Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-12-2022
- Uruchomiony przez Przemek (administrator) PRZEMEK (Micro-Star International Co., Ltd. GL75 9SD) (15-12-2022 18:59:36)
- Uruchomiony z C:\Users\Przemek\Desktop\skany
- Załadowane profile: Przemek
- Platform: Microsoft Windows 11 Home Wersja 22H2 22621.963 (X64) Język: Polski (Polska)
- Domyślna przeglądarka: Chrome
- Tryb startu: Normal
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (A-Volute SAS -> A-Volute) C:\Users\Przemek\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
- (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
- (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
- (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_422.33900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\108.0.1462.46\msedgewebview2.exe <6>
- (DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxCUIService.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxEM.exe
- (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <22>
- (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
- (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\MSI\Dragon Center\Dragon Center.exe
- (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- (services.exe ->) (Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\11.0.0.4854\AdskLicensingService\AdskLicensingService.exe
- (services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
- (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
- (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
- (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
- (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
- (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
- (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9de8154b682af864\igfxCUIService.exe
- (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_de2b4d3f134dce87\IntelCpHDCPSvc.exe
- (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_de2b4d3f134dce87\IntelCpHeciSvc.exe
- (services.exe ->) (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe
- (services.exe ->) (Micro-Star International Co., Ltd.) [Brak podpisu cyfrowego] C:\Windows\SysWOW64\MSIService.exe
- (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
- (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmii.inf_amd64_31b6b410a25ec0b8\Display.NvContainer\NVDisplay.Container.exe <2>
- (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_4c10eeff886a3252\RtkAudUService64.exe
- (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonVPN\rsVPNClientSvc.exe
- (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonVPN\rsVPNSvc.exe
- (svchost.exe ->) (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_12207.44.6.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.214.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_422.33900.0.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-01-29] (Intel(R) Rapid Storage Technology -> Intel Corporation)
- HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [4376152 2017-11-29] (Synaptics Incorporated -> Synaptics Incorporated)
- HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2109064 2019-11-27] (Logitech Inc -> Logitech, Inc.)
- HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_4c10eeff886a3252\RtkAudUService64.exe [1591688 2022-09-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
- HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2626448 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4245352 2022-12-01] (Valve Corp. -> Valve Corporation)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3149608 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [67384 2020-09-08] (Apple Inc. -> Apple Inc.)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [ApplePhotoStreams] => C:\Program Files (x86)\Common Files\Apple\Internet Services\ApplePhotoStreams.exe [67896 2020-09-08] (Apple Inc. -> Apple Inc.)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [iCloudDrive] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudDrive.exe [110392 2020-09-08] (Apple Inc. -> Apple Inc.)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [iCloudPhotos] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudPhotos.exe [356664 2020-09-08] (Apple Inc. -> Apple Inc.)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32674256 2022-06-30] (Epic Games Inc. -> Epic Games, Inc.)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [uTorrent] => "C:\Users\Przemek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED (Brak pliku)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [ut] => "C:\Users\Przemek\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED (Brak pliku)
- HKU\S-1-5-21-2970018744-2904546846-411606314-1003\...\Run: [MicrosoftEdgeAutoLaunch_D4540563087EDD8D8834D17886016F5B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3877280 2022-12-08] (Microsoft Corporation -> Microsoft Corporation)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\108.0.5359.100\Installer\chrmstp.exe [2022-12-15] (Google LLC -> Google LLC)
- HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc
- Task: {09CB7765-38A4-4CC0-835C-554184EF300C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => D:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- Task: {0EA263D6-EB8D-49BC-BF86-170E2A964A06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {119C7C66-EE5D-426C-8E8F-DB1DB451EFE0} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- Task: {158F8F4D-75E3-4D3F-A101-8FB9619298AA} - System32\Tasks\Dragon_Center_updater => C:\ProgramData\MSI\Dragon [Argument = Center\DragonCenter_Updater.exe DragonCenter]
- Task: {1765F502-DF29-463B-85C5-794C171181E3} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => C:\WINDOWS\system32\MusNotification.exe LogonUpdateResults (Brak pliku)
- Task: {2A5BFB28-4C00-4264-B5DC-BDC06EA5C533} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => C:\WINDOWS\system32\MusNotification.exe ReadyToReboot (Brak pliku)
- Task: {38084303-072D-46CC-B371-53926F8F4AE0} - System32\Tasks\MSI_Dragon Center => C:\Program Files (x86)\MSI\Dragon Center\Dragon Center.exe [5623576 2018-02-26] (Micro-Star International CO., LTD. -> Micro-Star International Co., Ltd.) [Brak podpisu cyfrowego]
- Task: {40A5D8A3-5302-4F0F-95B7-6C687D976E12} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {43DF306F-7B03-44B6-850A-781A33F5B381} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {44AA79AD-C26D-48E9-9AEB-FBE3AF338194} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {4C8FC52A-C49F-401D-AC29-006ACBF33AE2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {4D04C150-63A0-479F-A5CD-A6AB42C7A1C1} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [833704 2021-10-08] (A-Volute SAS -> Nahimic)
- Task: {50F9D6CE-3E03-47CC-8F06-9D5EEFC1B415} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-12-13] (Google Inc -> Google LLC)
- Task: {51EDA840-6C2C-43FD-8B67-3B59BC6D90F3} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {5916A217-9242-4657-A2C7-1F56AAE3F76C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155432 2019-12-13] (Google Inc -> Google LLC)
- Task: {5B0A4574-9339-43D1-A946-BB0E23C07EBE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {671A2862-ADFA-4FD8-945B-514FB5183F90} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1655864 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {7E0C565D-54EF-48E0-AB41-13A24B248E58} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => D:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- Task: {8B042DF6-7A2A-40C7-9368-2C8017A30D0C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-08-30] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
- Task: {8FCF1811-C84E-4A40-AF23-75DD620E9005} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908856 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {9690B247-D412-40BC-8CBB-CCF2211BE80A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => C:\WINDOWS\system32\MusNotification.exe /RunOnBattery ReadyToReboot (Brak pliku)
- Task: {99125284-1584-4CE0-8E1C-27AB73247F2A} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2022-10-17] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {A6B3EA7F-1180-4D5A-AF82-71BF422B366B} - System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI => C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [94208 2022-11-08] (Microsoft Windows -> )
- Task: {B1B680E7-D933-4D1D-A971-BF16E3FA5EEE} - System32\Tasks\Apple Diagnostics => C:\Program Files (x86)\Common Files\Apple\Internet Services\EReporter.exe [67896 2020-09-08] (Apple Inc. -> Apple Inc.)
- Task: {B840169F-EADB-44C9-A8C3-5E87B2EFF10F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2022-10-13] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {C3D930B8-12D0-496F-AED8-CAEE991ABC34} - System32\Tasks\S-1-5-21-2970018744-2904546846-411606314-1003\DataSenseLiveTileTask => C:\WINDOWS\System32\DataUsageLiveTileTask.exe (Brak pliku)
- Task: {CA00C0C1-4D3F-479E-93E8-3BC54E4A5035} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_UpdateInterval => C:\WINDOWS\system32\MusNotification.exe Display (Brak pliku)
- Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Brak pliku)
- Task: {CF8DC307-E2DC-4924-A4A4-90CC33DFCDA9} - System32\Tasks\NahimicSvc64Run => C:\Windows\System32\NahimicSvc64.exe [1094824 2021-10-08] (A-Volute SAS -> Nahimic)
- Task: {D14CBBE3-5F88-4A7A-946F-7CD072EF825A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MpCmdRun.exe [1592184 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {DAA047BA-68B2-4C89-B523-B1C9A88A720B} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
- Task: {DBEB457C-BE16-4DCB-965A-5BC5B84AC098} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189072 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
- Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (Brak pliku)
- Task: {E9DB74CF-51FF-427D-B5EF-626E799A9E6A} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NoUACCheck
- Task: {EE6EA023-560F-4728-948E-E4C53CED049C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2970018744-2904546846-411606314-1003 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189072 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
- Task: {F5330406-815D-4ACA-ABDF-F531889888FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => C:\WINDOWS\system32\MusNotification.exe /RunOnAC ReadyToReboot (Brak pliku)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{631c94e2-50ec-48fa-ba1e-e4423b7ec7cd}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{9dc3789e-44e2-4b90-9236-d36d59fe01c7}: [DhcpNameServer] 192.168.0.1
- Edge:
- =======
- Edge HomeButtonPage: HKU\S-1-5-21-2970018744-2904546846-411606314-1003 -> hxxps://nl.search.yahoo.com/yhs/web?hspart=omr&hsimp=yhs-001&type=87fjnhltxzm001420¶m1=y6bdVFVIsvuYsgEClQfz8NEPSp4FWG51g5cOG5gIsG4iDiizWxgZJradb3yL1kGjB1BZ8riDGYBLgvhLEsQJoDDmnsmpMbw2sVvBoFwR35QHOeAgMmQsRR5q%2FIntRxFZ2MetNQv1uBXSQEy50q2To%2FDfGAlbUBQRBuf%2F%2BrlzLbFYZu0sTBUdhR2mcBJhBr3ie%2FBB6IQvUvdcLEuIfrn7hHirNNxX7kvc%2BRDNKdJfAXdj3FVVAClPjr6CKJ7sESjn8fUwhZGbMrjpKnuR4mySZU5VZp%2FKNnzsU38vGcBYatEIbVsuQgPMZ8hUnAsWcQ2Jn6YzOgVJXl%2FF%2FU6%2FrNI12eLi3XZC3WDwzas0B8RpTUapN19Gs5hn5%2B95RPhx9r%2FjbMALjOMEFFL3IMnvwDzhkA%3D%3D
- Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono]
- Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono]
- Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono]
- Edge Extension: (Tłumacz dla Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.51.0_neutral__8wekyb3d8bbwe [nie znaleziono]
- Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono]
- Edge DefaultProfile: Default
- Edge Profile: C:\Users\Przemek\AppData\Local\Microsoft\Edge\User Data\Default [2022-12-15]
- Edge HomePage: Default -> hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP
- Edge DefaultSearchURL: Default -> hxxps://manageyoursearch.com/?q={searchTerms}
- Edge DefaultSuggestURL: Default -> hxxps://manageyoursearch.com/suggest?q={searchTerms}
- Edge Extension: (Search Manager) - C:\Users\Przemek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\meckckfjnfnimlomkemnhcoonjfpbcoh [2020-05-11]
- Edge HKLM\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh]
- Edge HKU\S-1-5-21-2970018744-2904546846-411606314-1003\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh]
- Edge HKLM-x32\...\Edge\Extension: [meckckfjnfnimlomkemnhcoonjfpbcoh]
- FireFox:
- ========
- FF DefaultProfile: thtfpicm.default
- FF ProfilePath: C:\Users\Przemek\AppData\Roaming\Mozilla\Firefox\Profiles\thtfpicm.default [2021-01-17]
- FF ProfilePath: C:\Users\Przemek\AppData\Roaming\Mozilla\Firefox\Profiles\ms8ktw6f.default-release [2022-12-15]
- FF Plugin: @microsoft.com/SharePoint,version=14.0 -> D:\Program Files\Microsoft Office\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-17] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
- FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\local-settings.js [2016-04-04] <==== UWAGA (Linkuje do pliku *.cfg)
- FF ExtraCheck: C:\Program Files\mozilla firefox\mozilla.cfg [2019-08-27] <==== UWAGA
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR Profile: C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default [2022-12-15]
- CHR Notifications: Default -> hxxps://diag.pl; hxxps://m.betfan.pl; hxxps://mail.google.com; hxxps://meet.google.com; hxxps://orangepl.api.useinsider.com; hxxps://pl.pinterest.com; hxxps://poczta.onet.pl; hxxps://sportowefakty.wp.pl; hxxps://wp.aliexpress.com; hxxps://www-sport-pl.pushpushgo.com; hxxps://www.facebook.com; hxxps://www.hitpraca.pl; hxxps://www.instagram.com; hxxps://www.netflix.com; hxxps://www.otomoto.pl; hxxps://www.pracuj.pl; hxxps://www.pyszne.pl; hxxps://www.totalcasino.pl; hxxps://www.youtube.com
- CHR HomePage: Default -> hxxps://www.google.pl/
- CHR StartupUrls: Default -> "hxxps://www.google.pl/"
- CHR Session Restore: Default -> [funkcja włączona]
- CHR Extension: (uBlock Origin) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-11-21]
- CHR Extension: (alerabat.com | kupony i cashback) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2022-12-15]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-12-01]
- CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-12-01]
- CHR Extension: (GRID Theme) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilmnnpbmlgkjknbdckljelpbapnimdnp [2021-05-28]
- CHR Extension: (Przeglądarka XML) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\legopflakafagikcpiapgnbokgkbejlk [2022-05-22]
- CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2022-12-15]
- CHR Extension: (PowerPoint Online) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdafamggmaaaginooondinjgkgcbpnhp [2020-07-31]
- CHR Extension: (Coupert - Automatic Coupon Finder & Cashback) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidniedemcgceagapgdekdbmanojomk [2022-12-15]
- CHR Extension: (SponsorBlock na YouTube - Pomiń fragmenty sponsorowane) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2022-11-25]
- CHR Extension: (Microsoft 365) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2022-11-11]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
- CHR Profile: C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-09-06]
- CHR Profile: C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-08-14]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-14]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Przemek\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-08-14]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [18673448 2020-11-17] (Autodesk, Inc. -> Autodesk)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-04-07] (BattlEye Innovations e.K. -> )
- S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [57416040 2022-11-08] (Electronic Arts, Inc. -> )
- S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [9981544 2022-12-15] (Electronic Arts, Inc. -> Electronic Arts)
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-04-07] (EasyAntiCheat Oy -> Epic Games, Inc)
- S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.238.1114.0002\FileSyncHelper.exe [3478928 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
- R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2022-12-04] (HP Inc. -> HP Inc.)
- R3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2022-10-12] (Microsoft Windows -> Microsoft Corporation)
- R2 Micro Star SCM; C:\WINDOWS\SysWOW64\MSIService.exe [160768 2009-07-09] (Micro-Star International Co., Ltd.) [Brak podpisu cyfrowego]
- R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1888424 2021-10-08] (A-Volute SAS -> Nahimic)
- S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.238.1114.0002\OneDriveUpdaterService.exe [3845008 2022-12-15] (Microsoft Corporation -> Microsoft Corporation)
- S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2579264 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
- R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497800 2022-11-09] (Electronic Arts, Inc. -> Electronic Arts)
- S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2720088 2022-11-06] (Rockstar Games, Inc. -> Rockstar Games)
- R2 rsVPNClientSvc; C:\Program Files\ReasonVPN\rsVPNClientSvc.exe [735640 2022-05-23] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
- R2 rsVPNSvc; C:\Program Files\ReasonVPN\rsVPNSvc.exe [290832 2022-05-23] (Reason Cybersecurity Inc. -> Reason Software Company Inc.)
- R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2022-10-12] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\NisSrv.exe [3191264 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2211.5-0\MsMpEng.exe [133592 2022-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- S4 WinZip Smart Monitor Service; C:\Program Files\WinZip Smart Monitor\WinZip Smart Monitor Service.exe [1463592 2020-07-09] (Corel Corporation -> Corel Corporation) [Brak podpisu cyfrowego]
- S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.3.225\WsAppService.exe [473824 2017-05-05] (Wondershare Technology Co.,Ltd -> Wondershare)
- R3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137552 2022-12-15] (Microsoft Windows -> Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_31b6b410a25ec0b8\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmii.inf_amd64_31b6b410a25ec0b8\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
- S4 ZoomCptService; "C:\Program Files (x86)\Common Files\Zoom\Support\CptService.exe" -user_path "C:\Users\Przemek\AppData\Roaming\Zoom"
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
- S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin2\brynhildr.sys [2188544 2022-08-11] (Activision Publishing Inc -> Activision Blizzard, Inc.)
- R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2022-10-12] (Microsoft Windows -> Microsoft Corporation)
- S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
- R3 MpKsl6445648d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{99678D26-A811-479B-A035-335412BAD55D}\MpKslDrv.sys [214280 2022-12-15] (Microsoft Windows -> Microsoft Corporation)
- R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [94784 2022-06-03] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
- S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
- R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
- S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.)
- R1 ReasonCamFilter; C:\WINDOWS\System32\DRIVERS\ReasonCamFilter.sys [49992 2022-05-23] (Reason CyberSecurity Inc. -> Reason Software Company)
- S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> )
- R3 rtcx21; C:\WINDOWS\System32\DriverStore\FileRepository\rtcx21x64.inf_amd64_516e5c9b75c49dc2\rtcx21x64.sys [539648 2022-05-06] (Microsoft Windows -> Realtek)
- R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
- S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49568 2022-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473376 2022-12-02] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99616 2022-12-02] (Microsoft Windows -> Microsoft Corporation)
- R3 WINIO; C:\Program Files (x86)\MSI\Dragon Center\winio64.sys [15160 2015-06-11] (Micro-Star Int'l Co. Ltd. -> )
- R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2022-12-15] (Microsoft Windows -> Microsoft Corporation)
- S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X]
- S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-12-15 18:58 - 2022-12-15 18:59 - 000000000 ____D C:\FRST
- 2022-12-15 18:57 - 2022-12-15 18:59 - 000000000 ____D C:\Users\Przemek\Desktop\skany
- 2022-12-15 18:48 - 2022-12-15 18:48 - 000799498 _____ C:\WINDOWS\system32\perfh015.dat
- 2022-12-15 18:48 - 2022-12-15 18:48 - 000158512 _____ C:\WINDOWS\system32\perfc015.dat
- 2022-12-15 18:44 - 2022-12-15 18:44 - 000000000 ___RD C:\Users\Przemek\Documents\Microsoft.SecHealthUI_8wekyb3d8bbwe!SecHealthUI
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000001945 _____ C:\ProgramData\Microsoft\Windows\Start Menu\SumatraPDF.lnk
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000001939 _____ C:\Users\Public\Desktop\SumatraPDF.lnk
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000000000 ____D C:\Users\Przemek\AppData\Local\SumatraPDF
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000000000 ____D C:\Program Files\SumatraPDF
- 2022-12-15 18:39 - 2022-12-15 18:39 - 000000000 ____D C:\Program Files\7-Zip
- 2022-12-15 18:34 - 2022-12-15 18:34 - 000000000 ____D C:\WINDOWS\Panther
- 2022-12-15 18:22 - 2022-12-15 18:22 - 000000000 ____D C:\Program Files\Google
- 2022-12-15 17:41 - 2022-12-15 17:41 - 000016533 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
- 2022-12-15 17:40 - 2022-12-15 17:40 - 000062816 _____ C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
- 2022-12-15 17:38 - 2022-12-15 17:38 - 000000000 ___HD C:\$WinREAgent
- 2022-12-09 17:17 - 2022-12-06 21:49 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
- 2022-12-09 17:17 - 2022-12-06 21:49 - 002236992 _____ C:\WINDOWS\system32\vulkaninfo.exe
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001642568 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001642568 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001487352 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001444424 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001444424 _____ C:\WINDOWS\system32\vulkan-1.dll
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001226744 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
- 2022-12-09 17:17 - 2022-12-06 21:49 - 001168960 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
- 2022-12-09 17:17 - 2022-12-06 21:44 - 000851448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
- 2022-12-09 17:17 - 2022-12-06 21:44 - 000672760 _____ C:\WINDOWS\system32\nvofapi64.dll
- 2022-12-09 17:17 - 2022-12-06 21:44 - 000507408 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 002163712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 001619432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 001532456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 001191912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 000949784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2022-12-09 17:17 - 2022-12-06 21:43 - 000738344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
- 2022-12-09 17:17 - 2022-12-06 21:43 - 000734720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 012453400 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 010220584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 005891072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 005857328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 003334656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2022-12-09 17:17 - 2022-12-06 21:42 - 000458280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
- 2022-12-09 17:17 - 2022-12-06 21:41 - 005817880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
- 2022-12-09 17:17 - 2022-12-06 21:41 - 000852984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
- 2022-12-09 17:17 - 2022-12-06 21:39 - 006514432 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2022-12-09 17:17 - 2022-12-06 05:54 - 000100741 _____ C:\WINDOWS\system32\nvinfo.pb
- 2022-12-09 16:56 - 2022-12-09 16:56 - 000000000 ____D C:\Users\Przemek\AppData\Local\Link2EA
- 2022-12-09 15:21 - 2022-12-09 15:21 - 000000223 _____ C:\Users\Przemek\Desktop\EA SPORTS™ FIFA 23.url
- 2022-12-09 14:49 - 2022-12-09 14:49 - 001819348 _____ C:\Users\Przemek\Desktop\9.12.2022.pdf
- 2022-12-08 12:23 - 2022-12-08 12:23 - 003305997 _____ C:\Users\Przemek\Desktop\8.12.2022.pdf
- 2022-12-07 21:53 - 2022-12-07 21:53 - 002654600 _____ C:\Users\Przemek\Desktop\7.12.2022 analizy.pdf
- 2022-12-06 17:15 - 2022-12-06 17:15 - 000054793 _____ C:\Users\Przemek\Downloads\CV_Przemysław_Bejmert 2022.12.pdf
- 2022-12-06 14:48 - 2022-12-06 14:48 - 002993913 _____ C:\Users\Przemek\Desktop\analizy mkp.pdf
- 2022-12-01 13:36 - 2022-12-01 13:36 - 000001491 _____ C:\Users\Public\Desktop\Klient Riot.lnk
- 2022-11-30 02:11 - 2022-11-30 02:26 - 000001681 _____ C:\Users\Public\Desktop\League of Legends.lnk
- 2022-11-25 05:22 - 2022-11-25 05:22 - 003148729 _____ C:\Users\Przemek\Desktop\Czarny łabędź - Taleb.pdf
- 2022-11-25 04:53 - 2022-11-25 04:53 - 002458576 _____ C:\Users\Przemek\Desktop\Ojciec chrzestny ( PDFDrive ).pdf
- 2022-11-25 00:37 - 2022-11-25 00:37 - 000000000 ____D C:\Users\Przemek\AppData\Local\TekkenGame
- 2022-11-24 21:34 - 2022-11-24 21:34 - 000000222 _____ C:\Users\Przemek\Desktop\TEKKEN 7.url
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-12-15 18:58 - 2022-05-23 12:22 - 000000000 ____D C:\ProgramData\ReasonVPNService
- 2022-12-15 18:57 - 2019-12-13 09:25 - 000000000 ____D C:\Program Files (x86)\Google
- 2022-12-15 18:54 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp
- 2022-12-15 18:54 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2022-12-15 18:54 - 2019-12-13 09:25 - 000000000 ____D C:\ProgramData\NVIDIA
- 2022-12-15 18:53 - 2022-10-07 23:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2022-12-15 18:53 - 2022-05-07 06:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI
- 2022-12-15 18:53 - 2020-09-22 15:49 - 000012288 ___SH C:\DumpStack.log.tmp
- 2022-12-15 18:53 - 2019-12-29 14:49 - 000000000 __SHD C:\Users\Przemek\IntelGraphicsProfiles
- 2022-12-15 18:51 - 2021-01-23 12:31 - 000000000 ____D C:\Users\Przemek\AppData\Roaming\Apowersoft
- 2022-12-15 18:50 - 2019-12-29 15:23 - 000000000 ____D C:\Users\Przemek\AppData\Local\CrashDumps
- 2022-12-15 18:49 - 2022-05-21 21:38 - 000000000 ____D C:\Users\Przemek\Documents\Meblarz 3D
- 2022-12-15 18:48 - 2022-10-07 23:42 - 001799624 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2022-12-15 18:48 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF
- 2022-12-15 18:42 - 2019-12-29 14:51 - 000000000 ___RD C:\Users\Przemek\OneDrive
- 2022-12-15 18:41 - 2021-05-26 22:14 - 000000000 ____D C:\Users\Przemek\AppData\Local\Avast Software
- 2022-12-15 18:41 - 2020-04-01 16:50 - 000000000 ____D C:\ProgramData\Avast Software
- 2022-12-15 18:40 - 2022-05-07 06:17 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2022-12-15 18:38 - 2020-01-02 13:45 - 000000000 ____D C:\Users\Przemek\AppData\Local\D3DSCache
- 2022-12-15 18:36 - 2022-05-23 12:23 - 000000000 ____D C:\Users\Przemek\AppData\Roaming\ReasonVPN
- 2022-12-15 18:36 - 2020-01-02 18:05 - 000000000 ____D C:\ProgramData\Origin
- 2022-12-15 18:35 - 2020-01-02 18:05 - 000000000 ____D C:\Users\Przemek\AppData\Local\Origin
- 2022-12-15 18:35 - 2020-01-02 18:05 - 000000000 ____D C:\Program Files (x86)\Origin
- 2022-12-15 18:34 - 2021-06-20 19:52 - 000000000 ____D C:\Program Files\Microsoft OneDrive
- 2022-12-15 18:33 - 2020-04-01 16:52 - 000000000 ____D C:\ProgramData\WinZip
- 2022-12-15 18:32 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
- 2022-12-15 18:32 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2022-12-15 18:32 - 2019-12-29 14:49 - 000000000 ____D C:\Users\Przemek\AppData\Local\Packages
- 2022-12-15 18:30 - 2022-06-20 17:39 - 000000000 ____D C:\Users\Przemek\EasternGraphics
- 2022-12-15 18:27 - 2021-01-17 00:30 - 000000000 ____D C:\Users\Przemek\AppData\LocalLow\Mozilla
- 2022-12-15 18:27 - 2021-01-17 00:30 - 000000000 ____D C:\Program Files\Mozilla Firefox
- 2022-12-15 18:27 - 2019-12-13 09:25 - 000000000 ____D C:\ProgramData\Mozilla
- 2022-12-15 18:24 - 2019-03-22 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
- 2022-12-15 18:24 - 2019-03-22 12:13 - 000000000 ____D C:\Program Files (x86)\MSI
- 2022-12-15 18:24 - 2019-03-22 12:07 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003494 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003370 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{762B54CE-8DC3-47C6-AE28-7B358D16120B}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003274 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003270 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2970018744-2904546846-411606314-1003
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002942 _____ C:\WINDOWS\system32\Tasks\Dragon_Center_updater
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002642 _____ C:\WINDOWS\system32\Tasks\Apple Diagnostics
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002588 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc64Run
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc32Run
- 2022-12-15 18:23 - 2022-10-07 23:45 - 000002262 _____ C:\WINDOWS\system32\Tasks\MSI_Dragon Center
- 2022-12-15 18:08 - 2020-03-18 15:24 - 000002183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2022-12-15 18:03 - 2022-10-07 23:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2022-12-15 18:02 - 2022-10-07 23:36 - 000471576 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\UUS
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemApps
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ShellComponents
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\Provisioning
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2022-12-15 18:01 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\System
- 2022-12-15 18:00 - 2019-12-13 09:26 - 000002314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2022-12-15 18:00 - 2019-12-13 09:26 - 000002273 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2022-12-15 17:47 - 2020-03-15 10:36 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2022-12-15 17:47 - 2020-03-15 10:36 - 000002293 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
- 2022-12-15 17:45 - 2021-08-20 19:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
- 2022-12-15 17:43 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2022-12-15 17:40 - 2022-10-07 23:38 - 003212288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
- 2022-12-15 17:37 - 2019-03-22 11:10 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2022-12-15 17:36 - 2021-01-17 00:25 - 000000000 ____D C:\Users\Przemek\AppData\Local\Opera Software
- 2022-12-15 17:36 - 2021-01-17 00:24 - 000000000 ____D C:\Users\Przemek\AppData\Roaming\Opera Software
- 2022-12-15 17:34 - 2022-05-07 06:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
- 2022-12-15 17:34 - 2019-03-22 11:10 - 148633544 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2022-12-09 21:31 - 2019-12-29 15:39 - 000000000 ____D C:\Program Files (x86)\Steam
- 2022-12-09 17:20 - 2020-01-09 22:35 - 000000000 ____D C:\Users\Przemek\AppData\Local\NVIDIA
- 2022-12-09 16:58 - 2022-10-07 20:29 - 000000000 ____D C:\Users\Przemek\Documents\FIFA 23
- 2022-12-09 16:58 - 2022-10-07 18:19 - 000000000 ____D C:\Program Files\EA
- 2022-12-09 15:21 - 2019-12-29 15:52 - 000000000 ____D C:\Users\Przemek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2022-12-07 21:59 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
- 2022-12-06 21:39 - 2022-10-07 18:39 - 007645944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
- 2022-12-05 23:18 - 2021-02-23 21:45 - 000000000 ____D C:\ProgramData\Riot Games
- 2022-12-04 21:20 - 2020-11-01 05:29 - 000000000 ___RD C:\Users\Przemek\Desktop\PRIVATE
- 2022-12-04 20:03 - 2022-10-07 23:45 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
- 2022-12-04 20:03 - 2021-05-14 18:55 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
- 2022-12-02 13:09 - 2019-03-22 01:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
- 2022-12-01 13:36 - 2021-02-23 21:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games
- 2022-11-25 00:37 - 2020-05-15 11:45 - 000000000 ____D C:\Users\Przemek\AppData\Local\UnrealEngine
- 2022-11-16 21:51 - 2022-10-02 21:32 - 006328040 _____ C:\UkLog.dat
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2021-06-26 17:18 - 2018-11-15 12:36 - 003229424 _____ () C:\Users\Przemek\AppData\Roaming\KMSpico-setup.exe
- 2020-10-04 16:54 - 2020-10-04 16:54 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT6103.tmp
- 2020-08-27 21:38 - 2020-08-27 21:38 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT780.tmp
- 2020-08-18 11:19 - 2020-08-18 11:19 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT87D.tmp
- 2020-08-10 12:29 - 2020-08-10 12:29 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT8ED0.tmp
- 2021-02-13 11:35 - 2021-02-13 11:35 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT90DA.tmp
- 2021-01-05 16:14 - 2021-01-05 16:14 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BIT9272.tmp
- 2020-10-31 11:56 - 2020-10-31 11:56 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITBB42.tmp
- 2020-05-20 21:51 - 2020-05-20 21:51 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITBCA6.tmp
- 2020-05-20 21:51 - 2020-05-20 21:51 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITBCB6.tmp
- 2020-09-25 14:08 - 2020-09-25 14:08 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITC2A1.tmp
- 2020-08-26 20:16 - 2020-08-26 20:16 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITE9FD.tmp
- 2020-12-30 19:33 - 2020-12-30 19:33 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITF1A.tmp
- 2020-10-27 21:02 - 2020-10-27 21:02 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITF5D9.tmp
- 2020-04-27 03:33 - 2020-04-27 03:33 - 000000000 _____ () C:\Users\Przemek\AppData\Local\BITF7CA.tmp
- 2021-04-07 11:45 - 2021-11-01 14:41 - 000007597 _____ () C:\Users\Przemek\AppData\Local\Resmon.ResmonCfg
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- ==================== Koniec FRST.txt ========================
Add Comment
Please, Sign In to add comment