Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 25.07.2024 Uruchomiony przez Reluch (administrator) R3LUCH (MSI MS-7979) (26-07-2024 00:25:24) Uruchomiony z C:\Users\Reluch\OneDrive\Downloads\FRST64.exe Załadowane profile: Reluch & SQLTELEMETRY & MSSQLFDLauncher & MSSQLSERVER Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.4651 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2> (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdskIdentityManager\1.11.9.11\AdskIdentityManager.exe (C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8> (C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe <4> (C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdhost.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe (D:\Programy\Malwarebytes\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Programy\Malwarebytes\Malwarebytes.exe (explorer.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe (explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Reluch\AppData\Local\WebEx\WebexHost.exe (explorer.exe ->) (Disc Soft Ltd -> Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DTShellHlp.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <45> (explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe (explorer.exe ->) (juvlarN) [Brak podpisu cyfrowego] D:\Programy\vibrance.GUI.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe <2> (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe (services.exe ->) (Disc Soft Ltd -> Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (HP) [Brak podpisu cyfrowego] C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Programy\Malwarebytes\MBAMService.exe (services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlceip.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlservr.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) D:\Programy\Live Update\MSI_LiveUpdate_Service.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe (services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\MSI_Driver_Service.exe (services.exe ->) (Nitro Software, Inc. -> Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_362f239e9bd019fc\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2405.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe (svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2428.10.0_x64__cv1g1gvanyjgm\WhatsApp.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.126.0623.0001\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.4585_none_7e06e2187c9234e2\TiWorker.exe (svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe (TP-Link Technologies Co., Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-10-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] HKLM\...\Run: [Autodesk Access] => C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe [20987680 2024-02-20] (Autodesk, Inc. -> Autodesk, Inc.) HKLM-x32\...\Run: [Live Update] => D:\Programy\Live Update\Live Update.exe [26107576 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) HKLM-x32\...\Run: [MSIRegister] => "C:\MSI\MSIRegister\MSIRegister.exe" (Brak pliku) HKLM-x32\...\Run: [USB_Speed_Up] => "C:\MSI\MSI USB Speed Up\USB_Speed_Up.exe"/mini (Brak pliku) HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [759120 2015-04-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> ) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [DAEMON Tools Lite Automount] => D:\Programy\DAEMON Tools Lite\DTAgent.exe [5230784 2017-12-15] (Disc Soft Ltd -> Disc Soft Ltd) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4407656 2024-07-17] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [Shell] => C:\Program Files (x86)\TP-Link\TP-Link TL-WN722N\WPS_TOOL_AUTO.vbs [152 2018-07-02] () [Brak podpisu cyfrowego] HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45629344 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [vibranceGUI] => D:\Programy\vibrance.GUI.exe [1072128 2015-05-26] (juvlarN) [Brak podpisu cyfrowego] HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919200 2024-07-11] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Reluch\AppData\Local\WebEx\WebexHost.exe [7272032 2024-03-15] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [MicrosoftEdgeAutoLaunch_54597996B1165982DE91D16E71A5D643] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883472 2024-07-18] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Policies\Explorer: [] HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\MountPoints2: {66ae9bae-f223-11e7-8259-4ccc6a4b4d57} - "E:\SISetup.exe" HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2009-10-23] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\HP1100LM: C:\Windows\system32\HP1100LM.DLL [289792 2009-10-23] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\Nitro PDF Port 12 Monitor: C:\Windows\system32\NxPrinterMonitor12.dll [220768 2018-08-07] (Nitro Software, Inc. -> Nitro Software, Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.72\Installer\chrmstp.exe [2024-07-25] (Google LLC -> Google LLC) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {B8F3FECF-210B-4580-AF5E-777114528981} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1558984 2024-06-25] (Adobe Inc. -> Adobe Inc.) Task: {3F919C52-601D-4942-90D1-07B38FFF2765} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {B7BA5E33-515F-41B5-A493-8E15B9D9DA36} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "b2e675a1-a1ce-4b83-ae89-9880ca8f5d9e" --version "6.25.11131" --silent Task: {AC3906E0-0033-4561-A215-3D99D62C1621} - System32\Tasks\CCleanerSkipUAC - Reluch => C:\Program Files\CCleaner\CCleaner.exe [39451552 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {99B44121-5D94-460F-A523-B9DF83E973A3} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{A4206D32-2FA3-4FCA-B9B9-28E1580CF8A6} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe [4889704 2024-07-15] (Google LLC -> Google LLC) Task: {8807E83A-FC2D-4936-8ED1-DFC6BEACD94F} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation) Task: {08AF0660-D9A5-4A7B-BBAE-0D6C3B518F98} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499640 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) Task: {54909F54-E9F8-4B86-8885-5309F5BFC700} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499640 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) Task: {67FDAEFC-6714-4AFA-B55B-CEF8445BD5A2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) Task: {C909A576-3F23-4DA7-9E15-4D18E334B7EB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) Task: {C8F96A54-0CEE-4EEA-9D63-3B855144CFDF} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4452032 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371} Task: {E9DBAFC8-AE8D-4639-8E0A-176E685B7FDF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA} Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE} Task: {A5F36229-14F2-4E91-8D60-F9836AA92017} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {48BE95EF-C568-4569-8869-87D0D260558F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {62018830-1CB9-4C57-B44F-E6C7230C2D85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8123BF0C-4D6D-45C0-A5E5-83DB5B8615D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => %SystemRoot%\System32\AutoWorkplace.exe join (Brak pliku) Task: {94DB2E83-8E14-477A-B1EC-76393F552631} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [30648 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) Task: {6F84E7CE-E313-4754-BFB2-296E6D0F2889} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-25] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {B7E67F7B-39AA-4142-9A33-2B5DC11643F8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341432 2022-05-06] (Nvidia Corporation -> NVIDIA Corporation) Task: {D989F1F4-5E50-42F1-93FB-47C22E49B372} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647424 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler Task: {2A0F8769-0389-476E-8B1A-2B53EE8FC93E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {8E2ED27B-85B2-46B2-97AC-F910461860DC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {B1ADC174-4024-4445-BFAE-98C48E595F6D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {8426C4EA-3E3A-4030-88A0-5293773426FF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {9729A862-40BA-432A-9E16-F3F178F3E0D1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {F4ECFDD4-39F8-46C0-8CFD-5A14328DA60E} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) Task: {00471F91-7AB2-4DF2-9119-C704959EC889} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-11] (Microsoft Corporation -> Microsoft Corporation) Task: {FD800C89-32EC-41F0-BE25-0517E1663577} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2371882236-2221375197-575870651-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-11] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{C367DBA8-64D8-4999-914F-F89DC3C9A565}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{C367DBA8-64D8-4999-914F-F89DC3C9A565}: [DhcpDomain] home Tcpip\..\Interfaces\{E73E6631-F727-4F7A-98FC-D19F0726C9C3}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{E73E6631-F727-4F7A-98FC-D19F0726C9C3}: [DhcpDomain] home Edge: ======= Edge Profile: C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default [2024-07-26] Edge Extension: (Dokumenty Google offline) - C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-25] Edge Extension: (Edge relevant text changes) - C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-07-25] FireFox: ======== FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2024-07-15] [UpdateUrl:hxxps://sadownload.mcafee.com/products/SA/Win/xpi/webadvisor/update.json] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi FF HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Reluch\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-07-23] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-05-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-05-17] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-2371882236-2221375197-575870651-1001: @acestream.net/acestreamplugin,version=3.1.20.4 -> C:\Users\Reluch\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default [2024-07-26] CHR HomePage: Default -> hxxp://www.google.pl/ CHR StartupUrls: Default -> "hxxps://www.google.com/" CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Polska Ciasteczkowa Zgoda) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\bniijddcmabghibaojbkbnngbedopbno [2024-07-25] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-07-25] CHR Extension: (Avast SafePrice) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2024-07-25] CHR Extension: (McAfee® WebAdvisor) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-07-25] CHR Extension: (Dokumenty Google offline) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-25] CHR Extension: (Dots) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi [2017-12-27] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-07-25] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKU\S-1-5-21-2371882236-2221375197-575870651-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-06-25] (Adobe Inc. -> Adobe Inc.) S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2688544 2022-07-06] (PUBG CORPORATION -> ) R2 Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [13272864 2024-04-15] (Autodesk, Inc. -> Autodesk, Inc.) R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [152312 2019-08-20] (Microsoft Windows -> Microsoft Corporation) S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2567304 2024-05-05] (Blizzard Entertainment, Inc. -> Blizzard Entertainment) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9880840 2022-12-07] (BattlEye Innovations e.K. -> ) S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1085856 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14012384 2024-07-15] (Microsoft Corporation -> Microsoft Corporation) R3 Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3128000 2017-12-15] (Disc Soft Ltd -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-02-14] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [943528 2023-06-28] (EasyAntiCheat Oy -> Epic Games, Inc.) S3 FACEITService; D:\Programy\Faceit AntyCheat\FACEIT AC\FACEITService.exe [19329296 2020-12-22] (FACE IT LIMITED -> ) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\FileSyncHelper.exe [3519392 2024-07-11] (Microsoft Corporation -> Microsoft Corporation) R2 hasplms; C:\WINDOWS\system32\hasplms.exe [4609928 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.) R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [Brak podpisu cyfrowego] R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-06-18] (HP Inc. -> HP Inc.) R2 HPSIService; C:\Windows\system32\HPSIsvc.exe [126520 2009-11-09] (Hewlett-Packard Company -> HP) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] R2 MBAMService; D:\Programy\Malwarebytes\MBAMService.exe [8901528 2024-07-15] (Malwarebytes Inc. -> Malwarebytes) S3 MBVpnTunnelService; D:\Programy\Malwarebytes\MBVpnTunnelService.exe [3073888 2024-06-04] (Malwarebytes Inc. -> Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [879456 2024-07-15] (McAfee, LLC -> McAfee, LLC) R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe [1377416 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [128976 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [58296 2017-02-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R2 MSI_Driver_Service; C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\MSI_Driver_Service.exe [54880 2016-10-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R2 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [111568 2017-04-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R2 MSI_LiveUpdate_Service; D:\Programy\Live Update\MSI_LiveUpdate_Service.exe [2304696 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) R3 MSSQLFDLauncher; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe [100256 2022-10-08] (Microsoft Corporation -> Microsoft Corporation) R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [722848 2022-10-08] (Microsoft Corporation -> Microsoft Corporation) R2 nlsX86cc; C:\WINDOWS\SysWOW64\NLSSRV32.EXE [70752 2018-08-07] (Nitro Software, Inc. -> Nalpeiron Ltd.) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_362f239e9bd019fc\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-03-13] (NVIDIA Corporation -> NVIDIA Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\OneDriveUpdaterService.exe [3860400 2024-07-11] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522200 2024-05-17] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [726952 2022-10-08] (Microsoft Corporation -> Microsoft Corporation) R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [300968 2022-10-08] (Microsoft Corporation -> Microsoft Corporation) S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5066280 2023-12-24] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 uncheater_bgl; C:\Program Files\Common Files\Uncheater\uncheater_bgl.exe [2097008 2021-03-28] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe [3236728 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe [133688 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation) S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12410208 2023-12-24] (KRAFTON, Inc. -> KRAFTON, Inc) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ACE-BASE; C:\WINDOWS\system32\drivers\ACE-BASE.sys [2178912 2022-07-12] (PUBG CORPORATION -> ANTICHEATEXPERT.COM) S3 ACE-GAME; C:\WINDOWS\system32\drivers\ACE-GAME.sys [914760 2022-07-12] (PUBG CORPORATION -> ANTICHEATEXPERT.COM) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 cpuz150; C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [44832 2024-07-25] (CPUID S.A.R.L.U. -> CPUID) <==== UWAGA R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-12-27] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-12-27] (Disc Soft Ltd -> Disc Soft Ltd) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [251632 2015-07-14] (ESET, spol. s r.o. -> ESET) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2018-11-23] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [331328 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.) R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2023-05-28] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk]) R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [221264 2024-07-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MpKsl57ef4a95; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D4A157F5-5DA1-418E-946B-890017E018F0}\MpKslDrv.sys [271640 2024-07-26] (Microsoft Windows -> Microsoft Corporation) S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2009-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.) R3 NTIOLib_ACTIVE_X; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\NTIOLib_X64.sys [13776 2016-04-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [14288 2017-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R4 NTIOLib_OCKit_MB; C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\NTIOLib_X64.sys [13776 2016-09-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation) S4 RsFx0700; C:\WINDOWS\System32\DRIVERS\RsFx0700.sys [298392 2022-10-08] (Microsoft Corporation -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21968 2024-07-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602520 2024-07-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-07-15] (Microsoft Windows -> Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [179112 2023-12-28] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.) S3 EspoDriver; \??\C:\WINDOWS\system32\drivers\EspoDriver.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-07-26 00:24 - 2024-07-26 00:25 - 000000000 ____D C:\FRST 2024-07-26 00:16 - 2024-07-26 00:16 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Notepad++ 2024-07-26 00:09 - 2024-07-26 00:09 - 000000112 ___SH C:\bootTel.dat 2024-07-25 23:26 - 2024-07-25 23:29 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\MMC 2024-07-25 23:25 - 2024-07-25 23:25 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\AddIns 2024-07-25 23:19 - 2024-07-25 23:19 - 000000000 ___HD C:\OneDriveTemp 2024-07-25 23:03 - 2024-07-25 23:03 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Network 2024-07-25 15:20 - 2024-07-25 15:23 - 000000000 ___HD C:\$WinREAgent 2024-07-25 15:15 - 2024-07-25 15:15 - 000000000 ____D C:\Users\Reluch\AppData\Local\OneDrive 2024-07-25 14:14 - 2024-07-25 14:14 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Mapsoft 2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\com.adobe.dunamis 2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Adobe 2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Local\SolidDocuments 2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Local\Adobe 2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\.ms-ad 2024-07-25 13:51 - 2024-07-25 13:51 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\DAEMON Tools Lite 2024-07-25 13:51 - 2024-07-25 13:51 - 000000000 ____D C:\Users\Public\Documents\Catch! 2024-07-25 13:50 - 2024-07-25 13:50 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\Temp 2024-07-25 13:47 - 2024-07-25 13:47 - 000002397 _____ C:\Users\Reluch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-07-25 13:45 - 2024-07-25 13:45 - 000002417 _____ C:\Users\Reluch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Vault 2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Local\Publishers 2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Local\PeerDistRepub 2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\ansel 2024-07-25 13:44 - 2024-07-26 00:13 - 000000000 ____D C:\Users\Reluch\AppData\Local\CrashDumps 2024-07-25 13:44 - 2024-07-25 13:44 - 000000020 ___SH C:\Users\Reluch\ntuser.ini 2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ___SD C:\Users\Reluch\AppData\Roaming\Microsoft\Protect 2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ___SD C:\Users\Reluch\AppData\Roaming\Microsoft\Credentials 2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Local\VirtualStore 2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Local\MicrosoftEdge 2024-07-25 13:43 - 2024-07-26 00:26 - 000000000 ____D C:\Users\Reluch\AppData\Local\ClassicShell 2024-07-25 13:42 - 2024-07-26 00:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\UProof 2024-07-25 13:42 - 2024-07-26 00:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Szablony 2024-07-25 13:42 - 2024-07-25 22:46 - 000000000 ____D C:\Users\Reluch\AppData\Local\D3DSCache 2024-07-25 13:42 - 2024-07-25 14:15 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Office 2024-07-25 13:42 - 2024-07-25 13:46 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Spelling 2024-07-25 13:42 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\SystemCertificates 2024-07-25 13:42 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Crypto 2024-07-25 13:42 - 2024-07-25 13:42 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Sprawdzanie 2024-07-25 13:42 - 2024-07-25 13:42 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Dodatki 2024-07-25 13:41 - 2024-07-25 13:41 - 000162408 _____ C:\Users\Reluch\AppData\Local\GDIPFONTCACHEV1.DAT 2024-07-25 13:40 - 2024-07-25 13:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2024-07-11 11:24 - 2024-07-11 11:24 - 000000000 ____D C:\WINDOWS\system32\compatrel 2024-07-11 11:20 - 2024-07-11 11:20 - 000021724 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json 2024-07-11 11:20 - 2024-07-11 11:20 - 000021724 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2024-07-08 16:13 - 2024-07-08 21:01 - 000000000 ____D C:\Program Files\CCleaner Browser 2024-06-18 09:24 - 2024-06-18 09:24 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2024-06-05 20:26 - 2024-06-05 20:26 - 000000000 ____D C:\WINDOWS\system32\%userprofile% 2024-05-10 15:23 - 2024-06-18 09:24 - 000000000 ____D C:\Program Files\HPPrintScanDoctor 2024-05-01 14:51 - 2024-05-01 14:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-07-26 00:27 - 2017-12-27 19:45 - 000000000 ____D C:\Program Files (x86)\Steam 2024-07-26 00:25 - 2023-05-10 11:41 - 000000000 ____D C:\Users\Reluch\AppData\Local\Malwarebytes 2024-07-26 00:17 - 2021-02-04 18:42 - 002108074 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-07-26 00:17 - 2019-12-07 17:09 - 000902896 _____ C:\WINDOWS\system32\perfh015.dat 2024-07-26 00:17 - 2019-12-07 17:09 - 000200322 _____ C:\WINDOWS\system32\perfc015.dat 2024-07-26 00:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2024-07-26 00:11 - 2018-01-16 22:18 - 000000000 ___RD C:\Users\Reluch\OneDrive 2024-07-26 00:10 - 2021-02-04 18:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-07-26 00:10 - 2021-02-04 18:38 - 000008192 ___SH C:\DumpStack.log.tmp 2024-07-26 00:10 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-07-26 00:10 - 2017-12-27 19:39 - 000000000 ____D C:\ProgramData\boost_interprocess 2024-07-26 00:10 - 2017-12-27 03:24 - 000000000 ____D C:\ProgramData\NVIDIA 2024-07-26 00:08 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2024-07-25 23:20 - 2023-10-02 19:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2024-07-25 22:46 - 2017-12-27 19:46 - 000000000 ____D C:\Users\Reluch\AppData\Local\Steam 2024-07-25 22:45 - 2021-12-16 02:03 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-07-25 22:45 - 2017-12-27 03:14 - 000000000 ____D C:\Users\Reluch\AppData\Local\Packages 2024-07-25 22:44 - 2021-12-02 01:07 - 000000000 ____D C:\Users\Reluch\AppData\Local\WebEx 2024-07-25 15:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-07-25 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-07-25 14:49 - 2017-12-27 04:12 - 000000000 ____D C:\Program Files\CCleaner 2024-07-25 14:40 - 2019-12-10 00:38 - 000000000 ____D C:\AdwCleaner 2024-07-25 14:23 - 2018-01-16 21:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2024-07-25 14:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-07-25 14:21 - 2020-03-14 17:28 - 000000000 ____D C:\Users\Reluch\AppData\Local\ConnectedDevicesPlatform 2024-07-25 14:15 - 2017-12-30 21:21 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Excel 2024-07-25 14:13 - 2017-12-27 19:29 - 000000000 ____D C:\Users\Reluch\AppData\Local\Autodesk 2024-07-25 14:13 - 2017-12-27 19:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Autodesk 2024-07-25 14:13 - 2017-12-27 19:18 - 000000000 ____D C:\ProgramData\Autodesk 2024-07-25 14:00 - 2024-02-13 01:46 - 000239568 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2024-07-25 13:56 - 2021-06-02 15:34 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\Adobe 2024-07-25 13:56 - 2021-06-02 15:33 - 000000000 ____D C:\ProgramData\Adobe 2024-07-25 13:56 - 2021-02-04 18:40 - 000000000 ____D C:\Users\Reluch 2024-07-25 13:51 - 2017-12-27 03:52 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite 2024-07-25 13:46 - 2017-12-27 04:09 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Word 2024-07-25 13:46 - 2017-12-27 03:43 - 000000000 ____D C:\Users\Reluch\AppData\Local\NVIDIA Corporation 2024-07-25 13:45 - 2020-03-14 17:28 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-07-25 13:45 - 2017-12-27 03:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2024-07-25 13:44 - 2021-02-04 18:40 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Windows 2024-07-25 13:44 - 2021-02-04 18:39 - 000648728 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-07-25 13:44 - 2017-12-27 03:16 - 000000000 ____D C:\MSI 2024-07-25 13:43 - 2020-08-24 07:52 - 000000000 ____D C:\Users\Reluch\Documents\Trimble Business Center 2024-07-25 13:43 - 2019-03-04 01:24 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\vibranceGUI 2024-07-25 13:43 - 2018-08-08 15:27 - 000000000 ___RD C:\Users\Reluch\Documents\Scanned Documents 2024-07-25 13:42 - 2022-08-11 17:02 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\NVIDIA 2024-07-25 13:40 - 2017-12-27 03:43 - 000000000 ____D C:\Users\Reluch\AppData\Local\NVIDIA 2024-07-25 13:39 - 2017-12-27 03:32 - 000000000 ____D C:\Users\Reluch\AppData\Local\Google 2024-07-25 13:37 - 2020-08-24 07:49 - 000000000 ____D C:\ProgramData\Trimble 2024-07-25 13:37 - 2020-03-14 17:47 - 000000000 ____D C:\Users\Reluch\AppData\Local\Comms 2024-07-25 13:37 - 2020-03-14 17:28 - 000000000 ___RD C:\Users\Reluch\3D Objects 2024-07-25 13:37 - 2017-12-27 19:39 - 000000000 ____D C:\ProgramData\FLEXnet 2024-07-25 13:36 - 2020-11-28 14:53 - 000000000 ____D C:\Intel 2024-07-25 00:03 - 2021-06-02 15:34 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2024-07-24 22:47 - 2021-02-04 18:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-07-19 13:18 - 2024-03-31 02:36 - 002799208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000751208 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000267880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_4.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000222816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000206440 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000145000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2024-07-19 13:18 - 2024-03-31 02:36 - 000108136 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2024-07-19 13:18 - 2024-03-31 02:36 - 000075368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe 2024-07-16 13:52 - 2018-08-08 15:17 - 000000404 _____ C:\WINDOWS\BRWMARK.INI 2024-07-16 13:52 - 2018-08-08 15:17 - 000000027 _____ C:\WINDOWS\BRPP2KA.INI 2024-07-15 23:24 - 2020-03-14 17:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2024-07-15 11:41 - 2017-12-27 04:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2024-07-15 11:34 - 2021-02-04 18:46 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-07-15 11:34 - 2021-02-04 18:46 - 000003440 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-07-11 11:27 - 2021-02-04 18:46 - 000003846 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification 2024-07-11 11:26 - 2023-05-08 07:57 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2024-07-11 11:24 - 2023-12-14 01:29 - 000000000 ____D C:\WINDOWS\InboxApps 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-07-11 11:20 - 2021-02-04 18:41 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2024-07-11 11:14 - 2017-12-29 04:07 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-07-11 11:11 - 2017-12-29 04:07 - 194135240 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-07-11 11:01 - 2023-10-01 17:54 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2024-07-11 11:01 - 2021-12-11 22:33 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2371882236-2221375197-575870651-1001 2024-07-08 16:11 - 2023-05-08 07:57 - 000003380 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2024-07-08 16:11 - 2021-02-04 18:46 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update ==================== SigCheckExt ========================= 2019-03-19 06:45 - 2019-03-19 06:45 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionMgr.dll 2013-08-22 13:45 - 2013-08-22 13:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 13:43 - 2013-08-22 13:43 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-security-cryptoapi-l1-1-0.dll 2020-12-12 20:03 - 2020-12-12 20:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll 2019-03-19 06:44 - 2019-03-19 06:44 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\canonurl.dll 2020-12-12 20:04 - 2020-12-12 20:04 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CMFNVSDeviceBridge.dll 2014-11-21 01:38 - 2014-11-21 01:38 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe 2014-11-21 01:38 - 2014-11-21 01:38 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll 2021-01-14 01:09 - 2021-01-14 01:09 - 000759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll 2021-01-14 01:09 - 2021-01-14 01:09 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 13:42 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2014-11-21 07:24 - 2014-11-21 07:24 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll 2019-03-19 06:43 - 2019-03-19 06:43 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mitigationscanner.exe 2017-12-27 19:46 - 2017-12-27 01:00 - 000371712 _____ C:\WINDOWS\system32\mmutilssp.dll 2009-06-25 10:27 - 2009-06-25 10:27 - 000541184 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\mvtcpmon.dll 2009-06-25 10:27 - 2009-06-25 10:27 - 000868864 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\mvtcpui.dll 2016-10-07 17:05 - 2016-10-07 17:05 - 000347648 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Ncs2Setp.dll 2012-09-28 21:45 - 2012-09-28 21:45 - 000246272 _____ C:\WINDOWS\system32\rtvcvfw64.dll 2019-03-19 06:45 - 2019-03-19 06:45 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBioSysprep.dll 2014-11-21 06:17 - 2014-11-21 06:17 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll 2009-06-25 10:25 - 2009-06-25 10:25 - 000144896 _____ (OpenSLP) C:\WINDOWS\system32\slp64.dll 2017-08-13 09:49 - 2017-08-13 09:49 - 000291128 _____ (IvoSoft) C:\WINDOWS\system32\StartMenuHelper64.dll 2017-12-28 23:53 - 2015-07-22 16:19 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2021-01-14 01:10 - 2021-01-14 01:10 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.ShellPosition.dll 2018-05-08 21:01 - 2018-03-10 19:43 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2010-09-29 12:21 - 2008-05-07 16:09 - 000441344 _____ ( ) C:\WINDOWS\SetACL.exe 2013-08-22 06:17 - 2013-08-22 06:17 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-fibers-l2-1-1.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-psm-appnotify-l1-1-0.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-devices-config-l1-1-1.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-mm-misc-l1-1-1.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-security-cryptoapi-l1-1-0.dll 2019-03-19 06:45 - 2019-03-19 06:45 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\canonurl.dll 2013-08-22 06:14 - 2013-08-22 06:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-msa-ui-l1-1-0.dll 2013-08-22 06:14 - 2013-08-22 06:13 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-misc-l1-2-0.dll 2013-08-22 06:14 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll 2000-08-04 14:25 - 2000-08-04 14:25 - 000049152 _____ (Blue Sky Software Corporation.) C:\WINDOWS\SysWOW64\INETWH32.dll 2021-05-14 01:23 - 2021-05-14 01:23 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4a.dll 2021-05-14 01:23 - 2021-05-14 01:23 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4r.dll 2002-09-20 23:33 - 2002-09-20 23:33 - 001089536 _____ (eHelp Corporation.) C:\WINDOWS\SysWOW64\ROBOEX32.DLL 2012-09-28 21:45 - 2012-09-28 21:45 - 000247296 _____ C:\WINDOWS\SysWOW64\rtvcvfw32.dll 2017-08-13 09:49 - 2017-08-13 09:49 - 000248120 _____ (IvoSoft) C:\WINDOWS\SysWOW64\StartMenuHelper32.dll ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume3 description Windows Boot Manager locale pl-PL inherit {globalsettings} default {current} resumeobject {6a047b35-6707-11eb-92b0-bd1e4df16a2d} displayorder {current} toolsdisplayorder {memdiag} timeout 30 Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.exe description Windows 10 locale pl-PL inherit {bootloadersettings} recoverysequence {8327d1aa-6707-11eb-82ea-9f512a71054f} displaymessageoverride Recovery recoveryenabled Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {6a047b35-6707-11eb-92b0-bd1e4df16a2d} nx OptIn bootmenupolicy Standard Windows Boot Loader ------------------- identifier {8327d1aa-6707-11eb-82ea-9f512a71054f} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{8327d1ab-6707-11eb-82ea-9f512a71054f} path \windows\system32\winload.exe description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{8327d1ab-6707-11eb-82ea-9f512a71054f} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {6a047b35-6707-11eb-92b0-bd1e4df16a2d} device partition=C: path \WINDOWS\system32\winresume.exe description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {8327d1aa-6707-11eb-82ea-9f512a71054f} recoveryenabled Yes allowedinmemorysettings 0x15000075 filedevice partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume3 path \boot\memtest.exe description Diagnostyka pamięci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Serial debugport 1 baudrate 115200 RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {8327d1ab-6707-11eb-82ea-9f512a71054f} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Koniec FRST.txt ========================