Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
- (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe
- (C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
- (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
- (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
- (C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
- (PrintCtrl.exe ->) (ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe <2>
- (services.exe ->) (ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
- (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
- (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
- (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
- (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
- (services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
- (services.exe ->) (Beijing YiChengWeiLai Culture-Tech Co., Ltd. -> SHADOWDEFENDER.COM) C:\Program Files\Shadow Defender\Service.exe
- (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
- (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe
- (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
- (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [188240 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- HKLM\...\Run: [Shadow Defender Daemon] => C:\Program Files\Shadow Defender\DefenderDaemon.exe [341968 2020-08-06] (Beijing YiChengWeiLai Culture-Tech Co., Ltd. -> SHADOWDEFENDER.COM)
- HKLM\...\Run: [KeePass 2 PreLoad] => C:\Program Files\KeePass Password Safe 2\KeePass.exe [3163248 2022-01-09] (Open Source Developer, Dominik Reichl -> Dominik Reichl)
- HKU\S-1-5-21-3093184379-4238663051-604853877-1001\...\MountPoints2: {66859759-a3d1-11ec-be73-806e6f6e6963} - "F:\HiSuiteDownLoader.exe"
- HKLM\...\Windows NT x86\Print Processors\ActMaskR: C:\Windows\System32\spool\prtprocs\W32X86\ActPrint.dll [29696 2019-03-05] (ActMask Co.,Ltd) [Brak podpisu cyfrowego]
- HKLM\...\Windows NT x86\Print Processors\HP1006PrintProc: C:\Windows\System32\spool\prtprocs\W32X86\HP1006PP.dll [59904 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
- HKLM\...\Print\Monitors\HP1006LM: C:\WINDOWS\system32\HP1006LM.DLL [176128 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\101.0.4951.67\Installer\chrmstp.exe [2022-05-18] (Google LLC -> Google LLC)
- HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {0F4BEA76-057E-435B-9E47-A1421CE9F430} - System32\Tasks\GoogleUpdateTaskMachineUA{F0BD3C5B-9345-4C84-A352-51D3BADFF2B2} => C:\Program Files\Google\Update\GoogleUpdate.exe [156232 2022-03-12] (Google LLC -> Google LLC)
- Task: {10061677-0544-4E34-A090-4FF8EC5BC351} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1984280 2022-03-10] (Avast Software s.r.o. -> Avast Software)
- Task: {71BF970C-AD24-4B43-8C7F-44A09CC0A19A} - System32\Tasks\Opera scheduled Autoupdate 1649538064 => c:\users\adrian11\appdata\local\programs\opera\launcher.exe [1878784 2022-05-17] (Opera Software AS -> Opera Software)
- Task: {877A6036-A17B-4A3E-AE80-A68DB77F8443} - System32\Tasks\PrivaZer_SkipUAC => C:\Program Files\PrivaZer\PrivaZer.exe [20007528 2022-04-09] (Goversoft LLC -> Goversoft LLC)
- Task: {9AE48E4A-D476-41E0-B832-99677A4D343B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [753984 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {BCEB4898-2D85-4F01-A249-1135A06C84C2} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4361040 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- Task: {CCC1F010-91D9-4CD7-A605-9287133E5DB8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MpCmdRun.exe [753984 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {D81434C6-F14A-4915-92DD-9B161CB741D2} - System32\Tasks\GoogleUpdateTaskMachineCore{5AD7CAEF-1BDD-4036-9694-99A9AEEAC176} => C:\Program Files\Google\Update\GoogleUpdate.exe [156232 2022-03-12] (Google LLC -> Google LLC)
- Task: {F478555E-B0AD-46A7-97C5-C116A20C6B90} - System32\Tasks\Microsoft\Windows\AppListBackup\Backup => {E0DCC2CC-3354-45F2-8914-519E07809082} C:\WINDOWS\system32\AppListBackupLauncher.dll [68096 2022-04-01] (Microsoft Windows -> Microsoft Corporation)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Winsock: Catalog5 01 %SystemRoot%\system32\napinsp.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\napinsp.dll"
- Winsock: Catalog5 02 %SystemRoot%\system32\pnrpnsp.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\pnrpnsp.dll"
- Winsock: Catalog5 03 %SystemRoot%\system32\pnrpnsp.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\pnrpnsp.dll"
- Winsock: Catalog5 04 %SystemRoot%\system32\wshbth.dll => Brak pliku
- Winsock: Catalog5 05 %SystemRoot%\system32\NLAapi.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\system32\NLAapi.dll"
- Winsock: Catalog5 06 %SystemRoot%\System32\winrnr.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\System32\winrnr.dll"
- Winsock: Catalog5 07 %SystemRoot%\System32\mswsock.dll => Brak pliku UWAGA: LibraryPath powinno kierować na "%SystemRoot%\System32\mswsock.dll"
- Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
- Tcpip\..\Interfaces\{353536cb-da71-4370-a830-9bd77fe26b55}: [NameServer] 9.9.9.9,149.112.112.112
- Tcpip\..\Interfaces\{353536cb-da71-4370-a830-9bd77fe26b55}: [DhcpNameServer] 192.168.43.1
- Tcpip\..\Interfaces\{ad5aae0b-bfdd-49ee-b9ff-7b2385653a51}: [DhcpNameServer] 192.0.2.42
- Tcpip\..\Interfaces\{c7fb4299-cf0a-47ad-b051-36e4342a8db8}: [DhcpNameServer] 192.168.42.129
- Chrome:
- =======
- CHR Profile: C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default [2022-05-18]
- CHR Extension: (Bloker reklam AdGuard) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2022-04-15]
- CHR Extension: (TrafficLight) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfnpidifppmenkapgihekkeednfoenal [2022-04-08]
- CHR Extension: (uBlock Origin) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-04-24]
- CHR Extension: (Avira Browser Safety) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2022-05-18]
- CHR Extension: (User-Agent Switcher) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\kchfmpdcejfkipopnolndinkeoipnoia [2022-04-08]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Adrian11\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-13]
- Opera:
- =======
- OPR Profile: C:\Users\Adrian11\AppData\Roaming\Opera Software\Opera Stable [2022-05-18]
- OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding}
- OPR Extension: (Rich Hints Agent) - C:\Users\Adrian11\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-04-09]
- OPR Extension: (Opera Crypto Wallet) - C:\Users\Adrian11\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2022-04-25]
- OPR Extension: (Amazon Assistant Promotion) - C:\Users\Adrian11\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-04-09]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [224776 2020-09-02] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
- R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7617160 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [338360 2021-09-04] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
- R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [520016 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [1825104 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [520016 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-03-10] (Avast Software s.r.o. -> AVAST Software)
- R2 ETDService; C:\Program Files\Elantech\ETDService.exe [119528 2016-08-14] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.)
- R2 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [191808 2021-06-03] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego]
- S2 LPlatSvc; C:\WINDOWS\System32\LPlatSvc.exe [839544 2019-12-11] (Lenovo -> Lenovo.)
- R2 Printer Control; C:\WINDOWS\system32\PrintCtrl.exe [110216 2015-10-01] (ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM)
- S4 uhssvc; C:\Program Files\Microsoft Update Health Tools\uhssvc.exe [279384 2022-03-23] (Microsoft Windows -> Microsoft Corporation)
- S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\NisSrv.exe [1900632 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
- S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2201.10-0\MsMpEng.exe [89704 2022-03-10] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 {0CBD4F48-3751-475D-BE88-4F271385B672}; C:\Program Files\Shadow Defender\Service.exe [120272 2020-08-06] (Beijing YiChengWeiLai Culture-Tech Co., Ltd. -> SHADOWDEFENDER.COM)
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R3 ACPIVPC; C:\WINDOWS\System32\drivers\AcpiVpc.sys [36176 2015-06-15] (LENOVO -> Lenovo Corporation)
- R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [19522056 2020-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
- R3 AMDKMDAP; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [543240 2020-09-02] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
- R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [63384 2017-04-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
- R0 amdpsp; C:\WINDOWS\System32\drivers\amdpsp.sys [118744 2020-09-02] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
- R0 amd_sata; C:\WINDOWS\System32\drivers\amd_sata.sys [82504 2016-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
- R0 amd_xata; C:\WINDOWS\System32\drivers\amd_xata.sys [30272 2016-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
- R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [193224 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [324776 2022-05-18] (Avast Software s.r.o. -> AVAST Software)
- R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [210600 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [94880 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [19400 2022-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
- R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [42520 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [229544 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [401392 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [95976 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [75112 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [694952 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [465920 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [164584 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [267840 2022-05-10] (Avast Software s.r.o. -> AVAST Software)
- R3 athr; C:\WINDOWS\System32\drivers\athw10.sys [3294600 2020-09-02] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
- R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT3.sys [91656 2017-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
- R3 BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [92488 2021-09-04] (Qualcomm Atheros, Inc. -> Qualcomm)
- S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus2.sys [131952 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
- R0 diskpt; C:\WINDOWS\System32\drivers\diskpt.sys [350536 2020-08-01] (Beijing YiChengWeiLai Culture-Tech Co., Ltd. -> SHADOWDEFENDER.COM)
- R3 ETD; C:\WINDOWS\System32\drivers\ETD.sys [568408 2016-08-14] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.)
- S3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [28744 2020-09-02] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
- S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [15360 2021-06-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
- R2 inpout32; C:\WINDOWS\System32\Drivers\inpout32.sys [11936 2022-03-30] (Red Fox UK Limited -> Highresolution Enterprises [www.highrez.co.uk])
- R3 necbatt; C:\WINDOWS\System32\drivers\necbatt.sys [18448 2020-09-02] (Microsoft Windows Hardware Compatibility Publisher -> NEC Personal Computers, Ltd.)
- R0 PMDRVS; C:\WINDOWS\System32\drivers\pmdrvs.sys [30480 2019-12-11] (Lenovo -> Lenovo.)
- R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [984064 2021-09-04] (Realtek Semiconductor Corp. -> Realtek)
- R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [685984 2022-03-30] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
- S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [55664 2020-11-11] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated)
- R0 stormmc; C:\WINDOWS\System32\drivers\stormmc.sys [40160 2020-09-02] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
- R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [23040 2019-10-15] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
- S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [15872 2022-03-10] (Microsoft Windows -> Microsoft Corporation)
- S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [39320 2022-03-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [343272 2022-03-10] (Microsoft Windows -> Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [63736 2022-03-10] (Microsoft Windows -> Microsoft Corporation)
- S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [218624 2022-04-01] (Microsoft Windows -> Microsoft Corporation)
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-05-18 23:30 - 2022-05-18 23:32 - 000018554 _____ C:\Users\Adrian11\Desktop\FRST.txt
- 2022-05-18 23:30 - 2022-05-18 23:30 - 000000000 ____D C:\Users\Adrian11\AppData\Local\CEF
- 2022-05-18 22:40 - 2022-05-18 22:40 - 000000000 ___DC C:\AMD
- 2022-05-18 22:40 - 2022-05-18 22:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Odkurzacz 12
- 2022-05-18 22:39 - 2022-05-18 22:40 - 000000000 ____D C:\Program Files\Odkurzacz 12
- 2022-05-18 22:39 - 2022-05-18 22:39 - 000000000 ____D C:\Users\Adrian11\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiSuite
- 2022-05-18 22:39 - 2021-06-03 03:06 - 001834304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFUpdate_01009.dll
- 2022-05-18 22:39 - 2021-06-03 03:06 - 001459008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdfCoInstaller01009.dll
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winusbcoinstaller2.dll
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000249856 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbnet.sys
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000199680 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_quusbmdm.sys
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000113792 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_cdcacm.sys
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000102272 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\hw_usbdev.sys
- 2022-05-18 22:39 - 2021-06-03 03:06 - 000015360 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbccgpfilter.sys
- 2022-05-18 22:37 - 2022-05-18 22:39 - 000000000 ____D C:\Program Files\HiSuite
- 2022-05-18 22:37 - 2022-05-18 22:37 - 000000000 ____D C:\Users\Adrian11\AppData\Local\HiSuite
- 2022-05-18 22:32 - 2022-05-18 22:32 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3093184379-4238663051-604853877-1001
- 2022-05-18 22:32 - 2022-05-18 22:32 - 000002416 _____ C:\Users\Adrian11\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2022-05-18 22:31 - 2022-05-18 23:22 - 000000000 ____D C:\Program Files\CrystalDiskInfo
- 2022-05-18 22:31 - 2022-05-18 22:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
- 2022-05-18 22:15 - 2022-05-18 22:17 - 000000000 ____D C:\Users\Adrian11\Desktop\FRST-OlderVersion
- 2022-05-18 22:15 - 2022-05-18 22:15 - 000000000 __HDC C:\$AV_ASW
- 2022-05-18 22:14 - 2022-05-18 22:15 - 002071552 _____ (Farbar) C:\Users\Adrian11\Desktop\FRST.exe
- 2022-05-18 22:13 - 2022-05-18 23:31 - 000000000 ___DC C:\FRST
- 2022-05-18 22:12 - 2022-05-18 22:12 - 002013184 _____ (Farbar) C:\Users\Adrian11\Downloads\FRST.exe
- 2022-05-18 21:26 - 2022-05-18 21:26 - 000000000 ____D C:\ProgramData\mks_vir
- 2022-05-18 21:24 - 2022-05-18 21:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HitmanPro
- 2022-05-18 21:24 - 2022-05-18 21:24 - 000000000 ____D C:\ProgramData\Arcabit
- 2022-05-18 21:24 - 2022-05-18 21:24 - 000000000 ____D C:\Program Files\HitmanPro
- 2022-05-18 21:23 - 2022-05-18 21:26 - 000000000 ____D C:\ProgramData\HitmanPro
- 2022-05-18 21:22 - 2022-05-18 21:22 - 037143064 _____ (Arcabit) C:\Users\Adrian11\Downloads\arcabit_online.exe
- 2022-05-18 21:21 - 2022-05-18 21:21 - 011617216 _____ (SurfRight B.V.) C:\Users\Adrian11\Downloads\HitmanPro.exe
- 2022-05-18 16:26 - 2022-05-18 16:26 - 000000000 __HDC C:\$WinREAgent
- 2022-05-18 14:03 - 2022-05-18 14:03 - 000004276 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1649538064
- 2022-05-18 14:02 - 2022-05-18 14:02 - 000001450 _____ C:\Users\Adrian11\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk
- 2022-05-18 13:31 - 2022-05-18 13:31 - 000324776 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
- 2022-05-18 11:14 - 2022-05-18 11:14 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job
- 2022-05-18 11:13 - 2022-05-18 23:26 - 000008192 ___SH C:\DumpStack.log.tmp
- 2022-05-12 22:39 - 2022-05-18 11:36 - 000000000 ____D C:\WINDOWS\Minidump
- 2022-05-12 22:06 - 2022-05-12 22:07 - 029069888 _____ (Piriform Software Ltd) C:\Users\Adrian11\Downloads\CCleaner_v5.72.7994.exe
- 2022-05-12 22:01 - 2022-05-12 22:01 - 002798830 _____ C:\Users\Adrian11\Downloads\R3P4CK.rar
- 2022-05-11 16:23 - 2022-05-11 16:23 - 000227105 _____ C:\Users\Adrian11\Downloads\JottiScanGui.zip
- 2022-05-11 16:21 - 2022-05-11 16:21 - 008653016 _____ (Datpol ) C:\Users\Adrian11\Downloads\setupfree.exe
- 2022-05-10 10:20 - 2022-05-18 23:29 - 000004264 _____ C:\WINDOWS\system32\Tasks\Avast Emergency Update
- 2022-05-10 10:20 - 2022-05-10 10:20 - 000267840 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000465920 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000401392 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswNetHub.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000252240 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000229544 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000210600 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbidsh.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000164584 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000095976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000094880 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswbuniv.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000075112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
- 2022-05-10 10:19 - 2022-05-10 10:19 - 000042520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswKbd.sys
- 2022-05-10 10:19 - 2022-05-10 10:18 - 000694952 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
- 2022-05-10 10:19 - 2022-05-10 10:18 - 000193224 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
- 2022-04-26 13:31 - 2022-04-26 13:31 - 001797120 _____ C:\WINDOWS\system32\dwmscene.dll
- 2022-04-26 13:31 - 2022-04-26 13:31 - 000069632 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
- 2022-04-26 13:30 - 2022-04-26 13:30 - 000224256 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-05-18 23:33 - 2022-03-12 15:22 - 000000000 ____D C:\Program Files\Google
- 2022-05-18 23:28 - 2019-12-07 08:12 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2022-05-18 23:26 - 2022-03-10 21:01 - 000000000 ____D C:\ProgramData\Avast Software
- 2022-05-18 23:26 - 2022-03-10 17:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2022-05-18 23:25 - 2022-03-10 17:28 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
- 2022-05-18 23:25 - 2019-12-07 08:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
- 2022-05-18 23:21 - 2022-03-10 17:51 - 000000000 ____D C:\Users\Adrian11\OneDrive
- 2022-05-18 23:21 - 2022-03-10 17:46 - 000000000 ____D C:\Users\Adrian11\AppData\Local\VirtualStore
- 2022-05-18 23:21 - 2022-03-10 17:46 - 000000000 ____D C:\Users\Adrian11\3D Objects
- 2022-05-18 23:13 - 2022-03-10 17:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2022-05-18 22:49 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2022-05-18 22:39 - 2019-12-07 08:10 - 000000000 ____D C:\WINDOWS\INF
- 2022-05-18 22:32 - 2022-03-10 20:54 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3093184379-4238663051-604853877-1001
- 2022-05-18 21:31 - 2022-03-10 19:12 - 000000000 ___RD C:\Users\Adrian11\Desktop\Centrum dowodzenia
- 2022-05-18 17:29 - 2022-03-12 22:04 - 000000000 ____D C:\Users\Adrian11\AppData\Roaming\HiBit Uninstaller
- 2022-05-18 17:27 - 2022-03-10 17:43 - 001767980 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2022-05-18 17:27 - 2019-12-07 14:23 - 000785414 _____ C:\WINDOWS\system32\perfh015.dat
- 2022-05-18 17:27 - 2019-12-07 14:23 - 000152274 _____ C:\WINDOWS\system32\perfc015.dat
- 2022-05-18 17:19 - 2022-04-10 10:51 - 000254912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2022-05-18 17:17 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\SystemResources
- 2022-05-18 17:17 - 2019-12-07 08:12 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2022-05-18 17:17 - 2019-12-07 08:12 - 000000000 ____D C:\Program Files\Common Files\System
- 2022-05-18 17:10 - 2019-12-07 08:03 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2022-05-18 16:20 - 2022-03-10 19:23 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2022-05-18 16:06 - 2022-03-10 19:23 - 141577752 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2022-05-18 16:04 - 2022-03-12 15:27 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2022-05-18 16:04 - 2022-03-12 15:27 - 000002212 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2022-05-18 11:19 - 2022-03-10 17:45 - 000000000 ____D C:\Users\Adrian11
- 2022-05-18 11:03 - 2022-03-22 23:30 - 000000000 ____D C:\Users\Adrian11\AppData\Local\D3DSCache
- 2022-05-12 22:01 - 2022-03-12 22:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiBit Uninstaller
- 2022-05-12 22:01 - 2022-03-12 22:03 - 000000000 ____D C:\Program Files\HiBit Uninstaller
- 2022-05-12 21:50 - 2022-03-10 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
- 2022-05-12 21:50 - 2022-03-10 21:37 - 000000000 ____D C:\Program Files\Ashampoo
- 2022-05-11 17:30 - 2022-04-09 17:11 - 000002402 _____ C:\WINDOWS\system32\Tasks\PrivaZer_SkipUAC
- 2022-05-11 17:30 - 2022-03-12 15:22 - 000003562 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{F0BD3C5B-9345-4C84-A352-51D3BADFF2B2}
- 2022-05-11 17:30 - 2022-03-12 15:22 - 000003338 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{5AD7CAEF-1BDD-4036-9694-99A9AEEAC176}
- 2022-05-11 17:30 - 2022-03-10 21:06 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
- 2022-05-11 13:04 - 2019-12-07 08:12 - 000000000 ___HD C:\Program Files\WindowsApps
- 2022-05-10 17:05 - 2022-04-14 21:25 - 000000000 ___DC C:\EEK
- 2022-05-10 11:10 - 2022-03-11 23:22 - 000000000 ____D C:\Users\Adrian11\AppData\LocalLow\Mozilla
- 2022-05-10 10:19 - 2019-12-07 08:12 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
- 2022-05-08 23:11 - 2022-03-10 21:28 - 000000000 ____D C:\Users\Adrian11\AppData\Roaming\Unofficial desktop client for ProtonMail
- 2022-04-26 18:02 - 2019-12-07 08:12 - 000000000 ___SD C:\WINDOWS\system32\UNP
- 2022-04-26 18:01 - 2019-12-07 08:12 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2022-04-23 15:21 - 2022-03-11 00:08 - 000000000 ____D C:\Users\Adrian11\AppData\Roaming\WhatsApp
- 2022-04-22 22:24 - 2022-03-11 00:08 - 000000000 ____D C:\Users\Adrian11\AppData\Local\WhatsApp
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2022-04-03 21:17 - 2022-04-03 21:17 - 000000036 _____ () C:\Users\Adrian11\AppData\Local\housecall.guid.cache
- 2022-04-07 21:36 - 2022-04-08 20:49 - 000000010 _____ () C:\Users\Adrian11\AppData\Local\sponge.last.runtime.cache
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- ==================== Koniec FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement