Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 16-10-2022
- Uruchomiony przez micha (administrator) DESKTOP-FHS2IO2 (LENOVO 82B5) (17-10-2022 22:37:47)
- Uruchomiony z C:\Users\micha\OneDrive\Pulpit
- Załadowane profile: micha
- Platform: Microsoft Windows 10 Home Wersja 21H2 19044.2130 (X64) Język: Polski (Polska)
- Domyślna przeglądarka: Chrome
- Tryb startu: Normal
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
- (Advanced Micro Devices Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.10028.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
- (C:\Program Files (x86)\Common Files\Aladdin Shared\HASP\hasplms.exe ->) (Thales DIS CPL USA, Inc. -> Thales Group) C:\Program Files (x86)\Common Files\Aladdin Shared\HASP\hasplmv.exe
- (C:\Program Files\Ankama\Ankama Launcher\Ankama Launcher.exe ->) (ANKAMA GAMES -> ) C:\Users\micha\AppData\Local\Ankama\Dofus\Dofus.exe
- (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe
- (Discord Inc. -> Discord Inc.) C:\Users\micha\AppData\Local\Discord\app-1.0.9006\Discord.exe <6>
- (DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe ->) (Dolby Laboratories, Inc. -> ) C:\ProgramData\Dolby\DAX3\RADARHOST\DSRHost.exe
- (DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe
- (DriverStore\FileRepository\u0359763.inf_amd64_cbe903b159d3b969\B359805\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0359763.inf_amd64_cbe903b159d3b969\B359805\atieclxx.exe
- (explorer.exe ->) (ANKAMA GAMES SASU -> Ankama) C:\Program Files\Ankama\Ankama Launcher\Ankama Launcher.exe <5>
- (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <27>
- (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
- (OpenVPN) [Brak podpisu cyfrowego] C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe <7>
- (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
- (services.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\OpenVPN Connect\agent_ovpnconnect_1623661264483.exe
- (services.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\OpenVPN Connect\ovpnhelper_service.exe
- (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0359763.inf_amd64_cbe903b159d3b969\B359805\atiesrxx.exe
- (services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
- (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe
- (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvltig.inf_amd64_ce837e92efe9cbc4\Display.NvContainer\NVDisplay.Container.exe <2>
- (services.exe ->) (Protected Antivirus Limited -> TotalAV) C:\Program Files (x86)\TotalAV\SecurityService.exe <2>
- (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
- (services.exe ->) (Thales DIS CPL USA, Inc. -> Thales Group) C:\Program Files (x86)\Common Files\Aladdin Shared\HASP\hasplms.exe
- (Spotify AB) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.196.785.0_x86__zpdnekdrzrea0\Spotify.exe <6>
- (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\micha\AppData\Local\Microsoft\OneDrive\22.202.0925.0002\FileCoAuth.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22082.117.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1082672 2020-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA
- HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\Run: [Discord] => C:\Users\micha\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38502416 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\Run: [org.openvpn.client] => C:\Program Files\OpenVPN Connect\OpenVPNConnect.exe [110833152 2021-06-14] (OpenVPN) [Brak podpisu cyfrowego]
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852200 2022-10-14] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\MountPoints2: {1e69984a-bce3-11ec-821f-5405db6dd4e6} - "D:\setup.exe"
- HKU\S-1-5-21-3340729455-3393344380-1119888807-1001\...\MountPoints2: {1e69a4cc-bce3-11ec-821f-5405db6dd4e6} - "D:\setup.exe"
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\106.0.5249.119\Installer\chrmstp.exe [2022-10-14] (Google LLC -> Google LLC)
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {26B84EEF-9855-46E9-9E25-0DEDC8705F0E} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4666896 2022-09-12] (Piriform Software Ltd -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "65d38f28-2986-443b-885d-3de21112c07a" --version "6.04.10044" --silent
- Task: {563AC2DD-29A6-40DC-B554-A0C03D7C2056} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-03-02] (Google LLC -> Google LLC)
- Task: {B111B7E3-7669-45D2-BCE2-575C7E826C00} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-03-02] (Google LLC -> Google LLC)
- Task: {D7512730-A69D-4D4D-80C1-C8D5EACFBC59} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /ua /installsource scheduler (Brak pliku)
- Task: {DA32175A-59BC-46F4-802A-999FCD042929} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-09-12] (Piriform Software Ltd -> Piriform)
- Task: {FB9DD9DD-625E-4968-9DFD-A72F3BCFDEE6} - System32\Tasks\CCleanerSkipUAC - micha => C:\Program Files\CCleaner\CCleaner.exe [32204304 2022-09-12] (Piriform Software Ltd -> Piriform Software Ltd)
- Task: {FFF65BD9-B353-4F28-8EE1-EDEBF26053DC} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe /c (Brak pliku)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\..\Interfaces\{1318a13e-d0b8-4aed-8863-35bbb0f216e3}: [NameServer] 192.168.1.1
- Tcpip\..\Interfaces\{fb157a89-694a-4aba-ac2d-77207c23add9}: [DhcpNameServer] 192.168.43.1
- DnsPolicyConfig: [OpenVPNDNSRouting-0] => GenericDNSServers=192.168.1.1
- Edge:
- =======
- Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-17]
- Edge Session Restore: Default -> [funkcja włączona]
- Edge Extension: (Foxtrick) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2022-01-11]
- Edge Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2022-10-14]
- FireFox:
- ========
- FF DefaultProfile: 9lh45dp4.default
- FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\9lh45dp4.default [2021-09-11]
- FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\qwc1yyef.default-release [2022-10-17]
- FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [Brak pliku]
- FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1208.2\npCCleanerBrowserUpdate3.dll [Brak pliku]
- Chrome:
- =======
- CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2022-10-17]
- CHR Notifications: Default -> hxxps://daemon-tools-lite.softonic.pl; hxxps://pilot.wp.pl; hxxps://www.netflix.com
- CHR Session Restore: Default -> [funkcja włączona]
- CHR Extension: (James White) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkeidgmehkdjmpjodpjkepolokanalkm [2021-04-09]
- CHR Extension: (Total WebShield: Chrome Antivirus Protection) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\bobjajapamhdnbnimmaddcceeckkoiff [2022-08-17]
- CHR Extension: (Foxtrick) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpfbbngccefbbndginomofgpagkjckik [2021-09-12]
- CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-30]
- CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-10-14]
- CHR Extension: (Hola VPN - The Website Unblocker) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gkojfkhlekighikafcpjkiklfbnlmeio [2022-10-17]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-02]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 agent_ovpnconnect; C:\Program Files\OpenVPN Connect\agent_ovpnconnect_1623661264483.exe [3194368 2021-06-14] () [Brak podpisu cyfrowego]
- R2 DolbyDAXAPI; C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [1928648 2020-05-19] (Dolby Laboratories, Inc. -> Dolby Laboratories)
- R2 FMAPOService; C:\Windows\System32\FMService64.exe [390400 2020-05-22] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
- R2 hasplms; C:\Program Files (x86)\Common Files\Aladdin Shared\HASP\hasplms.exe [7705592 2021-04-13] (Thales DIS CPL USA, Inc. -> Thales Group)
- R2 ovpnhelper_service; C:\Program Files\OpenVPN Connect\ovpnhelper_service.exe [3019776 2021-06-14] () [Brak podpisu cyfrowego]
- R2 SecurityService; C:\Program Files (x86)\TotalAV\SecurityService.exe [267088 2022-06-23] (Protected Antivirus Limited -> TotalAV) <==== UWAGA
- S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe [3046608 2022-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe [132504 2022-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvltig.inf_amd64_ce837e92efe9cbc4\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvltig.inf_amd64_ce837e92efe9cbc4\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 ApkbfiltrService; C:\Windows\System32\drivers\Apkbfiltr.sys [39760 2022-04-24] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
- R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [208176 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
- R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [197176 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
- R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [46704 2020-12-09] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG)
- R3 ITEHIDfilter; C:\Windows\System32\drivers\ITEHIDfilter.sys [28104 2022-04-24] (ITE Tech. Inc. -> ITE Tech. Inc.)
- S0 ProtectedELAM; C:\Windows\System32\drivers\protected_elam.sys [17864 2022-06-23] (Microsoft Windows Early Launch Anti-malware Publisher -> TODO: <Company name>)
- R3 tap_ovpnconnect; C:\Windows\System32\drivers\tap_ovpnconnect.sys [40128 2021-06-14] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
- S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49600 2022-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [439544 2022-04-01] (Microsoft Windows -> Microsoft Corporation)
- S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90360 2022-04-01] (Microsoft Windows -> Microsoft Corporation)
- R1 webshieldfilter; C:\Windows\System32\drivers\webshieldfilter.sys [96264 2021-11-09] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) <==== UWAGA
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-10-17 22:36 - 2022-10-17 22:37 - 000000000 ____D C:\FRST
- 2022-10-15 20:08 - 2022-10-15 20:08 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
- 2022-10-15 20:08 - 2022-10-15 20:08 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
- 2022-10-15 20:08 - 2022-10-15 20:08 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
- 2022-10-15 20:08 - 2022-10-15 20:08 - 000060928 _____ C:\Windows\system32\runexehelper.exe
- 2022-10-15 20:08 - 2022-10-15 20:08 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
- 2022-10-15 20:08 - 2022-10-15 20:08 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
- 2022-10-15 20:08 - 2022-10-15 20:08 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim
- 2022-10-15 20:03 - 2022-10-15 20:04 - 000000000 ___HD C:\$WinREAgent
- 2022-09-23 22:01 - 2022-10-17 22:14 - 000003416 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
- 2022-09-23 22:01 - 2022-10-17 22:14 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-10-17 22:38 - 2021-03-02 23:28 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId0_2
- 2022-10-17 22:37 - 2021-03-02 21:16 - 000000000 ____D C:\Users\micha\AppData\Roaming\discord
- 2022-10-17 22:19 - 2021-03-02 00:43 - 001678234 _____ C:\Windows\system32\PerfStringBackup.INI
- 2022-10-17 22:19 - 2019-12-07 17:08 - 000748784 _____ C:\Windows\system32\perfh015.dat
- 2022-10-17 22:19 - 2019-12-07 17:08 - 000144494 _____ C:\Windows\system32\perfc015.dat
- 2022-10-17 22:19 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
- 2022-10-17 22:16 - 2021-12-13 21:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\zaap
- 2022-10-17 22:14 - 2021-07-04 18:21 - 000000000 ____D C:\Program Files\CCleaner
- 2022-10-17 22:14 - 2021-03-02 00:49 - 000000000 ____D C:\Program Files (x86)\Google
- 2022-10-17 22:12 - 2021-12-11 20:58 - 000001150 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TotalAV.lnk
- 2022-10-17 22:12 - 2021-12-11 20:58 - 000000000 ____D C:\Program Files (x86)\TotalAV
- 2022-10-17 22:12 - 2021-09-18 19:45 - 000000000 ____D C:\Users\micha\AppData\Roaming\OpenVPN Connect
- 2022-10-17 22:12 - 2021-03-02 23:28 - 000000117 _____ C:\Users\micha\AppData\Roaming\D2Info0
- 2022-10-17 22:12 - 2021-03-02 23:07 - 000000000 ____D C:\ProgramData\NVIDIA
- 2022-10-17 22:12 - 2021-03-02 21:16 - 000000000 ____D C:\Users\micha\AppData\Local\Discord
- 2022-10-17 22:12 - 2021-03-02 00:42 - 000000000 ___RD C:\Users\micha\OneDrive
- 2022-10-17 22:12 - 2021-03-02 00:39 - 000000000 ____D C:\Users\micha
- 2022-10-17 22:12 - 2021-03-02 00:35 - 000008192 ___SH C:\DumpStack.log.tmp
- 2022-10-17 22:12 - 2020-11-19 01:29 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2022-10-17 22:12 - 2020-11-19 00:29 - 000000000 ____D C:\Windows\system32\SleepStudy
- 2022-10-17 22:12 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2022-10-17 22:11 - 2021-03-02 23:58 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId0_3
- 2022-10-17 21:43 - 2021-03-02 23:28 - 000000000 ____D C:\Users\micha\AppData\Roaming\Dofus
- 2022-10-17 21:35 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
- 2022-10-17 21:13 - 2021-03-02 23:28 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId0_1
- 2022-10-17 20:53 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
- 2022-10-17 20:11 - 2020-11-19 01:31 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2022-10-17 19:49 - 2021-12-13 21:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\Ankama Launcher
- 2022-10-17 19:11 - 2021-07-04 18:21 - 000004210 _____ C:\Windows\system32\Tasks\CCleaner Update
- 2022-10-16 21:34 - 2021-03-07 10:52 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId0_4
- 2022-10-16 16:14 - 2021-03-02 00:49 - 000004226 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{B59173F8-8D6D-4141-90C6-3A7A585B17D2}
- 2022-10-15 20:17 - 2020-11-19 00:29 - 000258584 _____ C:\Windows\system32\FNTCACHE.DAT
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
- 2022-10-15 20:16 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
- 2022-10-15 20:16 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
- 2022-10-15 20:10 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
- 2022-10-15 20:10 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
- 2022-10-15 20:10 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
- 2022-10-15 20:08 - 2020-11-19 01:31 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
- 2022-10-15 14:36 - 2021-03-02 00:51 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
- 2022-10-15 10:03 - 2021-07-10 07:36 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId0_5
- 2022-10-14 19:12 - 2021-03-02 00:50 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2022-10-13 22:02 - 2021-12-11 22:37 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3340729455-3393344380-1119888807-1001
- 2022-10-13 22:02 - 2021-03-02 00:42 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3340729455-3393344380-1119888807-1001
- 2022-10-13 22:02 - 2021-03-02 00:39 - 000002427 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2022-10-13 21:18 - 2021-03-04 20:55 - 000000000 ____D C:\Windows\system32\MRT
- 2022-10-13 21:17 - 2021-03-04 20:55 - 147398024 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2022-10-12 20:05 - 2020-11-19 01:31 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2022-10-12 20:05 - 2020-11-19 01:31 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
- 2022-09-18 20:15 - 2021-03-31 20:12 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId1_2
- 2022-09-18 19:51 - 2021-03-30 21:36 - 000000121 _____ C:\Users\micha\AppData\Roaming\D2Info1
- 2022-09-18 19:47 - 2021-03-30 21:36 - 000000008 _____ C:\Users\micha\AppData\Roaming\DofusAppId1_1
- 2022-09-18 19:39 - 2021-03-30 21:36 - 000000000 ____D C:\Users\micha\AppData\Roaming\Dofus - Beta
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2021-03-02 23:28 - 2022-10-17 22:12 - 000000117 _____ () C:\Users\micha\AppData\Roaming\D2Info0
- 2021-03-30 21:36 - 2022-09-18 19:51 - 000000121 _____ () C:\Users\micha\AppData\Roaming\D2Info1
- 2021-03-02 23:28 - 2022-10-17 21:13 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId0_1
- 2021-03-02 23:28 - 2022-10-17 22:38 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId0_2
- 2021-03-02 23:58 - 2022-10-17 22:11 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId0_3
- 2021-03-07 10:52 - 2022-10-16 21:34 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId0_4
- 2021-07-10 07:36 - 2022-10-15 10:03 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId0_5
- 2021-03-30 21:36 - 2022-09-18 19:47 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId1_1
- 2021-03-31 20:12 - 2022-09-18 20:15 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId1_2
- 2021-03-31 20:15 - 2022-09-10 15:26 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId1_3
- 2021-03-31 20:15 - 2022-09-09 19:14 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId1_4
- 2021-03-31 20:34 - 2022-09-10 00:06 - 000000008 _____ () C:\Users\micha\AppData\Roaming\DofusAppId1_5
- 2021-12-11 13:46 - 2021-12-11 13:46 - 000000015 _____ () C:\Users\micha\AppData\Roaming\obs-virtualcam.txt
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- ==================== Koniec FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement