Guest User

Untitled

a guest
Oct 21st, 2023
34
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 59.12 KB | None | 0 0
  1. Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 06-10-2023
  2. Uruchomiony przez jk795 (administrator) XJAKOBS3 (Micro-Star International Co., Ltd. MS-7D18) (21-10-2023 23:24:43)
  3. Uruchomiony z C:\Users\jk795\OneDrive\Pulpit\FRST64.exe
  4. Załadowane profile: jk795
  5. Platforma: Microsoft Windows 11 Pro Insider Preview Wersja 22H2 23570.1000 (X64) Język: Angielski (Stany Zjednoczone) -> Polski (Polska)
  6. Domyślna przeglądarka: Opera
  7. Tryb startu: Normal
  8.  
  9. ==================== Procesy (filtrowane) =================
  10.  
  11. (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
  12.  
  13. (C:\Users\jk795\AppData\Local\Programs\Opera GX\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\jk795\AppData\Local\Programs\Opera GX\102.0.4880.99\opera_crashreporter.exe
  14. (D:\Pobrane\AdwCleaner.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2309.28.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe <2>
  15. (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Pobrane\AdwCleaner.exe
  16. (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler.exe
  17. (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.312\GoogleCrashHandler64.exe
  18. (Microsoft Corporation -> Microsoft Corporation) C:\Users\jk795\AppData\Local\Microsoft\OneDrive\23.211.1010.0001\Microsoft.SharePoint.exe
  19. (Opera Norway AS -> Opera Software) C:\Users\jk795\AppData\Local\Programs\Opera GX\opera.exe <42>
  20. (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) D:\Foldery\MBAMService.exe
  21. (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
  22. (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe
  23. (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe
  24. (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_6724ed3503fdbc2c\Display.NvContainer\NVDisplay.Container.exe <2>
  25. (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_aadd853bf8841644\RtkAudUService64.exe
  26. (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
  27. (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\LocationNotificationWindows.exe
  28. (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
  29. (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
  30.  
  31. ==================== Rejestr (filtrowane) ===================
  32.  
  33. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
  34.  
  35. HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_aadd853bf8841644\RtkAudUService64.exe [1765176 2023-09-21] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
  36. HKLM\...\Run: [SteelSeriesGG] => C:\Program Files\SteelSeries\GG\SteelSeriesGG.exe [13803344 2023-07-10] (SteelSeries ApS -> SteelSeries ApS)
  37. HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs" [4123 2012-05-30] () [Brak podpisu cyfrowego]
  38. HKLM-x32\...\Run: [Live Update] => D:\Pobrane\Live Update\Live Update.exe [26327864 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
  39. HKLM-x32\...\Run: [MSIRegister] => C:\Program Files (x86)\MSI\MSIRegister\MSIRegister.exe [1259008 2021-08-12] (Micro-Star INT'L CO., LTD.) [Brak podpisu cyfrowego]
  40. HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [759120 2015-04-22] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
  41. HKLM-x32\...\Run: [Super Charger] => C:\Program Files (x86)\MSI\Super Charger\Super Charger.exe [1028280 2017-11-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
  42. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [Opera GX Stable] => C:\Users\jk795\AppData\Local\Programs\Opera GX\launcher.exe [2687392 2023-10-14] (Opera Norway AS -> Opera Software)
  43. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\jk795\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
  44. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [Steam] => D:\Steam\steam.exe [4375912 2023-09-29] (Valve Corp. -> Valve Corporation)
  45. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [MicrosoftEdgeAutoLaunch_D4F93F81FB458F991271D738A594707C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3835840 2023-10-17] (Microsoft Corporation -> Microsoft Corporation)
  46. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [482128 2023-08-06] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
  47. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [Discord] => C:\Users\jk795\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
  48. HKU\S-1-5-21-1370774956-2404028756-174667980-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [2655848 2023-10-20] (Electronic Arts, Inc. -> Electronic Arts)
  49. HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\118.0.5993.89\Installer\chrmstp.exe [2023-10-19] (Google LLC -> Google LLC)
  50. Startup: C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\DeepL auto-start.lnk [2023-08-14]
  51. ShortcutTarget: DeepL auto-start.lnk -> C:\Users\jk795\AppData\Roaming\0install.net\desktop-integration\stubs\1eae01f3cdb5ff0ecf683b15a60a1489573c1188cb34abc205fcf7a924b4e54d\auto-start.exe () [Brak podpisu cyfrowego]
  52. Startup: C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Intel(R) Turbo Boost Technology Monitor 2.6.lnk [2023-09-17]
  53. ShortcutTarget: Intel(R) Turbo Boost Technology Monitor 2.6.lnk -> C:\Program Files\Intel\TurboBoost\SignalIslandUi.exe (Intel(R) Software -> Intel® Corporation)
  54.  
  55. ==================== Zaplanowane zadania (filtrowane) =================
  56.  
  57. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  58.  
  59. Task: {52AF7CCA-20EA-455D-975C-B3DF6AAA4CE9} - System32\Tasks\GoogleUpdateTaskMachineCore{6C87BB26-F1A3-42CA-9A77-B0C3AE7B8700} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-09-13] (Google LLC -> Google LLC)
  60. Task: {CFCF43F3-EC4A-4D73-B5BC-1DA85422BA8D} - System32\Tasks\GoogleUpdateTaskMachineUA{309BDA2B-A011-4E72-888D-A48FE245B4B5} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-09-13] (Google LLC -> Google LLC)
  61. Task: {5F7A49CE-5ACD-487F-8FAC-AB07F5BF0370} - System32\Tasks\HidHide_Updater => C:\Program Files\Nefarius Software Solutions\HidHide\HidHide_Updater.exe [1206200 2023-05-06] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)
  62. Task: {935E57A4-A5B4-472D-AC8C-2C97C52A6A81} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\UCPD velocity => C:\WINDOWS\system32\UCPDMgr.exe [60416 2023-10-14] (Microsoft Windows -> Microsoft Corporation)
  63. Task: {E6107424-1B04-49E1-8AD4-87D175C0F439} - System32\Tasks\Microsoft\Windows\ConsentUX\UnifiedConsent\UnifiedConsentSyncTask => {82AA0895-198A-4C1B-B2D1-C16894218AFB} C:\WINDOWS\System32\unifiedconsent.dll [315392 2023-10-14] (Microsoft Windows -> Microsoft Corporation)
  64. Task: {C233813E-230C-414C-9B6B-BB4A546AAA31} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  65. Task: {F89F37C5-C8E0-4658-9B81-2422498BF56C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  66. Task: {A096E532-FFEB-43E6-BE68-E4D5C96C9780} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  67. Task: {24AA34B2-D79B-4695-8098-2A730C25556D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  68. Task: {E916414B-60C2-450C-A8CC-77D64810395E} - System32\Tasks\MSI_Toast_Server => C:\Program Files (x86)\MSI\MSI Toast Server\MSIToastServer.exe [31904 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
  69. Task: {99AC50F5-12D5-41B7-957E-C5DCDED6E1AC} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
  70. Task: {C3D718D4-AABD-4F45-BFA6-AA36298F335F} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
  71. Task: {AC5F73C1-E603-4DCF-9D4F-49D0DAAEE600} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
  72. Task: {7C14481D-A9E0-41FE-88D7-4A590556EB27} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  73. Task: {3F837895-1C1E-401E-BD92-59B475E92D03} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  74. Task: {C462B298-FF65-4DD1-BF6C-C3BF7FC05967} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  75. Task: {BA2356D1-7635-4C98-A2CB-0DF8959ADEAA} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  76. Task: {5AE1E1BE-240D-464D-A606-786A89879F65} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  77. Task: {650F4B39-3008-4397-A5FE-78E2F25418B1} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  78. Task: {65B91E75-2358-4267-A690-6D021ECAAB06} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
  79. Task: {1ED0D669-6CE9-4811-8058-188E678E8F14} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1688940067 => C:\Users\jk795\AppData\Local\Programs\Opera GX\launcher.exe [2687392 2023-10-14] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\jk795\AppData\Local\Programs\Opera GX\assistant" $(Arg0)
  80. Task: {89DAA759-0EE9-494F-B1EB-ED18567F84F9} - System32\Tasks\Opera GX scheduled Autoupdate 1688940013 => C:\Users\jk795\AppData\Local\Programs\Opera GX\launcher.exe [2687392 2023-10-14] (Opera Norway AS -> Opera Software)
  81. Task: {0A88EF0E-8260-40E2-B892-D234ED88F76A} - System32\Tasks\TempClean1 => C:\WINDOWS\system32\wevtutil.exe [327680 2023-10-14] (Microsoft Windows -> Microsoft Corporation) -> cl Application
  82. Task: {A1FF2BE4-0748-4346-94CD-4499156C32C8} - System32\Tasks\TempClean2 => C:\WINDOWS\system32\wevtutil.exe [327680 2023-10-14] (Microsoft Windows -> Microsoft Corporation) -> cl System
  83. Task: {F24732F1-34B0-480D-88AC-8AF938ED81E1} - System32\Tasks\TempClean3 => C:\WINDOWS\system32\vssadmin.exe [163840 2023-10-14] (Microsoft Windows -> Microsoft Corporation) -> delete shadows /all /quiet
  84. Task: {B4950496-8232-4A37-A1D9-6C029BF213BF} - System32\Tasks\ViGEmBus_Updater => D:\Foldery\ViGEmBus_Updater.exe [1117096 2022-09-27] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.)
  85. Task: {2AC4465B-3E8F-46D4-B708-998911B3B5CD} - System32\Tasks\Wise Memory Optimizer Task.job => D:\Pobrane\Wise Memory Optimizer\WiseMemoryOptimzer.exe [11888560 2023-08-04] (Lespeed Technology Co., Ltd -> WiseCleaner.com)
  86.  
  87. (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
  88.  
  89.  
  90. ==================== Internet (filtrowane) ====================
  91.  
  92. (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
  93.  
  94. Tcpip\Parameters: [DhcpNameServer] 31.11.173.2 89.228.4.126
  95. Tcpip\..\Interfaces\{efd55ee8-cfb6-4465-84ae-2c49f325fe96}: [DhcpNameServer] 31.11.173.2 89.228.4.126
  96.  
  97. Edge:
  98. =======
  99. Edge DefaultProfile: Default
  100. Edge Profile: C:\Users\jk795\AppData\Local\Microsoft\Edge\User Data\Default [2023-10-20]
  101. Edge Extension: (Malwarebytes Browser Guard) - C:\Users\jk795\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2023-10-16]
  102. Edge Extension: (Dokumenty Google offline) - C:\Users\jk795\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-05]
  103. Edge Extension: (Adblock Plus - darmowy adblocker) - C:\Users\jk795\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2023-10-20]
  104. Edge Extension: (Edge relevant text changes) - C:\Users\jk795\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-17]
  105. Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
  106. Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
  107.  
  108. Chrome:
  109. =======
  110. CHR Profile: C:\Users\jk795\AppData\Local\Google\Chrome\User Data\Default [2023-10-21]
  111. CHR Extension: (Dokumenty Google offline) - C:\Users\jk795\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-13]
  112. CHR Extension: (Malwarebytes Browser Guard) - C:\Users\jk795\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2023-09-13]
  113. CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\jk795\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-13]
  114. CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
  115. CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
  116.  
  117. Opera:
  118. =======
  119. StartMenuInternet: (HKU\S-1-5-21-1370774956-2404028756-174667980-1001) Opera GXStable - "C:\Users\jk795\AppData\Local\Programs\Opera GX\Launcher.exe"
  120.  
  121. ==================== Usługi (filtrowane) ===================
  122.  
  123. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  124.  
  125. "MpKsl97f27c6e" => serwis nie został odblokowany. <==== UWAGA
  126. HKLM\SYSTEM\ControlSet001\Services\MpKsl97f27c6e => \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{E30F0E0E-E3E8-40D9-81A9-86D59F29D1A0}\MpKslDrv.sys <==== UWAGA (Rootkit!/Zablokowana usługa)
  127.  
  128. S3 CloudBackupRestoreSvc; C:\WINDOWS\System32\CloudRestoreLauncher.dll [1323008 2023-10-14] (Microsoft Windows -> Microsoft Corporation)
  129. S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4974416 2023-08-06] (AVB Disc Soft, SIA -> Disc Soft FZE LLC)
  130. S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [47716384 2023-08-28] (Electronic Arts, Inc. -> Electronic Arts)
  131. S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11134056 2023-10-20] (Electronic Arts, Inc. -> Electronic Arts)
  132. R2 MBAMService; D:\Foldery\MBAMService.exe [9287968 2023-10-09] (Malwarebytes Inc. -> Malwarebytes)
  133. S4 MSIREGISTER_MR; C:\Program Files (x86)\MSI\MSIRegister\MSIRegisterService.exe [2023224 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
  134. S4 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [113336 2017-12-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
  135. S4 MSI_LiveUpdate_Service; D:\Pobrane\Live Update\MSI_LiveUpdate_Service.exe [2210616 2021-08-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
  136. S4 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super Charger\ChargeService.exe [183472 2020-03-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
  137. S2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [16033712 2023-10-19] (ADLICE -> )
  138. S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [397040 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation)
  139. S4 SteelSeriesUpdateService; C:\Program Files\SteelSeries\GG\SteelSeriesUpdateService.exe [35152 2023-07-10] (SteelSeries ApS -> )
  140. R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  141. R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-10-05] (Microsoft Windows Publisher -> Microsoft Corporation)
  142. R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_6724ed3503fdbc2c\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_6724ed3503fdbc2c\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
  143.  
  144. ===================== Sterowniki (filtrowane) ===================
  145.  
  146. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  147.  
  148. S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [2986792 2023-07-10] (Activision Publishing Inc -> Activision Blizzard, Inc.)
  149. R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2022-12-27] (AVB Disc Soft, SIA -> Disc Soft Ltd)
  150. R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [63696 2023-01-14] (AVB Disc Soft, SIA -> Disc Soft Ltd)
  151. S1 EneIo; C:\Windows\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
  152. R3 HidHide; C:\WINDOWS\System32\drivers\HidHide.sys [66584 2022-06-27] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
  153. S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
  154. R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131208 2021-07-15] (Intel Corporation -> Intel Corporation)
  155. R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222272 2023-09-18] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
  156. S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-07-25] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
  157. R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
  158. R3 MpKsle10d9557; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D0B1E55D-A536-4019-8B9F-772594C46461}\MpKslDrv.sys [263560 2023-10-21] (Microsoft Windows -> Microsoft Corporation)
  159. S3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [14288 2017-03-29] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
  160. R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
  161. R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [43472 2023-03-27] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
  162. R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [44456 2023-03-13] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries ApS)
  163. R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
  164. R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
  165. R3 SteelSeries_Sonar_VAD; C:\WINDOWS\System32\DriverStore\FileRepository\steelseries-sonar-vad.inf_amd64_da15ab44a6216a8e\SteelSeries-Sonar-VAD.sys [95440 2023-03-17] (SteelSeries ApS -> Windows (R) Win 7 DDK provider)
  166. U3 TrueSight; C:\Windows\System32\drivers\truesight.sys [53696 2023-10-21] (ADLICE (Julien Ascoet) -> )
  167. S4 UCPD; C:\WINDOWS\System32\drivers\UCPD.sys [38176 2023-10-14] (Microsoft Windows -> Microsoft Corporation)
  168. R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
  169. S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-10-05] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
  170. R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [572712 2023-10-05] (Microsoft Windows -> Microsoft Corporation)
  171. R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105872 2023-10-05] (Microsoft Windows -> Microsoft Corporation)
  172.  
  173. ==================== NetSvcs (filtrowane) ===================
  174.  
  175. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  176.  
  177.  
  178. ==================== Jeden miesiąc (utworzone) (filtrowane) =========
  179.  
  180. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  181.  
  182. 2023-10-21 23:20 - 2023-10-21 23:20 - 000798440 _____ C:\WINDOWS\system32\perfh015.dat
  183. 2023-10-21 23:20 - 2023-10-21 23:20 - 000158492 _____ C:\WINDOWS\system32\perfc015.dat
  184. 2023-10-21 23:12 - 2023-10-21 23:12 - 000004075 _____ C:\Users\jk795\Downloads\fixlist.txt
  185. 2023-10-20 00:39 - 2023-10-21 23:25 - 000000000 ____D C:\FRST
  186. 2023-10-20 00:29 - 2023-10-20 00:29 - 000007605 _____ C:\Users\jk795\AppData\Local\Resmon.ResmonCfg
  187. 2023-10-19 20:56 - 2023-10-21 23:20 - 001798582 _____ C:\WINDOWS\system32\PerfStringBackup.INI
  188. 2023-10-19 20:55 - 2023-10-19 20:55 - 000000020 ___SH C:\Users\jk795\ntuser.ini
  189. 2023-10-19 20:55 - 2023-10-19 20:55 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
  190. 2023-10-19 19:06 - 2023-10-21 23:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
  191. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003756 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1688940067
  192. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003582 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{309BDA2B-A011-4E72-888D-A48FE245B4B5}
  193. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003538 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1688940013
  194. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003494 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
  195. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003398 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  196. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003358 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{6C87BB26-F1A3-42CA-9A77-B0C3AE7B8700}
  197. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003270 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
  198. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003152 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  199. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003082 _____ C:\WINDOWS\system32\Tasks\Wise Memory Optimizer Task.job
  200. 2023-10-19 19:06 - 2023-10-19 19:06 - 000003062 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1370774956-2404028756-174667980-1001
  201. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002992 _____ C:\WINDOWS\system32\Tasks\HidHide_Updater
  202. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002984 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  203. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  204. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  205. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  206. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002948 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  207. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002914 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  208. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1370774956-2404028756-174667980-1001
  209. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002744 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  210. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002726 _____ C:\WINDOWS\system32\Tasks\ViGEmBus_Updater
  211. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002388 _____ C:\WINDOWS\system32\Tasks\MSI_Toast_Server
  212. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002222 _____ C:\WINDOWS\system32\Tasks\TempClean3
  213. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002198 _____ C:\WINDOWS\system32\Tasks\TempClean1
  214. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002188 _____ C:\WINDOWS\system32\Tasks\TempClean2
  215. 2023-10-19 19:06 - 2023-10-19 19:06 - 000002148 _____ C:\WINDOWS\system32\Tasks\MSISW_Host
  216. 2023-10-19 19:05 - 2023-10-19 19:05 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network
  217. 2023-10-19 19:04 - 2023-10-21 23:13 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
  218. 2023-10-19 19:04 - 2023-10-21 18:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
  219. 2023-10-19 19:04 - 2023-10-19 20:55 - 000296160 _____ C:\WINDOWS\system32\FNTCACHE.DAT
  220. 2023-10-19 19:04 - 2023-10-19 20:55 - 000000000 ____D C:\Windows.old
  221. 2023-10-19 17:50 - 2023-10-19 19:04 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Crypto
  222. 2023-10-19 17:50 - 2023-10-19 17:50 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\SystemCertificates
  223. 2023-10-19 17:50 - 2023-10-19 17:50 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Network
  224. 2023-10-19 17:48 - 2023-10-19 20:55 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Windows
  225. 2023-10-19 17:48 - 2023-10-19 20:55 - 000000000 ____D C:\Users\jk795
  226. 2023-10-19 17:48 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
  227. 2023-10-19 17:48 - 2023-10-19 19:04 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Spelling
  228. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\Ustawienia lokalne
  229. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\Szablony
  230. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\Moje dokumenty
  231. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\Menu Start
  232. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\Dane aplikacji
  233. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
  234. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\AppData\Local\Tymczasowe pliki internetowe
  235. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\AppData\Local\Historia
  236. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 _SHDL C:\Users\jk795\AppData\Local\Dane aplikacji
  237. 2023-10-19 17:48 - 2023-10-19 17:48 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\CLR Security Config
  238. 2023-10-19 17:47 - 2023-10-19 17:47 - 000000000 ____D C:\WINDOWS\system32\SteelSeries
  239. 2023-10-19 17:46 - 2023-10-19 17:48 - 000000000 ____D C:\WINDOWS\ServiceProfiles
  240. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
  241. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp
  242. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\system32\FxsTmp
  243. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\addins
  244. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\Program Files\Reference Assemblies
  245. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\Program Files\MSBuild
  246. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
  247. 2023-10-19 17:44 - 2023-10-19 17:44 - 000000000 ____D C:\Program Files (x86)\MSBuild
  248. 2023-10-19 17:43 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\pl
  249. 2023-10-19 17:43 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\pl
  250. 2023-10-19 16:18 - 2023-10-19 16:18 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
  251. 2023-10-19 16:07 - 2023-10-20 20:41 - 000000000 ___DC C:\WINDOWS\Panther
  252. 2023-10-14 09:34 - 2023-10-19 17:43 - 000000000 ____D C:\Program Files\Windows Photo Viewer
  253. 2023-10-14 09:34 - 2023-10-19 17:43 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
  254. 2023-10-14 09:34 - 2023-10-19 17:43 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
  255. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 __SHD C:\WINDOWS\BitLockerDiscoveryVolumeContents
  256. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ___SD C:\WINDOWS\system32\AppV
  257. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
  258. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
  259. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\system32\Drivers\mde
  260. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\RemotePackages
  261. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices
  262. 2023-10-14 09:34 - 2023-10-14 09:34 - 000000000 ____D C:\ProgramData\ssh
  263. 2023-10-14 09:26 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync
  264. 2023-10-14 09:26 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync
  265. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
  266. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
  267. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
  268. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
  269. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\winrm
  270. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\WCN
  271. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\slmgr
  272. 2023-10-14 09:24 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
  273. 2023-10-14 09:24 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep
  274. 2023-10-14 09:24 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\SysWOW64\0409
  275. 2023-10-14 09:24 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\system32\0409
  276. 2023-10-14 09:24 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\DigitalLocker
  277. 2023-10-14 07:29 - 2023-10-14 07:29 - 000000000 _SHDL C:\Users\Default User
  278. 2023-10-14 07:29 - 2023-10-14 07:29 - 000000000 _SHDL C:\Users\All Users
  279. 2023-10-14 07:15 - 2023-10-19 17:54 - 000000000 ____D C:\WINDOWS\Setup
  280. 2023-10-14 07:12 - 2023-10-21 23:24 - 000000000 ____D C:\WINDOWS\SystemTemp
  281. 2023-10-14 07:12 - 2023-10-21 23:21 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
  282. 2023-10-14 07:12 - 2023-10-21 23:14 - 000000000 ____D C:\WINDOWS\ServiceState
  283. 2023-10-14 07:12 - 2023-10-21 20:25 - 000000000 ____D C:\WINDOWS\AppReadiness
  284. 2023-10-14 07:12 - 2023-10-21 19:12 - 000000000 ___HD C:\Program Files\WindowsApps
  285. 2023-10-14 07:12 - 2023-10-19 22:25 - 000000000 ____D C:\WINDOWS\appcompat
  286. 2023-10-14 07:12 - 2023-10-19 21:11 - 000000000 ___RD C:\WINDOWS\PrintDialog
  287. 2023-10-14 07:12 - 2023-10-19 21:10 - 000000000 ____D C:\ProgramData\USOPrivate
  288. 2023-10-14 07:12 - 2023-10-19 20:55 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
  289. 2023-10-14 07:12 - 2023-10-19 20:55 - 000000000 ____D C:\WINDOWS\system32\oobe
  290. 2023-10-14 07:12 - 2023-10-19 20:55 - 000000000 ____D C:\Program Files\Windows NT
  291. 2023-10-14 07:12 - 2023-10-19 19:06 - 000000000 ____D C:\Program Files\Windows Defender
  292. 2023-10-14 07:12 - 2023-10-19 19:04 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
  293. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ___RD C:\Program Files (x86)
  294. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
  295. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\WebThreatDefSvc
  296. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\spool
  297. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
  298. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData
  299. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\config\TxR
  300. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\AppLocker
  301. 2023-10-14 07:12 - 2023-10-19 19:04 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
  302. 2023-10-14 07:12 - 2023-10-19 17:51 - 000000000 __RHD C:\Users\Public\Libraries
  303. 2023-10-14 07:12 - 2023-10-19 17:48 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows
  304. 2023-10-14 07:12 - 2023-10-19 17:45 - 000000000 ____D C:\WINDOWS\OCR
  305. 2023-10-14 07:12 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
  306. 2023-10-14 07:12 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\system32\setup
  307. 2023-10-14 07:12 - 2023-10-19 17:44 - 000000000 ____D C:\WINDOWS\system32\MUI
  308. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
  309. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
  310. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ___SD C:\WINDOWS\system32\F12
  311. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
  312. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
  313. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
  314. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
  315. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
  316. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
  317. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\Sysprep
  318. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\Sgrm
  319. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
  320. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\migwiz
  321. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\Dism
  322. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\system32\Com
  323. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
  324. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\IME
  325. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\Program Files\Common Files\System
  326. 2023-10-14 07:12 - 2023-10-19 17:43 - 000000000 ____D C:\Program Files (x86)\Windows Defender
  327. 2023-10-14 07:12 - 2023-10-14 09:36 - 000000000 ____D C:\WINDOWS\Containers
  328. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\SystemResources
  329. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\SystemApps
  330. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\ShellComponents
  331. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\security
  332. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\schemas
  333. 2023-10-14 07:12 - 2023-10-14 09:34 - 000000000 ____D C:\WINDOWS\InboxApps
  334. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
  335. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
  336. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
  337. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
  338. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
  339. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
  340. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
  341. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
  342. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
  343. 2023-10-14 07:12 - 2023-10-14 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
  344. 2023-10-14 07:12 - 2023-10-14 09:25 - 000000000 ____D C:\WINDOWS\Globalization
  345. 2023-10-14 07:12 - 2023-10-14 09:24 - 000000000 ___SD C:\WINDOWS\system32\dsc
  346. 2023-10-14 07:12 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
  347. 2023-10-14 07:12 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\Help
  348. 2023-10-14 07:12 - 2023-10-14 09:24 - 000000000 ____D C:\WINDOWS\BrowserCore
  349. 2023-10-14 07:12 - 2023-10-14 09:24 - 000000000 ____D C:\Program Files (x86)\Windows NT
  350. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 __SHD C:\Program Files\Windows Sidebar
  351. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
  352. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration
  353. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ___SD C:\WINDOWS\system32\Configuration
  354. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\Web
  355. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI
  356. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\winevt
  357. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\ras
  358. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\PointOfService
  359. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\Pbr
  360. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
  361. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\SKB
  362. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\Resources
  363. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\Registration
  364. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\Provisioning
  365. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\PLA
  366. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\Media
  367. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\InputMethod
  368. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\IdentityCRL
  369. 2023-10-14 07:12 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\DiagTrack
  370. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui
  371. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\SysWOW64\lxss
  372. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\system32\UNP
  373. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\system32\Nui
  374. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\system32\lxss
  375. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files
  376. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___RD C:\WINDOWS\Offline Web Pages
  377. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache
  378. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
  379. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\WUModels
  380. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\WaaS
  381. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\Vss
  382. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\UUS
  383. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\tracing
  384. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\TAPI
  385. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
  386. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\ras
  387. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
  388. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF
  389. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc
  390. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
  391. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
  392. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi
  393. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod
  394. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
  395. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\IME
  396. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml
  397. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers
  398. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
  399. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel
  400. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops
  401. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker
  402. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
  403. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
  404. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
  405. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
  406. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\ProximityToast
  407. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\NDF
  408. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\Keywords
  409. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\Ipmi
  410. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\InputMethod
  411. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\inetsrv
  412. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\IME
  413. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\icsxml
  414. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\ias
  415. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
  416. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\DriverState
  417. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\downlevel
  418. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\DDFs
  419. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile
  420. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\config\RegBack
  421. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\config\Journal
  422. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\Bthprops
  423. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\appraiser
  424. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
  425. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\System
  426. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\ShellExperiences
  427. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\SchCache
  428. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\rescache
  429. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\Performance
  430. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\ModemLogs
  431. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\LiveKernelReports
  432. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\L2Schemas
  433. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter
  434. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\Cursors
  435. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\Branding
  436. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\WINDOWS\bcastdvr
  437. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Spelling
  438. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\ProgramData\USOShared
  439. 2023-10-14 07:12 - 2023-10-14 07:12 - 000000000 ____D C:\Program Files\ModifiableWindowsApps
  440. 2023-10-14 07:12 - 2023-10-14 07:09 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config
  441. 2023-10-14 07:12 - 2023-10-14 07:09 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config
  442. 2023-10-14 07:12 - 2023-10-14 07:09 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json
  443. 2023-10-14 07:10 - 2023-10-21 23:20 - 000000000 ____D C:\WINDOWS\INF
  444. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008269 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
  445. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008269 _____ C:\WINDOWS\system32\ResPriHMImageList
  446. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008266 _____ C:\WINDOWS\system32\ResPriUHMImageList
  447. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008264 _____ C:\WINDOWS\system32\ResPriImageListLowCost
  448. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008240 _____ C:\WINDOWS\system32\ResPriLMImageList
  449. 2023-10-14 07:07 - 2023-10-14 07:07 - 000008240 _____ C:\WINDOWS\system32\ResPriImageList
  450. 2023-10-14 07:07 - 2023-10-14 07:07 - 000000146 _____ C:\WINDOWS\system32\UevAppMonitor.exe.config
  451. 2023-10-14 07:07 - 2023-10-14 07:07 - 000000112 _____ C:\WINDOWS\SysWOW64\MixedRealityRuntime.json
  452. 2023-10-14 07:07 - 2023-10-14 07:07 - 000000112 _____ C:\WINDOWS\system32\MixedRealityRuntime.json
  453. 2023-10-14 07:06 - 2023-10-14 07:06 - 000089761 _____ C:\WINDOWS\system32\DiskSnapshot.conf
  454. 2023-10-14 07:06 - 2023-10-14 07:06 - 000061060 _____ C:\WINDOWS\SysWOW64\ctac.json
  455. 2023-10-14 07:06 - 2023-10-14 07:06 - 000040448 _____ (Microsoft) C:\WINDOWS\SysWOW64\csrr.rs
  456. 2023-10-14 07:06 - 2023-10-14 07:06 - 000038400 _____ (Microsoft) C:\WINDOWS\SysWOW64\oflc-nz.rs
  457. 2023-10-14 07:06 - 2023-10-14 07:06 - 000037888 _____ (Microsoft) C:\WINDOWS\SysWOW64\fpb.rs
  458. 2023-10-14 07:06 - 2023-10-14 07:06 - 000033280 _____ (Microsoft) C:\WINDOWS\SysWOW64\cero.rs
  459. 2023-10-14 07:06 - 2023-10-14 07:06 - 000030208 _____ (Microsoft) C:\WINDOWS\SysWOW64\esrb.rs
  460. 2023-10-14 07:06 - 2023-10-14 07:06 - 000027648 _____ (Microsoft) C:\WINDOWS\SysWOW64\usk.rs
  461. 2023-10-14 07:06 - 2023-10-14 07:06 - 000027648 _____ (Microsoft) C:\WINDOWS\SysWOW64\cob-au.rs
  462. 2023-10-14 07:06 - 2023-10-14 07:06 - 000019456 _____ (Microsoft) C:\WINDOWS\SysWOW64\pegi-pt.rs
  463. 2023-10-14 07:06 - 2023-10-14 07:06 - 000019456 _____ (Microsoft) C:\WINDOWS\SysWOW64\pegi.rs
  464. 2023-10-14 07:06 - 2023-10-14 07:06 - 000017920 _____ (Microsoft) C:\WINDOWS\SysWOW64\grb.rs
  465. 2023-10-14 07:06 - 2023-10-14 07:06 - 000014336 _____ (Microsoft) C:\WINDOWS\SysWOW64\djctq.rs
  466. 2023-10-14 07:06 - 2023-10-14 07:06 - 000013824 _____ (Microsoft) C:\WINDOWS\SysWOW64\pcbp.rs
  467. 2023-10-14 07:06 - 2023-10-14 07:06 - 000004608 _____ (Microsoft) C:\WINDOWS\SysWOW64\WEB.rs
  468. 2023-10-14 07:06 - 2023-10-14 07:06 - 000001820 _____ C:\WINDOWS\SysWOW64\rasctrnm.h
  469. 2023-10-14 07:06 - 2023-10-14 07:06 - 000001820 _____ C:\WINDOWS\system32\rasctrnm.h
  470. 2023-10-14 07:06 - 2023-10-14 07:06 - 000000670 ___RH C:\WINDOWS\WindowsShell.Manifest
  471. 2023-10-14 07:05 - 2023-10-14 07:05 - 000061060 _____ C:\WINDOWS\system32\ctac.json
  472. 2023-10-14 07:05 - 2023-10-14 07:05 - 000049152 _____ (Microsoft) C:\WINDOWS\system32\oflc-nz.rs
  473. 2023-10-14 07:05 - 2023-10-14 07:05 - 000049152 _____ (Microsoft) C:\WINDOWS\system32\csrr.rs
  474. 2023-10-14 07:05 - 2023-10-14 07:05 - 000045056 _____ (Microsoft) C:\WINDOWS\system32\fpb.rs
  475. 2023-10-14 07:05 - 2023-10-14 07:05 - 000040960 _____ (Microsoft) C:\WINDOWS\system32\esrb.rs
  476. 2023-10-14 07:05 - 2023-10-14 07:05 - 000040960 _____ (Microsoft) C:\WINDOWS\system32\cero.rs
  477. 2023-10-14 07:05 - 2023-10-14 07:05 - 000038128 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaLPSSi_GPIO.sys
  478. 2023-10-14 07:05 - 2023-10-14 07:05 - 000036864 _____ (Microsoft) C:\WINDOWS\system32\usk.rs
  479. 2023-10-14 07:05 - 2023-10-14 07:05 - 000036864 _____ (Microsoft) C:\WINDOWS\system32\cob-au.rs
  480. 2023-10-14 07:05 - 2023-10-14 07:05 - 000028672 _____ (Microsoft) C:\WINDOWS\system32\pegi-pt.rs
  481. 2023-10-14 07:05 - 2023-10-14 07:05 - 000028672 _____ (Microsoft) C:\WINDOWS\system32\pegi.rs
  482. 2023-10-14 07:05 - 2023-10-14 07:05 - 000028672 _____ (Microsoft) C:\WINDOWS\system32\grb.rs
  483. 2023-10-14 07:05 - 2023-10-14 07:05 - 000024576 _____ (Microsoft) C:\WINDOWS\system32\pcbp.rs
  484. 2023-10-14 07:05 - 2023-10-14 07:05 - 000024576 _____ (Microsoft) C:\WINDOWS\system32\djctq.rs
  485. 2023-10-14 07:05 - 2023-10-14 07:05 - 000018215 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
  486. 2023-10-14 07:05 - 2023-10-14 07:05 - 000012288 _____ (Microsoft) C:\WINDOWS\system32\WEB.rs
  487. 2023-10-14 07:05 - 2023-10-14 07:05 - 000010576 _____ C:\WINDOWS\system32\TransformPPSToWlan.xslt
  488. 2023-10-14 07:05 - 2023-10-14 07:05 - 000001688 _____ C:\WINDOWS\system32\TransformPPSToWlanCredentials.xslt
  489. 2023-10-14 07:04 - 2023-10-21 23:13 - 081526784 _____ C:\WINDOWS\system32\config\SOFTWARE
  490. 2023-10-14 07:04 - 2023-10-21 23:13 - 017301504 _____ C:\WINDOWS\system32\config\SYSTEM
  491. 2023-10-14 07:04 - 2023-10-21 23:13 - 000786432 _____ C:\WINDOWS\system32\config\DEFAULT
  492. 2023-10-14 07:04 - 2023-10-21 23:13 - 000524288 _____ C:\WINDOWS\system32\config\BBI
  493. 2023-10-14 07:04 - 2023-10-21 23:13 - 000131072 _____ C:\WINDOWS\system32\config\SAM
  494. 2023-10-14 07:04 - 2023-10-21 23:13 - 000032768 _____ C:\WINDOWS\system32\config\SECURITY
  495. 2023-10-14 07:04 - 2023-10-19 19:06 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
  496. 2023-10-14 07:04 - 2023-10-19 17:46 - 000000000 ____D C:\WINDOWS\CbsTemp
  497. 2023-10-14 07:04 - 2023-10-14 07:29 - 000000000 ____D C:\WINDOWS\system32\SMI
  498. 2023-10-14 07:03 - 2023-10-19 17:43 - 000000000 ____D C:\WINDOWS\servicing
  499. 2023-10-14 03:50 - 2023-10-14 03:50 - 000042464 _____ C:\Users\jk795\Downloads\Cv Jakub 2023.pdf
  500. 2023-10-07 08:19 - 2023-10-19 19:04 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
  501. 2023-10-05 03:10 - 2023-10-10 02:30 - 000000000 ____D C:\Users\jk795\OneDrive\Dokumenty\FC 24
  502. 2023-10-05 03:10 - 2023-10-07 21:15 - 000000000 ____D C:\ProgramData\Frostbite
  503. 2023-10-05 03:10 - 2023-10-05 03:10 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Electronic Arts
  504. 2023-10-05 03:10 - 2023-10-05 03:10 - 000000000 ____D C:\ProgramData\Electronic Arts
  505. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne
  506. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\Szablony
  507. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\Moje dokumenty
  508. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\Menu Start
  509. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\Dane aplikacji
  510. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
  511. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe
  512. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia
  513. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji
  514. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Szablony
  515. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Pulpit
  516. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
  517. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Menu Start
  518. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Dokumenty
  519. 2023-10-05 02:25 - 2023-10-05 02:25 - 000000000 _SHDL C:\ProgramData\Dane aplikacji
  520. 2023-10-05 02:23 - 2023-10-21 23:13 - 000053696 _____ C:\WINDOWS\system32\Drivers\truesight.sys
  521. 2023-10-05 01:52 - 2023-10-05 01:52 - 009335710 _____ C:\Users\jk795\Downloads\7D18vA8.zip
  522. 2023-10-05 01:34 - 2023-10-07 21:15 - 000000000 ____D C:\Program Files\EA
  523. 2023-10-05 01:34 - 2023-10-05 01:34 - 000000000 ____D C:\Users\jk795\AppData\Roaming\EA
  524. 2023-10-05 01:34 - 2023-10-05 01:34 - 000000000 ____D C:\ProgramData\eaanticheat
  525. 2023-10-05 01:01 - 2023-10-07 21:19 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
  526. 2023-10-05 00:44 - 2023-10-19 19:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
  527. 2023-10-05 00:44 - 2023-10-05 00:46 - 000000000 ____D C:\ProgramData\EA Desktop
  528. 2023-10-05 00:44 - 2023-10-05 00:44 - 000000000 ____D C:\Users\jk795\AppData\Local\Electronic Arts
  529. 2023-10-05 00:44 - 2023-10-05 00:44 - 000000000 ____D C:\Users\jk795\AppData\Local\EADesktop
  530. 2023-10-05 00:44 - 2023-10-05 00:44 - 000000000 ____D C:\Program Files\Electronic Arts
  531. 2023-10-04 15:44 - 2023-10-19 19:04 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome
  532. 2023-10-04 15:44 - 2023-10-04 15:45 - 047667808 _____ (Adlice Software ) C:\Users\jk795\Downloads\RogueKiller_setup.exe
  533. 2023-10-04 15:44 - 2023-10-04 15:45 - 047667808 _____ (Adlice Software ) C:\Users\jk795\Downloads\RogueKiller_setup (1).exe
  534. 2023-10-04 15:29 - 2023-10-04 15:29 - 000000000 ____D C:\Users\jk795\AppData\Local\ElevatedDiagnostics
  535. 2023-10-04 15:19 - 2023-10-04 15:19 - 000000000 ____D C:\ProgramData\Origin
  536. 2023-09-27 23:53 - 2023-09-27 23:53 - 000000000 ____D C:\Users\jk795\OneDrive\Dokumenty\Immortals Fenyx Rising
  537. 2023-09-24 23:55 - 2023-09-24 23:55 - 000000000 ____D C:\Users\jk795\AppData\Local\Backup
  538.  
  539. ==================== Jeden miesiąc (zmodyfikowane) ==================
  540.  
  541. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  542.  
  543. 2023-10-21 23:23 - 2023-07-09 23:51 - 000000000 ____D C:\ProgramData\NVIDIA
  544. 2023-10-21 23:17 - 2023-07-10 00:02 - 000000000 ____D C:\Users\jk795\AppData\Local\D3DSCache
  545. 2023-10-21 23:14 - 2023-09-13 19:55 - 000000000 ____D C:\Program Files (x86)\Google
  546. 2023-10-21 23:14 - 2023-07-25 00:48 - 000000000 ____D C:\Users\jk795\AppData\Local\Malwarebytes
  547. 2023-10-21 23:13 - 2023-07-10 08:44 - 000012288 ___SH C:\DumpStack.log.tmp
  548. 2023-10-20 20:56 - 2023-07-10 04:42 - 000000000 ____D C:\Users\jk795\AppData\Local\CrashDumps
  549. 2023-10-20 00:24 - 2023-07-10 06:57 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
  550. 2023-10-20 00:23 - 2023-07-25 00:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
  551. 2023-10-20 00:23 - 2023-07-25 00:56 - 000000000 ____D C:\Program Files\RogueKiller
  552. 2023-10-19 21:40 - 2023-09-13 19:55 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  553. 2023-10-19 20:55 - 2023-07-09 23:55 - 000000000 __RHD C:\Users\Public\AccountPictures
  554. 2023-10-19 19:04 - 2023-09-17 01:21 - 000000000 ____D C:\WINDOWS\system32\appmgmt
  555. 2023-10-19 19:04 - 2023-09-17 01:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
  556. 2023-10-19 19:04 - 2023-09-16 02:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
  557. 2023-10-19 19:04 - 2023-09-12 20:39 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
  558. 2023-10-19 19:04 - 2023-08-14 03:43 - 000000000 ____D C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
  559. 2023-10-19 19:04 - 2023-08-13 01:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
  560. 2023-10-19 19:04 - 2023-08-06 23:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\DAEMON Tools Lite
  561. 2023-10-19 19:04 - 2023-07-23 18:14 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
  562. 2023-10-19 19:04 - 2023-07-10 09:37 - 000000000 ____D C:\WINDOWS\system32\MsDtc
  563. 2023-10-19 19:04 - 2023-07-10 03:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
  564. 2023-10-19 19:04 - 2023-07-10 00:26 - 000000000 ____D C:\Program Files\Intel
  565. 2023-10-19 19:04 - 2023-07-10 00:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Memory Optimizer
  566. 2023-10-19 19:04 - 2023-07-10 00:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
  567. 2023-10-19 19:04 - 2023-07-09 23:56 - 000000000 ___RD C:\Users\jk795\OneDrive
  568. 2023-10-19 19:04 - 2023-07-09 23:51 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
  569. 2023-10-19 19:03 - 2023-07-09 23:55 - 000000000 ____D C:\Users\jk795\AppData\Local\Packages
  570. 2023-10-19 17:48 - 2023-07-24 17:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SteelSeries
  571. 2023-10-19 17:48 - 2023-07-10 00:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
  572. 2023-10-19 01:31 - 2023-07-09 23:56 - 000002423 _____ C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
  573. 2023-10-16 17:44 - 2023-07-10 00:00 - 000001434 _____ C:\Users\jk795\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk
  574. 2023-10-12 20:53 - 2023-07-24 02:31 - 000000000 ____D C:\Users\jk795\AppData\LocalLow\Mozilla
  575. 2023-10-10 23:29 - 2023-07-11 21:07 - 000000000 ____D C:\WINDOWS\system32\MRT
  576. 2023-10-10 23:28 - 2023-07-11 21:07 - 181553176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
  577. 2023-10-09 18:49 - 2023-07-10 01:09 - 000000000 ____D C:\Users\jk795\AppData\Local\NVIDIA Corporation
  578. 2023-10-07 21:17 - 2023-08-06 03:58 - 000000000 ____D C:\Users\jk795\OneDrive\Dokumenty\FIFA 23
  579. 2023-10-07 13:39 - 2023-09-17 19:03 - 000000000 ____D C:\WINDOWS\pss
  580. 2023-10-06 03:09 - 2023-08-06 01:22 - 000000000 ____D C:\Users\jk795\AppData\Local\Origin
  581. 2023-10-06 01:47 - 2023-07-09 23:56 - 000000000 ____D C:\Users\jk795\AppData\Local\PlaceholderTileLogoFolder
  582. 2023-10-05 02:43 - 2023-07-09 23:46 - 000000000 ____D C:\ProgramData\Packages
  583. 2023-10-05 01:27 - 2023-07-10 03:56 - 000000000 ____D C:\ProgramData\Epic
  584. 2023-10-05 00:44 - 2023-07-10 00:43 - 000000000 ____D C:\ProgramData\Package Cache
  585. 2023-10-05 00:30 - 2023-07-10 08:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
  586. 2023-09-27 23:53 - 2023-08-06 19:04 - 000003781 _____ C:\WINDOWS\system32\Drivers\etc\hosts.rollback
  587. 2023-09-27 00:15 - 2023-08-04 23:46 - 000000000 ____D C:\Users\jk795\AppData\Roaming\qBittorrent
  588. 2023-09-26 21:30 - 2023-07-10 00:11 - 000000000 ____D C:\Users\jk795\AppData\Local\Steam
  589.  
  590. ==================== Pliki w katalogu głównym wybranych folderów ========
  591.  
  592. 2023-10-20 00:29 - 2023-10-20 00:29 - 000007605 _____ () C:\Users\jk795\AppData\Local\Resmon.ResmonCfg
  593.  
  594. ==================== SigCheck ============================
  595.  
  596. (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
  597.  
  598. ==================== Koniec FRST.txt ========================
Add Comment
Please, Sign In to add comment