2 -> C:\Program Files (x86)\Java\jre1.8.0_441\bin\dtplugin\npDeployJava1.dll [2024-12-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.441.2 -> C:\Program Files (x86)\Java\jre1.8.0_441\bin\plugin2\npjp2.dll [2024-12-04] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default [2025-03-23] CHR Notifications: Default -> hxxps://club.autodoc.pl CHR Extension: (Vider Downloader) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\clobeelbogecbeficjilfjohbdgfandk [2025-03-16]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Dokumenty Google offline) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-02]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-03-23]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Users\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-06-12]hxxps://clients2.google.com/service/update2/crx CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103776 2024-03-30] (Apple Inc. -> Apple Inc.) R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-06-25] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation) S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2023-04-13] () [Brak podpisu cyfrowego] R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MpDefenderCoreService.exe [1926976 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [559368 2024-11-18] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\NisSrv.exe [4352456 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe [270056 2025-03-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [19440 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> OSR Open Systems Resources, Inc.) R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [278944 2025-03-06] (Microsoft Windows -> Microsoft Corporation) R3 MkBusFilter; C:\Windows\system32\DRIVERS\MbmDeviceFilter.sys [42208 2015-06-30] (Ericsson AB -> ) R0 stdcfltn; C:\Windows\System32\DRIVERS\stdcfltn.sys [30352 2016-10-07] (STMICROELECTRONICS S.R.L. -> ST Microelectronics) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20016 2025-03-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [601520 2025-03-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100768 2025-03-06] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-03-23 20:27 - 2025-03-23 20:27 - 000000000 ____D C:\Users\Users\AppData\Roaming\Sun 2025-03-23 20:27 - 2025-03-23 20:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2025-03-23 20:27 - 2025-03-23 20:27 - 000000000 ____D C:\Program Files (x86)\Java 2025-03-23 20:27 - 2024-12-04 08:34 - 000178808 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2025-03-23 20:20 - 2025-03-23 20:24 - 000000000 ___HD C:\$WinREAgent 2025-03-23 20:00 - 2025-03-23 20:04 - 000002630 _____ C:\Users\Users\Downloads\Fixlog.txt 2025-03-16 21:38 - 2025-03-16 21:38 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2025-03-16 19:55 - 2025-03-16 19:55 - 000032881 _____ C:\Users\Users\Downloads\Shortcut.txt 2025-03-16 19:51 - 2025-03-16 19:55 - 000032599 _____ C:\Users\Users\Downloads\Addition.txt 2025-03-16 19:39 - 2025-03-23 20:38 - 000016615 _____ C:\Users\Users\Downloads\FRST.txt 2025-03-16 19:37 - 2025-03-23 20:00 - 002404352 _____ (Farbar) C:\Users\Users\Downloads\FRST64.exe 2025-03-07 01:34 - 2025-03-07 01:35 - 000464832 _____ C:\Windows\system32\FNTCACHE.DAT 2025-03-07 01:18 - 2025-03-07 01:18 - 000378086 _____ C:\Users\Users\Downloads\PIT 36 za 2024.pdf 2025-03-07 00:58 - 2025-03-07 00:58 - 000000000 ____D C:\Users\Users\AppData\Roaming\Microsoft\InputMethod 2025-03-07 00:16 - 2025-03-07 00:16 - 000377624 _____ C:\Users\Users\Downloads\PIT 36 za 2023.pdf 2025-03-03 00:21 - 2025-03-03 00:21 - 087434488 _____ (Gen Digital Inc.) C:\Users\Users\Downloads\ccsetup633.exe 2025-03-03 00:06 - 2025-03-03 00:06 - 000000000 ____D C:\Users\Users\AppData\Roaming\Wise Utilities 2025-03-02 23:53 - 2025-03-16 19:26 - 000000000 ____D C:\Windows\system32\Tasks\WiseCleaner 2025-03-02 23:53 - 2025-03-06 20:53 - 000000000 ____D C:\Users\Users\AppData\Roaming\Wise Disk Cleaner 2025-03-02 23:52 - 2025-03-02 23:52 - 007218688 _____ (WiseCleaner.com ) C:\Users\Users\Downloads\WDCFree_11.2.0.837.exe 2025-03-02 23:34 - 2025-03-02 23:41 - 008790880 _____ (Malwarebytes) C:\Users\Users\Downloads\adwcleaner.exe ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-03-23 20:36 - 2024-05-23 20:32 - 000000000 ____D C:\FRST 2025-03-23 20:35 - 2023-02-20 13:35 - 001678238 _____ C:\Windows\system32\PerfStringBackup.INI 2025-03-23 20:35 - 2019-12-07 16:09 - 000748964 _____ C:\Windows\system32\perfh015.dat 2025-03-23 20:35 - 2019-12-07 16:09 - 000144674 _____ C:\Windows\system32\perfc015.dat 2025-03-23 20:35 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2025-03-23 20:31 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-03-23 20:29 - 2023-06-05 20:48 - 000000000 __SHD C:\Users\Users\IntelGraphicsProfiles 2025-03-23 20:29 - 2023-02-20 13:24 - 000008192 ___SH C:\DumpStack.log.tmp 2025-03-23 20:29 - 2023-02-20 13:24 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2025-03-23 20:28 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2025-03-23 20:26 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2025-03-23 20:04 - 2025-02-09 15:47 - 000003570 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-2385923311-781784147-3047078187-1001 2025-03-23 20:04 - 2023-04-13 15:52 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2385923311-781784147-3047078187-1001 2025-03-23 20:04 - 2023-02-20 13:38 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2385923311-781784147-3047078187-1001 2025-03-23 20:04 - 2023-02-20 13:33 - 000002423 _____ C:\Users\Users\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2025-03-23 20:03 - 2024-06-01 15:30 - 000000000 ____D C:\Users\Users\AppData\LocalLow\Temp 2025-03-23 20:00 - 2024-05-30 15:03 - 000000000 ____D C:\Users\Users\Downloads\FRST-OlderVersion 2025-03-23 19:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2025-03-23 19:57 - 2023-06-22 18:37 - 000000000 ____D C:\Windows\SystemTemp 2025-03-23 19:57 - 2023-06-12 20:44 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-03-23 19:57 - 2023-06-12 20:44 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2025-03-16 23:40 - 2023-02-20 13:24 - 000000000 ____D C:\Windows\system32\SleepStudy 2025-03-16 19:02 - 2023-04-13 15:49 - 000000000 ____D C:\Users\Users\AppData\Roaming\GHISLER 2025-03-16 18:54 - 2023-06-05 20:35 - 000000000 ____D C:\Users\Users\AppData\Roaming\Telegram Desktop 2025-03-16 18:32 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2025-03-16 18:16 - 2023-02-20 13:26 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-03-16 18:07 - 2023-09-01 13:42 - 000000000 ____D C:\Program Files\RUXIM 2025-03-16 18:07 - 2023-02-20 13:25 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-03-16 18:07 - 2023-02-20 13:25 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-03-07 01:32 - 2024-07-03 22:46 - 000000000 ____D C:\Windows\system32\compatrel 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2025-03-07 01:32 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2025-03-07 01:32 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing 2025-03-06 22:59 - 2023-06-22 16:59 - 000000000 ____D C:\Windows\system32\MRT 2025-03-06 22:53 - 2023-06-22 16:57 - 209365816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2025-03-06 21:57 - 2023-02-20 13:27 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2025-03-06 21:54 - 2023-02-20 13:34 - 000000000 ____D C:\Users\Users\AppData\Local\Packages 2025-03-06 21:54 - 2023-02-20 13:34 - 000000000 ____D C:\ProgramData\Packages 2025-03-06 21:29 - 2023-02-20 13:25 - 000000000 ____D C:\Windows\system32\Drivers\wd 2025-03-03 00:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2025-03-02 23:58 - 2023-02-20 13:23 - 000000000 ____D C:\Windows\Panther 2025-03-02 23:55 - 2024-07-10 20:36 - 000000000 ____D C:\Users\Users\AppData\Local\CrashDumps 2025-03-02 23:55 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\Downloaded Program Files 2025-03-02 22:23 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2025-03-02 22:09 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\appcompat 2025-02-24 19:32 - 2024-04-25 22:43 - 000000000 ____D C:\Windows\InboxApps 2025-02-24 19:32 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate ==================== Pliki w katalogu głównym wybranych folderów ======== 2024-06-01 16:28 - 2024-06-01 16:28 - 000003955 _____ () C:\Users\Users\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================