Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 29-11-2020
- Uruchomiony przez tobayashi (administrator) PC1 (29-11-2020 20:24:23)
- Uruchomiony z C:\Users\tobayashi\Desktop
- Załadowane profile: tobayashi
- Platform: Windows 8.1 Pro (Update) (X64) Język: Polski (Polska)
- Domyślna przeglądarka: FF
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (ABBYY SOLUTIONS LIMITED -> ABBYY) C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe
- (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
- (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
- (Intel(R) Software Development Products -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
- (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <13>
- (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2>
- (Open-Shell) [Brak podpisu cyfrowego] C:\Program Files\Open-Shell\StartMenu.exe
- (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe
- (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- (Vivaldi Technologies AS -> Vivaldi Technologies AS) C:\Users\tobayashi\AppData\Local\Vivaldi\Application\update_notifier.exe
- (Vivaldi Technologies AS -> Vivaldi Technologies AS) C:\Users\tobayashi\AppData\Local\Vivaldi\Application\vivaldi.exe <13>
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [Open-Shell Start Menu] => C:\Program Files\Open-Shell\StartMenu.exe [224768 2019-10-26] (Open-Shell) [Brak podpisu cyfrowego]
- HKLM\...\Run: [] => [X]
- HKLM\...\Run: [WindowsDefender] => "%ProgramFiles%\Windows Defender\MSASCuiL.exe"
- HKLM-x32\...\Run: [] => [X]
- HKU\S-1-5-21-3746824727-3175080848-809881633-1001\...\Run: [Vivaldi Update Notifier] => C:\Users\tobayashi\AppData\Local\Vivaldi\Application\update_notifier.exe [1883720 2020-11-12] (Vivaldi Technologies AS -> Vivaldi Technologies AS)
- HKU\S-1-5-21-3746824727-3175080848-809881633-1001\...\Run: [ABBYY Screenshot Reader Retail] => [X]
- HKU\S-1-5-21-3746824727-3175080848-809881633-1001\...\Run: [] => [X]
- HKU\S-1-5-21-3746824727-3175080848-809881633-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [365760 2020-09-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- HKU\S-1-5-21-3746824727-3175080848-809881633-1001\...\Run: [InstMP_Service] => C:\Users\tobayashi\AppData\Local\InstallShield\InstMP.exe
- HKLM\...\Windows x64\Print Processors\Canon MG4200 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDB9.DLL [30208 2012-03-26] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
- HKLM\...\Print\Monitors\Canon BJ Language Monitor MG4200 series: C:\Windows\system32\CNMLMB9.DLL [389120 2012-03-26] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.198\Installer\chrmstp.exe [2020-11-12] (Google LLC -> Google LLC)
- Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2020-11-22]
- ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS)
- Startup: C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Adobe Gamma.lnk [2020-08-20]
- ShortcutTarget: Adobe Gamma.lnk -> C:\Program Files (x86)\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe (Adobe Systems, Inc.) [Brak podpisu cyfrowego]
- Startup: C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MagicDisc.lnk [2020-09-10]
- ShortcutTarget: MagicDisc.lnk -> C:\Program Files (x86)\MagicDisc\MagicDisc.exe (MagicISO, Inc.) [Brak podpisu cyfrowego]
- GroupPolicy: Ograniczenia ? <==== UWAGA
- Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA
- HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
- HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {0006ED7C-6868-45BE-97E5-F5CEB3C49F42} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
- Task: {09AD9D59-B3DF-4EA4-9802-3373C7475DCE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- Task: {2215C4E5-7DEA-4E39-9384-29B465271BE0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- Task: {2A7B75B6-CD53-472B-9BD7-960F6E07667E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-30] (Google LLC -> Google LLC)
- Task: {2D3D37F2-7BD3-439F-9BAB-8CFEA08A3170} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-05-29] () [Brak podpisu cyfrowego]
- Task: {4E6C3AB0-45C3-4EA7-A106-E43D0F4E9C13} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-08-30] (Google LLC -> Google LLC)
- Task: {6CF7EDE7-1A75-48EA-A143-95A936C9D74D} - System32\Tasks\{28B709C3-6403-4898-8E94-5A84DC3DCC75} => C:\Windows\system32\pcalua.exe -a C:\Users\tobayashi\Downloads\mednafen-1.24.3-win64\mednaffe.exe -d C:\Users\tobayashi\Downloads\mednafen-1.24.3-win64
- Task: {77B5BF52-3732-465D-AB0C-126D5DE2F2D1} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-21] (Mozilla Corporation -> Mozilla Foundation)
- Task: {8823F59E-34AF-4AD4-BF10-BA1F3033C892} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- Task: {B169B08F-E6E4-4330-B5CF-B14CFC926836} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [7658200 2017-06-30] (Piriform Ltd -> Piriform Ltd)
- Task: {B2C33636-E856-41FB-82AE-A6B221CFF85C} - System32\Tasks\{3DAEF29C-C3C0-468B-A0B1-E8094198AE8E} => C:\Windows\system32\pcalua.exe -a "C:\Users\tobayashi\Downloads\Worms 2 (1997) [Wersja PL]\w2.exe" -d "C:\Users\tobayashi\Downloads\Worms 2 (1997) [Wersja PL]"
- Task: {B7097598-5704-4089-9924-F4B71DD9F7F6} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel(R) Software Development Products -> Intel Corporation)
- Task: {E78A5C2C-FD6A-4FAA-86D0-1C767C4E2D60} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe
- Task: {F23B1BA0-7986-45EF-9B29-5A8F4956AB59} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\Program Files\Windows Defender\\MpCmdRun.exe [410792 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- Task: {FFC020AB-BAEA-4BBC-B0BB-6472BC04BECB} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3087184 2020-03-10] (Intel(R) Software Development Products -> Intel Corporation)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{BEB6B873-40D9-423D-B61B-8D9E9153AD6A}: [DhcpNameServer] 192.168.1.1
- Edge:
- ======
- Edge Profile: C:\Users\tobayashi\AppData\Local\Microsoft\Edge\User Data\Default [2020-11-28]
- FireFox:
- ========
- FF DefaultProfile: 46bxx60q.default
- FF ProfilePath: C:\Users\tobayashi\AppData\Roaming\Mozilla\Firefox\Profiles\46bxx60q.default [2020-09-13]
- FF NewTab: Mozilla\Firefox\Profiles\46bxx60q.default -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2020-06-03 02:02:34&bName=&bitmask=0450
- FF Extension: (Avira Browser Safety) - C:\Users\tobayashi\AppData\Roaming\Mozilla\Firefox\Profiles\46bxx60q.default\Extensions\[email protected] [2020-09-13]
- FF ProfilePath: C:\Users\tobayashi\AppData\Roaming\Mozilla\Firefox\Profiles\wl0no301.default-release [2020-11-29]
- FF Homepage: Mozilla\Firefox\Profiles\wl0no301.default-release -> about:blank
- FF NewTab: Mozilla\Firefox\Profiles\wl0no301.default-release -> hxxps://defaultsearch.co/homepage?hp=1&pId=IC150206&iDate=2020-06-03 02:02:34&bName=&bitmask=0450
- FF Notifications: Mozilla\Firefox\Profiles\wl0no301.default-release -> hxxps://www.faceit.com
- FF Extension: (uBlock Origin) - C:\Users\tobayashi\AppData\Roaming\Mozilla\Firefox\Profiles\wl0no301.default-release\Extensions\[email protected] [2020-11-20]
- FF Extension: (Video DownloadHelper) - C:\Users\tobayashi\AppData\Roaming\Mozilla\Firefox\Profiles\wl0no301.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-11-24]
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
- FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
- Chrome:
- =======
- CHR Profile: C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default [2020-11-17]
- CHR Extension: (Prezentacje) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-08-30]
- CHR Extension: (Dokumenty) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-08-30]
- CHR Extension: (Dysk Google) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-26]
- CHR Extension: (YouTube) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-08-30]
- CHR Extension: (Avira Safe Shopping) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2020-11-03]
- CHR Extension: (Arkusze) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-08-30]
- CHR Extension: (Dokumenty Google offline) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-17]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-08-30]
- CHR Extension: (Gmail) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-26]
- CHR Extension: (Chrome Media Router) - C:\Users\tobayashi\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-26]
- CHR HKLM\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
- CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 ABBYY.Licensing.FineReader.ScreenshotReader.9.0; C:\Program Files (x86)\ABBYY Screenshot Reader\NetworkLicenseServer.exe [759048 2009-05-15] (ABBYY SOLUTIONS LIMITED -> ABBYY)
- S3 Adobe LM Service; C:\Program Files (x86)\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe [72704 2020-08-20] (Adobe Systems) [Brak podpisu cyfrowego]
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8802800 2020-11-26] (BattlEye Innovations e.K. -> )
- R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4581568 2020-09-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [812672 2020-11-27] (EasyAntiCheat Oy -> Epic Games, Inc)
- S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7269976 2020-11-29] (Malwarebytes Inc -> Malwarebytes)
- S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesUpdateService.exe [32648 2020-11-20] (SteelSeries ApS -> )
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13109264 2020-06-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
- S3 VBoxSDS; C:\Program Files\Oracle\VirtualBox\VBoxSDS.exe [746504 2020-10-16] (Oracle Corporation -> Oracle Corporation)
- R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 cpuz150; C:\Windows\temp\cpuz150\cpuz150_x64.sys [44832 2020-11-27] (CPUID S.A.R.L.U. -> CPUID)
- R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2020-09-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [59360 2020-09-16] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- R1 epp; C:\EEK\bin64\epp.sys [155112 2020-10-27] (Microsoft Windows Hardware Compatibility Publisher -> Emsisoft Ltd)
- S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-11-29] (Malwarebytes Inc -> Malwarebytes)
- R3 MpKslabf5f1d7; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{A708126A-C02D-49A7-9FA2-F09815371D71}\MpKslDrv.sys [47336 2020-11-29] (Microsoft Windows -> Microsoft Corporation)
- R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [46408 2019-12-23] (SteelSeries ApS -> SteelSeries ApS)
- R3 sshid; C:\Windows\System32\drivers\sshid.sys [55392 2020-10-08] (SteelSeries ApS -> SteelSeries ApS)
- R3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [239432 2020-10-16] (Oracle Corporation -> Oracle Corporation)
- R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [249344 2020-10-16] (Oracle Corporation -> Oracle Corporation)
- U5 vsock; C:\Windows\System32\Drivers\vsock.sys [103224 2019-08-14] (VMware, Inc. -> VMware, Inc.)
- S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
- R3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
- R3 esihdrv; \??\C:\Users\TOBAYA~1\AppData\Local\Temp\esihdrv.sys [X] <==== UWAGA
- S3 GENERICDRV; \??\C:\Users\tobayashi\Desktop\Nowy folder (2)\50608-system\afuwin64\amifldrv64.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2020-11-29 20:24 - 2020-11-29 20:24 - 000017134 _____ C:\Users\tobayashi\Desktop\FRST.txt
- 2020-11-29 20:21 - 2020-11-29 20:24 - 000000000 ____D C:\FRST
- 2020-11-29 20:10 - 2020-11-29 20:10 - 002290176 _____ (Farbar) C:\Users\tobayashi\Desktop\FRST64.exe
- 2020-11-29 19:47 - 2020-11-29 19:47 - 000001273 _____ C:\Users\tobayashi\AppData\Local\recently-used.xbel
- 2020-11-29 19:16 - 2020-11-29 19:20 - 000000000 ____D C:\Users\tobayashi\AppData\Local\PicoTorrent
- 2020-11-29 19:16 - 2020-11-29 19:16 - 000002541 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PicoTorrent.lnk
- 2020-11-29 19:16 - 2020-11-29 19:16 - 000000000 ____D C:\Program Files\PicoTorrent
- 2020-11-29 04:14 - 2020-11-29 04:14 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
- 2020-11-29 04:14 - 2020-11-29 04:14 - 000001976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
- 2020-11-29 04:14 - 2020-11-29 04:13 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
- 2020-11-29 04:13 - 2020-11-29 04:13 - 000000000 ____D C:\Program Files\Malwarebytes
- 2020-11-29 04:10 - 2020-11-29 04:13 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2020-11-29 04:10 - 2020-11-29 04:10 - 000255928 _____ (Malwarebytes) C:\Windows\system32\Drivers\1337370E.sys
- 2020-11-29 04:09 - 2020-11-29 04:11 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable)
- 2020-11-29 04:06 - 2020-11-29 04:06 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\GlarySoft
- 2020-11-29 04:05 - 2020-11-29 04:06 - 000000000 ____D C:\ProgramData\GlarySoft
- 2020-11-29 04:05 - 2020-11-29 04:05 - 000000000 ____D C:\Program Files (x86)\Glarysoft
- 2020-11-29 03:57 - 2020-11-29 04:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GridinSoft Anti-Malware
- 2020-11-29 03:57 - 2020-11-29 03:57 - 000000000 ____D C:\ProgramData\GridinSoft
- 2020-11-28 22:28 - 2020-11-28 22:28 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\EasyAntiCheat
- 2020-11-28 22:28 - 2020-11-28 22:28 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
- 2020-11-28 16:47 - 2020-11-28 16:47 - 000000000 ____D C:\Users\tobayashi\Doctor Web
- 2020-11-28 16:47 - 2020-11-28 16:47 - 000000000 ____D C:\ProgramData\Doctor Web
- 2020-11-28 14:08 - 2020-11-28 14:08 - 000214555 ____H C:\Users\tobayashi\Downloads\[Electro-Torrent.pl] Nieprzerwana akcja - Wing Commander _ Wing Commander (1999) [720p] [BRRip] [XviD] [AC3-LTN] [Lektor PL].torrent
- 2020-11-28 14:08 - 2020-11-28 14:08 - 000180777 ____H C:\Users\tobayashi\Downloads\[Electro-Torrent.pl] Tesla (2020) [720p] [BRRip] [XviD] [AC3-OzW] [Lektor PL].torrent
- 2020-11-28 14:08 - 2020-11-28 14:08 - 000122457 ____H C:\Users\tobayashi\Downloads\[Electro-Torrent.pl] Tesla (2020) [480p] [BRRip] [XviD] [AC3-OzW] [Lektor PL].torrent
- 2020-11-28 14:07 - 2020-11-28 14:07 - 000015646 ____H C:\Users\tobayashi\Downloads\[Electro-Torrent.pl] Koszmar z ulicy Wiazow - A Nightmare on Elm Street (2010) [720p] [BRRip] [XviD] [AC3-LTN] [Lektor PL].torrent
- 2020-11-28 04:10 - 2020-11-28 04:10 - 000000000 ____D C:\Users\tobayashi\AppData\Local\ESET
- 2020-11-28 03:03 - 2020-11-28 03:21 - 000000000 ____D C:\EEK
- 2020-11-27 22:18 - 2020-11-27 22:18 - 000027450 ____H C:\Users\tobayashi\Downloads\[Electro-Torrent.pl] Dziewczyny Mikolajki - Santa Claus Girls [1366x768] [JPG].torrent
- 2020-11-26 10:22 - 2020-11-26 10:22 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Bungie
- 2020-11-26 02:04 - 2020-11-26 02:04 - 000000000 ____D C:\Users\tobayashi\AppData\Local\CrashRpt
- 2020-11-26 00:38 - 2020-11-26 00:46 - 000000000 ____D C:\Program Files (x86)\NapiProjekt
- 2020-11-26 00:38 - 2020-11-26 00:38 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\NapiProjekt
- 2020-11-22 21:54 - 2020-11-22 21:54 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Tencent
- 2020-11-21 08:59 - 2020-11-21 08:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atari800Win PLus
- 2020-11-21 08:59 - 2020-11-21 08:59 - 000000000 ____D C:\Program Files (x86)\Atari800WinPLus
- 2020-11-21 03:53 - 2020-11-21 03:53 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
- 2020-11-21 02:02 - 2020-11-22 08:00 - 000000000 ____D C:\Program Files\Mozilla Firefox
- 2020-11-20 02:02 - 2020-11-20 02:02 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\EMPRESS
- 2020-11-20 02:02 - 2020-11-20 02:02 - 000000000 ____D C:\Users\tobayashi\AppData\Local\TekkenGame
- 2020-11-20 01:04 - 2020-11-20 01:04 - 000000000 ____D C:\Users\tobayashi\AppData\Local\PZBilliards
- 2020-11-19 23:14 - 2020-11-19 23:14 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\SmartSteamEmu
- 2020-11-19 23:09 - 2020-11-20 01:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Games
- 2020-11-17 00:28 - 2020-11-17 00:28 - 000001733 _____ C:\Users\Public\Desktop\Mario Kart 8.lnk
- 2020-11-17 00:28 - 2020-11-17 00:28 - 000001733 _____ C:\ProgramData\Desktop\Mario Kart 8.lnk
- 2020-11-17 00:28 - 2020-11-17 00:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mario Kart 8
- 2020-11-17 00:26 - 2020-11-17 00:26 - 000000000 ____D C:\Games2
- 2020-11-15 22:02 - 2020-11-15 22:02 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Blizzard Entertainment
- 2020-11-15 14:25 - 2020-11-15 14:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II
- 2020-11-15 14:15 - 2020-11-21 22:52 - 000000000 ____D C:\Program Files (x86)\StarCraft
- 2020-11-15 14:09 - 2020-11-17 18:53 - 000000000 ____D C:\Program Files (x86)\StarCraft II
- 2020-11-15 14:09 - 2020-11-15 22:04 - 000000000 ____D C:\Users\tobayashi\Documents\StarCraft II
- 2020-11-15 14:08 - 2020-11-15 22:02 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
- 2020-11-14 02:10 - 2020-11-14 02:10 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\MAXON
- 2020-11-14 02:09 - 2020-11-14 02:09 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\blender-benchmark-launcher
- 2020-11-14 01:53 - 2020-11-14 01:53 - 000000000 ____D C:\Users\tobayashi\.thumbnails
- 2020-11-14 01:51 - 2020-11-14 01:53 - 000000000 ____D C:\Users\tobayashi\AppData\Local\blender-benchmark-launcher
- 2020-11-14 01:43 - 2020-11-14 01:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
- 2020-11-14 01:43 - 2020-11-14 01:43 - 000000000 ____D C:\Program Files\CPUID
- 2020-11-10 19:00 - 2020-10-13 04:31 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2020-11-10 19:00 - 2020-10-13 04:09 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2020-11-10 17:56 - 2020-11-21 22:52 - 000000000 ____D C:\Users\tobayashi\AppData\Local\Battle.net
- 2020-11-10 17:56 - 2020-11-15 14:08 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Battle.net
- 2020-11-10 17:56 - 2020-11-10 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
- 2020-11-10 17:55 - 2020-11-21 22:53 - 000000000 ____D C:\Program Files (x86)\Battle.net
- 2020-11-10 17:54 - 2020-11-15 22:03 - 000000000 ____D C:\Users\tobayashi\AppData\Local\Blizzard Entertainment
- 2020-11-10 17:54 - 2020-11-10 17:54 - 000000000 ____D C:\ProgramData\Battle.net
- 2020-11-10 11:37 - 2020-11-10 11:37 - 525945946 _____ C:\Windows\MEMORY.DMP
- 2020-11-10 11:07 - 2020-11-10 11:08 - 000000000 ____D C:\Users\tobayashi\AppData\Local\Apps\Windows 7 USB DVD Download Tool
- 2020-11-10 11:07 - 2020-11-10 11:07 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool
- 2020-11-03 18:53 - 2020-11-03 18:53 - 000000000 ____D C:\Users\tobayashi\VirtualBox VMs
- 2020-11-03 18:52 - 2020-11-03 18:56 - 000000000 ____D C:\Users\tobayashi\.VirtualBox
- 2020-11-03 18:52 - 2020-11-03 18:52 - 000000000 ____D C:\ProgramData\VirtualBox
- 2020-11-03 18:52 - 2020-11-03 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox
- 2020-11-03 18:52 - 2020-11-03 18:52 - 000000000 ____D C:\Program Files\Oracle
- 2020-11-03 18:52 - 2020-10-16 10:04 - 001037392 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxDrv.sys
- 2020-11-03 18:52 - 2020-10-16 10:04 - 000187456 _____ (Oracle Corporation) C:\Windows\system32\Drivers\VBoxUSBMon.sys
- 2020-11-03 12:01 - 2020-11-03 12:01 - 000370698 _____ C:\Users\tobayashi\Documents\Bez tytułu 1.odt
- 2020-11-03 12:01 - 2020-11-03 12:01 - 000084650 _____ C:\Users\tobayashi\Documents\Bez tytułu 2.odt
- 2020-11-03 11:51 - 2020-11-03 11:51 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\MK10
- 2020-10-30 10:34 - 2020-10-30 10:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
- 2020-10-30 10:34 - 2020-10-30 10:34 - 000000000 ____D C:\Program Files (x86)\HD Tune
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2020-11-29 20:23 - 2020-09-06 14:21 - 000000000 ____D C:\GOG Games
- 2020-11-29 20:06 - 2020-05-20 15:39 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\vlc
- 2020-11-29 19:26 - 2020-10-21 20:06 - 000000000 ___RD C:\Users\tobayashi\Documents\Scanned Documents
- 2020-11-29 19:20 - 2020-05-09 20:11 - 000000374 _____ C:\Users\tobayashi\.vivaldi_reporting_data
- 2020-11-29 19:16 - 2020-05-27 01:27 - 000000000 ____D C:\Users\tobayashi\AppData\Local\OpenShell
- 2020-11-29 19:16 - 2020-05-09 17:52 - 000000000 ____D C:\ProgramData\Package Cache
- 2020-11-29 19:08 - 2020-05-27 20:17 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\deluge
- 2020-11-29 16:46 - 2020-05-09 19:59 - 000000000 ____D C:\Users\tobayashi\AppData\LocalLow\Mozilla
- 2020-11-29 12:14 - 2020-05-09 17:54 - 000000000 ____D C:\ProgramData\NVIDIA
- 2020-11-29 12:14 - 2020-05-09 17:51 - 000000000 ____D C:\Users\tobayashi
- 2020-11-29 07:39 - 2020-05-09 17:56 - 000003598 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3746824727-3175080848-809881633-1001
- 2020-11-29 03:12 - 2020-05-09 22:24 - 000000000 ____D C:\Program Files (x86)\Steam
- 2020-11-28 23:40 - 2014-11-21 04:46 - 001827818 _____ C:\Windows\system32\PerfStringBackup.INI
- 2020-11-28 23:40 - 2014-11-21 04:07 - 000806816 _____ C:\Windows\system32\perfh015.dat
- 2020-11-28 23:40 - 2014-11-21 04:07 - 000163610 _____ C:\Windows\system32\perfc015.dat
- 2020-11-28 23:40 - 2013-08-22 13:36 - 000000000 ____D C:\Windows\Inf
- 2020-11-28 04:10 - 2020-06-21 09:58 - 000003410 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2020-11-28 04:10 - 2020-06-21 09:58 - 000003282 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
- 2020-11-28 04:06 - 2020-06-13 23:41 - 000000000 ____D C:\Users\tobayashi\dwhelper
- 2020-11-28 03:22 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\SysWOW64\Macromed
- 2020-11-28 03:22 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\system32\Macromed
- 2020-11-28 03:21 - 2020-07-01 19:20 - 000000000 ____D C:\Program Files (x86)\TeamViewer
- 2020-11-28 03:21 - 2013-08-22 14:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2020-11-27 19:17 - 2020-05-09 23:05 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2020-11-27 04:14 - 2013-08-22 13:25 - 000262144 ___SH C:\Windows\system32\config\BBI
- 2020-11-27 02:16 - 2020-05-24 18:50 - 000000000 ____D C:\Users\tobayashi\Documents\PCSX2
- 2020-11-26 02:03 - 2020-08-11 20:49 - 000000000 ____D C:\Users\tobayashi\AppData\Local\BattlEye
- 2020-11-25 15:53 - 2020-06-21 09:58 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2020-11-23 15:05 - 2020-08-30 13:39 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Atari800Win PLus
- 2020-11-22 21:54 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\tracing
- 2020-11-22 08:00 - 2020-05-09 19:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2020-11-21 16:51 - 2020-05-09 20:10 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\doublecmd
- 2020-11-21 03:53 - 2020-05-09 19:59 - 000000948 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
- 2020-11-20 02:02 - 2020-08-17 13:09 - 000000000 ____D C:\Users\tobayashi\AppData\Local\UnrealEngine
- 2020-11-17 14:55 - 2020-05-11 15:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
- 2020-11-16 00:04 - 2020-05-09 20:09 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\AIMP
- 2020-11-14 01:47 - 2020-05-09 20:11 - 000002346 _____ C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Vivaldi.lnk
- 2020-11-14 01:47 - 2020-05-09 20:10 - 000000000 ____D C:\Users\tobayashi\AppData\Local\Vivaldi
- 2020-11-13 12:02 - 2020-06-26 10:56 - 000000000 ____D C:\Users\tobayashi\Documents\Euro Truck Simulator 2
- 2020-11-12 22:15 - 2020-08-30 14:03 - 000002196 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2020-11-12 11:13 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\rescache
- 2020-11-11 09:53 - 2013-08-22 14:44 - 000496856 _____ C:\Windows\system32\FNTCACHE.DAT
- 2020-11-11 09:52 - 2013-08-22 15:36 - 000000000 ___RD C:\Windows\ToastData
- 2020-11-11 09:52 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\PolicyDefinitions
- 2020-11-11 08:22 - 2020-05-09 19:17 - 000000000 ____D C:\Windows\system32\MRT
- 2020-11-11 08:20 - 2020-05-09 19:17 - 133736600 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2020-11-11 08:20 - 2013-08-22 15:20 - 000000000 ____D C:\Windows\CbsTemp
- 2020-11-10 14:12 - 2014-11-21 09:04 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2020-11-10 14:12 - 2014-11-21 09:04 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2020-11-10 11:37 - 2020-05-21 14:20 - 000000000 ____D C:\Windows\Minidump
- 2020-11-10 01:13 - 2020-10-10 09:53 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FACEIT Ltd
- 2020-11-10 01:13 - 2020-10-10 09:53 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\FACEIT
- 2020-11-10 01:13 - 2020-10-10 09:53 - 000000000 ____D C:\Users\tobayashi\AppData\Local\FACEITApp
- 2020-11-06 11:41 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\AppReadiness
- 2020-11-01 22:16 - 2020-06-09 01:29 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\MPC-HC
- 2020-11-01 14:02 - 2020-07-01 19:00 - 000000000 ____D C:\Users\tobayashi\AppData\Roaming\TeamViewer
- 2020-11-01 14:02 - 2020-06-24 14:23 - 000000000 ____D C:\Users\tobayashi\AppData\Local\CrashDumps
- 2020-11-01 10:39 - 2020-09-05 23:25 - 000000000 ____D C:\Users\tobayashi\Documents\Xenia
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2020-07-28 11:02 - 2020-07-28 11:15 - 000003843 _____ () C:\Users\tobayashi\AppData\Local\kdenliverc
- 2020-11-29 19:47 - 2020-11-29 19:47 - 000001273 _____ () C:\Users\tobayashi\AppData\Local\recently-used.xbel
- 2020-07-28 11:02 - 2020-07-28 11:02 - 000000535 _____ () C:\Users\tobayashi\AppData\Local\user-places.xbel
- 2020-07-28 11:02 - 2020-07-28 11:02 - 000000000 _____ () C:\Users\tobayashi\AppData\Local\user-places.xbel.tbcache
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- LastRegBack: 2020-11-28 05:36
- ==================== Koniec FRST.txt ========================
Add Comment
Please, Sign In to add comment