Advertisement
Guest User

Untitled

a guest
Jun 25th, 2018
2,266
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 45.23 KB | None | 0 0
  1. Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20.06.2018
  2. Uruchomiony przez admin (administrator) ADMIN-KOMPUTER (25-06-2018 19:20:04)
  3. Uruchomiony z C:\Users\admin\Downloads
  4. Załadowane profile: admin (Dostępne profile: admin)
  5. Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska)
  6. Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)
  7. Tryb startu: Safe Mode (with Networking)
  8. Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Procesy (filtrowane) =================
  11.  
  12. (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
  13.  
  14. (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
  15. (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
  16. (Google Inc.) C:\Users\admin\Downloads\ChromeSetup.exe
  17. (Google Inc.) C:\Program Files (x86)\GUM7F2D.tmp\GoogleUpdate.exe
  18. (Microsoft Corporation) C:\Windows\System32\dllhost.exe
  19. (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  20. (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  21. (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  22. (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  23. (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
  24. (Microsoft Corporation) C:\Windows\System32\dllhost.exe
  25. (Microsoft Corporation) C:\Windows\System32\dllhost.exe
  26.  
  27. ==================== Rejestr (filtrowane) ===========================
  28.  
  29. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
  30.  
  31. HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-06-13] (AVAST Software)
  32. HKLM-x32\...\Run: [GX77 mouse] => "C:\Program Files (x86)\Genesis\GX77 Mouse\Monitor.exe"
  33. HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2017-03-28] (Adobe Systems Incorporated)
  34. HKLM\...\RunOnce: [ucdrv_repair] => "C:\Program Files (x86)\UCBrowser\Security\uclauncher.exe" --repair
  35. HKLM\ DisallowedCertificates: 03D22C9C66915D58C88912B64C1F984B8344EF09 (Comodo Security Solutions) <==== UWAGA
  36. HKLM\ DisallowedCertificates: 0F684EC1163281085C6AF20528878103ACEFCAAB (F-Secure Corporation) <==== UWAGA
  37. HKLM\ DisallowedCertificates: 1667908C9E22EFBD0590E088715CC74BE4C60884 (FRISK Software International/F-Prot) <==== UWAGA
  38. HKLM\ DisallowedCertificates: 18DEA4EFA93B06AE997D234411F3FD72A677EECE (Bitdefender SRL) <==== UWAGA
  39. HKLM\ DisallowedCertificates: 2026D13756EB0DB753DF26CB3B7EEBE3E70BB2CF (G DATA Software AG) <==== UWAGA
  40. HKLM\ DisallowedCertificates: 249BDA38A611CD746A132FA2AF995A2D3C941264 (Malwarebytes Corporation) <==== UWAGA
  41. HKLM\ DisallowedCertificates: 31AC96A6C17C425222C46D55C3CCA6BA12E54DAF (Symantec Corporation) <==== UWAGA
  42. HKLM\ DisallowedCertificates: 331E2046A1CCA7BFEF766724394BE6112B4CA3F7 (Trend Micro) <==== UWAGA
  43. HKLM\ DisallowedCertificates: 3353EA609334A9F23A701B9159E30CB6C22D4C59 (Webroot Inc.) <==== UWAGA
  44. HKLM\ DisallowedCertificates: 373C33726722D3A5D1EDD1F1585D5D25B39BEA1A (SUPERAntiSpyware.com) <==== UWAGA
  45. HKLM\ DisallowedCertificates: 3850EDD77CC74EC9F4829AE406BBF9C21E0DA87F (Kaspersky Lab) <==== UWAGA
  46. HKLM\ DisallowedCertificates: 3D496FA682E65FC122351EC29B55AB94F3BB03FC (AVG Technologies CZ) <==== UWAGA
  47. HKLM\ DisallowedCertificates: 4243A03DB4C3C15149CEA8B38EEA1DA4F26BD159 (PC Tools) <==== UWAGA
  48. HKLM\ DisallowedCertificates: 42727E052C0C2E1B35AB53E1005FD9EDC9DE8F01 (K7 Computing Pvt Ltd) <==== UWAGA
  49. HKLM\ DisallowedCertificates: 4420C99742DF11DD0795BC15B7B0ABF090DC84DF (Doctor Web Ltd.) <==== UWAGA
  50. HKLM\ DisallowedCertificates: 4C0AF5719009B7C9D85C5EAEDFA3B7F090FE5FFF (Emsisoft Ltd) <==== UWAGA
  51. HKLM\ DisallowedCertificates: 5240AB5B05D11B37900AC7712A3C6AE42F377C8C (Check Point Software Technologies Ltd.) <==== UWAGA
  52. HKLM\ DisallowedCertificates: 5DD3D41810F28B2A13E9A004E6412061E28FA48D (Emsisoft Ltd) <==== UWAGA
  53. HKLM\ DisallowedCertificates: 7457A3793086DBB58B3858D6476889E3311E550E (K7 Computing Pvt Ltd) <==== UWAGA
  54. HKLM\ DisallowedCertificates: 76A9295EF4343E12DFC5FE05DC57227C1AB00D29 (BullGuard Ltd) <==== UWAGA
  55. HKLM\ DisallowedCertificates: 775B373B33B9D15B58BC02B184704332B97C3CAF (McAfee) <==== UWAGA
  56. HKLM\ DisallowedCertificates: 872CD334B7E7B3C3D1C6114CD6B221026D505EAB (Comodo Security Solutions) <==== UWAGA
  57. HKLM\ DisallowedCertificates: 88AD5DFE24126872B33175D1778687B642323ACF (McAfee) <==== UWAGA
  58. HKLM\ DisallowedCertificates: 9132E8B079D080E01D52631690BE18EBC2347C1E (Adaware Software) <==== UWAGA
  59. HKLM\ DisallowedCertificates: 982D98951CF3C0CA2A02814D474A976CBFF6BDB1 (Safer Networking Ltd.) <==== UWAGA
  60. HKLM\ DisallowedCertificates: 9A08641F7C5F2CCA0888388BE3E5DBDDAAA3B361 (Webroot Inc.) <==== UWAGA
  61. HKLM\ DisallowedCertificates: 9C43F665E690AB4D486D4717B456C5554D4BCEB5 (ThreatTrack Security) <==== UWAGA
  62. HKLM\ DisallowedCertificates: 9E3F95577B37C74CA2F70C1E1859E798B7FC6B13 (CURIOLAB S.M.B.A.) <==== UWAGA
  63. HKLM\ DisallowedCertificates: A1F8DCB086E461E2ABB4B46ADCFA0B48C58B6E99 (Avira Operations GmbH & Co. KG) <==== UWAGA
  64. HKLM\ DisallowedCertificates: A5341949ABE1407DD7BF7DFE75460D9608FBC309 (BullGuard Ltd) <==== UWAGA
  65. HKLM\ DisallowedCertificates: A59CC32724DD07A6FC33F7806945481A2D13CA2F (ESET) <==== UWAGA
  66. HKLM\ DisallowedCertificates: AB7E760DA2485EA9EF5A6EEE7647748D4BA6B947 (AVG Technologies CZ) <==== UWAGA
  67. HKLM\ DisallowedCertificates: AD4C5429E10F4FF6C01840C20ABA344D7401209F (Avast Antivirus/Software) <==== UWAGA
  68. HKLM\ DisallowedCertificates: AD96BB64BA36379D2E354660780C2067B81DA2E0 (Symantec Corporation) <==== UWAGA
  69. HKLM\ DisallowedCertificates: B8EBF0E696AF77F51C96DB4D044586E2F4F8FD84 (Malwarebytes Corporation) <==== UWAGA
  70. HKLM\ DisallowedCertificates: CDC37C22FE9272D8F2610206AD397A45040326B8 (Trend Micro) <==== UWAGA
  71. HKLM\ DisallowedCertificates: D3F78D747E7C5D6D3AE8ABFDDA7522BFB4CBD598 (Kaspersky Lab) <==== UWAGA
  72. HKLM\ DisallowedCertificates: DB303C9B61282DE525DC754A535CA2D6A9BD3D87 (ThreatTrack Security) <==== UWAGA
  73. HKLM\ DisallowedCertificates: DB77E5CFEC34459146748B667C97B185619251BA (Avast Antivirus/Software) <==== UWAGA
  74. HKLM\ DisallowedCertificates: E22240E837B52E691C71DF248F12D27F96441C00 (Total Defense, Inc.) <==== UWAGA
  75. HKLM\ DisallowedCertificates: E513EAB8610CFFD7C87E00BCA15C23AAB407FCEF (AVG Technologies CZ) <==== UWAGA
  76. HKLM\ DisallowedCertificates: ED841A61C0F76025598421BC1B00E24189E68D54 (Bitdefender SRL) <==== UWAGA
  77. HKLM\ DisallowedCertificates: F83099622B4A9F72CB5081F742164AD1B8D048C9 (ESET) <==== UWAGA
  78. HKLM\ DisallowedCertificates: FBB42F089AF2D570F2BF6F493D107A3255A9BB1A (Panda Security S.L) <==== UWAGA
  79. HKLM\ DisallowedCertificates: FFFA650F2CB2ABC0D80527B524DD3F9FC172C138 (Doctor Web Ltd.) <==== UWAGA
  80. HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
  81. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [18364648 2018-05-24] (Piriform Ltd)
  82. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\Run: [Spotify Web Helper] => C:\Users\admin\AppData\Roaming\Spotify\SpotifyWebHelper.exe [781712 2018-06-19] (Spotify Ltd)
  83. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\Policies\Explorer: []
  84. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: G - G:\AutoRun.exe
  85. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {0842096d-57c8-11e6-bd05-94de80615e8b} - G:\AutoRun.exe
  86. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {528f65ee-54fc-11e6-bdca-94de80615e8b} - I:\AutoRun.exe
  87. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {528f6607-54fc-11e6-bdca-94de80615e8b} - G:\AutoRun.exe
  88. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {5c4528af-1fa5-11e3-a719-806e6f6e6963} - D:\Run.exe
  89. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {65ef0f89-5596-11e6-a554-94de80615e8b} - G:\AutoRun.exe
  90. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\...\MountPoints2: {900e1b01-ea7a-11e3-a58a-94de80615e8b} - G:\Startme.exe
  91. HKU\S-1-5-18\...\Run: [Autodesk Sync] => C:\Program Files\Autodesk\Autodesk Sync\AdSync.exe [1081224 2013-02-05] (Autodesk, Inc.)
  92. HKU\S-1-5-18\...\Run: [] => [X]
  93. GroupPolicy: Ograniczenia - Chrome <==== UWAGA
  94. CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
  95.  
  96. ==================== Internet (filtrowane) ====================
  97.  
  98. (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
  99.  
  100. Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
  101. Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
  102. Tcpip\..\Interfaces\{70AD6163-87BD-4F28-9BD4-E98419A1A59E}: [DhcpNameServer] 192.168.0.1
  103.  
  104. Internet Explorer:
  105. ==================
  106. HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=130969010825297016&GUID=00000000-0000-0000-0000-000000000000
  107. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
  108. HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
  109. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
  110. HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
  111. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
  112. HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
  113. HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
  114. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
  115. HKU\S-1-5-21-2298222908-433205819-1316438490-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.google.com/?bcutc=sp-006
  116. SearchScopes: HKLM-x32 -> DefaultScope {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
  117. SearchScopes: HKLM-x32 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
  118. SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  119. SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  120. SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
  121. SearchScopes: HKU\S-1-5-21-2298222908-433205819-1316438490-1000 -> {E9410C70-B6AE-41FF-AB71-32F4B279EA5F} URL = hxxps://www.google.com/search?bcutc=sp-006&q={searchTerms}
  122. BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2018-06-13] (AVAST Software)
  123. BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
  124. BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
  125. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2017-01-21] (Oracle Corporation)
  126. BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2018-06-13] (AVAST Software)
  127. BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.)
  128. BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2017-01-21] (Oracle Corporation)
  129. BHO-x32: Brak nazwy -> {DF925EF3-7A87-44E4-9CAF-8D7B280BF616} -> Brak pliku
  130. DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
  131.  
  132. FireFox:
  133. ========
  134. FF DefaultProfile: ixy8tpop.default-1443558943282-1529946372131
  135. FF ProfilePath: C:\Users\admin\AppData\Roaming\Mozilla\Firefox\Profiles\ixy8tpop.default-1443558943282-1529946372131 [2018-06-25]
  136. FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_30_0_0_113.dll [2018-06-11] ()
  137. FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku]
  138. FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation)
  139. FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-07-29] (Adobe Systems)
  140. FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_30_0_0_113.dll [2018-06-11] ()
  141. FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
  142. FF Plugin-x32: @graphisoft.com/GDL Web Plug-in -> C:\Program Files (x86)\GRAPHISOFT\GDLWebControl\npGDLMozilla.dll [Brak pliku]
  143. FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2017-01-21] (Oracle Corporation)
  144. FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2017-01-21] (Oracle Corporation)
  145. FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku]
  146. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50905.0\npctrl.dll [2017-02-10] ( Microsoft Corporation)
  147. FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
  148. FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-01] (NVIDIA Corporation)
  149. FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-01] (NVIDIA Corporation)
  150. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-25] (Google Inc.)
  151. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-06-25] (Google Inc.)
  152. FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> D:\VLC\npvlc.dll [Brak pliku]
  153. FF Plugin-x32: Adobe Reader -> E:\Reader\AIR\nppdf32.dll [2017-03-28] (Adobe Systems Inc.)
  154. FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-07-29] (Adobe Systems)
  155.  
  156. Chrome:
  157. =======
  158. CHR DefaultProfile: Default
  159. CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default [2018-06-25]
  160. CHR Extension: (Prezentacje) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-02]
  161. CHR Extension: (Dokumenty) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-02]
  162. CHR Extension: (Dysk Google) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-12-02]
  163. CHR Extension: (YouTube) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-02]
  164. CHR Extension: (Adblock Plus) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-06-25]
  165. CHR Extension: (Arkusze) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-02]
  166. CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-12-03]
  167. CHR Extension: (Avast Online Security) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-06-25]
  168. CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-15]
  169. CHR Extension: (Gmail) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-12-02]
  170. CHR Extension: (Chrome Media Router) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-25]
  171. CHR Extension: (Brak nazwy) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\SystemTable\1.2_0 [2018-06-13]
  172. CHR HKU\S-1-5-21-2298222908-433205819-1316438490-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
  173. CHR HKLM-x32\...\Chrome\Extension: [bknbnapaddjdnbilpmlacdkjdkjmbjhd] - hxxp://clients2.google.com/service/update2/crx
  174. CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
  175. CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
  176.  
  177. Opera:
  178. =======
  179. OPR StartupUrls: "hxxp://www.gazeta.pl/0,0.html?p=188"
  180. OPR Extension: (Brak nazwy) - C:\Users\admin\AppData\Roaming\Opera Software\Opera Stable\Extensions\pbdpajcdgknpendpmecafmopknefafha [2018-06-13]
  181.  
  182. ==================== Usługi (filtrowane) ====================
  183.  
  184. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  185.  
  186. S2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1295376 2016-07-01] (Autodesk Inc.)
  187. S2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)
  188. S2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)
  189. S2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
  190. S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7620096 2018-06-13] (AVAST Software)
  191. S2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [12288 2012-12-13] (Autodesk, Inc.) [Brak podpisu cyfrowego]
  192. S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [317280 2018-06-13] (AVAST Software)
  193. S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6971400 2017-12-04] ()
  194. S2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1199544 2018-01-17] (COMODO)
  195. R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)
  196. S3 mi-raysat_3dsmax2017_64; E:\3ds\3ds Max 2017\raysat_3dsmax2017_64server.exe [86016 2011-09-15] () [Brak podpisu cyfrowego]
  197. S2 MTrackAudioDevMon; C:\Program Files (x86)\M-Audio\M-Track\AudioDevMon.exe [546816 2013-04-24] (M-Audio) [Brak podpisu cyfrowego]
  198. S2 NovaPdfServer; C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [35616 2015-01-09] (Microsoft)
  199. S2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation)
  200. S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation)
  201. S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
  202. S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Brak podpisu cyfrowego]
  203. S2 winamgr; C:\ProgramData\Microsoft\Windows\Audio\winamgr.exe [10644480 2018-05-28] (Microsoft Corporation) [Brak podpisu cyfrowego] <==== UWAGA
  204. S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
  205. S2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"
  206. S2 UCBrowserSvc; "C:\Program Files (x86)\UCBrowser\Application\UCService.exe" [X] <==== UWAGA
  207.  
  208. ===================== Sterowniki (filtrowane) ======================
  209.  
  210. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  211.  
  212. S1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [196640 2018-06-13] (AVAST Software)
  213. S1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [227504 2018-06-13] (AVAST Software)
  214. S0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [199440 2018-06-13] (AVAST Software)
  215. S0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [343752 2018-06-13] (AVAST Software)
  216. S0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [57680 2018-06-13] (AVAST Software)
  217. S1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [234560 2018-06-13] (AVAST Software)
  218. S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [46968 2018-06-13] (AVAST Software)
  219. S2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [159120 2018-06-13] (AVAST Software)
  220. R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111360 2018-06-13] (AVAST Software)
  221. S0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [85968 2018-06-13] (AVAST Software)
  222. S1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1027720 2018-06-13] (AVAST Software)
  223. S1 aswSP; C:\Windows\System32\drivers\aswSP.sys [460520 2018-06-13] (AVAST Software)
  224. S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [205976 2018-06-13] (AVAST Software)
  225. S0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [381552 2018-06-13] (AVAST Software)
  226. R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-10-02] (Disc Soft Ltd)
  227. S1 isedrv; C:\Windows\system32\drivers\isedrv.sys [50576 2018-01-17] (COMODO)
  228. S3 MTRACK; C:\Windows\System32\DRIVERS\MAudioMTrack.sys [471040 2013-04-24] (M-Audio)
  229. S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
  230. S3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
  231. S3 pwdrvio; C:\Windows\system32\pwdrvio.sys [19032 2012-08-20] ()
  232. S3 pwdspio; C:\Windows\system32\pwdspio.sys [12384 2012-08-20] ()
  233. S1 ucdrv; C:\Windows\System32\drivers:ucdrv-x64.sys [25444 ] (UC Web Inc.) <==== UWAGA
  234. S3 cpuz135; \??\C:\Users\admin\AppData\Local\Temp\HBCD\PCWizard\pcwiz_x64.sys [X] <==== UWAGA
  235. S3 esgiguard; \??\C:\Program Files (x86)\Enigma Software Group\SpyHunter\esgiguard.sys [X]
  236. S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X]
  237. S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X]
  238. S3 gdrv; \??\C:\Windows\gdrv.sys [X]
  239. S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X]
  240. S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X]
  241. S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X]
  242. S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X]
  243. S3 hwusb_cdcacm; system32\DRIVERS\ew_cdcacm.sys [X]
  244. S3 hwusb_wwanecm; system32\DRIVERS\ew_wwanecm.sys [X]
  245.  
  246. ==================== NetSvcs (filtrowane) ===================
  247.  
  248. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  249.  
  250.  
  251. ==================== Jeden miesiąc - utworzone pliki i foldery ========
  252.  
  253. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  254.  
  255. 2018-06-25 19:12 - 2018-06-25 19:12 - 000002262 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  256. 2018-06-25 19:12 - 2018-06-25 19:12 - 000002221 _____ C:\Users\Public\Desktop\Google Chrome.lnk
  257. 2018-06-25 19:11 - 2018-06-25 19:11 - 007649280 _____ C:\Program Files (x86)\GUT7F2E.tmp
  258. 2018-06-25 19:11 - 2018-06-25 19:11 - 001130840 _____ (Google Inc.) C:\Users\admin\Downloads\ChromeSetup.exe
  259. 2018-06-25 19:11 - 2018-06-25 19:11 - 000000000 ____D C:\Program Files (x86)\GUM7F2D.tmp
  260. 2018-06-25 19:06 - 2018-06-25 19:06 - 000000000 ____D C:\Users\admin\Desktop\Stare dane programu Firefox
  261. 2018-06-25 19:04 - 2018-06-25 19:04 - 000514069 _____ C:\Users\admin\Desktop\bookmarks.html
  262. 2018-06-25 19:00 - 2018-06-25 19:00 - 000328192 _____ C:\Windows\SysWOW64\SelfFolder.idc
  263. 2018-06-25 19:00 - 2018-06-25 19:00 - 000000000 ___HD C:\Users\admin\AppData\Local\C.Framework
  264. 2018-06-22 19:21 - 2018-06-25 18:59 - 000001986 _____ C:\Users\admin\Desktop\AdwCleaner[S04].txt
  265. 2018-06-22 17:28 - 2018-06-25 19:20 - 000024024 _____ C:\Users\admin\Downloads\FRST.txt
  266. 2018-06-22 17:28 - 2018-06-22 17:28 - 000071950 _____ C:\Users\admin\Downloads\Addition.txt
  267. 2018-06-22 17:28 - 2018-06-22 17:28 - 000066028 _____ C:\Users\admin\Downloads\Shortcut.txt
  268. 2018-06-22 17:21 - 2018-06-25 19:20 - 000000000 ____D C:\FRST
  269. 2018-06-22 17:21 - 2018-06-22 17:21 - 002412544 _____ (Farbar) C:\Users\admin\Downloads\FRST64.exe
  270. 2018-06-20 00:01 - 2018-06-20 00:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
  271. 2018-06-20 00:00 - 2018-06-25 18:59 - 000000272 _____ C:\Windows\Tasks\AdwCleaner_onReboot.job
  272. 2018-06-19 23:59 - 2018-06-25 19:08 - 000829920 _____ C:\Windows\ntbtlog.txt
  273. 2018-06-19 23:54 - 2018-06-20 00:00 - 000000000 ____D C:\AdwCleaner
  274. 2018-06-19 23:54 - 2018-06-19 23:51 - 007372496 _____ (Malwarebytes) C:\Users\admin\Desktop\AdwCleaner.exe
  275. 2018-06-19 23:35 - 2018-06-22 19:08 - 000000000 ___HD C:\Users\admin\AppData\Local\Opera-12.8
  276. 2018-06-19 23:34 - 2018-06-19 23:34 - 005350312 _____ C:\Windows\system32\FNTCACHE.DAT
  277. 2018-06-19 23:14 - 2018-06-19 23:14 - 045712392 _____ (AVAST Software ) C:\Users\admin\Downloads\avast_cleanup_setup.exe
  278. 2018-06-19 21:55 - 2018-06-19 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comodo
  279. 2018-06-19 21:55 - 2018-06-19 21:55 - 000000000 ____D C:\Users\admin\AppData\Local\Comodo
  280. 2018-06-19 21:55 - 2018-06-19 21:55 - 000000000 ____D C:\Program Files\COMODO
  281. 2018-06-19 21:55 - 2018-01-17 09:59 - 000255248 _____ (COMODO) C:\Windows\system32\iseguard64.dll
  282. 2018-06-19 21:55 - 2018-01-17 09:59 - 000205256 _____ (COMODO) C:\Windows\SysWOW64\iseguard32.dll
  283. 2018-06-19 21:55 - 2018-01-17 09:59 - 000050576 _____ (COMODO) C:\Windows\system32\Drivers\isedrv.sys
  284. 2018-06-19 21:54 - 2018-06-19 23:36 - 000000000 ____D C:\Program Files (x86)\Comodo
  285. 2018-06-19 21:52 - 2018-06-19 23:40 - 000000000 ____D C:\ProgramData\Comodo
  286. 2018-06-19 21:52 - 2018-06-19 21:52 - 005546648 _____ (COMODO) C:\Users\admin\Downloads\cispremium_installer_10555_51.exe
  287. 2018-06-19 21:49 - 2018-06-20 00:02 - 000002020 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
  288. 2018-06-19 21:49 - 2018-06-19 21:49 - 000000000 ____D C:\Program Files\Malwarebytes
  289. 2018-06-19 21:49 - 2018-05-24 06:55 - 000152184 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
  290. 2018-06-19 21:48 - 2018-06-19 21:48 - 078101496 _____ (Malwarebytes ) C:\Users\admin\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.374-1.0.5526.exe
  291. 2018-06-19 21:19 - 2018-06-19 21:19 - 000000000 ____D C:\Users\admin\AppData\LocalLow\Intel
  292. 2018-06-19 20:30 - 2018-06-19 20:30 - 000024628 _____ C:\Users\admin\Documents\cc_20180619_203029.reg
  293. 2018-06-19 20:16 - 2018-06-19 21:20 - 000000000 ___HD C:\Users\admin\AppData\Local\CCleaner v9.18
  294. 2018-06-15 22:27 - 2018-06-15 22:27 - 000000000 _____ C:\Users\admin\Desktop\Nowy dokument tekstowy.txt
  295. 2018-06-15 22:20 - 2018-06-15 22:20 - 000000000 __SHD C:\Windows\system32\Control Panel.{21EC2020-3AEA-1069-A2DD-08002B30309D}
  296. 2018-06-15 21:33 - 2018-06-15 21:33 - 000000000 ____D C:\Users\admin\Desktop\2017 - Przechodzień o wschodzie
  297. 2018-06-15 21:30 - 2018-06-15 21:32 - 099216191 _____ C:\Users\admin\Downloads\2017 - Przechodzień o wschodzie.rar
  298. 2018-06-13 23:28 - 2018-06-13 23:28 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk
  299. 2018-06-13 23:20 - 2018-06-13 23:20 - 000000000 ___HD C:\$AV_ASW
  300. 2018-06-13 23:18 - 2018-06-19 23:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software
  301. 2018-06-13 23:18 - 2018-06-13 23:18 - 000000000 ____D C:\Users\admin\AppData\Roaming\AVAST Software
  302. 2018-06-13 23:17 - 2018-06-16 16:36 - 000003870 _____ C:\Windows\System32\Tasks\CCleaner Update
  303. 2018-06-13 23:17 - 2018-06-13 23:17 - 001027720 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
  304. 2018-06-13 23:17 - 2018-06-13 23:17 - 000460520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
  305. 2018-06-13 23:17 - 2018-06-13 23:17 - 000381552 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
  306. 2018-06-13 23:17 - 2018-06-13 23:17 - 000376536 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
  307. 2018-06-13 23:17 - 2018-06-13 23:17 - 000343752 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
  308. 2018-06-13 23:17 - 2018-06-13 23:17 - 000234560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
  309. 2018-06-13 23:17 - 2018-06-13 23:17 - 000227504 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
  310. 2018-06-13 23:17 - 2018-06-13 23:17 - 000205976 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
  311. 2018-06-13 23:17 - 2018-06-13 23:17 - 000199440 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
  312. 2018-06-13 23:17 - 2018-06-13 23:17 - 000196640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
  313. 2018-06-13 23:17 - 2018-06-13 23:17 - 000159120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
  314. 2018-06-13 23:17 - 2018-06-13 23:17 - 000111360 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
  315. 2018-06-13 23:17 - 2018-06-13 23:17 - 000085968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
  316. 2018-06-13 23:17 - 2018-06-13 23:17 - 000057680 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
  317. 2018-06-13 23:17 - 2018-06-13 23:17 - 000046968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
  318. 2018-06-13 23:17 - 2018-06-13 23:17 - 000003910 _____ C:\Windows\System32\Tasks\Avast Emergency Update
  319. 2018-06-13 23:16 - 2018-06-13 23:16 - 007325024 _____ (AVAST Software) C:\Users\admin\Downloads\avast_free_antivirus_setup_online_a2f.exe
  320. 2018-06-13 23:16 - 2018-06-13 23:16 - 000000000 ____D C:\Program Files\AVAST Software
  321. 2018-06-13 22:54 - 2018-06-13 22:55 - 077668920 _____ (Malwarebytes ) C:\Users\admin\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.374-1.0.5464.exe
  322. 2018-06-13 22:48 - 2018-06-13 22:49 - 000000085 _____ C:\Windows\wininit.ini
  323. 2018-06-13 20:04 - 2018-06-13 22:49 - 000000000 ____D C:\ProgramData\Spybot - Search & Destroy
  324. 2018-06-13 20:04 - 2018-06-13 22:49 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
  325. 2018-06-13 20:04 - 2018-06-13 20:04 - 000000000 ____D C:\Windows\System32\Tasks\Safer-Networking
  326. 2018-06-13 20:02 - 2018-06-13 20:02 - 069910960 _____ (Safer-Networking Ltd. ) C:\Users\admin\Downloads\spybotsd-2.7.64.0.exe
  327. 2018-06-13 19:59 - 2018-06-13 19:59 - 000060380 _____ C:\Users\admin\Documents\cc_20180613_195953.reg
  328. 2018-06-13 19:57 - 2018-06-13 19:57 - 000000000 ____D C:\Users\admin\AppData\Local\Windows
  329. 2018-06-13 19:52 - 2018-06-13 19:52 - 000000266 __RSH C:\Users\admin\ntuser.pol
  330. 2018-06-13 19:52 - 2018-06-13 19:52 - 000000000 ____D C:\Users\admin\AppData\Roaming\gpipbx1tgth
  331. 2018-06-13 19:52 - 2018-06-13 19:52 - 000000000 ____D C:\Users\admin\AppData\LocalLow\MAL
  332. 2018-06-13 19:44 - 2018-06-25 19:00 - 000000034 _____ C:\Users\Public\Documents\{DE764086-1C0A-4DD3-90BA-0B93BDD794BE}
  333. 2018-06-13 19:44 - 2018-06-16 16:36 - 000003678 _____ C:\Windows\System32\Tasks\{27255DE4-5108-389B-BC43-756072BCCABC}
  334. 2018-06-13 19:44 - 2018-06-16 16:36 - 000003440 _____ C:\Windows\System32\Tasks\{153CED8F-1F64-F1CF-14FC-2F76962E44BA}
  335. 2018-06-13 19:44 - 2018-06-13 23:21 - 000000000 ____D C:\Program Files (x86)\C++
  336. 2018-06-13 19:44 - 2018-06-13 22:49 - 000000266 __RSH C:\ProgramData\ntuser.pol
  337. 2018-06-13 19:44 - 2018-06-13 19:44 - 000000003 _____ C:\Users\admin\AppData\Local\wbem.ini
  338. 2018-06-13 19:44 - 2018-06-13 19:44 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
  339. 2018-06-13 19:44 - 2018-06-13 19:44 - 000000000 ____D C:\Users\admin\AppData\Roaming\oyhsvfkdgqc
  340. 2018-06-13 19:43 - 2018-06-13 23:27 - 000000000 ____D C:\Users\admin\AppData\Local\361618bd08934136af379eb7aa29e1a8
  341. 2018-06-13 19:43 - 2018-06-13 23:27 - 000000000 ____D C:\ProgramData\c6ef9faa279b4480ac035d885e8a2dcc
  342. 2018-06-13 19:43 - 2018-06-13 23:27 - 000000000 ____D C:\ProgramData\40ccc1d60c1d4712ab2be982f0b65780
  343. 2018-06-12 18:04 - 2018-06-12 18:04 - 007348480 _____ C:\Users\admin\Documents\bartek2016.dae
  344. 2018-06-12 18:04 - 2018-06-12 18:04 - 000000000 ____D C:\Users\admin\Documents\bartek2016
  345. 2018-06-12 17:53 - 2018-06-12 18:11 - 065435489 _____ C:\Users\admin\Desktop\bartek2016.skb
  346. 2018-06-12 17:48 - 2018-06-12 17:48 - 002948240 _____ (BitTorrent Inc.) C:\Users\admin\Downloads\uTorrent.exe
  347. 2018-06-12 17:43 - 2018-06-12 18:13 - 065424887 _____ C:\Users\admin\Desktop\bartek2016.skp
  348. 2018-06-12 17:33 - 2018-06-12 17:33 - 059116094 _____ C:\Users\admin\Desktop\bartek11.skb
  349. 2018-06-12 17:17 - 2018-06-12 17:43 - 064657863 _____ C:\Users\admin\Desktop\bartek11.skp
  350. 2018-06-12 16:39 - 2018-06-12 16:39 - 000852141 _____ C:\Users\admin\Downloads\Oob-layouts-6.2.0.rbz
  351. 2018-06-12 16:14 - 2018-06-12 16:14 - 006427721 _____ C:\Users\admin\Downloads\LibFredo6_v8.4g.rbz
  352. 2018-06-12 16:05 - 2018-06-12 16:05 - 000300842 _____ C:\Users\admin\Downloads\RoundCorner_v3.2g.rbz
  353. 2018-06-12 15:59 - 2018-06-12 15:59 - 000001987 _____ C:\Users\Public\Desktop\SketchUp 2017.lnk
  354. 2018-06-12 15:59 - 2018-06-12 15:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2017
  355. 2018-06-12 15:53 - 2018-06-12 15:56 - 161521269 _____ (Trimble Navigation Limited) C:\Users\admin\Downloads\SketchUpMake-pl-x64.exe
  356. 2018-06-07 18:11 - 2018-06-07 19:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
  357. 2018-06-05 19:07 - 2018-06-05 19:07 - 000000000 ____D C:\Program Files\Common Files\Avast Software
  358. 2018-06-03 16:16 - 2018-06-03 16:16 - 000000000 ____D C:\Users\admin\Documents\BIMx
  359. 2018-06-03 16:16 - 2018-06-03 16:16 - 000000000 ____D C:\Users\admin\.oracle_jre_usage
  360. 2018-06-03 16:15 - 2018-06-11 21:19 - 000000000 ____D C:\Program Files (x86)\CodeMeter
  361.  
  362. ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
  363.  
  364. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  365.  
  366. 2018-06-25 19:16 - 2016-11-18 23:27 - 000000000 ____D C:\Users\admin\AppData\LocalLow\Mozilla
  367. 2018-06-25 19:12 - 2014-04-03 21:43 - 000000000 ____D C:\Program Files (x86)\Google
  368. 2018-06-25 19:09 - 2016-01-08 00:12 - 000000000 ____D C:\Users\admin\AppData\Local\CrashDumps
  369. 2018-06-25 19:07 - 2009-07-14 06:45 - 000029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
  370. 2018-06-25 19:07 - 2009-07-14 06:45 - 000029120 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
  371. 2018-06-25 19:00 - 2013-09-17 11:02 - 000000000 ____D C:\ProgramData\NVIDIA
  372. 2018-06-25 19:00 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
  373. 2018-06-22 18:23 - 2014-02-06 21:20 - 000000000 ____D C:\Users\admin\AppData\Local\ElevatedDiagnostics
  374. 2018-06-20 00:49 - 2016-10-05 19:29 - 000000456 _____ C:\Windows\Tasks\UCBrowserUpdater.job
  375. 2018-06-20 00:01 - 2015-03-09 22:58 - 000000000 ____D C:\ProgramData\Malwarebytes
  376. 2018-06-19 23:59 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf
  377. 2018-06-19 23:37 - 2015-05-19 23:36 - 000000000 ____D C:\ProgramData\AVAST Software
  378. 2018-06-19 23:17 - 2017-01-25 22:03 - 000000000 ____D C:\Users\admin\AppData\Roaming\Spotify
  379. 2018-06-19 22:08 - 2017-08-25 19:14 - 000000000 ____D C:\Program Files\VueScan
  380. 2018-06-19 21:19 - 2013-09-17 10:46 - 000000000 ____D C:\Program Files\Intel
  381. 2018-06-19 21:19 - 2013-09-17 10:46 - 000000000 ____D C:\Program Files (x86)\Intel
  382. 2018-06-19 20:31 - 2017-01-25 22:03 - 000000000 ____D C:\Users\admin\AppData\Local\Spotify
  383. 2018-06-19 20:31 - 2013-09-17 11:16 - 000000000 ____D C:\Users\admin\AppData\Local\Adobe
  384. 2018-06-16 16:36 - 2018-03-14 19:25 - 000004574 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
  385. 2018-06-16 16:36 - 2018-01-31 10:41 - 000003470 _____ C:\Windows\System32\Tasks\AdobeGCInvoker-1.0-admin-Komputer-admin
  386. 2018-06-16 16:36 - 2016-10-05 19:29 - 000003462 _____ C:\Windows\System32\Tasks\UCBrowserUpdater
  387. 2018-06-16 16:36 - 2016-04-19 11:22 - 000003160 _____ C:\Windows\System32\Tasks\SidebarExecute
  388. 2018-06-16 16:36 - 2015-12-07 16:57 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
  389. 2018-06-16 16:36 - 2015-10-28 17:37 - 000003514 _____ C:\Windows\System32\Tasks\AdobeAAMUpdater-1.0-admin-Komputer-admin
  390. 2018-06-16 16:36 - 2015-01-04 19:51 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
  391. 2018-06-16 16:36 - 2013-11-09 18:59 - 000002772 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
  392. 2018-06-16 16:36 - 2013-09-17 15:22 - 000004412 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
  393. 2018-06-16 16:36 - 2013-09-17 12:27 - 000003482 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
  394. 2018-06-16 16:36 - 2013-09-17 12:27 - 000003354 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
  395. 2018-06-16 16:36 - 2013-09-17 12:25 - 000003548 _____ C:\Windows\System32\Tasks\CreateChoiceProcessTask
  396. 2018-06-15 23:09 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\Resources
  397. 2018-06-14 23:29 - 2013-09-17 10:39 - 000000000 ____D C:\Users\admin\AppData\Local\VirtualStore
  398. 2018-06-14 18:22 - 2016-06-01 07:12 - 000000000 ____D C:\Program Files\Common Files\McAfee
  399. 2018-06-14 00:03 - 2017-01-10 22:13 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
  400. 2018-06-13 23:54 - 2013-10-02 22:17 - 000000000 ____D C:\ProgramData\McAfee
  401. 2018-06-13 23:49 - 2013-09-17 10:46 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
  402. 2018-06-13 23:46 - 2017-01-25 22:03 - 000001998 _____ C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk
  403. 2018-06-13 23:37 - 2017-08-25 18:08 - 000000000 ____D C:\Users\admin\AppData\Roaming\HpUpdate
  404. 2018-06-13 23:37 - 2016-01-06 00:55 - 000000000 ____D C:\Users\admin\AppData\Roaming\MPC-HC
  405. 2018-06-13 23:37 - 2015-05-26 11:28 - 000000000 ____D C:\Users\admin\AppData\Roaming\Skype
  406. 2018-06-13 23:37 - 2013-09-17 17:27 - 000000000 ____D C:\Windows\Panther
  407. 2018-06-13 23:35 - 2016-02-01 19:40 - 000000000 ____D C:\Users\admin\AppData\Local\Avid
  408. 2018-06-13 23:35 - 2015-11-30 00:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Haali Media Splitter
  409. 2018-06-13 23:35 - 2015-05-04 23:17 - 000000000 ____D C:\Users\admin\AppData\Local\Pinnacle
  410. 2018-06-13 23:35 - 2015-03-25 14:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.4
  411. 2018-06-13 23:35 - 2015-01-04 19:57 - 000000000 ____D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
  412. 2018-06-13 23:35 - 2013-10-08 15:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GRAPHISOFT
  413. 2018-06-13 23:35 - 2013-09-17 11:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLMediaServer
  414. 2018-06-13 23:35 - 2009-07-14 07:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
  415. 2018-06-13 23:28 - 2016-10-13 19:54 - 000000000 ____D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
  416. 2018-06-13 23:28 - 2016-10-13 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
  417. 2018-06-13 23:28 - 2013-11-09 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
  418. 2018-06-13 23:17 - 2013-11-09 18:59 - 000000000 ____D C:\Program Files\CCleaner
  419. 2018-06-13 22:59 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF
  420. 2018-06-13 22:51 - 2014-10-13 14:43 - 000000000 ____D C:\Users\admin\AppData\Roaming\Autodesk
  421. 2018-06-13 22:51 - 2014-10-13 14:43 - 000000000 ____D C:\ProgramData\Autodesk
  422. 2018-06-13 20:51 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\LiveKernelReports
  423. 2018-06-13 19:52 - 2013-09-17 10:39 - 000000000 ____D C:\Users\admin
  424. 2018-06-13 19:44 - 2013-09-17 10:46 - 000000000 ____D C:\ProgramData\Intel
  425. 2018-06-13 19:44 - 2009-07-14 05:20 - 000000000 ___HD C:\Windows\system32\GroupPolicy
  426. 2018-06-12 23:24 - 2018-03-18 17:41 - 000000000 ____D C:\Users\admin\AppData\Roaming\Abvent_Artlantis6
  427. 2018-06-12 17:44 - 2013-10-08 15:23 - 000000000 ____D C:\Users\admin\AppData\Roaming\Abvent_Artlantis5
  428. 2018-06-12 15:58 - 2017-01-08 14:19 - 000000000 ____D C:\Users\admin\AppData\Roaming\Trimble Navigation Limited
  429. 2018-06-12 15:58 - 2017-01-08 14:19 - 000000000 ____D C:\Program Files\SketchUp
  430. 2018-06-11 21:25 - 2017-05-04 19:15 - 000000000 ____D C:\Users\admin\AppData\Roaming\JAM Software
  431. 2018-06-11 20:25 - 2013-09-17 15:22 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
  432. 2018-06-11 20:25 - 2013-09-17 15:22 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
  433. 2018-06-11 20:25 - 2013-09-17 15:22 - 000000000 ____D C:\Windows\SysWOW64\Macromed
  434. 2018-06-11 20:25 - 2013-09-17 15:22 - 000000000 ____D C:\Windows\system32\Macromed
  435. 2018-06-07 18:05 - 2009-07-14 07:08 - 000032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT
  436. 2018-06-03 16:25 - 2015-03-10 15:54 - 000000000 ____D C:\Users\admin\AppData\Roaming\MAXON
  437. 2018-06-03 16:25 - 2013-10-14 13:24 - 000000000 ____D C:\Users\admin\Graphisoft
  438. 2018-06-03 16:19 - 2013-10-14 13:24 - 000000000 ____D C:\Users\admin\AppData\Roaming\Graphisoft
  439. 2018-06-03 16:16 - 2013-10-08 15:20 - 000000000 ____D C:\Program Files\GRAPHISOFT
  440. 2018-06-03 16:16 - 2013-10-08 15:19 - 000025988 _____ C:\Windows\vpd.properties
  441. 2018-06-03 16:16 - 2013-10-08 15:14 - 000000000 ____D C:\Users\admin\AppData\Roaming\Install.GS
  442. 2018-06-01 14:32 - 2017-09-03 18:04 - 000021081 _____ C:\Users\admin\Desktop\Marzanny oplaty 01.2018.xlsx
  443.  
  444. ==================== Pliki w katalogu głównym wybranych folderów =======
  445.  
  446. 2015-10-06 12:32 - 2015-05-25 13:54 - 000003584 _____ () C:\Users\admin\Kn0ck0ut.64.dll
  447. 1601-01-03 21:33 - 1601-01-03 21:33 - 000073216 ____N (Microsoft Corporation) C:\Program Files (x86)\EEGaUi.exe
  448. 2018-06-25 19:11 - 2018-06-25 19:11 - 007649280 _____ () C:\Program Files (x86)\GUT7F2E.tmp
  449. 1601-01-03 21:33 - 1601-01-03 21:33 - 000073216 ____N (Microsoft Corporation) C:\Program Files (x86)\Common Files\oYcrNERiYiuM.exe
  450. 2017-01-01 16:42 - 2017-01-01 16:45 - 000000038 _____ () C:\Users\admin\AppData\Roaming\.pedal.version
  451. 2017-01-01 16:34 - 2017-01-01 16:34 - 000000033 _____ () C:\Users\admin\AppData\Roaming\.pgbiaspedal
  452. 2015-05-04 23:17 - 2016-02-01 19:40 - 000001926 _____ () C:\Users\admin\AppData\Roaming\ADMIN-KOMPUTER.MTBF.txt
  453. 2016-10-05 19:26 - 2016-10-05 19:25 - 000693760 _____ () C:\Users\admin\AppData\Roaming\Alpha-Ron.exe
  454. 2016-10-05 19:26 - 2016-10-05 19:26 - 001926611 _____ () C:\Users\admin\AppData\Roaming\Alpha-Ron.tst
  455. 2016-10-05 19:25 - 2016-10-05 19:25 - 000937776 _____ (AutoIt Team) C:\Users\admin\AppData\Roaming\hKXF.exe
  456. 2016-10-05 19:25 - 2016-10-05 19:25 - 000961349 _____ () C:\Users\admin\AppData\Roaming\hKXFC.au3
  457. 2015-01-12 19:23 - 2016-05-03 21:05 - 000000132 _____ () C:\Users\admin\AppData\Roaming\Preferencje formatu GIF CS6 firmy Adobe
  458. 2015-03-29 20:55 - 2016-06-15 11:58 - 000000132 _____ () C:\Users\admin\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe
  459. 2016-10-05 19:26 - 2016-10-05 19:26 - 000190394 _____ () C:\Users\admin\AppData\Roaming\Tiptam.bin
  460. 2016-10-05 19:26 - 2016-10-05 19:26 - 000032038 _____ () C:\Users\admin\AppData\Roaming\uninstall_temp.ico
  461. 2013-12-19 10:42 - 2015-03-09 01:20 - 000000157 _____ () C:\Users\admin\AppData\Roaming\WB.CFG
  462. 2016-10-05 19:26 - 2016-10-05 19:26 - 001897576 _____ () C:\Users\admin\AppData\Roaming\Zonex.bin
  463. 2015-06-11 00:25 - 2015-06-11 00:25 - 000000001 _____ () C:\Users\admin\AppData\Local\llftool.4.40.agreement
  464. 2015-11-26 16:43 - 2015-11-22 23:42 - 001020214 _____ (Program ) C:\Users\admin\AppData\Local\mp4tomov_setup.exe
  465. 2017-01-19 22:29 - 2017-01-19 22:29 - 000007605 _____ () C:\Users\admin\AppData\Local\Resmon.ResmonCfg
  466. 2018-06-13 19:44 - 2018-06-13 19:44 - 000000003 _____ () C:\Users\admin\AppData\Local\wbem.ini
  467.  
  468. ==================== Bamital & volsnap ======================
  469.  
  470. (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
  471.  
  472. C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
  473. C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
  474. C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo
  475. C:\Windows\explorer.exe => Plik podpisany cyfrowo
  476. C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
  477. C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
  478. C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
  479. C:\Windows\system32\services.exe => Plik podpisany cyfrowo
  480. C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
  481. C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
  482. C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
  483. C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
  484. C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
  485. C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
  486. C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
  487. C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
  488.  
  489. LastRegBack: 2018-06-18 18:54
  490.  
  491. ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement