Advertisement
Guest User

Untitled

a guest
Jun 20th, 2018
281
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 38.55 KB | None | 0 0
  1. Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20.06.2018
  2. Uruchomiony przez Aga Wnuk (administrator) AGA (20-06-2018 17:27:26)
  3. Uruchomiony z C:\Users\Aga Wnuk\Downloads
  4. Załadowane profile: Aga Wnuk (Dostępne profile: Aga Wnuk)
  5. Platform: Windows 10 Pro Wersja 1709 16299.431 (X64) Język: Polski (Polska)
  6. Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
  7. Tryb startu: Normal
  8. Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  9.  
  10. ==================== Procesy (filtrowane) =================
  11.  
  12. (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
  13.  
  14. (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
  15. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
  16. (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
  17. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
  18. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
  19. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
  20. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
  21. (Atheros) C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe
  22. (Oracle Corporation) C:\oraclexe\app\oracle\product\11.2.0\server\bin\TNSLSNR.EXE
  23. (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe
  24. (Oracle Corporation) C:\oraclexe\app\oracle\product\11.2.0\server\bin\oracle.exe
  25. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
  26. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
  27. (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
  28. (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
  29. (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
  30. (Microsoft Corporation) C:\Windows\System32\mqsvc.exe
  31. (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
  32. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
  33. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
  34. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
  35. (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
  36. (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
  37. (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
  38. (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
  39. (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
  40. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
  41. (Intel Corporation) C:\Windows\System32\igfxEM.exe
  42. (Intel Corporation) C:\Windows\System32\igfxHK.exe
  43. () C:\Windows\System32\igfxTray.exe
  44. () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\Video.UI.exe
  45. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  46. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  47. (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
  48. (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
  49. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
  50. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
  51. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  52. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  53. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  54. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  55. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  56. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  57. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  58. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  59. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
  60. (Microsoft Corporation) C:\Windows\System32\cmd.exe
  61. (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
  62. (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
  63. (Microsoft Corporation) C:\Windows\System32\MusNotification.exe
  64. (AVAST Software) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
  65. () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
  66. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  67. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  68. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  69. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  70. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  71. (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
  72.  
  73. ==================== Rejestr (filtrowane) ===========================
  74.  
  75. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
  76.  
  77. HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
  78. HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2016-01-10] (Realtek Semiconductor)
  79. HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2016-01-10] (Realtek Semiconductor)
  80. HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
  81. HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
  82. HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
  83. HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-05-28] (AVAST Software)
  84. HKLM-x32\...\Run: [GrooveMonitor] => D:\OFFICE20007\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
  85. HKLM-x32\...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [533616 2017-02-15] (Citrix Systems, Inc.)
  86. HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [324720 2017-02-15] (Citrix Systems, Inc.)
  87. HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation)
  88. HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA
  89. HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
  90. HKU\S-1-5-21-3965509381-2667461324-264263330-1000\...\Run: [GoogleChromeAutoLaunch_21E46712D765EDFCF8D4F6E1A4542096] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568 2018-06-12] (Google Inc.)
  91. HKU\S-1-5-21-3965509381-2667461324-264263330-1000\...\MountPoints2: {432ed61c-d66f-11e7-9c50-74e6e21b39f2} - "F:\HTC_Sync_Manager_PC.exe"
  92. HKU\S-1-5-21-3965509381-2667461324-264263330-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [805888 2017-09-29] (Microsoft Corporation)
  93. AppInit_DLLs: C:\Windows\system32\nvinitx.dll => Brak pliku
  94.  
  95. ==================== Internet (filtrowane) ====================
  96.  
  97. (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
  98.  
  99. Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
  100. Tcpip\..\Interfaces\{c9504fad-62b4-4f37-840d-73c48b2f5dfd}: [DhcpNameServer] 192.168.1.1
  101.  
  102. Internet Explorer:
  103. ==================
  104. HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
  105. HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
  106. HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
  107. HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
  108. SearchScopes: HKU\S-1-5-21-3965509381-2667461324-264263330-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://pl.search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10426__180528__yaie&p={searchTerms}
  109. BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  110. BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\OFFICE20007\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
  111. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-14] (Oracle Corporation)
  112. BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  113. BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-14] (Oracle Corporation)
  114. DPF: HKLM {583C990C-2D38-410c-9A4A-0932D66A754F} hxxps://pulsesecure.net/dana-cached/sc/PulseSetupClient64.cab
  115. DPF: HKLM-x32 {8E375A63-C616-46F1-AC77-59DF78F3A826} hxxps://asgaccess.statestreet.com/dana-cached/sc/PulseSetupClient.cab
  116. DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab
  117. Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  118. Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  119. Handler-x32: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\OFFICE20007\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
  120. Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  121. Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
  122. Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  123. Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  124. Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  125. Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  126. Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  127. Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  128. Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  129. Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  130. Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  131. Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  132. Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  133. Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  134. Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  135. Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  136. Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  137. Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
  138.  
  139. Edge:
  140. ======
  141. Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [2017-09-29]
  142. Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [2018-03-22]
  143.  
  144. FireFox:
  145. ========
  146. FF DefaultProfile: q6722qai.default
  147. FF ProfilePath: C:\Users\Aga Wnuk\AppData\Roaming\Mozilla\Firefox\Profiles\q6722qai.default [2018-05-28]
  148. FF Homepage: Mozilla\Firefox\Profiles\q6722qai.default -> hxxps://pl.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10426__180528__yaff
  149. FF NewTab: Mozilla\Firefox\Profiles\q6722qai.default -> hxxps://pl.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10426__180528__yaff
  150. FF SearchPlugin: C:\Users\Aga Wnuk\AppData\Roaming\Mozilla\Firefox\Profiles\q6722qai.default\searchplugins\yahoo-lavasoft-ff59.xml [2018-05-28]
  151. FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi
  152. FF Extension: (McAfee® WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi [2018-05-15]
  153. FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi
  154. FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
  155. FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Brak pliku]
  156. FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll [2017-02-15] (Citrix Systems, Inc.)
  157. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)
  158. FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)
  159. FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-14] (Oracle Corporation)
  160. FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-14] (Oracle Corporation)
  161. FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
  162. FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)
  163. FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)
  164. FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems Inc.)
  165.  
  166. Chrome:
  167. =======
  168. CHR DefaultProfile: Default
  169. CHR HomePage: Default -> msn.com
  170. CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1422905971&from=cor&uid=ST1000LM024XHN-M101MBB_S314JU0F869148869148","hxxp://isearch.omiga-plus.com/?type=hppp&ts=1422906005&from=cor&uid=ST1000LM024XHN-M101MBB_S314JU0F869148869148","hxxps://www.google.com/"
  171. CHR Profile: C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default [2018-06-20]
  172. CHR Extension: (Prezentacje) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]
  173. CHR Extension: (Dokumenty) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-16]
  174. CHR Extension: (Dysk Google) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
  175. CHR Extension: (TV) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2015-02-01]
  176. CHR Extension: (YouTube) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
  177. CHR Extension: (Adblock Plus) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-05-16]
  178. CHR Extension: (Google Search) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
  179. CHR Extension: (Bing) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2018-06-20]
  180. CHR Extension: (Arkusze) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16]
  181. CHR Extension: (McAfee® WebAdvisor) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-05-05]
  182. CHR Extension: (Full Screen Weather) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2015-05-12]
  183. CHR Extension: (Dokumenty Google offline) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
  184. CHR Extension: (AdBlock) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-06-19]
  185. CHR Extension: (Google Play Music) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2016-06-15]
  186. CHR Extension: (Skype) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-03]
  187. CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
  188. CHR Extension: (Social GIF Button) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\omdfmeimafcmmefpiebpeodknddagimg [2016-09-04]
  189. CHR Extension: (RealtimeBoard: Whiteboard for Collaboration) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg [2015-08-18]
  190. CHR Extension: (Gmail) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-31]
  191. CHR Extension: (Chrome Media Router) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-19]
  192. CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
  193. CHR HKU\S-1-5-21-3965509381-2667461324-264263330-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
  194. CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
  195. CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
  196.  
  197. ==================== Usługi (filtrowane) ====================
  198.  
  199. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  200.  
  201. R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7620096 2018-05-28] (AVAST Software)
  202. R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [317280 2018-05-28] (AVAST Software)
  203. S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
  204. R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382456 2017-02-16] (Intel Corporation)
  205. R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Brak podpisu cyfrowego]
  206. S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
  207. R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)
  208. R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [604824 2018-06-05] (McAfee, Inc.)
  209. S3 Microsoft Office Groove Audit Service; D:\OFFICE20007\Office12\GrooveAuditService.exe [64856 2009-02-26] (Microsoft Corporation)
  210. R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
  211. R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
  212. S4 OracleJobSchedulerXE; c:\oraclexe\app\oracle\product\11.2.0\server\Bin\extjob.exe [45568 2014-05-29] () [Brak podpisu cyfrowego]
  213. S3 OracleMTSRecoveryService; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\omtsreco.exe [81408 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
  214. R2 OracleServiceXE; c:\oraclexe\app\oracle\product\11.2.0\server\bin\ORACLE.EXE [147110912 2014-05-30] (Oracle Corporation) [Brak podpisu cyfrowego]
  215. S3 OracleXEClrAgent; C:\oraclexe\app\oracle\product\11.2.0\server\bin\OraClrAgnt.exe [83968 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
  216. R2 OracleXETNSListener; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\tnslsnr.exe [522240 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
  217. R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312056 2016-01-10] (Realtek Semiconductor)
  218. S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-12-14] (Microsoft Corporation)
  219. R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [263264 2017-02-16] (Synaptics Incorporated)
  220. S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\NisSrv.exe [4632736 2018-04-26] (Microsoft Corporation)
  221. S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MsMpEng.exe [104680 2018-04-26] (Microsoft Corporation)
  222. R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2013-10-15] (Atheros) [Brak podpisu cyfrowego]
  223.  
  224. ===================== Sterowniki (filtrowane) ======================
  225.  
  226. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  227.  
  228. R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [196640 2018-05-28] (AVAST Software)
  229. R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [227504 2018-03-23] (AVAST Software)
  230. R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [199440 2018-03-23] (AVAST Software)
  231. R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343752 2018-03-23] (AVAST Software)
  232. R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57680 2018-03-23] (AVAST Software)
  233. R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [234560 2018-05-28] (AVAST Software)
  234. S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46968 2018-05-28] (AVAST Software)
  235. R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [159120 2018-05-28] (AVAST Software)
  236. R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111360 2018-05-28] (AVAST Software)
  237. R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85968 2018-05-28] (AVAST Software)
  238. R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1027720 2018-05-28] (AVAST Software)
  239. R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460520 2018-05-28] (AVAST Software)
  240. R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [205976 2018-05-28] (AVAST Software)
  241. R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [381552 2018-05-28] (AVAST Software)
  242. R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-09-05] (OSR Open Systems Resources, Inc.)
  243. S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2015-11-24] (Disc Soft Ltd)
  244. S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47160 2015-11-24] (Disc Soft Ltd)
  245. R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [100312 2013-12-10] (Intel Corporation)
  246. R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
  247. R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdmwu.inf_amd64_26aa6356770b2e86\nvlddmkm.sys [13754936 2016-09-12] (NVIDIA Corporation)
  248. R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
  249. R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
  250. R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [896744 2016-01-10] (Realtek )
  251. S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [412400 2015-09-05] (Realsil Semiconductor Corporation)
  252. R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-07-16] (Synaptics Incorporated)
  253. R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [66136 2017-02-16] (Synaptics Incorporated)
  254. S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-04-26] (Microsoft Corporation)
  255. S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [313888 2018-04-26] (Microsoft Corporation)
  256. S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61472 2018-04-26] (Microsoft Corporation)
  257. U3 idsvc; Brak ImagePath
  258. S3 MBAMSwissArmy; \SystemRoot\System32\Drivers\mbamswissarmy.sys [X]
  259. U3 pxldrpob; \??\C:\Users\AGAWNU~1\AppData\Local\Temp\pxldrpob.sys [X] <==== UWAGA
  260.  
  261. ==================== NetSvcs (filtrowane) ===================
  262.  
  263. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  264.  
  265.  
  266. ==================== Jeden miesiąc - utworzone pliki i foldery ========
  267.  
  268. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  269.  
  270. 2018-06-20 17:29 - 2018-06-20 17:29 - 000380928 _____ C:\Users\Aga Wnuk\Downloads\9uwerpsx.exe
  271. 2018-06-20 17:27 - 2018-06-20 17:38 - 000027407 _____ C:\Users\Aga Wnuk\Downloads\FRST.txt
  272. 2018-06-20 17:27 - 2018-06-20 17:27 - 004949824 _____ (AO Kaspersky Lab) C:\Users\Aga Wnuk\Downloads\tdsskiller.exe
  273. 2018-06-20 17:26 - 2018-06-20 17:27 - 000000000 ____D C:\FRST
  274. 2018-06-20 17:25 - 2018-06-20 17:25 - 002412544 _____ (Farbar) C:\Users\Aga Wnuk\Downloads\FRST64.exe
  275. 2018-06-20 17:11 - 2018-06-20 17:11 - 007256272 _____ (Malwarebytes) C:\Users\Aga Wnuk\Downloads\AdwCleaner 7100.exe
  276. 2018-06-20 17:08 - 2018-06-20 17:08 - 001773056 _____ (Farbar) C:\Users\Aga Wnuk\Downloads\FRST.exe
  277. 2018-06-20 17:05 - 2018-06-20 17:05 - 000000000 ___HD C:\OneDriveTemp
  278. 2018-06-18 22:29 - 2018-06-18 22:33 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E09.WEBRip.x264-ION10
  279. 2018-06-18 22:28 - 2018-06-18 22:28 - 000011801 _____ C:\Users\Aga Wnuk\Downloads\FAFDEC90896116141B4E07D4D1CBAB8D8F1B9088 (1).torrent
  280. 2018-06-18 22:28 - 2018-06-18 22:28 - 000000000 ____D C:\Users\Aga Wnuk\AppData\LocalLow\BitTorrent
  281. 2018-06-18 22:26 - 2018-06-18 22:26 - 000011801 _____ C:\Users\Aga Wnuk\Downloads\FAFDEC90896116141B4E07D4D1CBAB8D8F1B9088.torrent
  282. 2018-06-13 09:21 - 2018-06-13 09:21 - 000000000 ___HD C:\$WINDOWS.~BT
  283. 2018-06-11 22:00 - 2018-06-11 22:18 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.Kiksuya.720p.AMZN.WEBRip.DDP5.1.x264-NTb[rarbg]
  284. 2018-06-11 21:59 - 2018-06-11 22:00 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.WEB.H264-DEFLATE[rarbg]
  285. 2018-06-11 21:59 - 2018-06-11 21:59 - 000036798 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.WEB.H264-DEFLATE[rartv]-[rarbg.to].torrent
  286. 2018-06-11 21:58 - 2018-06-11 21:58 - 000152806 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.Kiksuya.720p.AMZN.WEBRip.DDP5.1.x264-NTb[rartv]-[rarbg.to].torrent
  287. 2018-06-11 21:57 - 2018-06-11 21:57 - 000150255 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.720p.WEB.H264-DEFLATE[rartv]-[rarbg.to].torrent
  288. 2018-06-11 21:57 - 2018-06-11 21:57 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.720p.WEB.H264-DEFLATE[rarbg]
  289. 2018-06-10 18:16 - 2018-06-10 18:16 - 000040047 _____ C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.WEB.H264-DEFLATE[eztv].srt
  290. 2018-06-10 18:09 - 2018-06-10 18:11 - 238827879 _____ C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.WEB.H264-DEFLATE[eztv].mkv
  291. 2018-06-10 17:54 - 2018-06-10 18:09 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E09.720p.HDTV.x264-LucidTV[ettv]
  292. 2018-06-10 17:54 - 2018-06-10 18:08 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.720p.HDTV.x264-SVA[rarbg]
  293. 2018-06-06 08:55 - 2018-06-06 08:55 - 000000000 ____D C:\Windows.old
  294. 2018-06-04 21:42 - 2018-06-04 21:42 - 000037516 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.720p.WEB.H264-DEFLATE[eztv].srt
  295. 2018-06-04 21:28 - 2018-06-04 21:37 - 1885984911 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.720p.WEB.H264-DEFLATE[eztv].mkv
  296. 2018-06-04 21:28 - 2018-06-04 21:28 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.WEB.H264-DEFLATE[ettv]
  297. 2018-06-03 20:20 - 2018-06-03 20:21 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Paweł Jasienica - Polska anarchia [Zlotopolsky]
  298. 2018-06-02 22:04 - 2018-06-02 22:25 - 1134823308 _____ C:\Users\Aga Wnuk\Downloads\12.Strong.2018.720p.WEB-DL.1GB.MkvCage.com.mkv
  299. 2018-06-02 22:04 - 2018-06-02 22:17 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Pacific.Rim.2.Uprising.2018.720p.KORSUB.HDRip.x264.AAC2.0-STUTTERSHIT
  300. 2018-05-29 08:23 - 2018-05-29 08:23 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Norman Davies - Europa walczy 1939-1945 audiobook PL
  301. 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Roaming\Lavasoft
  302. 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
  303. 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\Program Files (x86)\Lavasoft
  304. 2018-05-28 13:22 - 2018-05-28 13:22 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Local\Lavasoft
  305. 2018-05-28 13:21 - 2018-06-20 17:14 - 000000000 ____D C:\ProgramData\Lavasoft
  306. 2018-05-28 12:00 - 2018-05-28 11:59 - 000376536 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
  307. 2018-05-25 09:13 - 2018-05-28 11:17 - 342491175 ____R C:\Users\Aga Wnuk\Downloads\Paweł Jasienica - Myśli o dawnej Polsce audiobook PL.zip
  308.  
  309. ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
  310.  
  311. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  312.  
  313. 2018-06-20 17:38 - 2017-09-29 15:46 - 000000000 ___HD C:\Program Files\WindowsApps
  314. 2018-06-20 17:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\AppReadiness
  315. 2018-06-20 17:34 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
  316. 2018-06-20 17:23 - 2015-09-05 12:07 - 000000000 __RDL C:\Users\Aga Wnuk\OneDrive
  317. 2018-06-20 17:18 - 2017-11-03 09:33 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
  318. 2018-06-20 17:18 - 2015-02-01 17:46 - 000000000 __SHD C:\Users\Aga Wnuk\IntelGraphicsProfiles
  319. 2018-06-20 17:16 - 2018-03-10 14:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
  320. 2018-06-20 17:16 - 2017-03-26 19:58 - 000000000 ____D C:\Program Files (x86)\McAfee
  321. 2018-06-20 17:16 - 2015-07-15 22:50 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf3fe65ad48d.job
  322. 2018-06-20 17:16 - 2015-05-15 23:45 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f58770ac776.job
  323. 2018-06-20 17:16 - 2015-02-01 22:42 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
  324. 2018-06-20 17:15 - 2017-09-29 10:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
  325. 2018-06-20 17:14 - 2015-11-24 18:21 - 000000000 ____D C:\AdwCleaner
  326. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003682 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
  327. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0bf3fe65ad48d
  328. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d08f58770ac776
  329. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
  330. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003526 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0e4bd6bf4a066
  331. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
  332. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003378 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
  333. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003348 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FB6A1841-737F-4836-95D4-342F12BF32D4}
  334. 2018-06-19 17:47 - 2018-03-10 14:32 - 000003272 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
  335. 2018-06-19 17:47 - 2018-03-10 14:32 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3965509381-2667461324-264263330-1000
  336. 2018-06-19 17:47 - 2018-03-10 14:32 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
  337. 2018-06-19 17:47 - 2018-03-10 13:59 - 000000000 ____D C:\Users\Aga Wnuk
  338. 2018-06-19 11:05 - 2018-05-08 08:59 - 000000000 ____D C:\WINDOWS\Panther
  339. 2018-06-19 10:14 - 2018-03-10 13:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
  340. 2018-06-19 09:13 - 2015-02-01 22:43 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
  341. 2018-06-18 22:36 - 2018-04-29 19:35 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Roaming\BitTorrent
  342. 2018-06-18 22:16 - 2018-03-10 14:32 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
  343. 2018-06-13 09:46 - 2015-09-06 15:33 - 000000000 ____D C:\WINDOWS\system32\MRT
  344. 2018-06-13 09:45 - 2017-10-16 13:05 - 133315992 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
  345. 2018-06-13 09:45 - 2015-09-06 15:33 - 133315992 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
  346. 2018-06-13 09:43 - 2017-09-29 15:37 - 000000000 ____D C:\WINDOWS\CbsTemp
  347. 2018-06-11 22:58 - 2017-09-29 10:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
  348. 2018-06-11 22:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\Registration
  349. 2018-06-11 22:36 - 2018-03-10 14:28 - 000030483 _____ C:\WINDOWS\diagwrn.xml
  350. 2018-06-11 22:36 - 2018-03-10 14:28 - 000030483 _____ C:\WINDOWS\diagerr.xml
  351. 2018-06-08 13:35 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\rescache
  352. 2018-06-08 08:32 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
  353. 2018-06-08 08:32 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
  354. 2018-06-06 01:24 - 2018-05-15 08:35 - 000835056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
  355. 2018-06-06 01:24 - 2018-05-15 08:35 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
  356. 2018-06-03 22:24 - 2017-09-29 15:44 - 000000000 ____D C:\WINDOWS\INF
  357. 2018-05-29 08:31 - 2018-05-17 12:18 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Mission.1986.720.BRRip.x264-x0r
  358. 2018-05-29 08:30 - 2018-05-17 12:16 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Sherlock Holmes (2009) [1080p]
  359. 2018-05-29 08:30 - 2018-05-17 12:07 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Law Abiding Citizen (2009) [1080p]
  360. 2018-05-28 13:21 - 2018-04-29 19:35 - 000000952 _____ C:\Users\Aga Wnuk\Desktop\BitTorrent.lnk
  361. 2018-05-28 13:21 - 2018-04-29 19:35 - 000000932 _____ C:\Users\Aga Wnuk\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
  362. 2018-05-28 11:59 - 2018-03-10 12:31 - 001027720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
  363. 2018-05-28 11:59 - 2018-03-10 12:31 - 000460520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
  364. 2018-05-28 11:59 - 2018-03-10 12:31 - 000381552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
  365. 2018-05-28 11:59 - 2018-03-10 12:31 - 000205976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
  366. 2018-05-28 11:59 - 2018-03-10 12:31 - 000196640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
  367. 2018-05-28 11:59 - 2018-03-10 12:31 - 000159120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
  368. 2018-05-28 11:59 - 2018-03-10 12:31 - 000111360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
  369. 2018-05-28 11:59 - 2018-03-10 12:31 - 000085968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
  370. 2018-05-28 11:59 - 2018-03-10 12:31 - 000046968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
  371. 2018-05-28 11:59 - 2017-11-21 23:03 - 000234560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
  372.  
  373. Niektóre pliki w TEMP:
  374. ====================
  375. 2018-06-19 09:07 - 2018-06-20 17:08 - 000958776 _____ (adaware) C:\Users\Aga Wnuk\AppData\Local\Temp\WCU009.exe
  376.  
  377. ==================== Bamital & volsnap ======================
  378.  
  379. (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
  380.  
  381. C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
  382. C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
  383. C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
  384. C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
  385. C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
  386. C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
  387. C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
  388. C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
  389. C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
  390. C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
  391. C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
  392. C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
  393. C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
  394. C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
  395. C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
  396.  
  397. LastRegBack: 2018-06-08 13:29
  398.  
  399. ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement