Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 01-04-2025 Uruchomiony przez Paula (administrator) LAPTOP-DH0DLACN (LENOVO 81BG) (14-04-2025 14:46:22) Uruchomiony z C:\Users\Paula\Downloads\FRST64.exe Załadowane profile: Paula Platforma: Microsoft Windows 11 Home Wersja 23H2 22631.5189 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <21> (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxEM.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (AnyDesk Software GmbH -> AnyDesk Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe (services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxCUIService.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHDCPSvc.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHeciSvc.exe (services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (POINT B LTD -> Point B Ltd) C:\Program Files\Getscreen.me\getscreen.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (svchost.exe ->) (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.260.564.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe (svchost.exe ->) (CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD14\PDVD14Serv.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Office.OneNote_16.14326.22093.0_x64__8wekyb3d8bbwe\onenoteim.exe (svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22502.1401.1.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2503.1001.9.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2503.1001.9.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.296.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe\GameBar.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.225.3271.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.5100.40.0_x64__cw5n1h2txyewy\WidgetBoard.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [849920 2017-03-07] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [138214768 2022-11-03] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [750680 2023-12-19] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [DAEMON Tools Lite Automount] => D:\Program Files\DAEMON Tools Lite\DTAgent.exe [731240 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [Chromium] => "c:\users\paula\appdata\local\chromium\application\chrome.exe" --auto-launch-at-startup --profile-directory="Default" --restore-last-session [4186112 2017-10-10] (The Chromium Authors) [Brak podpisu cyfrowego] HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32688080 2022-10-01] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3412576 2024-12-12] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [Grammarly] => C:\Users\Paula\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe [256088 2024-12-18] (Grammarly, Inc. -> Grammarly) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\Run: [MicrosoftEdgeAutoLaunch_D8463A8C71882DCFB12C8B8AAFE2AC92] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4418112 2025-04-11] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-980115973-4106445210-1662473369-1001\...\MountPoints2: {7d88d5f4-e382-11ec-82cb-6014b3d1ce3a} - "J:\HiSuiteDownLoader.exe" HKLM\...\Print\Monitors\HP 9a11 Status Monitor: C:\Windows\system32\hpinksts9a11LM.dll [332176 2012-09-12] (Hewlett Packard -> Hewlett-Packard Co.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\135.0.7049.85\Installer\chrmstp.exe [2025-04-11] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\Users\Paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HWMonitor_x64.exe — skrót .lnk [2025-04-03] ShortcutTarget: HWMonitor_x64.exe — skrót .lnk -> D:\Programy\HWMonitor_x64.exe (CPUID -> CPUID) Startup: C:\Users\Paula\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Powiadomienia monitorowania tuszu - HP Deskjet Ink Adv 2060 K110.lnk [2022-01-26] ShortcutAndArgument: Powiadomienia monitorowania tuszu - HP Deskjet Ink Adv 2060 K110.lnk -> C:\WINDOWS\system32\RunDll32.exe => "C:\Program Files\HP\HP Deskjet Ink Adv 2060 K110\bin\HPStatusBL.dll",RunDLLEntry SERIALNUMBER=CN23T33KS805M9;CONNECTION=USB;MONITOR=1; Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AnyDesk.lnk [2020-03-27] ShortcutTarget: AnyDesk.lnk -> C:\Program Files (x86)\AnyDesk\AnyDesk.exe (AnyDesk Software GmbH -> AnyDesk Software GmbH) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {38436ED8-1DD9-4B6B-AA42-AF922E289EBD} - \Lenovo\ImController\Lenovo iM Controller Monitor -> Brak pliku <==== UWAGA Task: {901C79D0-80D3-4974-96C6-95CE03638AE6} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> Brak pliku <==== UWAGA Task: {F5C91013-F167-4ADF-AAB2-AB3E74374D73} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> Brak pliku <==== UWAGA Task: {232C943C-E058-47FF-96CF-20E3CF1B9A7C} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1580992 2024-12-18] (Adobe Inc. -> Adobe Inc.) Task: {19330BF2-EE28-4440-A4C0-A3BB030D6FD1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem137.0.7115.0{F0B37208-41C5-43DD-8EE5-794B0EDC149C} => C:\Program Files (x86)\Google\GoogleUpdater\137.0.7115.0\updater.exe [7360096 2025-04-08] (Google LLC -> Google LLC) Task: {65093CA2-B4BC-4EEF-ADDC-EB9ACC514B13} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\IntelPTTEKRecertification.exe [816960 2017-10-11] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {DB213EC1-1EC6-4B84-97C8-143FCC073B15} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\430cda42-3849-43d1-b11d-36d37cafb5db => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {C244263A-883F-46DE-ABC7-145B46D16EFF} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\57ab9331-86ad-4626-9976-04a68409b610 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {04E75DF9-D86E-4925-851D-4CB071CB2EA4} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\bbad1fda-bb3a-4cd7-b48a-36c470a84ba4 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {53B4F9BE-1BA0-49E8-B7E6-EDF7B3531407} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\d4c97650-9aec-49b9-841e-c00b7e7a8fc7 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {796168CA-EB6F-4C7D-974F-F52AF4C7A323} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\fa022910-ebeb-40cf-a32f-5063b4a54bfb => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) Task: {CA7E47E7-4EEC-41BE-B444-8D0BDE14D527} - System32\Tasks\Microsoft\Office\Office Apps Prewarm => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315544 2025-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {2ADB7EBB-A6F6-4F06-8A15-2042916FA932} - System32\Tasks\Microsoft\Office\Office Apps Prewarm Recurring => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315544 2025-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {65C05848-60AD-401F-AE93-C85F64929252} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29107936 2025-04-08] (Microsoft Corporation -> Microsoft Corporation) Task: {4786961F-B93B-427F-90D5-A95FE30AB3EB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29107936 2025-04-08] (Microsoft Corporation -> Microsoft Corporation) Task: {A4E8E152-13F8-4951-A41B-9A833FF943B8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315544 2025-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {EF24CC01-8EC6-466F-A843-CC78A208AB17} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [315544 2025-04-10] (Microsoft Corporation -> Microsoft Corporation) Task: {8344C9C7-EDD4-4FD3-A095-CC43AB8B5796} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [204400 2025-04-04] (Microsoft Corporation -> Microsoft Corporation) Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (Brak pliku) Task: {6ECC17BA-2F21-4D1D-A937-AF5B7E29ED7A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (Brak pliku) Task: {FFC222C0-B5DD-4484-8471-C55CEB89213D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC EngagedRebootReminder (Brak pliku) Task: {8D36D955-51B7-4B05-B535-A176C6C4678A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery EngagedRebootReminder (Brak pliku) Task: {233BDF6E-FE6D-4EB8-8EE7-8A0B46D007AD} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (Brak pliku) Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (Brak pliku) Task: {B5B69D44-656D-4A27-B5E0-B9178B8DF9FF} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {111DA919-E570-4EBD-8C3D-2F5D0BE4C87D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {39ADEDDC-8132-4479-B97F-97A10EFC4D38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BA671B8C-AFF1-4F14-9CED-A3DD98A0FD8F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpCmdRun.exe [1745176 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0A8C036F-F78F-4D4B-83FB-68DB8ADCAE97} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695360 2025-04-10] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {FCE464D5-18B3-4AD8-9F17-725B3D409CDD} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-980115973-4106445210-1662473369-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695360 2025-04-10] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (dane wartości zawierają 6 znaków więcej). Task: {2E1EC8B0-7547-4B1E-8AAC-E8FA67A23D50} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34880 2025-04-10] (Mozilla Corporation -> Mozilla Foundation) Task: {D90EE1CD-AB2E-4766-9E6F-48141E9012D5} - System32\Tasks\Open Hardware Monitor\Startup => C:\Users\Paula\Desktop\OpenHardwareMonitor\OpenHardwareMonitor.exe [493568 2025-04-10] () [Brak podpisu cyfrowego] <==== UWAGA Task: {60ACE97C-7852-433A-A150-2A6DD0ABCDE0} - System32\Tasks\PDVDServ14 Task => C:\Program Files (x86)\CyberLink\PowerDVD14\PDVD14Serv.exe [88344 2017-02-17] (CyberLink Corp. -> CyberLink Corp.) Task: {BB5E299E-4187-4D0C-A785-07F9E83EBE0E} - System32\Tasks\RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506376 2018-10-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {0E462745-8B16-4156-822D-1E7AC49DDB8A} - System32\Tasks\RtHDVBg_LENOVO_DOLBYDRAGON => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506376 2018-10-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {2720E836-A102-4BFB-AA56-A145ABB167B3} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506376 2018-10-17] (Realtek Semiconductor Corp. -> Realtek Semiconductor) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) ProxyServer: [S-1-5-21-980115973-4106445210-1662473369-1001] => 20.111.54.16:8123 Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1ab20390-23f7-4753-a5fb-1ebf4227ede0}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}: [NameServer] 94.140.14.14,94.140.15.15 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\05C616970296E6475627E65647F5336464F55374: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\255646D69602E4F6475602131335: [DhcpNameServer] 192.168.221.162 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\255646D69602E4F64756021333020527F6B2025374: [DhcpNameServer] 192.168.247.197 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\35D61627470284F64756C6: [DhcpNameServer] 96.45.45.45 96.45.46.46 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\960586F6E65602051657C616: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\960586F6E6560282051657C61692: [NameServer] 94.140.14.14,94.140.15.15 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\960586F6E6560282051657C61692: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{7f0706bb-eb3a-48bd-b3ef-41210e13c4a4}\960586F6E656028214E64627A756A692: [DhcpNameServer] 172.20.10.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Paula\AppData\Local\Microsoft\Edge\User Data\Default [2025-04-04] Edge DownloadDir: Default -> C:\Users\Paula\Downloads Edge Extension: (Hola Free VPN Proxy Unblocker - Best VPN) - C:\Users\Paula\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eibinhpjpbkmjeohlclnebmkhdfehpbf [2024-07-25]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx Edge Extension: (Dokumenty Google offline) - C:\Users\Paula\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-28]hxxps://clients2.google.com/service/update2/crx Edge Extension: (Edge relevant text changes) - C:\Users\Paula\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]hxxps://edge.microsoft.com/extensionwebstorebase/v1/crx FireFox: ======== FF DefaultProfile: rg2bq303.default FF ProfilePath: C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\rg2bq303.default [2021-05-22] FF ProfilePath: C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release [2025-04-10] FF DownloadDir: D:\Co pobralam FF Notifications: Mozilla\Firefox\Profiles\ymy4m410.default-release -> hxxps://teams.microsoft.com; hxxps://web.tutlo.com FF Extension: (uBlock Origin) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-03-26] FF Extension: (Light Sea) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{124ac638-9949-4296-83e5-0a30089482fa}.xpi [2019-08-07] FF Extension: (Mountains Above the Lake by MaDonna) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{268a8795-f270-4020-ae50-1be439ed28a2}.xpi [2023-03-25] FF Extension: (CLASSIC NAVY) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{33eb341b-5f09-4be6-b348-26951b99c5aa}.xpi [2019-08-07] FF Extension: (rainbow blur) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{7477cece-5973-41fe-a60e-2d2ffae6d21e}.xpi [2019-08-07] FF Extension: (Mountain Panorama by M♥Donna) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{b51a1df9-c0d4-4449-aa8b-3d4c460cd07d}.xpi [2023-01-19] FF Extension: (Mist and Mountains) - C:\Users\Paula\AppData\Roaming\Mozilla\Firefox\Profiles\ymy4m410.default-release\Extensions\{bc564f64-1123-428c-b970-4b379700fde3}.xpi [2019-08-07] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2025-03-13] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.401.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.401.2 -> C:\Program Files (x86)\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-12-19] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-04-04] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [Brak pliku] FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-980115973-4106445210-1662473369-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\Paula\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife -> RocketLife, LLP) FF Plugin HKU\S-1-5-21-980115973-4106445210-1662473369-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-980115973-4106445210-1662473369-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] FF Plugin HKU\S-1-5-21-980115973-4106445210-1662473369-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [Brak pliku] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default [2025-04-14] CHR DownloadDir: D:\Co pobralam CHR Notifications: Default -> hxxps://meet.google.com; hxxps://teams.microsoft.com; hxxps://web.tutlo.com; hxxps://www.castorama.pl CHR Extension: (uBlock Origin) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2025-03-21]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Miro Web Clipper) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecfnenchgjbicgaooadfdmcojkcmjblk [2024-09-11]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Figma) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkmaohpngenfoccdgceedjkfhkdcohmg [2025-01-17]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Dokumenty Google offline) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-03-20]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Grammarly: AI Writing and Grammar Checker App) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2025-04-13]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]hxxps://clients2.google.com/service/update2/crx CHR Profile: C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-02-15] CHR Profile: C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-07-06] CHR Extension: (Safe Torrent Scanner) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-07-06]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Dokumenty Google offline) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-07-06]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-09]hxxps://clients2.google.com/service/update2/crx CHR Profile: C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3 [2023-12-27] CHR Extension: (Torrent Scanner) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2023-12-22]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-12-27]hxxps://clients2.google.com/service/update2/crx CHR Extension: (wrzutaDL) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\cnjpilgffnnhojdblloogokoedfdgild [2023-12-27]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Stylish - Custom themes for any website) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\fjnbnpbmkenffdnngjfgmeleoegfcffe [2023-12-27]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Dokumenty Google offline) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-12-22]hxxps://clients2.google.com/service/update2/crx CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-12-27]hxxps://clients2.google.com/service/update2/crx CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-22]hxxps://clients2.google.com/service/update2/crx CHR Extension: (piZap Photo Editor) - C:\Users\Paula\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\occpjibghkbopohbefbejkklnfdkdmok [2023-12-27]hxxps://clients2.google.com/service/update2/crx CHR Profile: C:\Users\Paula\AppData\Local\Google\Chrome\User Data\System Profile [2023-12-22] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2024-12-18] (Adobe Inc. -> Adobe Inc.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3910472 2024-02-11] (AnyDesk Software GmbH -> AnyDesk Software GmbH) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7356680 2018-10-03] (BattlEye Innovations e.K. -> ) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13862104 2025-04-08] (Microsoft Corporation -> Microsoft Corporation) S3 Disc Soft Lite Bus Service; D:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3644008 2018-12-17] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2018-09-25] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.) S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19068000 2024-12-12] (Electronic Arts, Inc. -> Electronic Arts) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2018-09-08] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 Getscreen.me; C:\Program Files\Getscreen.me\getscreen.exe [7776992 2025-03-05] (POINT B LTD -> Point B Ltd) R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [243664 2025-03-08] (HP Inc. -> HP Inc.) R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe [2009608 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe [4538400 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe [278320 2025-04-10] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-05-10] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-05-10] (Disc Soft Ltd -> Disc Soft Ltd) R0 fse; C:\WINDOWS\System32\drivers\fse.sys [218544 2025-04-10] (Microsoft Windows -> Microsoft Corporation) R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [331168 2025-04-10] (Microsoft Windows -> Microsoft Corporation) S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.) R0 sfdrv01a; C:\WINDOWS\System32\drivers\sfdrv01a.sys [77688 2006-07-05] (Protection Technology, Ltd. -> Protection Technology (StarForce)) R0 sfsync04; C:\WINDOWS\System32\drivers\sfsync04.sys [77696 2006-06-14] (Protection Technology, Ltd. -> Protection Technology (StarForce)) R0 sfvfs02; C:\WINDOWS\System32\drivers\sfvfs02.sys [100712 2006-06-14] (Protection Technology, Ltd. -> Protection Technology (StarForce)) R3 SNP2UVCW10; C:\WINDOWS\system32\DRIVERS\snUVCg2.sys [1710128 2017-11-05] (Sonix Technology CO., LTD -> Sonix Tech. Co., Ltd.) S3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2020-01-10] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [94208 2024-12-10] (Microsoft Windows -> ) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20016 2025-04-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [605576 2025-04-10] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-10] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-04-14 14:46 - 2025-04-14 14:48 - 000036941 _____ C:\Users\Paula\Downloads\FRST.txt 2025-04-14 14:45 - 2025-04-14 14:47 - 000000000 ____D C:\FRST 2025-04-14 14:44 - 2025-04-14 14:44 - 002404864 _____ (Farbar) C:\Users\Paula\Downloads\FRST64.exe 2025-04-14 14:19 - 2025-04-14 14:19 - 000799498 _____ C:\WINDOWS\system32\perfh015.dat 2025-04-14 14:19 - 2025-04-14 14:19 - 000158512 _____ C:\WINDOWS\system32\perfc015.dat 2025-04-10 12:08 - 2025-04-10 12:08 - 000000000 ____D C:\inetpub 2025-04-10 11:59 - 2025-04-10 12:00 - 000000000 ____D C:\Users\Paula\Desktop\FurMark_win64 2025-04-10 11:46 - 2025-04-10 11:47 - 000000000 ____D C:\Users\Paula\Desktop\prime95 2025-04-10 11:35 - 2025-04-10 12:10 - 000000000 ____D C:\Program Files\Mozilla Firefox 2025-04-10 11:15 - 2025-04-10 11:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Open Hardware Monitor 2025-04-10 11:14 - 2025-04-14 14:23 - 000000000 ____D C:\Users\Paula\Desktop\OpenHardwareMonitor 2025-04-10 11:04 - 2025-04-10 11:04 - 000028560 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2025-04-10 11:02 - 2025-04-10 11:02 - 000028560 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2025-04-04 13:18 - 2025-04-04 13:18 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2025-04-03 11:30 - 2025-04-03 11:30 - 000160932 _____ C:\Users\Paula\battery-report.html 2025-03-29 22:57 - 2025-03-29 22:57 - 000000000 ____D C:\Users\Paula\AppData\LocalLow\Team17 2025-03-29 22:55 - 2025-03-29 22:55 - 000000799 _____ C:\Users\Public\Desktop\Overcooked! 2.lnk 2025-03-29 22:55 - 2025-03-29 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Overcooked! 2 [GOG.com] 2025-03-29 12:17 - 2025-03-29 12:17 - 003654543 _____ C:\Users\Paula\Desktop\jobs-worksheet.pdf 2025-03-29 12:13 - 2025-03-29 12:13 - 000199656 _____ C:\Users\Paula\Desktop\jobs_-_exercises.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2025-04-14 14:39 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2025-04-14 14:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2025-04-14 14:37 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2025-04-14 14:33 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2025-04-14 14:19 - 2023-02-10 17:05 - 001797768 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2025-04-14 14:19 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2025-04-14 14:12 - 2018-05-10 16:43 - 000000000 ____D C:\Users\Paula\AppData\Roaming\Microsoft\MMC 2025-04-14 14:12 - 2018-05-10 16:15 - 000000000 __SHD C:\Users\Paula\IntelGraphicsProfiles 2025-04-14 14:11 - 2023-02-09 23:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2025-04-14 14:11 - 2023-02-09 23:06 - 000000000 ____D C:\Users\Paula 2025-04-14 14:11 - 2023-02-09 23:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2025-04-14 14:11 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState 2025-04-14 14:11 - 2020-10-18 01:17 - 000012288 ___SH C:\DumpStack.log.tmp 2025-04-14 14:11 - 2017-09-06 04:01 - 000000000 ____D C:\ProgramData\NVIDIA 2025-04-14 12:13 - 2018-09-08 17:17 - 000000000 ____D C:\Users\Paula\AppData\Local\D3DSCache 2025-04-13 21:40 - 2023-01-16 12:41 - 000002296 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2025-04-13 21:40 - 2020-06-12 21:43 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2025-04-11 12:59 - 2019-09-21 13:27 - 000002317 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2025-04-11 12:59 - 2019-09-21 13:27 - 000002276 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2025-04-10 17:49 - 2018-05-10 16:57 - 000000000 ____D C:\Program Files\Microsoft Office 2025-04-10 15:37 - 2018-05-10 16:15 - 000000000 ____D C:\Users\Paula\AppData\Local\Packages 2025-04-10 14:48 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2025-04-10 12:12 - 2024-12-10 22:27 - 000001527 _____ C:\WINDOWS\system32\config\VSMIDK 2025-04-10 12:12 - 2022-05-07 07:17 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2025-04-10 12:10 - 2023-02-09 23:03 - 000497880 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2025-04-10 12:10 - 2023-01-19 16:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2025-04-10 12:09 - 2023-10-11 21:36 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView 2025-04-10 12:09 - 2022-05-07 12:40 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\UNP 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\lxss 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\UUS 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\migwiz 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient 2025-04-10 12:09 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2025-04-10 12:08 - 2023-12-15 10:37 - 000000000 ____D C:\WINDOWS\InboxApps 2025-04-10 12:08 - 2022-05-07 12:40 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2025-04-10 12:08 - 2022-05-07 12:40 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2025-04-10 12:08 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\PrintDialog 2025-04-10 12:08 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2025-04-10 12:08 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2025-04-10 12:08 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2025-04-10 12:08 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2025-04-10 12:08 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\servicing 2025-04-10 11:42 - 2023-01-19 16:07 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2025-04-10 11:38 - 2023-01-19 16:07 - 000001015 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2025-04-10 11:13 - 2022-05-07 07:25 - 000077312 _____ (Khronos Group) C:\WINDOWS\SysWOW64\opencl.dll 2025-04-10 11:13 - 2022-05-07 07:24 - 000118784 _____ (Khronos Group) C:\WINDOWS\system32\opencl.dll 2025-04-10 11:13 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2025-04-10 11:04 - 2023-02-09 23:06 - 003216896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2025-04-10 09:09 - 2018-05-10 20:56 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2025-04-05 10:11 - 2023-02-09 23:13 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2025-04-05 10:11 - 2023-02-09 23:13 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2025-04-04 13:15 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2025-03-29 22:01 - 2021-06-09 10:49 - 000000000 ____D C:\Users\Paula\AppData\Local\CrashDumps 2025-03-29 21:54 - 2018-09-20 19:50 - 000000000 ____D C:\Program Files (x86)\Steam 2025-03-28 17:17 - 2025-03-13 22:04 - 000000000 ____D C:\WINDOWS\Panther 2025-03-28 17:03 - 2024-04-01 19:07 - 000000000 ___HD C:\$WINDOWS.~BT 2025-03-27 21:59 - 2023-04-04 23:29 - 000000000 ____D C:\Users\Paula\AppData\Roaming\vlc 2025-03-27 01:32 - 2020-03-20 18:13 - 000000000 ____D C:\Users\Paula\AppData\Roaming\Microsoft\Teams 2025-03-27 01:32 - 2018-08-06 23:40 - 000000000 ____D C:\ProgramData\Packages 2025-03-27 01:26 - 2024-12-10 22:31 - 000000000 ____D C:\Program Files\WSL 2025-03-27 01:07 - 2024-12-10 22:28 - 000000000 ____D C:\Users\Paula\.docker 2025-03-27 01:07 - 2024-12-10 22:22 - 000000000 ____D C:\Users\Paula\AppData\Roaming\Docker 2025-03-27 01:07 - 2024-12-10 22:22 - 000000000 ____D C:\ProgramData\DockerDesktop 2025-03-27 00:46 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\NDF 2025-03-27 00:46 - 2018-09-28 22:38 - 000000000 ____D C:\Users\Paula\AppData\Local\ElevatedDiagnostics 2025-03-26 23:54 - 2019-04-02 17:06 - 000000000 ____D C:\Users\Public\Documents\Wondershare 2025-03-26 00:03 - 2024-11-14 13:36 - 000000000 ____D C:\Users\Paula\AppData\Roaming\FileZilla 2025-03-20 09:59 - 2023-02-09 23:13 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2025-03-20 09:58 - 2022-11-18 18:47 - 000002083 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk 2025-03-20 09:58 - 2022-11-18 18:47 - 000002071 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk 2025-03-18 21:30 - 2018-05-10 16:59 - 000000000 ____D C:\Users\Paula\AppData\Roaming\Microsoft\Word 2025-03-18 09:09 - 2023-12-16 15:08 - 002897472 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2025-03-18 09:09 - 2023-12-16 15:08 - 000788008 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2025-03-18 09:09 - 2023-12-16 15:08 - 000267816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2025-03-18 09:09 - 2023-12-16 15:08 - 000243264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2025-03-18 09:09 - 2023-12-16 15:08 - 000153152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2025-03-18 09:09 - 2023-12-16 15:08 - 000124480 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2025-03-18 09:09 - 2023-12-16 15:08 - 000075304 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2025-03-17 20:45 - 2024-11-14 13:37 - 000000128 _____ C:\Users\Paula\AppData\Local\PUTTY.RND ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-06-29 16:25 - 2020-06-29 16:25 - 000000410 _____ () C:\Users\Paula\AppData\Local\oobelibMkey.log 2024-11-14 13:37 - 2025-03-17 20:45 - 000000128 _____ () C:\Users\Paula\AppData\Local\PUTTY.RND ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================