avatar
Untitled

Guest 125 26th Jul, 2024

MARKUP 61.28 KB
                                           
                         Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 25.07.2024
Uruchomiony przez Reluch (administrator)  R3LUCH (MSI MS-7979) (26-07-2024 00:25:24)
Uruchomiony z C:\Users\Reluch\OneDrive\Downloads\FRST64.exe
Załadowane profile: Reluch & SQLTELEMETRY & MSSQLFDLauncher & MSSQLSERVER
Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.4651 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Chrome
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdskIdentityManager\1.11.9.11\AdskIdentityManager.exe
(C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8>
(C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\ui-launcher\AdskAccessUIHost.exe <4>
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdhost.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(D:\Programy\Malwarebytes\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Programy\Malwarebytes\Malwarebytes.exe
(explorer.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe
(explorer.exe ->) (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\Reluch\AppData\Local\WebEx\WebexHost.exe
(explorer.exe ->) (Disc Soft Ltd -> Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DTShellHlp.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <45>
(explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(explorer.exe ->) (juvlarN) [Brak podpisu cyfrowego] D:\Programy\vibrance.GUI.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe <2>
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe
(services.exe ->) (Disc Soft Ltd -> Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (HP) [Brak podpisu cyfrowego] C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Programy\Malwarebytes\MBAMService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlceip.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlservr.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\MSI\MSIRegister\MSIRegisterService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) D:\Programy\Live Update\MSI_LiveUpdate_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\MSI_Driver_Service.exe
(services.exe ->) (Nitro Software, Inc. -> Nalpeiron Ltd.) C:\Windows\SysWOW64\NLSSRV32.EXE
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_362f239e9bd019fc\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (SafeNet, Inc. -> SafeNet Inc.) C:\Windows\System32\hasplms.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2405.2.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2428.10.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\24.126.0623.0001\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.4585_none_7e06e2187c9234e2\TiWorker.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe
(TP-Link Technologies Co., Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9235936 2017-10-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [Brak podpisu cyfrowego]
HKLM\...\Run: [Autodesk Access] => C:\Program Files\Autodesk\AdODIS\V1\Access\AdskAccessCore.exe [20987680 2024-02-20] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM-x32\...\Run: [Live Update] => D:\Programy\Live Update\Live Update.exe [26107576 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
HKLM-x32\...\Run: [MSIRegister] => "C:\MSI\MSIRegister\MSIRegister.exe" (Brak pliku)
HKLM-x32\...\Run: [USB_Speed_Up] => "C:\MSI\MSI USB Speed Up\USB_Speed_Up.exe"/mini (Brak pliku)
HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [759120 2015-04-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [DAEMON Tools Lite Automount] => D:\Programy\DAEMON Tools Lite\DTAgent.exe [5230784 2017-12-15] (Disc Soft Ltd -> Disc Soft Ltd)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4407656 2024-07-17] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [Shell] => C:\Program Files (x86)\TP-Link\TP-Link TL-WN722N\WPS_TOOL_AUTO.vbs [152 2018-07-02] () [Brak podpisu cyfrowego]
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45629344 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [vibranceGUI] => D:\Programy\vibrance.GUI.exe [1072128 2015-05-26] (juvlarN) [Brak podpisu cyfrowego]
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4919200 2024-07-11] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Reluch\AppData\Local\WebEx\WebexHost.exe [7272032 2024-03-15] (Cisco WebEx LLC -> Cisco Webex LLC)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Run: [MicrosoftEdgeAutoLaunch_54597996B1165982DE91D16E71A5D643] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3883472 2024-07-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Policies\Explorer: [] 
HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\MountPoints2: {66ae9bae-f223-11e7-8259-4ccc6a4b4d57} - "E:\SISetup.exe" 
HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2009-10-23] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HP1100LM: C:\Windows\system32\HP1100LM.DLL [289792 2009-10-23] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\Nitro PDF Port 12 Monitor: C:\Windows\system32\NxPrinterMonitor12.dll [220768 2018-08-07] (Nitro Software, Inc. -> Nitro Software, Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\127.0.6533.72\Installer\chrmstp.exe [2024-07-25] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA

==================== Zaplanowane zadania (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {B8F3FECF-210B-4580-AF5E-777114528981} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1558984 2024-06-25] (Adobe Inc. -> Adobe Inc.)
Task: {3F919C52-601D-4942-90D1-07B38FFF2765} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {B7BA5E33-515F-41B5-A493-8E15B9D9DA36} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5074848 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "b2e675a1-a1ce-4b83-ae89-9880ca8f5d9e" --version "6.25.11131" --silent
Task: {AC3906E0-0033-4561-A215-3D99D62C1621} - System32\Tasks\CCleanerSkipUAC - Reluch => C:\Program Files\CCleaner\CCleaner.exe [39451552 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {99B44121-5D94-460F-A523-B9DF83E973A3} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem128.0.6597.0{A4206D32-2FA3-4FCA-B9B9-28E1580CF8A6} => C:\Program Files (x86)\Google\GoogleUpdater\128.0.6597.0\updater.exe [4889704 2024-07-15] (Google LLC -> Google LLC)
Task: {8807E83A-FC2D-4936-8ED1-DFC6BEACD94F} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {08AF0660-D9A5-4A7B-BBAE-0D6C3B518F98} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499640 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {54909F54-E9F8-4B86-8885-5309F5BFC700} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28499640 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {67FDAEFC-6714-4AFA-B55B-CEF8445BD5A2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {C909A576-3F23-4DA7-9E15-4D18E334B7EB} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [221368 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {C8F96A54-0CEE-4EEA-9D63-3B855144CFDF} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4452032 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {CE2DE968-E342-40D7-9566-427D45E4A886} - System32\Tasks\Microsoft\Windows\PerfTrack\BackgroundConfigSurveyor => {EA9155A3-8A39-40B4-8963-D3C761B18371}
Task: {E9DBAFC8-AE8D-4639-8E0A-176E685B7FDF} - System32\Tasks\Microsoft\Windows\Shell\FamilySafetyUpload => {EBF00FCB-0769-4B81-9BEC-6C05514111AA}
Task: {6DFCB649-0769-4F83-BB10-F60F235F6D3D} - System32\Tasks\Microsoft\Windows\SkyDrive\Idle Sync Maintenance Task => {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}
Task: {872D0E53-FD2E-41E3-B431-698AF82882CE} - System32\Tasks\Microsoft\Windows\SkyDrive\Routine Maintenance Task => {1B1F472E-3221-4826-97DB-2C2324D389AE}
Task: {A5F36229-14F2-4E91-8D60-F9836AA92017} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {48BE95EF-C568-4569-8869-87D0D260558F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {62018830-1CB9-4C57-B44F-E6C7230C2D85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8123BF0C-4D6D-45C0-A5E5-83DB5B8615D0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpCmdRun.exe [1678960 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {352E6CA0-7314-4DF4-89C4-682368D80D57} - System32\Tasks\Microsoft\Windows\Workplace Join\Automatic-Workplace-Join => %SystemRoot%\System32\AutoWorkplace.exe  join (Brak pliku)
Task: {94DB2E83-8E14-477A-B1EC-76393F552631} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [30648 2017-07-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {6F84E7CE-E313-4754-BFB2-296E6D0F2889} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-25] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {B7E67F7B-39AA-4142-9A33-2B5DC11643F8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341432 2022-05-06] (Nvidia Corporation -> NVIDIA Corporation)
Task: {D989F1F4-5E50-42F1-93FB-47C22E49B372} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647424 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {2A0F8769-0389-476E-8B1A-2B53EE8FC93E} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {8E2ED27B-85B2-46B2-97AC-F910461860DC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [905984 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {B1ADC174-4024-4445-BFAE-98C48E595F6D} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {8426C4EA-3E3A-4030-88A0-5293773426FF} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {9729A862-40BA-432A-9E16-F3F178F3E0D1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {F4ECFDD4-39F8-46C0-8CFD-5A14328DA60E} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1649920 2022-05-04] (Nvidia Corporation -> NVIDIA Corporation)
Task: {00471F91-7AB2-4DF2-9119-C704959EC889} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-11] (Microsoft Corporation -> Microsoft Corporation)
Task: {FD800C89-32EC-41F0-BE25-0517E1663577} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2371882236-2221375197-575870651-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4209056 2024-07-11] (Microsoft Corporation -> Microsoft Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C367DBA8-64D8-4999-914F-F89DC3C9A565}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{C367DBA8-64D8-4999-914F-F89DC3C9A565}: [DhcpDomain] home
Tcpip\..\Interfaces\{E73E6631-F727-4F7A-98FC-D19F0726C9C3}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{E73E6631-F727-4F7A-98FC-D19F0726C9C3}: [DhcpDomain] home

Edge: 
=======
Edge Profile: C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default [2024-07-26]
Edge Extension: (Dokumenty Google offline) - C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-25]
Edge Extension: (Edge relevant text changes) - C:\Users\Reluch\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-07-25]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF Extension: (McAfee® WebAdvisor) - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi [2024-07-15] [UpdateUrl:hxxps://sadownload.mcafee.com/products/SA/Win/xpi/webadvisor/update.json]
FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\WebAdvisor\e10ssaffplg.xpi
FF HKU\S-1-5-21-2371882236-2221375197-575870651-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Reluch\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-07-23] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2024-05-17] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-05-17] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin HKU\S-1-5-21-2371882236-2221375197-575870651-1001: @acestream.net/acestreamplugin,version=3.1.20.4 -> C:\Users\Reluch\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku]

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default [2024-07-26]
CHR HomePage: Default -> hxxp://www.google.pl/
CHR StartupUrls: Default -> "hxxps://www.google.com/"
CHR Session Restore: Default -> [funkcja włączona]
CHR Extension: (Polska Ciasteczkowa Zgoda) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\bniijddcmabghibaojbkbnngbedopbno [2024-07-25]
CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-07-25]
CHR Extension: (Avast SafePrice) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2024-07-25]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-07-25]
CHR Extension: (Dokumenty Google offline) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-25]
CHR Extension: (Dots) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\gliedaffibdnbhbiaolgkdhhfbjgmhgi [2017-12-27]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Reluch\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-07-25]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-2371882236-2221375197-575870651-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki]

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-06-25] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2688544 2022-07-06] (PUBG CORPORATION -> )
R2 Autodesk Access Service Host; C:\Program Files\Autodesk\AdODIS\V1\Setup\AdskAccessServiceHost.exe [13272864 2024-04-15] (Autodesk, Inc. -> Autodesk, Inc.)
R2 AzureAttestService; C:\Program Files\Microsoft\AzureAttestService\AzureAttestService.dll [152312 2019-08-20] (Microsoft Windows -> Microsoft Corporation)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [2567304 2024-05-05] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [9880840 2022-12-07] (BattlEye Innovations e.K. -> )
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1085856 2024-06-26] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [14012384 2024-07-15] (Microsoft Corporation -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3128000 2017-12-15] (Disc Soft Ltd -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2024-02-14] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [943528 2023-06-28] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 FACEITService; D:\Programy\Faceit AntyCheat\FACEIT AC\FACEITService.exe [19329296 2020-12-22] (FACE IT LIMITED -> )
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\FileSyncHelper.exe [3519392 2024-07-11] (Microsoft Corporation -> Microsoft Corporation)
R2 hasplms; C:\WINDOWS\system32\hasplms.exe [4609928 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [Brak podpisu cyfrowego]
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [241104 2024-06-18] (HP Inc. -> HP Inc.)
R2 HPSIService; C:\Windows\system32\HPSIsvc.exe [126520 2009-11-09] (Hewlett-Packard Company -> HP)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego]
R2 MBAMService; D:\Programy\Malwarebytes\MBAMService.exe [8901528 2024-07-15] (Malwarebytes Inc. -> Malwarebytes)
S3 MBVpnTunnelService; D:\Programy\Malwarebytes\MBVpnTunnelService.exe [3073888 2024-06-04] (Malwarebytes Inc. -> Malwarebytes)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [879456 2024-07-15] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MpDefenderCoreService.exe [1377416 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSIREGISTER_MR; C:\MSI\MSIRegister\MSIRegisterService.exe [128976 2017-07-11] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [58296 2017-02-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Driver_Service; C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\MSI_Driver_Service.exe [54880 2016-10-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [111568 2017-04-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R2 MSI_LiveUpdate_Service; D:\Programy\Live Update\MSI_LiveUpdate_Service.exe [2304696 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R3 MSSQLFDLauncher; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\fdlauncher.exe [100256 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
R2 MSSQLSERVER; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlservr.exe [722848 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
R2 nlsX86cc; C:\WINDOWS\SysWOW64\NLSSRV32.EXE [70752 2018-08-07] (Nitro Software, Inc. -> Nalpeiron Ltd.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_362f239e9bd019fc\Display.NvContainer\NVDisplay.Container.exe [1275528 2024-03-13] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\24.126.0623.0001\OneDriveUpdaterService.exe [3860400 2024-07-11] (Microsoft Corporation -> Microsoft Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [522200 2024-05-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S4 SQLSERVERAGENT; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\SQLAGENT.EXE [726952 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
R2 SQLTELEMETRY; C:\Program Files\Microsoft SQL Server\MSSQL16.MSSQLSERVER\MSSQL\Binn\sqlceip.exe [300968 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5066280 2023-12-24] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 uncheater_bgl; C:\Program Files\Common Files\Uncheater\uncheater_bgl.exe [2097008 2021-03-28] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\NisSrv.exe [3236728 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24060.7-0\MsMpEng.exe [133688 2024-07-15] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12410208 2023-12-24] (KRAFTON, Inc. -> KRAFTON, Inc)

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 ACE-BASE; C:\WINDOWS\system32\drivers\ACE-BASE.sys [2178912 2022-07-12] (PUBG CORPORATION -> ANTICHEATEXPERT.COM)
S3 ACE-GAME; C:\WINDOWS\system32\drivers\ACE-GAME.sys [914760 2022-07-12] (PUBG CORPORATION -> ANTICHEATEXPERT.COM)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 cpuz150; C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [44832 2024-07-25] (CPUID S.A.R.L.U. -> CPUID) <==== UWAGA
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-12-27] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-12-27] (Disc Soft Ltd -> Disc Soft Ltd)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [251632 2015-07-14] (ESET, spol. s r.o. -> ESET)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2018-11-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 Hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2018-11-23] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [331328 2013-08-01] (SafeNet, Inc. -> SafeNet Inc.)
R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2023-05-28] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [221264 2024-07-26] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-10-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239568 2024-07-25] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 MpKsl57ef4a95; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D4A157F5-5DA1-418E-946B-890017E018F0}\MpKslDrv.sys [271640 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2009-10-26] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
R3 NTIOLib_ACTIVE_X; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\NTIOLib_X64.sys [13776 2016-04-12] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [14288 2017-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R4 NTIOLib_OCKit_MB; C:\Program Files (x86)\MSI\MSI OC Kit\Driver_Service\NTIOLib_X64.sys [13776 2016-09-08] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
S4 RsFx0700; C:\WINDOWS\System32\DRIVERS\RsFx0700.sys [298392 2022-10-08] (Microsoft Corporation -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21968 2024-07-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [602520 2024-07-15] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2024-07-15] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [179112 2023-12-28] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 EspoDriver; \??\C:\WINDOWS\system32\drivers\EspoDriver.sys [X]

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Trzy miesiące (utworzone) (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-07-26 00:24 - 2024-07-26 00:25 - 000000000 ____D C:\FRST
2024-07-26 00:16 - 2024-07-26 00:16 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Notepad++
2024-07-26 00:09 - 2024-07-26 00:09 - 000000112 ___SH C:\bootTel.dat
2024-07-25 23:26 - 2024-07-25 23:29 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\MMC
2024-07-25 23:25 - 2024-07-25 23:25 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\AddIns
2024-07-25 23:19 - 2024-07-25 23:19 - 000000000 ___HD C:\OneDriveTemp
2024-07-25 23:03 - 2024-07-25 23:03 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Network
2024-07-25 15:20 - 2024-07-25 15:23 - 000000000 ___HD C:\$WinREAgent
2024-07-25 15:15 - 2024-07-25 15:15 - 000000000 ____D C:\Users\Reluch\AppData\Local\OneDrive
2024-07-25 14:14 - 2024-07-25 14:14 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Mapsoft
2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\com.adobe.dunamis
2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Adobe
2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Local\SolidDocuments
2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\AppData\Local\Adobe
2024-07-25 13:56 - 2024-07-25 13:56 - 000000000 ____D C:\Users\Reluch\.ms-ad
2024-07-25 13:51 - 2024-07-25 13:51 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\DAEMON Tools Lite
2024-07-25 13:51 - 2024-07-25 13:51 - 000000000 ____D C:\Users\Public\Documents\Catch!
2024-07-25 13:50 - 2024-07-25 13:50 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\Temp
2024-07-25 13:47 - 2024-07-25 13:47 - 000002397 _____ C:\Users\Reluch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-07-25 13:45 - 2024-07-25 13:45 - 000002417 _____ C:\Users\Reluch\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Vault
2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Local\Publishers
2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\AppData\Local\PeerDistRepub
2024-07-25 13:45 - 2024-07-25 13:45 - 000000000 ____D C:\Users\Reluch\ansel
2024-07-25 13:44 - 2024-07-26 00:13 - 000000000 ____D C:\Users\Reluch\AppData\Local\CrashDumps
2024-07-25 13:44 - 2024-07-25 13:44 - 000000020 ___SH C:\Users\Reluch\ntuser.ini
2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ___SD C:\Users\Reluch\AppData\Roaming\Microsoft\Protect
2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ___SD C:\Users\Reluch\AppData\Roaming\Microsoft\Credentials
2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Local\VirtualStore
2024-07-25 13:44 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Local\MicrosoftEdge
2024-07-25 13:43 - 2024-07-26 00:26 - 000000000 ____D C:\Users\Reluch\AppData\Local\ClassicShell
2024-07-25 13:42 - 2024-07-26 00:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\UProof
2024-07-25 13:42 - 2024-07-26 00:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Szablony
2024-07-25 13:42 - 2024-07-25 22:46 - 000000000 ____D C:\Users\Reluch\AppData\Local\D3DSCache
2024-07-25 13:42 - 2024-07-25 14:15 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Office
2024-07-25 13:42 - 2024-07-25 13:46 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Spelling
2024-07-25 13:42 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\SystemCertificates
2024-07-25 13:42 - 2024-07-25 13:44 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Crypto
2024-07-25 13:42 - 2024-07-25 13:42 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Sprawdzanie
2024-07-25 13:42 - 2024-07-25 13:42 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Dodatki
2024-07-25 13:41 - 2024-07-25 13:41 - 000162408 _____ C:\Users\Reluch\AppData\Local\GDIPFONTCACHEV1.DAT
2024-07-25 13:40 - 2024-07-25 13:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2024-07-11 11:24 - 2024-07-11 11:24 - 000000000 ____D C:\WINDOWS\system32\compatrel
2024-07-11 11:20 - 2024-07-11 11:20 - 000021724 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2024-07-11 11:20 - 2024-07-11 11:20 - 000021724 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2024-07-08 16:13 - 2024-07-08 21:01 - 000000000 ____D C:\Program Files\CCleaner Browser
2024-06-18 09:24 - 2024-06-18 09:24 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2024-06-05 20:26 - 2024-06-05 20:26 - 000000000 ____D C:\WINDOWS\system32\%userprofile%
2024-05-10 15:23 - 2024-06-18 09:24 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2024-05-01 14:51 - 2024-05-01 14:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleSystem

==================== Trzy miesiące (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2024-07-26 00:27 - 2017-12-27 19:45 - 000000000 ____D C:\Program Files (x86)\Steam
2024-07-26 00:25 - 2023-05-10 11:41 - 000000000 ____D C:\Users\Reluch\AppData\Local\Malwarebytes
2024-07-26 00:17 - 2021-02-04 18:42 - 002108074 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-07-26 00:17 - 2019-12-07 17:09 - 000902896 _____ C:\WINDOWS\system32\perfh015.dat
2024-07-26 00:17 - 2019-12-07 17:09 - 000200322 _____ C:\WINDOWS\system32\perfc015.dat
2024-07-26 00:17 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2024-07-26 00:11 - 2018-01-16 22:18 - 000000000 ___RD C:\Users\Reluch\OneDrive
2024-07-26 00:10 - 2021-02-04 18:46 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-07-26 00:10 - 2021-02-04 18:38 - 000008192 ___SH C:\DumpStack.log.tmp
2024-07-26 00:10 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-07-26 00:10 - 2017-12-27 19:39 - 000000000 ____D C:\ProgramData\boost_interprocess
2024-07-26 00:10 - 2017-12-27 03:24 - 000000000 ____D C:\ProgramData\NVIDIA
2024-07-26 00:08 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2024-07-25 23:20 - 2023-10-02 19:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2024-07-25 22:46 - 2017-12-27 19:46 - 000000000 ____D C:\Users\Reluch\AppData\Local\Steam
2024-07-25 22:45 - 2021-12-16 02:03 - 000000000 ____D C:\WINDOWS\SystemTemp
2024-07-25 22:45 - 2017-12-27 03:14 - 000000000 ____D C:\Users\Reluch\AppData\Local\Packages
2024-07-25 22:44 - 2021-12-02 01:07 - 000000000 ____D C:\Users\Reluch\AppData\Local\WebEx
2024-07-25 15:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-07-25 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2024-07-25 14:49 - 2017-12-27 04:12 - 000000000 ____D C:\Program Files\CCleaner
2024-07-25 14:40 - 2019-12-10 00:38 - 000000000 ____D C:\AdwCleaner
2024-07-25 14:23 - 2018-01-16 21:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-07-25 14:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-07-25 14:21 - 2020-03-14 17:28 - 000000000 ____D C:\Users\Reluch\AppData\Local\ConnectedDevicesPlatform
2024-07-25 14:15 - 2017-12-30 21:21 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Excel
2024-07-25 14:13 - 2017-12-27 19:29 - 000000000 ____D C:\Users\Reluch\AppData\Local\Autodesk
2024-07-25 14:13 - 2017-12-27 19:18 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Autodesk
2024-07-25 14:13 - 2017-12-27 19:18 - 000000000 ____D C:\ProgramData\Autodesk
2024-07-25 14:00 - 2024-02-13 01:46 - 000239568 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2024-07-25 13:56 - 2021-06-02 15:34 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\Adobe
2024-07-25 13:56 - 2021-06-02 15:33 - 000000000 ____D C:\ProgramData\Adobe
2024-07-25 13:56 - 2021-02-04 18:40 - 000000000 ____D C:\Users\Reluch
2024-07-25 13:51 - 2017-12-27 03:52 - 000000000 ____D C:\ProgramData\DAEMON Tools Lite
2024-07-25 13:46 - 2017-12-27 04:09 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Word
2024-07-25 13:46 - 2017-12-27 03:43 - 000000000 ____D C:\Users\Reluch\AppData\Local\NVIDIA Corporation
2024-07-25 13:45 - 2020-03-14 17:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2024-07-25 13:45 - 2017-12-27 03:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2024-07-25 13:44 - 2021-02-04 18:40 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\Microsoft\Windows
2024-07-25 13:44 - 2021-02-04 18:39 - 000648728 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-07-25 13:44 - 2017-12-27 03:16 - 000000000 ____D C:\MSI
2024-07-25 13:43 - 2020-08-24 07:52 - 000000000 ____D C:\Users\Reluch\Documents\Trimble Business Center
2024-07-25 13:43 - 2019-03-04 01:24 - 000000000 ____D C:\Users\Reluch\AppData\Roaming\vibranceGUI
2024-07-25 13:43 - 2018-08-08 15:27 - 000000000 ___RD C:\Users\Reluch\Documents\Scanned Documents
2024-07-25 13:42 - 2022-08-11 17:02 - 000000000 ____D C:\Users\Reluch\AppData\LocalLow\NVIDIA
2024-07-25 13:40 - 2017-12-27 03:43 - 000000000 ____D C:\Users\Reluch\AppData\Local\NVIDIA
2024-07-25 13:39 - 2017-12-27 03:32 - 000000000 ____D C:\Users\Reluch\AppData\Local\Google
2024-07-25 13:37 - 2020-08-24 07:49 - 000000000 ____D C:\ProgramData\Trimble
2024-07-25 13:37 - 2020-03-14 17:47 - 000000000 ____D C:\Users\Reluch\AppData\Local\Comms
2024-07-25 13:37 - 2020-03-14 17:28 - 000000000 ___RD C:\Users\Reluch\3D Objects
2024-07-25 13:37 - 2017-12-27 19:39 - 000000000 ____D C:\ProgramData\FLEXnet
2024-07-25 13:36 - 2020-11-28 14:53 - 000000000 ____D C:\Intel
2024-07-25 00:03 - 2021-06-02 15:34 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2024-07-24 22:47 - 2021-02-04 18:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2024-07-19 13:18 - 2024-03-31 02:36 - 002799208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000751208 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000267880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_4.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000222816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000206440 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000145000 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2024-07-19 13:18 - 2024-03-31 02:36 - 000108136 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2024-07-19 13:18 - 2024-03-31 02:36 - 000075368 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2024-07-16 13:52 - 2018-08-08 15:17 - 000000404 _____ C:\WINDOWS\BRWMARK.INI
2024-07-16 13:52 - 2018-08-08 15:17 - 000000027 _____ C:\WINDOWS\BRPP2KA.INI
2024-07-15 23:24 - 2020-03-14 17:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2024-07-15 11:41 - 2017-12-27 04:07 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2024-07-15 11:34 - 2021-02-04 18:46 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-07-15 11:34 - 2021-02-04 18:46 - 000003440 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-07-11 11:27 - 2021-02-04 18:46 - 000003846 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2024-07-11 11:26 - 2023-05-08 07:57 - 000000666 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2024-07-11 11:24 - 2023-12-14 01:29 - 000000000 ____D C:\WINDOWS\InboxApps
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2024-07-11 11:24 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-07-11 11:20 - 2021-02-04 18:41 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2024-07-11 11:14 - 2017-12-29 04:07 - 000000000 ____D C:\WINDOWS\system32\MRT
2024-07-11 11:11 - 2017-12-29 04:07 - 194135240 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2024-07-11 11:01 - 2023-10-01 17:54 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2024-07-11 11:01 - 2021-12-11 22:33 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2371882236-2221375197-575870651-1001
2024-07-08 16:11 - 2023-05-08 07:57 - 000003380 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2024-07-08 16:11 - 2021-02-04 18:46 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update

==================== SigCheckExt =========================

2019-03-19 06:45 - 2019-03-19 06:45 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionMgr.dll
2013-08-22 13:45 - 2013-08-22 13:45 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-fibers-l2-1-1.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-core-psm-appnotify-l1-1-0.dll
2013-08-22 13:43 - 2013-08-22 13:43 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-devices-config-l1-1-1.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-mm-misc-l1-1-1.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-security-cryptoapi-l1-1-0.dll
2020-12-12 20:03 - 2020-12-12 20:03 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-03-19 06:44 - 2019-03-19 06:44 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\canonurl.dll
2020-12-12 20:04 - 2020-12-12 20:04 - 000590848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CMFNVSDeviceBridge.dll
2014-11-21 01:38 - 2014-11-21 01:38 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\dfp.exe
2014-11-21 01:38 - 2014-11-21 01:38 - 000408576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DfpCommon.dll
2021-01-14 01:09 - 2021-01-14 01:09 - 000759808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll
2021-01-14 01:09 - 2021-01-14 01:09 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-msa-ui-l1-1-0.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-ntuser-misc-l1-2-0.dll
2013-08-22 13:42 - 2013-08-22 13:42 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll
2014-11-21 07:24 - 2014-11-21 07:24 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll
2019-03-19 06:43 - 2019-03-19 06:43 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\mitigationscanner.exe
2017-12-27 19:46 - 2017-12-27 01:00 - 000371712 _____ C:\WINDOWS\system32\mmutilssp.dll
2009-06-25 10:27 - 2009-06-25 10:27 - 000541184 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\mvtcpmon.dll
2009-06-25 10:27 - 2009-06-25 10:27 - 000868864 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\mvtcpui.dll
2016-10-07 17:05 - 2016-10-07 17:05 - 000347648 _____ (Intel(R) Corporation) C:\WINDOWS\system32\Ncs2Setp.dll
2012-09-28 21:45 - 2012-09-28 21:45 - 000246272 _____ C:\WINDOWS\system32\rtvcvfw64.dll
2019-03-19 06:45 - 2019-03-19 06:45 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecureBioSysprep.dll
2014-11-21 06:17 - 2014-11-21 06:17 - 000733696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2009-06-25 10:25 - 2009-06-25 10:25 - 000144896 _____ (OpenSLP) C:\WINDOWS\system32\slp64.dll
2017-08-13 09:49 - 2017-08-13 09:49 - 000291128 _____ (IvoSoft) C:\WINDOWS\system32\StartMenuHelper64.dll
2017-12-28 23:53 - 2015-07-22 16:19 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll
2021-01-14 01:10 - 2021-01-14 01:10 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.internal.shellcommon.ShellPosition.dll
2018-05-08 21:01 - 2018-03-10 19:43 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll
2010-09-29 12:21 - 2008-05-07 16:09 - 000441344 _____ ( ) C:\WINDOWS\SetACL.exe
2013-08-22 06:17 - 2013-08-22 06:17 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-fibers-l2-1-1.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-core-psm-appnotify-l1-1-0.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-devices-config-l1-1-1.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-mm-misc-l1-1-1.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-rtcore-ntuser-winevent-l1-1-0.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000004096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\api-ms-win-security-cryptoapi-l1-1-0.dll
2019-03-19 06:45 - 2019-03-19 06:45 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\canonurl.dll
2013-08-22 06:14 - 2013-08-22 06:14 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-msa-ui-l1-1-0.dll
2013-08-22 06:14 - 2013-08-22 06:13 - 000004608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-ntuser-misc-l1-2-0.dll
2013-08-22 06:14 - 2013-08-22 06:13 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ext-ms-win-rtcore-ntuser-dpi-l1-1-0.dll
2000-08-04 14:25 - 2000-08-04 14:25 - 000049152 _____ (Blue Sky Software Corporation.) C:\WINDOWS\SysWOW64\INETWH32.dll
2021-05-14 01:23 - 2021-05-14 01:23 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4a.dll
2021-05-14 01:23 - 2021-05-14 01:23 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml4r.dll
2002-09-20 23:33 - 2002-09-20 23:33 - 001089536 _____ (eHelp Corporation.) C:\WINDOWS\SysWOW64\ROBOEX32.DLL
2012-09-28 21:45 - 2012-09-28 21:45 - 000247296 _____ C:\WINDOWS\SysWOW64\rtvcvfw32.dll
2017-08-13 09:49 - 2017-08-13 09:49 - 000248120 _____ (IvoSoft) C:\WINDOWS\SysWOW64\StartMenuHelper32.dll

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)


==================== BCD ================================

Windows Boot Manager
--------------------
identifier              {bootmgr}
device                  partition=\Device\HarddiskVolume3
description             Windows Boot Manager
locale                  pl-PL
inherit                 {globalsettings}
default                 {current}
resumeobject            {6a047b35-6707-11eb-92b0-bd1e4df16a2d}
displayorder            {current}
toolsdisplayorder       {memdiag}
timeout                 30

Windows Boot Loader
-------------------
identifier              {current}
device                  partition=C:
path                    \WINDOWS\system32\winload.exe
description             Windows 10
locale                  pl-PL
inherit                 {bootloadersettings}
recoverysequence        {8327d1aa-6707-11eb-82ea-9f512a71054f}
displaymessageoverride  Recovery
recoveryenabled         Yes
allowedinmemorysettings 0x15000075
osdevice                partition=C:
systemroot              \WINDOWS
resumeobject            {6a047b35-6707-11eb-92b0-bd1e4df16a2d}
nx                      OptIn
bootmenupolicy          Standard

Windows Boot Loader
-------------------
identifier              {8327d1aa-6707-11eb-82ea-9f512a71054f}
device                  ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{8327d1ab-6707-11eb-82ea-9f512a71054f}
path                    \windows\system32\winload.exe
description             Windows Recovery Environment
locale                  pl-PL
inherit                 {bootloadersettings}
displaymessage          Recovery
osdevice                ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{8327d1ab-6707-11eb-82ea-9f512a71054f}
systemroot              \windows
nx                      OptIn
bootmenupolicy          Standard
winpe                   Yes

Resume from Hibernate
---------------------
identifier              {6a047b35-6707-11eb-92b0-bd1e4df16a2d}
device                  partition=C:
path                    \WINDOWS\system32\winresume.exe
description             Windows Resume Application
locale                  pl-PL
inherit                 {resumeloadersettings}
recoverysequence        {8327d1aa-6707-11eb-82ea-9f512a71054f}
recoveryenabled         Yes
allowedinmemorysettings 0x15000075
filedevice              partition=C:
filepath                \hiberfil.sys
bootmenupolicy          Standard
debugoptionenabled      No

Windows Memory Tester
---------------------
identifier              {memdiag}
device                  partition=\Device\HarddiskVolume3
path                    \boot\memtest.exe
description             Diagnostyka pamięci systemu Windows
locale                  pl-PL
inherit                 {globalsettings}
badmemoryaccess         Yes

EMS Settings
------------
identifier              {emssettings}
bootems                 No

Debugger Settings
-----------------
identifier              {dbgsettings}
debugtype               Serial
debugport               1
baudrate                115200

RAM Defects
-----------
identifier              {badmemory}

Global Settings
---------------
identifier              {globalsettings}
inherit                 {dbgsettings}
                        {emssettings}
                        {badmemory}

Boot Loader Settings
--------------------
identifier              {bootloadersettings}
inherit                 {globalsettings}
                        {hypervisorsettings}

Hypervisor Settings
-------------------
identifier              {hypervisorsettings}
hypervisordebugtype     Serial
hypervisordebugport     1
hypervisorbaudrate      115200

Resume Loader Settings
----------------------
identifier              {resumeloadersettings}
inherit                 {globalsettings}

Device options
--------------
identifier              {8327d1ab-6707-11eb-82ea-9f512a71054f}
description             Windows Recovery
ramdisksdidevice        partition=\Device\HarddiskVolume5
ramdisksdipath          \Recovery\WindowsRE\boot.sdi

==================== Koniec  FRST.txt ========================
                      
                                       
To share this paste please copy this url and send to your friends
RAW Paste Data
Recent Pastes
Ta strona używa plików cookie w celu usprawnienia i ułatwienia dostępu do serwisu oraz prowadzenia danych statystycznych. Dalsze korzystanie z tej witryny oznacza akceptację tego stanu rzeczy.
Wykorzystywanie plików Cookie
Jak wyłączyć cookies?
ROZUMIEM