Advertisement
Guest User

Untitled

a guest
Jul 8th, 2018
391
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 30.34 KB | None | 0 0
  1. Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20.06.2018
  2. Uruchomiony przez Krzysiekk (administrator) KRZYSIEK (08-07-2018 07:22:25)
  3. Uruchomiony z C:\Users\Krzysiekk\Desktop
  4. Załadowane profile: Krzysiekk (Dostępne profile: Krzysiekk & Gość)
  5. Platform: Windows 8.1 (Update) (X64) Język: Polski (Polska)
  6. Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)
  7. Tryb startu: Normal
  8. Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Procesy (filtrowane) =================
  11.  
  12. (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
  13.  
  14. (ASUSTeK Computer Inc.) C:\Windows\System32\FBAgent.exe
  15. (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe
  16. (Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
  17. (IObit) C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
  18. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
  19. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  20. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe
  21. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
  22. (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe
  23. (IvoSoft) C:\Program Files\Classic Shell\ClassicStartMenu.exe
  24. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
  25. (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe
  26. (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe
  27. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  28. (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
  29. (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
  30. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  31. (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
  32. (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\KBFiltr.exe
  33. (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
  34. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  35. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  36. (ASUS) C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe
  37. (Intel Corporation) C:\Windows\System32\hkcmd.exe
  38. () C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
  39. (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
  40. (ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
  41. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  42. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  43. (CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
  44. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
  45. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
  46. (Qualcomm Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
  47. (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Live Update\LiveUpdate.exe
  48. (ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
  49. (ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
  50. (Realsil Microelectronics Inc.) C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
  51. (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
  52. (ASUS) C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
  53. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
  54. (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
  55. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
  56. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  57. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  58. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
  59. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  60. (Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
  61. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  62. (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe
  63. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  64. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  65. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  66. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  67. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  68. (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe
  69. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  70. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  71. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  72. (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
  73. (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe
  74. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  75. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  76. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  77. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  78. (AsusTek) C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe
  79. (Intel Corporation) C:\Windows\System32\igfxpers.exe
  80. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
  81. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  82. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  83. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  84. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  85. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  86.  
  87. ==================== Rejestr (filtrowane) ===========================
  88.  
  89. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
  90.  
  91. HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [161984 2014-01-18] (IvoSoft)
  92. HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
  93. HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [291568 2018-06-25] (AVG Technologies CZ, s.r.o.)
  94. HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
  95. Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation)
  96. HKU\S-1-5-21-127158954-2590044604-2016604374-1002\...\Run: [SpybotPostWindows10UpgradeReInstall] => C:\Program Files\Common Files\AV\Spybot - Search and Destroy\Test.exe [1011200 2015-07-28] (Safer-Networking Ltd.)
  97. HKU\S-1-5-21-127158954-2590044604-2016604374-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd)
  98. HKU\S-1-5-21-127158954-2590044604-2016604374-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
  99. HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
  100. AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [170872 2016-11-24] (NVIDIA Corporation)
  101. AppInit_DLLs: ,C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [170872 2016-11-24] (NVIDIA Corporation)
  102. AppInit_DLLs-x32: C:\WINDOWS\SysWOW64\nvinit.dll => C:\WINDOWS\SysWOW64\nvinit.dll [148200 2016-11-24] (NVIDIA Corporation)
  103. BootExecute: autocheck autochk * smartdefragboottime.exe
  104.  
  105. ==================== Internet (filtrowane) ====================
  106.  
  107. (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
  108.  
  109. Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
  110. Tcpip\..\Interfaces\{310AFB52-3E95-4C34-9AF7-5A3FFAA0132B}: [DhcpNameServer] 62.179.1.61 62.179.1.63
  111. Tcpip\..\Interfaces\{36F06993-77FD-4D19-AAA2-9A75A72FC571}: [DhcpNameServer] 192.168.0.1
  112.  
  113. Internet Explorer:
  114. ==================
  115. HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA
  116. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.msn.com/?pc=avmsp&ocid=PerDHP
  117. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
  118. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
  119. HKU\S-1-5-21-127158954-2590044604-2016604374-1002\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
  120. SearchScopes: HKLM-x32 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
  121. SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  122. SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  123. SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  124. SearchScopes: HKU\S-1-5-21-127158954-2590044604-2016604374-1002 -> {632F07F3-19A1-4d16-A23F-E6CE9486BAB5} URL = hxxp://www.bing.com/search?q={searchTerms}&FORM=AVASDF&PC=AV01
  125. BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2015-11-18] (Microsoft Corporation)
  126. BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (IvoSoft)
  127. BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_111\bin\ssv.dll [2017-01-03] (Oracle Corporation)
  128. BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2013-03-27] (Qualcomm Atheros Commnucations)
  129. BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-11-10] (Microsoft Corporation)
  130. BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_111\bin\jp2ssv.dll [2017-01-03] (Oracle Corporation)
  131. BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-01-18] (IvoSoft)
  132. BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-11-18] (Microsoft Corporation)
  133. BHO-x32: Brak nazwy -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> Brak pliku
  134. BHO-x32: Brak nazwy -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> Brak pliku
  135. BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2015-11-10] (Microsoft Corporation)
  136. BHO-x32: Brak nazwy -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> Brak pliku
  137. BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-01-18] (IvoSoft)
  138. Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-01-18] (IvoSoft)
  139. Toolbar: HKLM-x32 - Brak nazwy - {553891B7-A0D5-4526-BE18-D3CE461D6310} - Brak pliku
  140.  
  141. FireFox:
  142. ========
  143. FF ProfilePath: C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default [2018-07-06]
  144. FF user.js: detected! => C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\user.js [2016-07-30]
  145. FF Homepage: Mozilla\Firefox\Profiles\x9xtbr1v.default -> onet.pl
  146. FF NewTab: Mozilla\Firefox\Profiles\x9xtbr1v.default -> about:newtab
  147. FF Extension: (AVG SafePrice) - C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\Extensions\[email protected] [2016-11-18]
  148. FF Extension: (Adblock Plus) - C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-06-04]
  149. FF Extension: (QuickJava) - C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\Extensions\{E6C1199F-E687-42da-8C24-E7770CC3AE66}.xpi [2016-10-12] [Przestarzałe]
  150. FF Extension: (Tpay.com) - C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\Extensions\{ed5a5d58-4e89-4ade-903c-34f4b64265cd}.xpi [2017-10-14]
  151. FF SearchPlugin: C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\searchplugins\bing-avast.xml [2014-06-16]
  152. FF SearchPlugin: C:\Users\Krzysiekk\AppData\Roaming\Mozilla\Firefox\Profiles\x9xtbr1v.default\searchplugins\google-avast.xml [2016-04-18]
  153. FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSK => nie znaleziono
  154. FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_30_0_0_113.dll [2018-06-07] ()
  155. FF Plugin: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2017-01-03] (Oracle Corporation)
  156. FF Plugin: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2017-01-03] (Oracle Corporation)
  157. FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
  158. FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_113.dll [2018-06-07] ()
  159. FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.)
  160. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel Corporation)
  161. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel Corporation)
  162. FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
  163. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
  164. FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
  165. FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3505.0912 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-09-12] (Microsoft Corporation)
  166. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
  167. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
  168. FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-05-11] (Adobe Systems Inc.)
  169.  
  170. Chrome:
  171. =======
  172. CHR HomePage: Default -> hxxp://onet.pl/
  173. CHR StartupUrls: Default -> "hxxp://onet.pl/"
  174. CHR Profile: C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default [2018-07-08]
  175. CHR Extension: (Prezentacje) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
  176. CHR Extension: (Dokumenty) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
  177. CHR Extension: (Dysk Google) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-05-27]
  178. CHR Extension: (YouTube) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-05-27]
  179. CHR Extension: (Arkusze) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
  180. CHR Extension: (Dokumenty Google offline) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-05-27]
  181. CHR Extension: (AdBlock) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-06-14]
  182. CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
  183. CHR Extension: (Gmail) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-05-27]
  184. CHR Extension: (Chrome Media Router) - C:\Users\Krzysiekk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-14]
  185.  
  186. ==================== Usługi (filtrowane) ====================
  187.  
  188. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  189.  
  190. R3 ASUS InstantOn; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [277120 2012-04-13] (ASUS)
  191. R3 Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [72192 2012-12-19] () [Brak podpisu cyfrowego]
  192. R3 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [227968 2013-03-27] (Qualcomm Atheros Commnucations) [Brak podpisu cyfrowego]
  193. R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [323512 2018-06-25] (AVG Technologies CZ, s.r.o.)
  194. R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7829784 2018-06-25] (AVG Technologies CZ, s.r.o.)
  195. R3 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [129856 2012-06-27] (Intel Corporation)
  196. R3 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-06-25] (Intel Corporation)
  197. R2 LiveUpdateSvc; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [3046688 2016-12-16] (IObit)
  198. R2 NVIDIA Wireless Controller Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\nvwirelesscontroller.exe [1163712 2016-11-24] (NVIDIA Corporation)
  199. S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2015-07-07] (Microsoft Corporation)
  200. S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2015-07-07] (Microsoft Corporation)
  201. R3 ZAtheros Bt and Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [323584 2013-03-27] (Atheros) [Brak podpisu cyfrowego]
  202. R2 NvContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -a -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000
  203. S3 NvContainerNetworkService; "C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerNetworkService -f "C:\ProgramData\NVIDIA\NvContainerNetworkService.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\NetworkService" -r -p 30000
  204. R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
  205.  
  206. ===================== Sterowniki (filtrowane) ======================
  207.  
  208. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  209.  
  210. S3 ASUSProcObsrv; C:\eSupport\eDriver\I386\AsPrOb64.sys [12416 2010-05-26] ()
  211. R3 athr; C:\WINDOWS\system32\DRIVERS\athwbx.sys [3837440 2013-08-14] (Qualcomm Atheros Communications, Inc.)
  212. R3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [65784 2013-04-16] (ASUS Corporation)
  213. R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [189544 2018-06-25] (AVG Technologies CZ, s.r.o.)
  214. R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdrivera.sys [222288 2018-06-25] (AVG Technologies CZ, s.r.o.)
  215. R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsha.sys [194224 2018-06-25] (AVG Technologies CZ, s.r.o.)
  216. R0 avgblog; C:\WINDOWS\System32\drivers\avgbloga.sys [339048 2018-06-25] (AVG Technologies CZ, s.r.o.)
  217. R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniva.sys [51952 2018-06-25] (AVG Technologies CZ, s.r.o.)
  218. S3 avgHwid; C:\WINDOWS\System32\drivers\avgHwid.sys [39352 2018-06-25] (AVG Technologies CZ, s.r.o.)
  219. R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [152016 2018-06-25] (AVG Technologies CZ, s.r.o.)
  220. R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [104256 2018-06-25] (AVG Technologies CZ, s.r.o.)
  221. R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [78352 2018-06-25] (AVG Technologies CZ, s.r.o.)
  222. R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [1020112 2018-06-25] (AVG Technologies CZ, s.r.o.)
  223. R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [455464 2018-06-25] (AVG Technologies CZ, s.r.o.)
  224. R2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [203544 2018-06-25] (AVG Technologies CZ, s.r.o.)
  225. R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [373944 2018-06-25] (AVG Technologies CZ, s.r.o.)
  226. S3 BTATH_LWFLT; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [77464 2013-03-27] (Qualcomm Atheros)
  227. R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283064 2014-08-03] (Disc Soft Ltd)
  228. R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-12-26] (REALiX(tm))
  229. R3 kbfiltr; C:\WINDOWS\System32\drivers\kbfiltr.sys [14992 2012-08-02] ( )
  230. R2 npf; C:\WINDOWS\system32\drivers\npf.sys [36600 2017-08-03] (Riverbed Technology, Inc.)
  231. S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [27584 2016-11-24] (NVIDIA Corporation)
  232. R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [46016 2016-11-24] (NVIDIA Corporation)
  233. S3 qcfilter; C:\WINDOWS\System32\drivers\qcusbfilter.sys [49208 2017-03-15] (QUALCOMM Incorporated)
  234. S3 qcusbnet; C:\WINDOWS\system32\DRIVERS\qcusbnet.sys [428600 2017-03-15] (QUALCOMM Incorporated)
  235. S3 qcusbser; C:\WINDOWS\system32\DRIVERS\qcusbser.sys [254520 2017-03-15] (QUALCOMM Incorporated)
  236. S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [11376 2003-12-02] () [Brak podpisu cyfrowego]
  237. S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44560 2015-07-07] (Microsoft Corporation)
  238. S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [270168 2015-07-07] (Microsoft Corporation)
  239. S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2015-07-07] (Microsoft Corporation)
  240. U0 aswVmm; Brak ImagePath
  241.  
  242. ==================== NetSvcs (filtrowane) ===================
  243.  
  244. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  245.  
  246.  
  247. ==================== Jeden miesiąc - utworzone pliki i foldery ========
  248.  
  249. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  250.  
  251. 2018-07-08 07:22 - 2018-07-08 07:22 - 000023695 _____ C:\Users\Krzysiekk\Desktop\FRST.txt
  252. 2018-07-08 07:06 - 2018-07-08 07:21 - 000000000 ____D C:\FRST
  253. 2018-07-08 07:05 - 2018-07-08 07:05 - 002412544 _____ (Farbar) C:\Users\Krzysiekk\Desktop\FRST64.exe
  254. 2018-07-07 18:22 - 2018-07-07 18:47 - 000000000 ____D C:\AVG_Remover
  255. 2018-07-07 16:01 - 2018-07-07 16:01 - 007395536 _____ (Malwarebytes) C:\Users\Krzysiekk\Desktop\AdwCleaner.exe
  256. 2018-07-07 16:00 - 2018-07-07 16:00 - 007986864 _____ ( ) C:\Users\Krzysiekk\Desktop\AVG_Remover.exe
  257. 2018-06-26 23:22 - 2018-06-26 23:22 - 000153655 _____ C:\Users\Krzysiekk\Downloads\menu-19.06-08.07.pdf
  258. 2018-06-25 18:44 - 2018-06-25 18:44 - 000003916 _____ C:\WINDOWS\System32\Tasks\Antivirus Emergency Update
  259. 2018-06-25 18:44 - 2018-06-25 18:43 - 000455464 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys
  260. 2018-06-25 18:44 - 2018-06-25 18:43 - 000373944 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys
  261. 2018-06-25 18:44 - 2018-06-25 18:43 - 000203544 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys
  262. 2018-06-25 18:44 - 2018-06-25 18:43 - 000189544 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys
  263. 2018-06-25 18:44 - 2018-06-25 18:43 - 000152016 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys
  264. 2018-06-25 18:44 - 2018-06-25 18:43 - 000104256 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys
  265. 2018-06-25 18:44 - 2018-06-25 18:43 - 000078352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys
  266. 2018-06-25 18:44 - 2018-06-25 18:43 - 000039352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgHwid.sys
  267. 2018-06-25 18:44 - 2018-06-25 18:42 - 001020112 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys
  268. 2018-06-25 18:44 - 2018-06-25 18:42 - 000339048 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbloga.sys
  269. 2018-06-25 18:44 - 2018-06-25 18:42 - 000222288 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdrivera.sys
  270. 2018-06-25 18:44 - 2018-06-25 18:42 - 000194224 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsha.sys
  271. 2018-06-25 18:44 - 2018-06-25 18:42 - 000051952 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniva.sys
  272. 2018-06-25 18:43 - 2018-06-25 18:43 - 000379120 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe
  273. 2018-06-15 18:59 - 2018-06-17 17:26 - 000011227 _____ C:\Users\Krzysiekk\Desktop\Mundial.odt
  274.  
  275. ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
  276.  
  277. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  278.  
  279. 2018-07-08 07:22 - 2017-03-31 14:41 - 000000000 ____D C:\Users\Krzysiekk\AppData\Roaming\PhotoScape
  280. 2018-07-08 07:22 - 2014-01-28 23:02 - 000000000 ____D C:\Users\Krzysiekk\AppData\Roaming\ClassicShell
  281. 2018-07-08 07:01 - 2014-01-28 20:22 - 000000062 _____ C:\Users\Krzysiekk\AppData\Roaming\sp_data.sys
  282. 2018-07-08 06:58 - 2013-06-26 07:44 - 000003542 _____ C:\WINDOWS\System32\Tasks\ASUS Touchpad Launcher (x64)
  283. 2018-07-08 06:57 - 2013-06-26 07:59 - 000003004 _____ C:\WINDOWS\System32\Tasks\ASUS Splendid ColorU
  284. 2018-07-08 06:57 - 2013-06-26 07:59 - 000002988 _____ C:\WINDOWS\System32\Tasks\ASUS Splendid ACMON
  285. 2018-07-08 06:57 - 2013-06-26 07:56 - 000003052 _____ C:\WINDOWS\System32\Tasks\ASUS P4G
  286. 2018-07-08 06:57 - 2013-06-26 07:55 - 000003114 _____ C:\WINDOWS\System32\Tasks\ASUS Live Update
  287. 2018-07-08 06:56 - 2014-04-30 23:05 - 000000000 ____D C:\ProgramData\NVIDIA
  288. 2018-07-08 06:55 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
  289. 2018-07-08 06:51 - 2014-08-18 00:18 - 000004000 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{8AD71181-CA98-4A83-BC10-7F1A6F3B9838}
  290. 2018-07-07 22:10 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf
  291. 2018-07-07 19:23 - 2014-01-30 18:12 - 000003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-127158954-2590044604-2016604374-1002
  292. 2018-07-07 18:35 - 2016-09-09 18:53 - 000000000 ____D C:\Users\Krzysiekk\AppData\Roaming\AVG
  293. 2018-07-07 18:35 - 2016-09-09 18:44 - 000000000 ____D C:\Program Files (x86)\AVG
  294. 2018-07-07 18:35 - 2016-09-09 18:43 - 000000000 ____D C:\ProgramData\Avg
  295. 2018-07-07 16:04 - 2016-10-28 07:39 - 000000000 ____D C:\Users\Gość\AppData\Roaming\IObit
  296. 2018-07-07 16:04 - 2016-07-02 20:36 - 000000000 ____D C:\Users\Krzysiekk\AppData\LocalLow\IObit
  297. 2018-07-07 16:04 - 2016-07-02 20:35 - 000000000 ____D C:\ProgramData\IObit
  298. 2018-07-07 16:03 - 2014-06-16 13:33 - 000000000 ____D C:\AdwCleaner
  299. 2018-07-06 22:23 - 2013-08-22 15:25 - 000262144 ___SH C:\WINDOWS\system32\config\BBI
  300. 2018-07-06 16:50 - 2016-11-18 08:28 - 000000000 ____D C:\Users\Krzysiekk\AppData\LocalLow\Mozilla
  301. 2018-07-06 16:03 - 2017-12-18 21:03 - 000000000 ____D C:\ProgramData\boost_interprocess
  302. 2018-07-06 07:19 - 2016-07-02 20:36 - 000000000 ____D C:\ProgramData\ProductData
  303. 2018-06-30 09:45 - 2014-01-31 21:38 - 000969216 ___SH C:\Users\Krzysiekk\Desktop\Thumbs.db
  304. 2018-06-26 00:18 - 2017-05-27 21:18 - 000002214 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  305. 2018-06-26 00:18 - 2017-05-27 21:18 - 000002173 _____ C:\Users\Public\Desktop\Google Chrome.lnk
  306. 2018-06-19 10:38 - 2017-10-14 08:46 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
  307. 2018-06-19 10:38 - 2014-01-28 23:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
  308. 2018-06-19 02:07 - 2014-01-28 23:15 - 000001137 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
  309.  
  310. ==================== Pliki w katalogu głównym wybranych folderów =======
  311.  
  312. 2014-01-28 20:22 - 2018-07-08 07:01 - 000000062 _____ () C:\Users\Krzysiekk\AppData\Roaming\sp_data.sys
  313. 2014-03-23 11:48 - 2014-03-23 11:48 - 000000292 _____ () C:\Users\Krzysiekk\AppData\Local\HamsterBookConverter.cfg
  314. 2014-06-15 13:51 - 2014-06-15 13:51 - 000301608 _____ (VuuPC Limited) C:\Users\Krzysiekk\AppData\Local\nsxAC4B.tmp
  315.  
  316. ==================== Bamital & volsnap ======================
  317.  
  318. (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
  319.  
  320. C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
  321. C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
  322. C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
  323. C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
  324. C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
  325. C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
  326. C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
  327. C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
  328. C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
  329. C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
  330. C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
  331. C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
  332. C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
  333. C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
  334. C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
  335.  
  336. LastRegBack: 2018-07-07 17:28
  337.  
  338. ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement