Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 31-07-2021
Uruchomiony przez Ja (administrator) RAPHITAPHY (Dell Inc. Inspiron 15 7000 Gaming) (03-08-2021 11:41:58)
Uruchomiony z C:\Users\Ja\Downloads
Załadowane profile: Ja
Platform: Windows 10 Home Wersja 20H2 19042.1110 (X64) Język: Polski (Polska)
Domyślna przeglądarka: FF
Tryb startu: Normal
==================== Procesy (filtrowane) =================
(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
() [Brak podpisu cyfrowego] C:\Program Files\TrueColor\TrueColorALS.exe
(3Dconnexion SAM -> 3Dconnexion) D:\3Dconnexion\3DxWinCore64\Mgl3DCtlrRPCService.exe
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AcroCEF\RdrCEF.exe <2>
(Autodesk, Inc -> Autodesk, Inc.) D:\Autodesk Inventor Professional\Inventor 2019\Moldflow\bin\mitsijm.exe
(Compal electronic ,inc -> Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Dell Inc -> ) C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe
(Dell Inc. -> Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Technologies Inc. -> Dell Technologies Inc.) C:\Program Files\Dell\DellDataVault\nvapiw.exe
(Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe
(Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\igfxext.exe <5>
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_af02201d084badde\IntelCpHeciSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_ecb9604542bb4ba6\RstMwService.exe
(Malwarebytes Inc -> Malwarebytes) D:\Malwarebytes\MBAMService.exe
(Malwarebytes Inc -> Malwarebytes) D:\Malwarebytes\mbamtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2106.14307.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2106.6-0\NisSrv.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <9>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvdm.inf_amd64_fe6681296e63b9f0\Display.NvContainer\NVDisplay.Container.exe <2>
(PC-Doctor, Inc. -> PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1428\DSAPI.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe
==================== Rejestr (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [7824848 2016-07-20] (Compal electronic ,inc -> Dell Inc.)
HKLM\...\Run: [TrueColor UI] => [X]
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269328 2019-01-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2019-01-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320056 2019-08-13] (Intel(R) Rapid Storage Technology -> Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1213736 2018-11-04] (Waves Inc -> Waves Audio Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2976256 2018-01-19] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
HKU\S-1-5-21-2962181595-4206677585-3558919679-1001\...\Run: [CCleaner Smart Cleaning] => D:\CCleaner v5.69\CCleaner64.exe [35062912 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2962181595-4206677585-3558919679-1001\...\Policies\Explorer: []
HKLM\Software\Microsoft\Active Setup\Installed Components: [{28B89EEF-3007-0000-7102-CF3F3A09B77D}] -> msiexec /fus {28B89EEF-3007-0000-7102-CF3F3A09B77D}
Startup: C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\GenuineService.lnk [2021-04-26]
ShortcutTarget: GenuineService.lnk -> C:\Users\Ja\Autodesk\Genuine Service\GenuineService.exe (Brak pliku)
Startup: C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Wysyłanie do programu OneNote.lnk [2021-08-03]
ShortcutTarget: Wysyłanie do programu OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
==================== Zaplanowane zadania (filtrowane) ============
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
Task: {0038909A-567A-418A-BAB4-BC6415E5623A} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4065392 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {07177076-6E23-4471-B864-6C2C16359705} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0D9196AB-498A-4F86-A567-9577E1D5D6A7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080840 2021-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {0EC03087-A540-4343-8F3D-1F3E822F2713} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5260688 2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {1A25CE5A-BB73-44B6-9CC7-A2AEAA73F77C} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {214AB989-29D2-4B32-8DA2-DD163D47AE29} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {21AE3274-1035-40A3-812F-3537443BA57D} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {349D64F4-4E9B-459B-8BD5-89D0845CBB8A} - System32\Tasks\CCleanerSkipUAC => D:\CCleaner v5.69\CCleaner.exe [29136000 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3FFDDA99-198F-4AC1-B93F-D284E43586EC} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [590704 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4C1F7810-6427-457C-B7D9-E9C69CC5E428} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648048 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(1): schtasks.exe -> /Change /TN "\Adobe Acrobat Update Task" /ENABLE
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(2): schtasks.exe -> /Change /TN "\CCleaner Update" /ENABLE
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(3): schtasks.exe -> /Change /TN "\CCleanerSkipUAC" /ENABLE
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(4): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineCore" /ENABLE
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(5): schtasks.exe -> /Change /TN "\MicrosoftEdgeUpdateTaskMachineUA" /ENABLE
Task: {53C9414E-EC34-4E47-B1E3-77226F2E0F3C} - System32\Tasks\AVAST Software\Gaming mode Task Scheduler recovery => Command(6): schtasks.exe -> /Change /TN "\AVAST Software\Gaming mode Task Scheduler recovery" /DISABLE
Task: {551E1E48-1787-4195-88AE-B30CCB6B6D0C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55B334B7-9A8F-4C0F-B4A2-B347AB377A37} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141184 2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {59BF1586-F403-4FF0-959E-1232485B469A} - System32\Tasks\CCleaner Update => D:\CCleaner v5.69\CCUpdate.exe [684976 2021-07-16] (Piriform Software Ltd -> Piriform)
Task: {622569FD-4468-4153-A570-D98C734B158D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {63ACF6C4-473B-4D2D-B6D7-F14B8299639D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141184 2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {8CE60BE1-CDCA-4273-8BC5-3784D66E4586} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [681400 2021-07-22] (Mozilla Corporation -> Mozilla Foundation)
Task: {8DCF90A9-C013-4A9A-9876-51FD1C32391C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_403_Plugin.exe [1475640 2020-08-08] (Adobe Inc. -> Adobe)
Task: {8E45A807-6784-4E8F-873D-8E84C9AAB119} - System32\Tasks\Nvbackend_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
Task: {8F86EDAB-C550-4AE3-97DB-62B286BF357F} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {956C3B71-E853-4F5C-A3F9-4C61B0048C37} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9918F739-F629-46EE-BBBF-8BF149A21CE6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {9C380E7F-0E72-4CC3-81E7-9D9F67D65D36} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1511296 2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {ADD82643-549F-4C04-B3C9-7F43DF76B3E9} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23080840 2021-07-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {C7EBE1CC-5D91-4413-A527-DC4194962FDD} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-08] (Adobe Inc. -> Adobe)
Task: {CB6680B2-C05B-4B9A-94CC-902D4A9732C5} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5260688 2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {CC97A439-6F26-457A-87B2-75FE752D0234} - System32\Tasks\Dell SupportAssistAgent AutoUpdate => C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistInstaller.exe [1553880 2020-05-03] (Dell Inc. -> Dell Inc.)
Task: {CED236B8-E39E-4F31-9105-F4D9437CA261} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\MpCmdRun.exe [644888 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D360F1A1-87F4-4ADC-8FA8-7C72187B08A8} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849264 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D73DBBDF-ED88-471D-A0EE-DF9BB4BA90FE} - System32\Tasks\RtHDVBg_PushButton => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2019-01-28] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {EF543EEA-DD7F-4359-9B16-C421FFCCA9C5} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [876912 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F75C8F6B-E477-4627-8520-1F42BE9DFABD} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [781680 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {FBCEB648-BEBB-466B-BF8B-6E59C4C2C7F3} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3728752 2019-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {FFB44E50-7956-4775-AFBA-CF2114AFB073} - System32\Tasks\klcp_update => d:\k-lite codec pack\tools\codectweaktool.exe [1179648 2018-11-06] () [Brak podpisu cyfrowego]
(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
==================== Internet (filtrowane) ====================
(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.178.1
Tcpip\..\Interfaces\{23d60b0d-b6e6-4b2c-929d-6340895d42d1}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{a48583ce-5973-4002-a2e7-28c0eac52683}: [DhcpNameServer] 192.168.178.1
Edge:
=======
DownloadDir: C:\Users\Ja\Downloads
Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono]
Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono]
Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono]
Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono]
FireFox:
========
FF DefaultProfile: 1h1arw0m.default
FF ProfilePath: C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\1h1arw0m.default [2021-07-21]
FF ProfilePath: C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release [2021-08-03]
FF Homepage: Mozilla\Firefox\Profiles\4vm8ru4g.default-release -> about:blank
FF Extension: (AdBlocker Ultimate) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\adblockultimate@adblockultimate.net.xpi [2021-07-26]
FF Extension: (Dark Reader) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\addon@darkreader.org.xpi [2021-07-21]
FF Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\danabok16@gmail.com.xpi [2021-07-21]
FF Extension: (FoxyProxy Standard) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\foxyproxy@eric.h.jung.xpi [2021-07-23]
FF Extension: (I don't care about cookies) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\jid1-KKzOGWgsW3Ao4Q@jetpack.xpi [2021-07-21]
FF Extension: (noflash) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\jid1-n8wH2cBfc2QaUj@jetpack.xpi [2021-07-23]
FF Extension: (uBlock Origin) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\uBlock0@raymondhill.net.xpi [2021-07-31]
FF Extension: (Flagfox) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2021-08-02]
FF Extension: (Video DownloadHelper) - C:\Users\Ja\AppData\Roaming\Mozilla\Firefox\Profiles\4vm8ru4g.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2021-07-21]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_403.dll [2020-08-08] (Adobe Inc. -> )
FF Plugin: @java.com/DTPlugin,version=13.0.2.0 -> D:\Java\bin\dtplugin\npDeployJava1.dll [2018-11-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=13.0.2.0 -> D:\Java\bin\plugin2\npjp2.dll [2018-11-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_403.dll [2020-08-08] (Adobe Inc. -> )
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-07-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-07-24] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
==================== Usługi (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
S4 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1050920 2021-05-11] (Autodesk, Inc. -> Autodesk Inc.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S3 AdobeFlashPlayerUpdateSvc; C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-08-08] (Adobe Inc. -> Adobe)
S4 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [18673448 2020-11-17] (Autodesk, Inc. -> Autodesk)
S4 BBDemon; D:\Catia V5 R21\intel_a\code\bin\CATSysDemon.exe [38400 2011-01-08] (Dassault Systemes) [Brak podpisu cyfrowego]
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-01-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8689024 2021-06-04] (Microsoft Corporation -> Microsoft Corporation)
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [248376 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3359288 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [271416 2020-01-22] (Dell Technologies Inc. -> Dell Technologies Inc.)
R2 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.7106.1428\DSAPI.exe [965104 2020-05-11] (PC-Doctor, Inc. -> PC-Doctor, Inc.)
R2 DellClientManagementService; C:\Program Files (x86)\Dell\UpdateService\ServiceShell.exe [36544 2020-04-17] (Dell Inc -> )
S3 Disc Soft Lite Bus Service; D:\Daemon Tools\DiscSoftBusServiceLite.exe [3729512 2018-10-19] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S4 EaseUS Agent; D:\EasyUS Todo Backup\bin\Agent.exe [40104 2019-11-15] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd)
R3 MBAMService; D:\Malwarebytes\MBAMService.exe [7477704 2021-08-02] (Malwarebytes Inc -> Malwarebytes)
R2 Mgl3DCtlrRPCService; D:\3Dconnexion\3DxWinCore64\Mgl3DCtlrRPCService.exe [167064 2019-09-18] (3Dconnexion SAM -> 3Dconnexion)
R2 mitsijm2018; D:\Autodesk Inventor Professional\Inventor 2019\Moldflow\bin\mitsijm.exe [967664 2016-09-26] (Autodesk, Inc -> Autodesk, Inc.)
S3 OfficeSvcManagerAddons; C:\WINDOWS\system32\dllhost.exe /Processid:{2CA2E202-932F-4BA2-8771-195BB86398F5} [21312 2021-02-07] (Microsoft Windows -> Microsoft Corporation)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [38360 2020-05-03] (Dell Inc. -> Dell Inc.)
R2 TrueColorALS; C:\Program Files\TrueColor\TrueColorALS.exe [87040 2016-05-18] () [Brak podpisu cyfrowego]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\NisSrv.exe [2665432 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2106.6-0\MsMpEng.exe [136640 2021-08-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_fe6681296e63b9f0\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvdm.inf_amd64_fe6681296e63b9f0\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Sterowniki (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
S3 3dxhid; C:\WINDOWS\system32\DRIVERS\3dxhid.sys [50032 2019-09-03] (3Dconnexion SAM -> 3Dconnexion SAM)
S3 BrSerIb; C:\WINDOWS\System32\drivers\BrSerIb.sys [95344 2013-11-20] (Brother Industries, Ltd. -> Brother Industries Ltd.)
S3 BrUsbSIb; C:\WINDOWS\System32\drivers\BrUsbSIb.sys [21872 2013-11-20] (Brother Industries, Ltd. -> Brother Industries Ltd.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
R3 DBUtilDrv2; C:\WINDOWS\System32\drivers\DBUtilDrv2.sys [24968 2021-08-03] (Microsoft Windows Hardware Compatibility Publisher -> Dell)
R3 DDDriver; C:\WINDOWS\System32\drivers\dddriver64Dcsa.sys [35704 2020-01-03] (Microsoft Windows Hardware Compatibility Publisher -> Dell Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-11-24] (Disc Soft Ltd -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-11-24] (Disc Soft Ltd -> Disc Soft Ltd)
S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [34496 2018-10-18] (CHENGDU YIWO Tech Development Co., Ltd. -> )
R0 EPMVolFlt; C:\WINDOWS\System32\drivers\EPMVolFlt.sys [30416 2018-10-18] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider)
R0 EUBAKUP; C:\WINDOWS\System32\drivers\eubakup.sys [73448 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [53504 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 EUDSKACS; C:\WINDOWS\system32\drivers\eudskacs.sys [22784 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
R1 EUFDDISK; C:\WINDOWS\system32\drivers\EuFdDisk.sys [341760 2019-06-28] (Microsoft Windows Hardware Compatibility Publisher -> CHENGDU YIWO Tech Development Co., Ltd)
S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [14728 2018-12-10] (CHENGDU YIWO Tech Development Co., Ltd. -> )
R3 KMJHidMini; C:\WINDOWS\System32\drivers\3dxkmj.sys [18944 2019-09-03] (Microsoft Windows Hardware Compatibility Publisher -> 3Dconnextion Inc.)
R3 KMJShim; C:\WINDOWS\System32\drivers\3dxshim.sys [7168 2019-09-03] (Microsoft Windows Hardware Compatibility Publisher -> 3Dconnextion Inc.)
R1 LUMDriver; C:\WINDOWS\system32\drivers\LUMDriver.sys [24848 2008-01-02] (IBM Polska Sp. z o.o. -> IBM)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220752 2021-08-03] (Malwarebytes Inc -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-08-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-08-02] (Malwarebytes Inc -> Malwarebytes)
R3 MpKsl388a56c1; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{F3135811-5872-4191-A1F4-6A88C185F396}\MpKslDrv.sys [107752 2021-08-03] (Microsoft Windows -> Microsoft Corporation)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-05-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2019-05-29] (MiniTool Solution Ltd -> )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2021-03-19] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [196040 2017-10-16] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2021-08-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [425192 2021-08-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [76008 2021-08-02] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (filtrowane) ===================
(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
==================== Jeden miesiÄ…c (utworzone) (filtrowane) =========
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2021-08-03 11:41 - 2021-08-03 11:42 - 000031495 _____ C:\Users\Ja\Downloads\FRST.txt
2021-08-03 11:40 - 2021-08-03 11:42 - 000000000 ____D C:\FRST
2021-08-03 11:38 - 2021-08-03 11:38 - 002300416 _____ (Farbar) C:\Users\Ja\Downloads\FRST64.exe
2021-08-03 10:56 - 2021-08-03 10:56 - 000024968 _____ (Dell) C:\WINDOWS\system32\Drivers\DBUtilDrv2.sys
2021-08-03 00:02 - 2021-08-03 00:02 - 000220752 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2021-08-03 00:02 - 2021-08-03 00:02 - 000000000 ___DC C:\Users\Ja\AppData\LocalLow\IGDump
2021-08-02 21:40 - 2021-08-02 21:40 - 000000683 ____C C:\Users\Ja\Desktop\MBM.lnk
2021-08-02 21:32 - 2021-08-02 21:32 - 000000824 ____C C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\UnlockerPortable.lnk
2021-08-02 21:04 - 2021-08-02 21:04 - 000248992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2021-08-02 21:04 - 2021-08-02 21:04 - 000199128 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2021-08-02 21:04 - 2021-08-02 21:04 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys
2021-08-02 21:04 - 2021-08-02 21:04 - 000000651 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2021-08-02 21:04 - 2021-08-02 21:04 - 000000000 ____D C:\Users\Ja\AppData\Local\mbam
2021-08-02 21:04 - 2021-08-02 21:04 - 000000000 ____D C:\ProgramData\Malwarebytes
2021-08-02 20:11 - 2021-08-02 22:53 - 000008192 ___SH C:\DumpStack.log.tmp
2021-08-02 20:11 - 2021-08-02 20:11 - 001311356 _____ C:\WINDOWS\Minidump\080221-19156-01.dmp
2021-08-02 14:44 - 2021-06-29 05:43 - 000159864 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\Drivers\ssudbus2.sys
2021-08-01 19:46 - 2021-08-02 22:56 - 000004194 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2021-08-01 18:37 - 2021-08-01 18:37 - 000498734 _____ C:\Users\Ja\Downloads\zdjecie.pdf
2021-07-31 11:23 - 2021-08-02 21:20 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-07-31 11:23 - 2021-07-31 11:23 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-07-28 22:01 - 2021-08-02 21:20 - 000003438 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-07-28 22:01 - 2021-08-02 21:20 - 000003214 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-07-25 16:34 - 2021-07-25 16:34 - 000001866 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMind.lnk
2021-07-25 16:34 - 2021-07-25 16:34 - 000000000 ____D C:\Users\Ja\AppData\Roaming\XMind
2021-07-25 16:34 - 2021-07-25 16:34 - 000000000 ____D C:\Users\Ja\AppData\Local\xmind-vana-updater
2021-07-25 16:34 - 2021-07-25 16:34 - 000000000 ____D C:\Program Files\XMind
2021-07-22 23:14 - 2021-07-25 20:26 - 000000000 ____D C:\Program Files\Mozilla Firefox
2021-07-22 11:35 - 2021-07-22 11:35 - 000002559 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002555 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002534 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002512 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002509 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002476 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002473 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2021-07-22 11:35 - 2021-07-22 11:35 - 000002445 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2021-07-21 14:53 - 2021-07-25 20:26 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2021-07-21 14:53 - 2021-07-23 12:46 - 000001021 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2021-07-21 14:41 - 2021-07-21 14:41 - 000000000 ____D C:\Users\Ja\AppData\Local\mbamtray
2021-07-21 14:41 - 2021-07-21 14:41 - 000000000 ____D C:\ProgramData\License
2021-07-21 14:38 - 2021-07-25 20:27 - 000000000 _RSHD C:\gecici_proje_klasoru
2021-07-21 12:46 - 2021-07-21 12:46 - 000000000 ____D C:\Users\Ja\AppData\Roaming\VS Revo Group
2021-07-20 23:41 - 2021-07-20 23:41 - 000025818 ____C C:\Users\Ja\Documents\cc_20210720_234132.reg
2021-07-20 23:25 - 2021-07-20 23:25 - 000000000 ____D C:\Users\Ja\AppData\Local\MicrosoftEdge
2021-07-20 23:17 - 2021-07-20 23:18 - 000000000 ____D C:\Users\Ja\AppData\Local\Opera Software
2021-07-20 23:16 - 2021-07-20 23:20 - 000000000 ____D C:\Program Files\Devine Software Oy
2021-07-20 23:15 - 2021-07-20 23:15 - 000000000 ____D C:\Users\Ja\AppData\Roaming\Opera Software
2021-07-19 01:47 - 2021-07-19 01:47 - 002049244 _____ C:\WINDOWS\Minidump\071921-10906-01.dmp
2021-07-18 15:24 - 2021-07-18 15:24 - 002056580 _____ C:\WINDOWS\Minidump\071821-11125-01.dmp
2021-07-15 19:52 - 2021-07-15 19:52 - 001823280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-07-15 19:52 - 2021-07-15 19:52 - 000011357 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-07-15 19:52 - 2021-07-15 19:52 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MsraLegacy.tlb
2021-07-15 19:52 - 2021-07-15 19:52 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsraLegacy.tlb
2021-07-15 19:52 - 2021-07-15 19:52 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rendezvousSession.tlb
2021-07-15 19:52 - 2021-07-15 19:52 - 000006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\rendezvousSession.tlb
2021-07-15 11:07 - 2021-07-15 11:07 - 000000000 ____D C:\Users\Ja\AppData\Local\Apple Computer
2021-07-10 00:11 - 2021-07-25 04:31 - 000000000 ____D C:\Users\Ja\AppData\Roaming\obsidian
2021-07-10 00:11 - 2021-07-10 00:11 - 000002109 ____C C:\Users\Ja\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Obsidian.lnk
2021-07-10 00:11 - 2021-07-10 00:11 - 000000000 ____D C:\Users\Ja\AppData\Local\Obsidian
2021-07-09 19:26 - 2021-07-09 19:26 - 000000000 ____D C:\Users\Ja\AppData\Local\calibre-ebook.com
2021-07-09 19:25 - 2021-07-09 19:26 - 000000000 ____D C:\Users\Ja\AppData\Local\calibre-cache
2021-07-09 19:20 - 2021-07-09 19:29 - 000000000 ____D C:\Users\Ja\AppData\Roaming\calibre
2021-07-09 19:20 - 2021-07-09 19:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management
2021-07-09 12:05 - 2021-07-09 12:38 - 000000000 ____D C:\Users\Ja\AppData\Roaming\Anki2
2021-07-09 12:05 - 2021-07-09 12:05 - 000000000 ____D C:\Users\Ja\AppData\Local\Anki
2021-07-09 12:04 - 2021-07-09 12:04 - 000000313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Anki.lnk
2021-07-07 16:57 - 2021-07-15 19:56 - 000644904 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-07-07 09:15 - 2021-07-07 09:15 - 002371072 _____ C:\WINDOWS\system32\rdpnano.dll
2021-07-07 09:15 - 2021-07-07 09:15 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-07-07 09:15 - 2021-07-07 09:15 - 000570880 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2021-07-07 09:15 - 2021-07-07 09:15 - 000452608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2021-07-07 09:15 - 2021-07-07 09:15 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-07-07 09:15 - 2021-07-07 09:15 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-07-07 09:14 - 2021-07-07 09:14 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-07-07 09:14 - 2021-07-07 09:14 - 001393504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-07-07 09:14 - 2021-07-07 09:14 - 000097792 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-07-07 09:14 - 2021-07-07 09:14 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-07-04 21:57 - 2021-07-04 21:57 - 000000000 ____D C:\Users\Ja\AppData\Local\roam-research-updater
==================== Jeden miesiÄ…c (zmodyfikowane) ==================
(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
2021-08-03 11:40 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2021-08-03 11:38 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-08-03 11:31 - 2019-02-08 08:06 - 000000000 ____D C:\ProgramData\Mozilla
2021-08-03 11:30 - 2017-11-22 21:09 - 000000000 ___DC C:\Users\Ja\AppData\LocalLow\Mozilla
2021-08-03 10:27 - 2018-11-12 01:40 - 000000000 ____D C:\ProgramData\NVIDIA
2021-08-03 10:27 - 2017-11-22 19:46 - 000000000 __SHD C:\Users\Ja\IntelGraphicsProfiles
2021-08-03 01:08 - 2018-11-12 04:04 - 000000000 ___DC C:\Users\Ja\AppData\Local\Spotify
2021-08-03 00:38 - 2018-11-12 04:04 - 000000000 ___DC C:\Users\Ja\AppData\Roaming\Spotify
2021-08-03 00:29 - 2021-02-07 12:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-08-02 23:45 - 2018-11-12 04:15 - 000000000 ___DC C:\Users\Ja\AppData\Roaming\XnView
2021-08-02 23:14 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-08-02 22:58 - 2021-02-07 12:30 - 002514726 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-08-02 22:58 - 2021-02-07 12:02 - 000696112 _____ C:\WINDOWS\system32\perfh007.dat
2021-08-02 22:58 - 2021-02-07 12:02 - 000142368 _____ C:\WINDOWS\system32\perfc007.dat
2021-08-02 22:58 - 2019-12-07 17:08 - 000750240 _____ C:\WINDOWS\system32\perfh015.dat
2021-08-02 22:58 - 2019-12-07 17:08 - 000144934 _____ C:\WINDOWS\system32\perfc015.dat
2021-08-02 22:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration
2021-08-02 22:53 - 2021-02-07 12:27 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-08-02 22:53 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-08-02 22:53 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2021-08-02 22:53 - 2017-07-06 10:52 - 000000000 ___DC C:\Intel
2021-08-02 22:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-08-02 21:40 - 2021-07-01 00:06 - 000000000 ___DC C:\Users\Ja\Desktop\zrobic notatki
2021-08-02 21:35 - 2020-04-08 19:14 - 000001001 ____C C:\Users\Ja\Desktop\IPP P.lnk
2021-08-02 21:20 - 2021-02-07 12:27 - 000002222 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-08-02 21:20 - 2021-02-07 12:21 - 000000000 ____D C:\Users\Ja
2021-08-02 21:04 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2021-08-02 21:03 - 2018-11-12 01:46 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2021-08-02 20:53 - 2020-03-31 01:02 - 000799104 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2021-08-02 20:52 - 2021-02-07 12:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2021-08-02 20:52 - 2020-04-01 09:22 - 000000000 ____D C:\ProgramData\AVAST Software
2021-08-02 20:12 - 2021-05-30 17:28 - 000000000 ____D C:\WINDOWS\Minidump
2021-07-31 23:34 - 2019-10-16 22:03 - 000000000 ____D C:\Users\Ja\AppData\Local\CrashDumps
2021-07-31 09:24 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-07-25 17:24 - 2021-06-18 17:33 - 000000000 ____D C:\Users\Ja\AppData\Roaming\Notion
2021-07-23 12:46 - 2021-02-07 12:27 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-07-22 11:35 - 2021-06-21 13:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2021-07-22 11:34 - 2020-05-11 09:02 - 000000000 ____D C:\Program Files\Microsoft Office
2021-07-21 15:23 - 2018-12-28 00:51 - 000000000 ___DC C:\Users\Ja\AppData\Local\D3DSCache
2021-07-21 14:53 - 2018-11-12 02:16 - 000000000 ___DC C:\Users\Ja\AppData\Roaming\Mozilla
2021-07-21 14:53 - 2018-11-12 02:16 - 000000000 ___DC C:\Users\Ja\AppData\Local\Mozilla
2021-07-20 23:22 - 2018-11-12 01:46 - 000000000 ___DC C:\Users\Ja\AppData\Local\Packages
2021-07-20 21:40 - 2021-06-18 13:17 - 000000000 ____D C:\Users\Ja\.Zettelkasten
2021-07-15 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-07-15 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-07-15 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-07-15 19:55 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-07-14 13:20 - 2018-11-13 02:34 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-07-14 13:17 - 2018-11-13 02:34 - 133422552 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-07-14 13:17 - 2017-02-07 09:24 - 000000000 ____D C:\ProgramData\Package Cache
2021-07-14 13:16 - 2021-03-31 20:10 - 000000000 ____D C:\Program Files\dotnet
2021-07-07 16:58 - 2021-05-03 18:17 - 000000000 ____D C:\WINDOWS\Panther
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-07-07 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-07-07 13:42 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-07-07 07:56 - 2021-06-13 15:21 - 000000000 ____D C:\Users\Ja\AppData\Roaming\TeamViewer
==================== Pliki w katalogu głównym wybranych folderów ========
2020-07-06 17:12 - 2020-07-06 17:12 - 000000000 _____ () C:\Users\Ja\AppData\Local\{9163C669-BC11-4153-B61D-C100A1BE2291}
==================== SigCheck ============================
(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
==================== Koniec FRST.txt ========================