Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 07-10-2022 01
- Uruchomiony przez aandr (administrator) DESKTOP-SE3F40D (Micro-Star International Co., Ltd MS-7B86) (08-10-2022 04:16:52)
- Uruchomiony z C:\Users\aandr\Downloads
- Załadowane profile: aandr
- Platform: Microsoft Windows 11 Home Wersja 22H2 22621.608 (X64) Język: Polski (Polska)
- Domyślna przeglądarka: Chrome
- Tryb startu: Normal
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
- (A-Volute SAS -> A-Volute) C:\Windows\System32\NhNotifSys.exe
- (C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
- (C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.685.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\106.0.1370.37\msedgewebview2.exe <6>
- (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCopyAccelerator.exe
- (D:\Program Files (x86)\Origin\Origin.exe ->) (Electronic Arts, Inc. -> ) D:\Program Files (x86)\Origin\QtWebEngineProcess.exe <4>
- (D:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
- (DriverStore\FileRepository\u0347173.inf_amd64_278cfea1d12001d0\B346462\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0347173.inf_amd64_278cfea1d12001d0\B346462\atieclxx.exe
- (explorer.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Program Files (x86)\Origin\Origin.exe
- (explorer.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\64.0.4.0\crashpad_handler.exe <2>
- (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <27>
- (explorer.exe ->) (Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe <7>
- (explorer.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\steam.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
- (services.exe ->) (ABBYY Production LLC -> ABBYY Production LLC) C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe
- (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0347173.inf_amd64_278cfea1d12001d0\B346462\atiesrxx.exe
- (services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
- (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Program Files (x86)\Origin\OriginClientService.exe
- (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Program Files (x86)\Origin\OriginWebHelperService.exe
- (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe
- (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\System32\Sgrm\SgrmBroker.exe
- (services.exe ->) (Podatnik S.A. -> Podatnik S.A.) C:\Program Files (x86)\Podatnik.info\PIT pro 2021\pproupd.exe
- (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_8443b1c224b06d42\RtkAudUService64.exe <2>
- (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- (services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
- (svchost.exe ->) (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.9161.0_x64__8wekyb3d8bbwe\GameBar.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.822.9161.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
- (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22072.207.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
- (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (svchost.exe ->) (Microsoft Windows) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_421.20070.685.0_x64__cw5n1h2txyewy\Dashboard\Widgets.exe
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_8443b1c224b06d42\RtkAudUService64.exe [1256824 2021-06-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM-x32\...\Run: [WidgetPodatnikInfo] => C:\Program Files (x86)\Podatnik.info\PIT pro 2021\Widget.exe [269056 2022-04-08] (Podatnik S.A. -> Podatnik S.A.)
- HKLM-x32\...\Run: [TeamsMachineInstaller] => C:\Program Files (x86)\Teams Installer\Teams.exe [126403424 2022-03-21] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [50312608 2022-05-07] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-1917826487-3454705426-1309254147-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\64.0.4.0\GoogleDriveFS.exe [53005592 2022-09-28] (Google LLC -> Google, Inc.)
- HKU\S-1-5-21-1917826487-3454705426-1309254147-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [4234088 2022-10-07] (Valve Corp. -> Valve Corporation)
- HKU\S-1-5-21-1917826487-3454705426-1309254147-1001\...\Run: [FACEIT] => C:\Users\aandr\AppData\Local\FACEIT\update.exe [2278576 2022-07-30] (FACE IT LIMITED -> )
- HKU\S-1-5-21-1917826487-3454705426-1309254147-1001\...\Run: [MicrosoftEdgeAutoLaunch_0161A854AD8EBB4DB3F7D07CA14F66CD] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3852192 2022-10-03] (Microsoft Corporation -> Microsoft Corporation)
- HKLM\...\Print\Monitors\PDF-XChange5-ABBYY-FR15: C:\Windows\system32\pxc50pmaf15.dll [57328 2018-12-04] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
- HKLM\Software\...\AppCompatFlags\Custom\Heroes3.exe: [{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb] -> GOG.com Heroes of Might and Magic 3
- HKLM\Software\...\AppCompatFlags\InstalledSDB\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}: [DatabasePath] -> C:\Windows\AppPatch\CustomSDB\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb [2012-11-28]
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\105.0.5195.127\Installer\chrmstp.exe [2022-09-18] (Google LLC -> Google LLC)
- HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
- HKLM\Software\...\Authentication\Credential Providers: [{f64945df-4fa9-4068-a2fb-61af319edd33}] -> C:\WINDOWS\system32\rdpcredentialprovider.dll [2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {045D700F-411F-423A-AE09-963A5518CC41} - System32\Tasks\e-pity2021_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe notify 1 28.02.2023 (Brak pliku)
- Task: {05270BB7-CCE3-4AC1-913D-413CF44A9900} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- Task: {0600DD45-FAF2-4131-A006-0B17509B9F78} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\sc.exe start InventorySvc
- Task: {08BD09F4-BBD5-4759-9418-2A6680D41823} - System32\Tasks\Microsoft\Windows\PI\SecureBootEncodeUEFI => C:\WINDOWS\system32\SecureBootEncodeUEFI.exe [49152 2022-05-07] (Microsoft Windows -> )
- Task: {0AA33135-D7E3-4386-8CFC-42F580A76CC7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26166200 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {16DA74F4-68E8-449A-9FED-504602C038E2} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => C:\WINDOWS\system32\MusNotification.exe /RunOnBattery ReadyToReboot (Brak pliku)
- Task: {2163C846-7E71-445C-89F5-3D6E1FBB7FE5} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1094824 2021-10-08] (A-Volute SAS -> Nahimic)
- Task: {22177703-A8FA-45F9-9AA8-2E6B538FF3F4} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1147440 2022-04-28] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- Task: {24ACD5DD-0503-4591-A912-2A3371AEA2FC} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26166200 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- "C:\Windows\System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask" nie został odblokowany. <==== UWAGA
- Task: {27CE9D59-9D48-4D29-99BC-64657AEBA494} - System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask
- Task: {2A232D42-9091-4869-AEE1-0AEA8695D6F4} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-16] (Google LLC -> Google LLC)
- Task: {3577D5D0-2968-4AC5-BD46-2D9264E6473D} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {3F814EE8-5EA3-41D3-8593-A0A98F4E53FD} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [329216 2022-04-28] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego]
- Task: {44FE9B64-A7D8-445D-B209-33F82C5BC772} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116096 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {6351CC2B-AA84-4F11-ACE0-370BDEB79C1D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {6A12479C-F571-40C0-A68E-0B46193766A6} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116096 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {6DE00741-1D2B-47F7-ADA3-5D9686D45858} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6624232 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- Task: {71234116-8B9B-441B-B3AD-C46E388380E1} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [261680 2022-05-10] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- Task: {74332260-805E-4495-B2F1-FFAD1C054A82} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {7AF96F78-A7B7-43E4-B28B-368129B522E1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => C:\WINDOWS\system32\MusNotification.exe LogonUpdateResults (Brak pliku)
- Task: {84CC71E3-A2D4-474A-A287-395007F784BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {9B234AB4-FA33-460D-BC88-9799EE123DBC} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [56368 2022-05-10] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- Task: {BD741302-9242-4B17-8B47-2D3C56342422} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-16] (Google LLC -> Google LLC)
- Task: {BEE9753A-4C03-4613-929C-03B89D50D792} - System32\Tasks\Microsoft\Windows\CloudRestore\Restore => {B4BCFA6F-948D-46B8-BF27-E8B1117E23B3} C:\WINDOWS\system32\CloudRestoreLauncher.dll [245760 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- Task: {C375B8E7-1D4F-4E57-90E7-3BEFD0DFCE06} - System32\Tasks\Microsoft\Windows\WlanSvc\MoProfileManagement => {085EDA12-CF4A-4944-8222-8ADCADE137CB} C:\Windows\System32\WlanMediaManager.dll [897024 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- Task: {CCD7236D-24E2-46D1-A00D-DD024CDC325B} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [833704 2021-10-08] (A-Volute SAS -> Nahimic)
- Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Brak pliku)
- Task: {D5D7E137-C519-4EA7-B104-F8D84A6C3902} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => C:\WINDOWS\system32\MusNotification.exe /RunOnAC ReadyToReboot (Brak pliku)
- Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => C:\WINDOWS\system32\MusNotification.exe (Brak pliku)
- Task: {E6A0D87A-2D68-4935-8FAA-5B780F7084BF} - System32\Tasks\e-pity2021_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe notify 2 02.05.2023 (Brak pliku)
- Task: {F354B5C7-0225-4D8E-84B7-BDE41856319E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MpCmdRun.exe [1335960 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {F87BAE91-2470-40AB-9F94-A437578A5E4D} - System32\Tasks\Microsoft\Windows\Application Experience\SdbinstMergeDbTask => C:\WINDOWS\system32\sdbinst.exe [217088 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{248f9601-d522-471d-abcb-d099d0a3a724}: [DhcpNameServer] 192.168.1.254
- Tcpip\..\Interfaces\{50df98d3-4bef-4254-bf10-0febb1f1ef4e}: [DhcpNameServer] 62.179.1.60 62.179.1.61
- Tcpip\..\Interfaces\{c801737e-e8ee-4911-8d78-4dd431eeca3f}: [DhcpNameServer] 192.168.0.1
- Edge:
- =======
- Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono]
- Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono]
- Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono]
- Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono]
- Edge DefaultProfile: Default
- Edge Profile: C:\Users\aandr\AppData\Local\Microsoft\Edge\User Data\Default [2022-10-07]
- Edge Extension: (TotalСashback — кэшбэк-сервис) - C:\Users\aandr\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\eofogjfkadmolbbmnlbohhbkhbodcjjm [2021-01-22]
- Edge HKLM-x32\...\Edge\Extension: [eofogjfkadmolbbmnlbohhbkhbodcjjm]
- FireFox:
- ========
- FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-07-25] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> D:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
- Chrome:
- =======
- CHR Profile: C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default [2022-10-08]
- CHR Notifications: Default -> hxxps://app.revolut.com; hxxps://mail-notification.info; hxxps://www.faceit.com; hxxps://www.filmweb.pl
- CHR Extension: (Adblocker for Youtube™) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\bonldmoococpeifadcfjjlegijfadghh [2021-01-22] [UpdateUrl:hxxps://clients66.google.com/service/update2/crx] <==== UWAGA
- CHR Extension: (Google Sheets Offline) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\bppjmheplcommpphpkldjpegafoiboln [2021-02-11] [UpdateUrl:hxxps://clients13.google.com/service/update2/crx] <==== UWAGA
- CHR Extension: (Adblock dla Youtube™) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2022-07-12]
- CHR Extension: (alerabat.com | kupony i cashback) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2022-09-27]
- CHR Extension: (Return YouTube Dislike) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gebbhagfogifgggkldgodflihgfeippi [2022-09-24]
- CHR Extension: (Dokumenty Google offline) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-08-31]
- CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2022-08-31]
- CHR Extension: (Google Keep – notatki i listy) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2022-10-04]
- CHR Extension: (Chrome Remote Desktop) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2020-07-16]
- CHR Extension: (Program uruchamiający aplikacje dla plików z Dysku (od Google)) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2021-01-23]
- CHR Extension: (MetaMask) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2022-09-28]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\aandr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-24]
- CHR HKU\S-1-5-21-1917826487-3454705426-1309254147-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
- CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- "EasyAntiCheatSys" => serwis nie został odblokowany. <==== UWAGA
- HKLM\SYSTEM\ControlSet001\Services\EasyAntiCheatSys => C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [11818584 2022-10-07] (EasyAntiCheat Oy -> EasyAntiCheat Oy) <==== UWAGA (Rootkit!/Zablokowana usługa)
- R2 ABBYY.Licensing.FineReader.15.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe [1050864 2020-08-06] (ABBYY Production LLC -> ABBYY Production LLC)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8926168 2021-11-14] (BattlEye Innovations e.K. -> )
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12477392 2022-10-01] (Microsoft Corporation -> Microsoft Corporation)
- S3 dcsvc; C:\WINDOWS\system32\dcsvc.dll [802816 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2022-07-27] (EasyAntiCheat Oy -> Epic Games, Inc)
- S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2022-07-11] (Epic Games Inc. -> Epic Games, Inc.)
- S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [25620360 2022-09-18] (FACE IT LIMITED -> )
- R3 InventorySvc; C:\WINDOWS\system32\inventorysvc.dll [304480 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1888424 2021-10-08] (A-Volute SAS -> Nahimic)
- R3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2579272 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts)
- R2 Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [3497808 2022-08-09] (Electronic Arts, Inc. -> Electronic Arts)
- R2 pproupd; C:\Program Files (x86)\Podatnik.info\PIT pro 2021\pproupd.exe [62720 2022-04-08] (Podatnik S.A. -> Podatnik S.A.)
- S3 Rockstar Service; D:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2579840 2022-09-18] (Rockstar Games, Inc. -> Rockstar Games)
- R2 SgrmBroker; C:\WINDOWS\system32\Sgrm\SgrmBroker.exe [414632 2022-05-07] (Microsoft Windows Publisher -> Microsoft Corporation)
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13257000 2021-07-01] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
- R2 TextInputManagementService; C:\WINDOWS\System32\TabSvc.dll [266240 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\UNCHEATER\ucldr_battlegrounds_gl.exe [7152880 2021-12-13] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
- S3 uncheater_bgl; C:\Program Files\Common Files\Uncheater\uncheater_bgl.exe [2097008 2020-07-20] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
- S3 VBoxSDS; D:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [749136 2022-09-01] (Oracle Corporation -> Oracle Corporation)
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\NisSrv.exe [3125112 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- R3 webthreatdefsvc; C:\WINDOWS\System32\webthreatdefsvc.dll [163840 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
- S2 webthreatdefusersvc; C:\WINDOWS\System32\webthreatdefusersvc.dll [135168 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2207.7-0\MsMpEng.exe [133560 2022-08-31] (Microsoft Windows Publisher -> Microsoft Corporation)
- S3 wuauserv; C:\WINDOWS\system32\wuauserv.dll [137544 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [8491720 2021-12-07] (PUBG CORPORATION -> PUBG Corporation)
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [33728 2021-12-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- R2 AMDRyzenMasterDriverV19; C:\Windows\system32\AMDRyzenMasterDriver.sys [43336 2022-04-26] (Advanced Micro Devices INC. -> Advanced Micro Devices)
- R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_edd3335a4253bf6d\amdsafd.sys [109520 2021-11-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
- S3 AmdTools64ICD; C:\WINDOWS\System32\drivers\AmdTools64ICD.sys [63408 2020-05-27] (Microsoft Windows Hardware Compatibility Publisher -> )
- S3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0379219.inf_amd64_3649648678001de4\B378972\amdkmdag.sys [90165704 2022-05-10] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [65168 2021-08-17] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
- R2 bfs; C:\WINDOWS\system32\drivers\bfs.sys [91480 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- R1 CTIIO; C:\Windows\system32\drivers\CtiIo64.sys [17944 2021-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
- R1 FACEIT; C:\WINDOWS\System32\Drivers\FACEIT.sys [16516168 2022-09-18] (Microsoft Windows Hardware Compatibility Publisher -> )
- R0 fse; C:\WINDOWS\System32\drivers\fse.sys [218456 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- S0 GenPass; C:\WINDOWS\System32\DriverStore\FileRepository\genpass.inf_amd64_bef88a423225ecdc\genpass.sys [62800 2022-05-07] (Microsoft Windows -> Microsoft Corporation)
- R1 googledrivefs3758; C:\WINDOWS\System32\DRIVERS\googledrivefs3758.sys [384584 2022-03-24] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
- S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [38544 2018-12-13] (Feature Integration Technology Inc -> FINTEK Corp.)
- S3 MpKsl42eb1637; C:\Windows\system32\MpEngineStore\MpKslDrv.sys [134376 2021-12-23] (Microsoft Windows -> Microsoft Corporation)
- R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [17424 2020-01-19] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
- R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [94784 2022-06-03] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
- R2 NPF; C:\Windows\system32\drivers\npf.sys [35344 2020-07-19] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
- S0 pvscsi; C:\WINDOWS\System32\drivers\pvscsii.sys [45408 2022-05-07] (Microsoft Windows -> VMware, Inc.)
- S3 RoutePolicy; C:\WINDOWS\System32\drivers\RoutePolicy.sys [98304 2022-05-07] (Microsoft Windows -> )
- R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
- R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
- S3 VBAudioVMVAIOMME; C:\WINDOWS\System32\drivers\vbaudio_vmvaio64_win10.sys [71712 2021-01-15] (Vincent Burel -> Windows (R) Win 7 DDK provider)
- R3 VBoxNetAdp; C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [242624 2022-09-01] (Oracle Corporation -> Oracle Corporation)
- R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [252528 2022-09-01] (Oracle Corporation -> Oracle Corporation)
- R1 VBoxSup; C:\WINDOWS\system32\DRIVERS\VBoxSup.sys [1081560 2022-09-01] (Oracle Corporation -> Oracle Corporation)
- S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [94208 2022-05-07] (Microsoft Windows -> )
- S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2022-08-31] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [453904 2022-08-31] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [94480 2022-08-31] (Microsoft Windows -> Microsoft Corporation)
- R2 wtd; C:\WINDOWS\System32\drivers\wtd.sys [118784 2022-10-05] (Microsoft Windows -> Microsoft Corporation)
- S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-10-08 04:16 - 2022-10-08 04:17 - 000029744 _____ C:\Users\aandr\Downloads\FRST.txt
- 2022-10-08 04:16 - 2022-10-08 04:17 - 000000000 ____D C:\FRST
- 2022-10-08 04:16 - 2022-10-08 04:16 - 002372096 _____ (Farbar) C:\Users\aandr\Downloads\FRST64.exe
- 2022-10-07 19:46 - 2022-10-07 19:46 - 000798244 _____ C:\WINDOWS\system32\perfh015.dat
- 2022-10-07 19:46 - 2022-10-07 19:46 - 000158294 _____ C:\WINDOWS\system32\perfc015.dat
- 2022-10-06 14:26 - 2022-10-06 14:26 - 000002524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2022-10-05 11:54 - 2022-10-05 11:54 - 000021751 _____ C:\Users\aandr\Downloads\MSICenterUninstaller.zip
- 2022-10-05 11:54 - 2022-10-05 11:54 - 000000000 ____D C:\Users\aandr\Downloads\MSICenterUninstaller
- 2022-10-05 11:50 - 2022-10-05 11:50 - 000327680 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 002575632 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 002088728 _____ (The ICU Project) C:\WINDOWS\SysWOW64\icu.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 000296448 _____ C:\WINDOWS\system32\CloudIdWxhExtension.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 000062800 _____ C:\WINDOWS\system32\AppInstallerBackgroundUpdate.exe
- 2022-10-05 11:49 - 2022-10-05 11:49 - 000055144 _____ C:\WINDOWS\system32\SFAPE.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 000046888 _____ C:\WINDOWS\system32\wow64base.dll
- 2022-10-05 11:49 - 2022-10-05 11:49 - 000016539 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
- 2022-10-05 11:48 - 2022-10-05 11:48 - 000000000 ___HD C:\$WinREAgent
- 2022-10-05 11:39 - 2022-10-05 11:39 - 000000000 ____D C:\WINDOWS\Panther
- 2022-10-05 10:44 - 2022-10-07 19:46 - 001797768 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2022-10-05 10:38 - 2022-10-05 10:38 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
- 2022-10-05 10:37 - 2022-10-07 21:34 - 000000000 ____D C:\Users\aandr\AppData\Local\D3DSCache
- 2022-10-05 10:37 - 2022-10-05 10:37 - 000000020 ___SH C:\Users\aandr\ntuser.ini
- 2022-10-05 03:36 - 2022-10-05 03:37 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
- 2022-10-05 03:35 - 2022-10-05 03:36 - 000000000 ____D C:\WINDOWS\ServiceProfiles
- 2022-10-05 03:35 - 2022-10-05 03:35 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000530944 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000470528 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000192512 _____ C:\WINDOWS\system32\CloudExperienceHostRedirection.dll
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000180224 _____ C:\WINDOWS\system32\stordiag.exe
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000133120 _____ C:\WINDOWS\SysWOW64\stordiag.exe
- 2022-10-05 03:32 - 2022-10-05 03:32 - 000098304 _____ C:\WINDOWS\system32\dplcsp.dll
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\WINDOWS\addins
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\Program Files\Reference Assemblies
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\Program Files\MSBuild
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
- 2022-10-05 03:30 - 2022-10-05 03:30 - 000000000 ____D C:\Program Files (x86)\MSBuild
- 2022-10-05 02:42 - 2022-10-07 19:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003498 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003494 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003274 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003270 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1917826487-3454705426-1309254147-1001
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003010 _____ C:\WINDOWS\system32\Tasks\e-pity2021_kwiecien
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000003008 _____ C:\WINDOWS\system32\Tasks\e-pity2021_styczen
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1917826487-3454705426-1309254147-1001
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002518 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002420 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002404 _____ C:\WINDOWS\system32\Tasks\AMDRyzenMasterSDKTask
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc64Run
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002342 _____ C:\WINDOWS\system32\Tasks\NahimicSvc32Run
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002202 _____ C:\WINDOWS\system32\Tasks\StartCN
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000002122 _____ C:\WINDOWS\system32\Tasks\StartDVR
- 2022-10-05 02:42 - 2022-10-05 02:42 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
- 2022-10-05 02:41 - 2022-10-05 02:42 - 000011433 _____ C:\WINDOWS\diagwrn.xml
- 2022-10-05 02:41 - 2022-10-05 02:42 - 000011433 _____ C:\WINDOWS\diagerr.xml
- 2022-10-05 02:38 - 2022-10-07 19:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2022-10-05 02:38 - 2022-10-05 12:01 - 000001607 _____ C:\WINDOWS\system32\config\VSMIDK
- 2022-10-05 02:38 - 2022-10-05 11:57 - 000498736 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2022-10-05 02:38 - 2022-10-05 10:37 - 000000000 ____D C:\Users\aandr
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\Ustawienia lokalne
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\Szablony
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\Moje dokumenty
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\Menu Start
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\Dane aplikacji
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\AppData\Local\Tymczasowe pliki internetowe
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\AppData\Local\Historia
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 _SHDL C:\Users\aandr\AppData\Local\Dane aplikacji
- 2022-10-05 02:38 - 2022-10-05 02:38 - 000000000 ____D C:\WINDOWS\system32\config\BFS
- 2022-10-05 02:38 - 2022-05-07 07:19 - 000001281 _____ C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools.lnk
- 2022-10-05 02:38 - 2022-05-07 07:19 - 000000407 _____ C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\File Explorer.lnk
- 2022-09-27 02:52 - 2022-09-27 02:52 - 000000630 _____ C:\Users\aandr\Desktop\Zastêpstwa.lnk
- 2022-09-27 02:50 - 2022-09-27 02:52 - 000000578 _____ C:\Users\aandr\Desktop\Plan lekcji.lnk
- 2022-09-27 02:50 - 2022-09-27 02:50 - 000000586 _____ C:\Users\aandr\Desktop\Zastępstwa.lnk
- 2022-09-26 23:13 - 2022-10-05 02:39 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Plan lekcji
- 2022-09-19 00:13 - 2022-05-16 17:23 - 000013576 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\acpimof.dll
- 2022-09-18 15:21 - 2022-09-18 15:21 - 000000000 ____D C:\Program Files (x86)\Epic Games
- 2022-09-18 15:15 - 2022-10-05 03:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
- 2022-09-18 15:15 - 2022-09-01 08:01 - 001081560 _____ (Oracle Corporation) C:\WINDOWS\system32\Drivers\VBoxSup.sys
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-10-08 04:16 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF
- 2022-10-08 04:16 - 2020-07-17 12:16 - 000000000 ____D C:\Users\aandr\AppData\Roaming\TS3Client
- 2022-10-08 04:04 - 2021-09-18 15:12 - 000000000 ____D C:\Users\aandr\AppData\Local\Origin
- 2022-10-08 03:45 - 2020-07-16 03:22 - 000000000 ____D C:\Program Files (x86)\Google
- 2022-10-08 00:09 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2022-10-07 22:27 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp
- 2022-10-07 21:40 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2022-10-07 21:35 - 2021-09-18 15:12 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Origin
- 2022-10-07 21:34 - 2021-09-18 15:12 - 000000000 ____D C:\ProgramData\Origin
- 2022-10-07 19:40 - 2020-07-16 00:16 - 000000000 ___RD C:\Users\aandr\OneDrive
- 2022-10-07 19:39 - 2022-05-07 07:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI
- 2022-10-07 19:39 - 2021-02-11 01:14 - 000000000 ____D C:\Program Files (x86)\TeamViewer
- 2022-10-07 19:39 - 2020-07-16 06:07 - 000012288 ___SH C:\DumpStack.log.tmp
- 2022-10-07 19:37 - 2022-03-28 15:00 - 000000000 ____D C:\Program Files\AMD
- 2022-10-07 19:29 - 2020-07-19 21:17 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
- 2022-10-07 19:24 - 2021-02-22 16:20 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
- 2022-10-07 10:43 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports
- 2022-10-06 14:42 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\appcompat
- 2022-10-05 12:02 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
- 2022-10-05 12:02 - 2021-02-25 16:29 - 000000000 ____D C:\Users\aandr\AppData\Local\CrashDumps
- 2022-10-05 12:02 - 2020-07-19 17:45 - 000000000 ____D C:\Program Files (x86)\MSI
- 2022-10-05 12:02 - 2020-07-19 17:45 - 000000000 ____D C:\MSI
- 2022-10-05 12:02 - 2020-07-16 00:14 - 000000000 ____D C:\Users\aandr\AppData\Local\Packages
- 2022-10-05 12:00 - 2020-07-16 06:42 - 000000000 ____D C:\ProgramData\Package Cache
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\UNP
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\lxss
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\PrintDialog
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\UUS
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellComponents
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\Provisioning
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2022-10-05 11:56 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\System
- 2022-10-05 11:55 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2022-10-05 11:54 - 2022-05-07 07:25 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
- 2022-10-05 11:54 - 2022-05-07 07:24 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
- 2022-10-05 11:51 - 2020-07-19 17:53 - 000000000 ____D C:\ProgramData\MSI
- 2022-10-05 11:49 - 2020-07-19 17:57 - 000000000 ____D C:\Users\aandr\AppData\Local\Downloaded Installations
- 2022-10-05 11:48 - 2020-07-16 00:15 - 000000000 ____D C:\ProgramData\Packages
- 2022-10-05 10:37 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Windows NT
- 2022-10-05 10:37 - 2021-01-22 17:32 - 000000266 __RSH C:\ProgramData\ntuser.pol
- 2022-10-05 10:37 - 2020-07-16 00:14 - 000000000 __RHD C:\Users\Public\AccountPictures
- 2022-10-05 03:37 - 2022-07-13 21:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office
- 2022-10-05 03:37 - 2022-07-12 21:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KMSpico
- 2022-10-05 03:37 - 2022-05-11 00:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Software꞉ Adrenalin Edition
- 2022-10-05 03:37 - 2022-05-11 00:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
- 2022-10-05 03:37 - 2022-05-07 07:28 - 000000000 ____D C:\WINDOWS\Setup
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 __RHD C:\Users\Public\Libraries
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\spool
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\NDF
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\DiagTrack
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
- 2022-10-05 03:37 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
- 2022-10-05 03:37 - 2021-12-23 18:34 - 000000000 ____D C:\WINDOWS\system32\MpEngineStore
- 2022-10-05 03:37 - 2021-11-07 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ABBYY FineReader PDF 15
- 2022-10-05 03:37 - 2021-10-03 01:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FIFA 22
- 2022-10-05 03:37 - 2021-09-25 15:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
- 2022-10-05 03:37 - 2021-08-14 00:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mRemoteNG
- 2022-10-05 03:37 - 2021-07-08 12:40 - 000000000 ____D C:\WINDOWS\system32\A-Volute
- 2022-10-05 03:37 - 2021-06-05 14:10 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
- 2022-10-05 03:37 - 2021-03-04 23:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CSGO Demos Manager
- 2022-10-05 03:37 - 2020-11-04 02:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HoMM3 HD
- 2022-10-05 03:37 - 2020-11-04 02:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic 3 Complete [GOG.com]
- 2022-10-05 03:37 - 2020-07-20 17:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOC G-Menu
- 2022-10-05 03:37 - 2020-07-16 23:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
- 2022-10-05 03:37 - 2020-07-16 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt
- 2022-10-05 03:37 - 2020-07-16 09:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
- 2022-10-05 03:37 - 2020-07-16 00:15 - 000000000 ____D C:\WINDOWS\system32\AMD
- 2022-10-05 03:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc
- 2022-10-05 03:37 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy
- 2022-10-05 03:36 - 2021-02-04 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
- 2022-10-05 03:34 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\Globalization
- 2022-10-05 03:30 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
- 2022-10-05 03:30 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\MUI
- 2022-10-05 03:30 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\OCR
- 2022-10-05 03:29 - 2022-05-07 12:40 - 000000000 ____D C:\Program Files\Windows Photo Viewer
- 2022-10-05 03:29 - 2022-05-07 12:40 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\system32\winrm
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\system32\WCN
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\system32\slmgr
- 2022-10-05 03:29 - 2022-05-07 12:31 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\F12
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\migwiz
- 2022-10-05 03:29 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files (x86)\Windows Defender
- 2022-10-05 03:29 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\servicing
- 2022-10-05 02:42 - 2022-05-07 07:24 - 000000000 ____D C:\Program Files\Windows Defender
- 2022-10-05 02:42 - 2022-05-07 07:17 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2022-10-05 02:39 - 2022-07-30 18:00 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
- 2022-10-05 02:39 - 2021-09-25 15:47 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2022-10-05 02:39 - 2021-02-13 19:34 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FACEIT Ltd
- 2022-10-05 02:39 - 2020-11-23 21:14 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
- 2022-10-05 02:39 - 2020-09-07 19:10 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
- 2022-10-05 02:39 - 2020-07-30 18:41 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
- 2022-10-05 02:39 - 2020-07-25 12:08 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
- 2022-10-05 02:39 - 2020-07-19 21:17 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server
- 2022-10-05 02:39 - 2020-07-19 21:16 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner
- 2022-10-05 02:39 - 2020-07-17 01:41 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
- 2022-10-05 02:39 - 2020-07-16 03:23 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome
- 2022-10-05 02:38 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState
- 2022-10-04 16:28 - 2021-02-06 12:54 - 000000000 ____D C:\Users\aandr\AppData\Local\AMD_Common
- 2022-10-04 10:54 - 2020-07-16 00:13 - 000002427 _____ C:\Users\aandr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2022-10-01 04:36 - 2022-07-12 21:15 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
- 2022-09-29 15:15 - 2021-09-19 01:27 - 000000000 ____D C:\Program Files (x86)\Origin Games
- 2022-09-28 18:24 - 2022-04-05 15:05 - 000002057 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
- 2022-09-28 18:24 - 2021-09-13 18:56 - 000001899 _____ C:\Users\Default\Desktop\Google Slides.lnk
- 2022-09-28 18:24 - 2021-09-13 18:56 - 000001899 _____ C:\Users\Default\Desktop\Google Sheets.lnk
- 2022-09-28 18:24 - 2021-09-13 18:56 - 000001887 _____ C:\Users\Default\Desktop\Google Docs.lnk
- 2022-09-27 02:02 - 2020-08-08 05:06 - 000000000 ____D C:\Users\aandr\AppData\Roaming\Notepad++
- 2022-09-23 20:00 - 2021-02-22 16:20 - 000509296 _____ (Microsoft Corporation) C:\WINDOWS\system32\QualityUpdateAssistant.dll
- 2022-09-23 20:00 - 2021-02-22 16:20 - 000492904 _____ (Microsoft Corporation) C:\WINDOWS\system32\sedplugins.dll
- 2022-09-18 20:09 - 2022-08-23 13:01 - 000000000 ____D C:\Users\aandr\Desktop\games
- 2022-09-18 15:21 - 2020-09-02 20:26 - 000000000 ____D C:\Users\aandr\AppData\Local\Epic Games
- 2022-09-18 15:21 - 2020-07-25 00:49 - 000000000 ____D C:\ProgramData\Epic
- 2022-09-18 15:19 - 2020-07-25 12:08 - 000000000 ____D C:\ProgramData\Rockstar Games
- 2022-09-18 15:19 - 2020-07-25 12:08 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
- 2022-09-18 15:19 - 2020-07-25 12:07 - 000000000 ____D C:\Program Files\Rockstar Games
- 2022-09-18 15:16 - 2020-08-10 00:07 - 000000000 ____D C:\Users\aandr\.VirtualBox
- 2022-09-18 15:16 - 2020-08-10 00:07 - 000000000 ____D C:\ProgramData\VirtualBox
- 2022-09-18 15:10 - 2022-08-18 17:52 - 016516168 _____ C:\WINDOWS\system32\Drivers\FACEIT.sys
- 2022-09-18 15:10 - 2021-02-13 19:42 - 000000000 ____D C:\Program Files\FACEIT AC
- 2022-09-18 15:06 - 2022-07-30 17:41 - 000000444 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
- 2022-09-18 14:09 - 2020-07-16 00:19 - 141646296 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2022-09-18 14:09 - 2020-07-16 00:19 - 000000000 ____D C:\WINDOWS\system32\MRT
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2021-01-15 19:00 - 2021-01-15 19:00 - 000004659 _____ () C:\Users\aandr\AppData\Roaming\VoiceMeeterDefault.xml
- 2020-07-21 19:41 - 2020-07-21 19:41 - 000007598 _____ () C:\Users\aandr\AppData\Local\Resmon.ResmonCfg
- ==================== FLock ==============================
- 2022-05-07 07:24 C:\WINDOWS\system32\WebThreatDefSvc
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- ==================== Koniec FRST.txt ========================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement