Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20.06.2018
- Uruchomiony przez Aga Wnuk (administrator) AGA (20-06-2018 17:27:26)
- Uruchomiony z C:\Users\Aga Wnuk\Downloads
- Załadowane profile: Aga Wnuk (Dostępne profile: Aga Wnuk)
- Platform: Windows 10 Pro Wersja 1709 16299.431 (X64) Język: Polski (Polska)
- Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
- (Intel Corporation) C:\Windows\System32\igfxCUIService.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
- (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Atheros) C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe
- (Oracle Corporation) C:\oraclexe\app\oracle\product\11.2.0\server\bin\TNSLSNR.EXE
- (Juniper Networks) C:\Program Files (x86)\Juniper Networks\Common Files\dsNcService.exe
- (Oracle Corporation) C:\oraclexe\app\oracle\product\11.2.0\server\bin\oracle.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
- (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
- (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
- (Microsoft Corporation) C:\Windows\System32\mqsvc.exe
- (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
- (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
- (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\saUI.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
- (AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
- (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
- (Intel Corporation) C:\Windows\System32\igfxEM.exe
- (Intel Corporation) C:\Windows\System32\igfxHK.exe
- () C:\Windows\System32\igfxTray.exe
- () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18041.14611.0_x64__8wekyb3d8bbwe\Video.UI.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
- (Microsoft Corporation) C:\Windows\System32\cmd.exe
- (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\McChHost.exe
- (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
- (Microsoft Corporation) C:\Windows\System32\MusNotification.exe
- (AVAST Software) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
- () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.209.0_x64__kzf8qxf38zg5c\SkypeHost.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- ==================== Rejestr (filtrowane) ===========================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [630168 2017-09-29] (Microsoft Corporation)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8512760 2016-01-10] (Realtek Semiconductor)
- HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411320 2016-01-10] (Realtek Semiconductor)
- HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
- HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation)
- HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
- HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242904 2018-05-28] (AVAST Software)
- HKLM-x32\...\Run: [GrooveMonitor] => D:\OFFICE20007\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
- HKLM-x32\...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [533616 2017-02-15] (Citrix Systems, Inc.)
- HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [324720 2017-02-15] (Citrix Systems, Inc.)
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-12-19] (Oracle Corporation)
- HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA
- HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\BtvStack.exe
- HKU\S-1-5-21-3965509381-2667461324-264263330-1000\...\Run: [GoogleChromeAutoLaunch_21E46712D765EDFCF8D4F6E1A4542096] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1588568 2018-06-12] (Google Inc.)
- HKU\S-1-5-21-3965509381-2667461324-264263330-1000\...\MountPoints2: {432ed61c-d66f-11e7-9c50-74e6e21b39f2} - "F:\HTC_Sync_Manager_PC.exe"
- HKU\S-1-5-21-3965509381-2667461324-264263330-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [805888 2017-09-29] (Microsoft Corporation)
- AppInit_DLLs: C:\Windows\system32\nvinitx.dll => Brak pliku
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{c9504fad-62b4-4f37-840d-73c48b2f5dfd}: [DhcpNameServer] 192.168.1.1
- Internet Explorer:
- ==================
- HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
- HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
- HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
- HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
- SearchScopes: HKU\S-1-5-21-3965509381-2667461324-264263330-1000 -> {C0C3A6C6-03BC-4195-8FCB-AEA091301353} URL = hxxps://pl.search.yahoo.com/yhs/search?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__ch_WCYID10426__180528__yaie&p={searchTerms}
- BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\OFFICE20007\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\ssv.dll [2018-03-14] (Oracle Corporation)
- BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\jp2ssv.dll [2018-03-14] (Oracle Corporation)
- DPF: HKLM {583C990C-2D38-410c-9A4A-0932D66A754F} hxxps://pulsesecure.net/dana-cached/sc/PulseSetupClient64.cab
- DPF: HKLM-x32 {8E375A63-C616-46F1-AC77-59DF78F3A826} hxxps://asgaccess.statestreet.com/dana-cached/sc/PulseSetupClient.cab
- DPF: HKLM-x32 {F27237D7-93C8-44C2-AC6E-D6057B9A918F} hxxps://juniper.net/dana-cached/sc/JuniperSetupClient.cab
- Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- Handler-x32: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - D:\OFFICE20007\Office12\GrooveSystemServices.dll [2009-02-26] (Microsoft Corporation)
- Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2018-06-05] (McAfee, Inc.)
- Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2017-02-15] (Citrix Systems, Inc.)
- Edge:
- ======
- Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [2017-09-29]
- Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [2018-03-22]
- FireFox:
- ========
- FF DefaultProfile: q6722qai.default
- FF ProfilePath: C:\Users\Aga Wnuk\AppData\Roaming\Mozilla\Firefox\Profiles\q6722qai.default [2018-05-28]
- FF Homepage: Mozilla\Firefox\Profiles\q6722qai.default -> hxxps://pl.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10426__180528__yaff
- FF NewTab: Mozilla\Firefox\Profiles\q6722qai.default -> hxxps://pl.search.yahoo.com/yhs/web?hspart=lvs&hsimp=yhs-awc&type=lvs__webcompa__1_0__ya__hp_WCYID10426__180528__yaff
- FF SearchPlugin: C:\Users\Aga Wnuk\AppData\Roaming\Mozilla\Firefox\Profiles\q6722qai.default\searchplugins\yahoo-lavasoft-ff59.xml [2018-05-28]
- FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi
- FF Extension: (McAfee® WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi [2018-05-15]
- FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\e10ssaffplg.xpi
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Brak pliku]
- FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll [2017-02-15] (Citrix Systems, Inc.)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-12-10] (Intel Corporation)
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-12-10] (Intel Corporation)
- FF Plugin-x32: @java.com/DTPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\dtplugin\npDeployJava1.dll [2018-03-14] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.161.2 -> C:\Program Files (x86)\Java\jre1.8.0_161\bin\plugin2\npjp2.dll [2018-03-14] (Oracle Corporation)
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-22] (Google Inc.)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems Inc.)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> msn.com
- CHR StartupUrls: Default -> "hxxp://isearch.omiga-plus.com/?type=hp&ts=1422905971&from=cor&uid=ST1000LM024XHN-M101MBB_S314JU0F869148869148","hxxp://isearch.omiga-plus.com/?type=hppp&ts=1422906005&from=cor&uid=ST1000LM024XHN-M101MBB_S314JU0F869148869148","hxxps://www.google.com/"
- CHR Profile: C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default [2018-06-20]
- CHR Extension: (Prezentacje) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-16]
- CHR Extension: (Dokumenty) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-16]
- CHR Extension: (Dysk Google) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-22]
- CHR Extension: (TV) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\beobeededemalmllhkmnkinmfembdimh [2015-02-01]
- CHR Extension: (YouTube) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
- CHR Extension: (Adblock Plus) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-05-16]
- CHR Extension: (Google Search) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
- CHR Extension: (Bing) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2018-06-20]
- CHR Extension: (Arkusze) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-16]
- CHR Extension: (McAfee® WebAdvisor) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2018-05-05]
- CHR Extension: (Full Screen Weather) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2015-05-12]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-15]
- CHR Extension: (AdBlock) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-06-19]
- CHR Extension: (Google Play Music) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\icppfcnhkcmnfdhfhphakoifcfokfdhg [2016-06-15]
- CHR Extension: (Skype) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2017-12-03]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
- CHR Extension: (Social GIF Button) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\omdfmeimafcmmefpiebpeodknddagimg [2016-09-04]
- CHR Extension: (RealtimeBoard: Whiteboard for Collaboration) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\opfmbdmhambgleempeofcjjhjclimccg [2015-08-18]
- CHR Extension: (Gmail) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-31]
- CHR Extension: (Chrome Media Router) - C:\Users\Aga Wnuk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-19]
- CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
- CHR HKU\S-1-5-21-3965509381-2667461324-264263330-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - hxxp://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
- ==================== Usługi (filtrowane) ====================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7620096 2018-05-28] (AVAST Software)
- R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [317280 2018-05-28] (AVAST Software)
- S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
- R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382456 2017-02-16] (Intel Corporation)
- R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Brak podpisu cyfrowego]
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-12-10] (Intel Corporation)
- R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [604824 2018-06-05] (McAfee, Inc.)
- S3 Microsoft Office Groove Audit Service; D:\OFFICE20007\Office12\GrooveAuditService.exe [64856 2009-02-26] (Microsoft Corporation)
- R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation)
- R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [18956064 2014-07-25] (NVIDIA Corporation)
- S4 OracleJobSchedulerXE; c:\oraclexe\app\oracle\product\11.2.0\server\Bin\extjob.exe [45568 2014-05-29] () [Brak podpisu cyfrowego]
- S3 OracleMTSRecoveryService; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\omtsreco.exe [81408 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
- R2 OracleServiceXE; c:\oraclexe\app\oracle\product\11.2.0\server\bin\ORACLE.EXE [147110912 2014-05-30] (Oracle Corporation) [Brak podpisu cyfrowego]
- S3 OracleXEClrAgent; C:\oraclexe\app\oracle\product\11.2.0\server\bin\OraClrAgnt.exe [83968 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
- R2 OracleXETNSListener; C:\oraclexe\app\oracle\product\11.2.0\server\BIN\tnslsnr.exe [522240 2014-05-29] (Oracle Corporation) [Brak podpisu cyfrowego]
- R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [312056 2016-01-10] (Realtek Semiconductor)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4329952 2017-12-14] (Microsoft Corporation)
- R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [263264 2017-02-16] (Synaptics Incorporated)
- S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\NisSrv.exe [4632736 2018-04-26] (Microsoft Corporation)
- S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MsMpEng.exe [104680 2018-04-26] (Microsoft Corporation)
- R2 ZAtheros Wlan Agent; C:\Program Files (x86)\Dell Wireless\Ath_WlanAgent.exe [81536 2013-10-15] (Atheros) [Brak podpisu cyfrowego]
- ===================== Sterowniki (filtrowane) ======================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [196640 2018-05-28] (AVAST Software)
- R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdrivera.sys [227504 2018-03-23] (AVAST Software)
- R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsha.sys [199440 2018-03-23] (AVAST Software)
- R0 aswblog; C:\WINDOWS\System32\drivers\aswbloga.sys [343752 2018-03-23] (AVAST Software)
- R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniva.sys [57680 2018-03-23] (AVAST Software)
- R1 aswHdsKe; C:\WINDOWS\System32\drivers\aswHdsKe.sys [234560 2018-05-28] (AVAST Software)
- S3 aswHwid; C:\WINDOWS\System32\drivers\aswHwid.sys [46968 2018-05-28] (AVAST Software)
- R2 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [159120 2018-05-28] (AVAST Software)
- R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [111360 2018-05-28] (AVAST Software)
- R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [85968 2018-05-28] (AVAST Software)
- R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [1027720 2018-05-28] (AVAST Software)
- R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [460520 2018-05-28] (AVAST Software)
- R2 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [205976 2018-05-28] (AVAST Software)
- R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [381552 2018-05-28] (AVAST Software)
- R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [19440 2015-09-05] (OSR Open Systems Resources, Inc.)
- S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2015-11-24] (Disc Soft Ltd)
- S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47160 2015-11-24] (Disc Soft Ltd)
- R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [100312 2013-12-10] (Intel Corporation)
- R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [111608 2017-02-14] (McAfee, Inc.)
- R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdmwu.inf_amd64_26aa6356770b2e86\nvlddmkm.sys [13754936 2016-09-12] (NVIDIA Corporation)
- R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [20256 2014-07-25] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [40392 2014-03-31] (NVIDIA Corporation)
- R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [896744 2016-01-10] (Realtek )
- S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [412400 2015-09-05] (Realsil Semiconductor Corporation)
- R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-07-16] (Synaptics Incorporated)
- R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [66136 2017-02-16] (Synaptics Incorporated)
- S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46072 2018-04-26] (Microsoft Corporation)
- S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [313888 2018-04-26] (Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61472 2018-04-26] (Microsoft Corporation)
- U3 idsvc; Brak ImagePath
- S3 MBAMSwissArmy; \SystemRoot\System32\Drivers\mbamswissarmy.sys [X]
- U3 pxldrpob; \??\C:\Users\AGAWNU~1\AppData\Local\Temp\pxldrpob.sys [X] <==== UWAGA
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc - utworzone pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-06-20 17:29 - 2018-06-20 17:29 - 000380928 _____ C:\Users\Aga Wnuk\Downloads\9uwerpsx.exe
- 2018-06-20 17:27 - 2018-06-20 17:38 - 000027407 _____ C:\Users\Aga Wnuk\Downloads\FRST.txt
- 2018-06-20 17:27 - 2018-06-20 17:27 - 004949824 _____ (AO Kaspersky Lab) C:\Users\Aga Wnuk\Downloads\tdsskiller.exe
- 2018-06-20 17:26 - 2018-06-20 17:27 - 000000000 ____D C:\FRST
- 2018-06-20 17:25 - 2018-06-20 17:25 - 002412544 _____ (Farbar) C:\Users\Aga Wnuk\Downloads\FRST64.exe
- 2018-06-20 17:11 - 2018-06-20 17:11 - 007256272 _____ (Malwarebytes) C:\Users\Aga Wnuk\Downloads\AdwCleaner 7100.exe
- 2018-06-20 17:08 - 2018-06-20 17:08 - 001773056 _____ (Farbar) C:\Users\Aga Wnuk\Downloads\FRST.exe
- 2018-06-20 17:05 - 2018-06-20 17:05 - 000000000 ___HD C:\OneDriveTemp
- 2018-06-18 22:29 - 2018-06-18 22:33 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E09.WEBRip.x264-ION10
- 2018-06-18 22:28 - 2018-06-18 22:28 - 000011801 _____ C:\Users\Aga Wnuk\Downloads\FAFDEC90896116141B4E07D4D1CBAB8D8F1B9088 (1).torrent
- 2018-06-18 22:28 - 2018-06-18 22:28 - 000000000 ____D C:\Users\Aga Wnuk\AppData\LocalLow\BitTorrent
- 2018-06-18 22:26 - 2018-06-18 22:26 - 000011801 _____ C:\Users\Aga Wnuk\Downloads\FAFDEC90896116141B4E07D4D1CBAB8D8F1B9088.torrent
- 2018-06-13 09:21 - 2018-06-13 09:21 - 000000000 ___HD C:\$WINDOWS.~BT
- 2018-06-11 22:00 - 2018-06-11 22:18 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.Kiksuya.720p.AMZN.WEBRip.DDP5.1.x264-NTb[rarbg]
- 2018-06-11 21:59 - 2018-06-11 22:00 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.WEB.H264-DEFLATE[rarbg]
- 2018-06-11 21:59 - 2018-06-11 21:59 - 000036798 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.WEB.H264-DEFLATE[rartv]-[rarbg.to].torrent
- 2018-06-11 21:58 - 2018-06-11 21:58 - 000152806 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.Kiksuya.720p.AMZN.WEBRip.DDP5.1.x264-NTb[rartv]-[rarbg.to].torrent
- 2018-06-11 21:57 - 2018-06-11 21:57 - 000150255 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.720p.WEB.H264-DEFLATE[rartv]-[rarbg.to].torrent
- 2018-06-11 21:57 - 2018-06-11 21:57 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E08.720p.WEB.H264-DEFLATE[rarbg]
- 2018-06-10 18:16 - 2018-06-10 18:16 - 000040047 _____ C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.WEB.H264-DEFLATE[eztv].srt
- 2018-06-10 18:09 - 2018-06-10 18:11 - 238827879 _____ C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.WEB.H264-DEFLATE[eztv].mkv
- 2018-06-10 17:54 - 2018-06-10 18:09 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E09.720p.HDTV.x264-LucidTV[ettv]
- 2018-06-10 17:54 - 2018-06-10 18:08 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Expanse.S03E08.720p.HDTV.x264-SVA[rarbg]
- 2018-06-06 08:55 - 2018-06-06 08:55 - 000000000 ____D C:\Windows.old
- 2018-06-04 21:42 - 2018-06-04 21:42 - 000037516 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.720p.WEB.H264-DEFLATE[eztv].srt
- 2018-06-04 21:28 - 2018-06-04 21:37 - 1885984911 _____ C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.720p.WEB.H264-DEFLATE[eztv].mkv
- 2018-06-04 21:28 - 2018-06-04 21:28 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Westworld.S02E07.WEB.H264-DEFLATE[ettv]
- 2018-06-03 20:20 - 2018-06-03 20:21 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Paweł Jasienica - Polska anarchia [Zlotopolsky]
- 2018-06-02 22:04 - 2018-06-02 22:25 - 1134823308 _____ C:\Users\Aga Wnuk\Downloads\12.Strong.2018.720p.WEB-DL.1GB.MkvCage.com.mkv
- 2018-06-02 22:04 - 2018-06-02 22:17 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Pacific.Rim.2.Uprising.2018.720p.KORSUB.HDRip.x264.AAC2.0-STUTTERSHIT
- 2018-05-29 08:23 - 2018-05-29 08:23 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Norman Davies - Europa walczy 1939-1945 audiobook PL
- 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Roaming\Lavasoft
- 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lavasoft
- 2018-05-28 13:22 - 2018-06-20 17:14 - 000000000 ____D C:\Program Files (x86)\Lavasoft
- 2018-05-28 13:22 - 2018-05-28 13:22 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Local\Lavasoft
- 2018-05-28 13:21 - 2018-06-20 17:14 - 000000000 ____D C:\ProgramData\Lavasoft
- 2018-05-28 12:00 - 2018-05-28 11:59 - 000376536 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
- 2018-05-25 09:13 - 2018-05-28 11:17 - 342491175 ____R C:\Users\Aga Wnuk\Downloads\Paweł Jasienica - Myśli o dawnej Polsce audiobook PL.zip
- ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-06-20 17:38 - 2017-09-29 15:46 - 000000000 ___HD C:\Program Files\WindowsApps
- 2018-06-20 17:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2018-06-20 17:34 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
- 2018-06-20 17:23 - 2015-09-05 12:07 - 000000000 __RDL C:\Users\Aga Wnuk\OneDrive
- 2018-06-20 17:18 - 2017-11-03 09:33 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
- 2018-06-20 17:18 - 2015-02-01 17:46 - 000000000 __SHD C:\Users\Aga Wnuk\IntelGraphicsProfiles
- 2018-06-20 17:16 - 2018-03-10 14:32 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2018-06-20 17:16 - 2017-03-26 19:58 - 000000000 ____D C:\Program Files (x86)\McAfee
- 2018-06-20 17:16 - 2015-07-15 22:50 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d0bf3fe65ad48d.job
- 2018-06-20 17:16 - 2015-05-15 23:45 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1d08f58770ac776.job
- 2018-06-20 17:16 - 2015-02-01 22:42 - 000001048 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
- 2018-06-20 17:15 - 2017-09-29 10:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI
- 2018-06-20 17:14 - 2015-11-24 18:21 - 000000000 ____D C:\AdwCleaner
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003682 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0bf3fe65ad48d
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d08f58770ac776
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003584 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003526 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0e4bd6bf4a066
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003378 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003348 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{FB6A1841-737F-4836-95D4-342F12BF32D4}
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000003272 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3965509381-2667461324-264263330-1000
- 2018-06-19 17:47 - 2018-03-10 14:32 - 000000000 ____D C:\WINDOWS\System32\Tasks\AVAST Software
- 2018-06-19 17:47 - 2018-03-10 13:59 - 000000000 ____D C:\Users\Aga Wnuk
- 2018-06-19 11:05 - 2018-05-08 08:59 - 000000000 ____D C:\WINDOWS\Panther
- 2018-06-19 10:14 - 2018-03-10 13:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2018-06-19 09:13 - 2015-02-01 22:43 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-06-18 22:36 - 2018-04-29 19:35 - 000000000 ____D C:\Users\Aga Wnuk\AppData\Roaming\BitTorrent
- 2018-06-18 22:16 - 2018-03-10 14:32 - 000004264 _____ C:\WINDOWS\System32\Tasks\Avast Emergency Update
- 2018-06-13 09:46 - 2015-09-06 15:33 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2018-06-13 09:45 - 2017-10-16 13:05 - 133315992 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
- 2018-06-13 09:45 - 2015-09-06 15:33 - 133315992 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2018-06-13 09:43 - 2017-09-29 15:37 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2018-06-11 22:58 - 2017-09-29 10:45 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
- 2018-06-11 22:38 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\Registration
- 2018-06-11 22:36 - 2018-03-10 14:28 - 000030483 _____ C:\WINDOWS\diagwrn.xml
- 2018-06-11 22:36 - 2018-03-10 14:28 - 000030483 _____ C:\WINDOWS\diagerr.xml
- 2018-06-08 13:35 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\rescache
- 2018-06-08 08:32 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2018-06-08 08:32 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
- 2018-06-06 01:24 - 2018-05-15 08:35 - 000835056 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
- 2018-06-06 01:24 - 2018-05-15 08:35 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
- 2018-06-03 22:24 - 2017-09-29 15:44 - 000000000 ____D C:\WINDOWS\INF
- 2018-05-29 08:31 - 2018-05-17 12:18 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\The.Mission.1986.720.BRRip.x264-x0r
- 2018-05-29 08:30 - 2018-05-17 12:16 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Sherlock Holmes (2009) [1080p]
- 2018-05-29 08:30 - 2018-05-17 12:07 - 000000000 ____D C:\Users\Aga Wnuk\Downloads\Law Abiding Citizen (2009) [1080p]
- 2018-05-28 13:21 - 2018-04-29 19:35 - 000000952 _____ C:\Users\Aga Wnuk\Desktop\BitTorrent.lnk
- 2018-05-28 13:21 - 2018-04-29 19:35 - 000000932 _____ C:\Users\Aga Wnuk\AppData\Roaming\Microsoft\Windows\Start Menu\BitTorrent.lnk
- 2018-05-28 11:59 - 2018-03-10 12:31 - 001027720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSnx.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000460520 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswSP.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000381552 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswVmm.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000205976 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswStm.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000196640 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswArPot.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000159120 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000111360 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000085968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRvrt.sys
- 2018-05-28 11:59 - 2018-03-10 12:31 - 000046968 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHwid.sys
- 2018-05-28 11:59 - 2017-11-21 23:03 - 000234560 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswHdsKe.sys
- Niektóre pliki w TEMP:
- ====================
- 2018-06-19 09:07 - 2018-06-20 17:08 - 000958776 _____ (adaware) C:\Users\Aga Wnuk\AppData\Local\Temp\WCU009.exe
- ==================== Bamital & volsnap ======================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
- LastRegBack: 2018-06-08 13:29
- ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement