Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 05-02-2022
- Uruchomiony przez User (administrator) MULTIBOX-154 (Acer Nitro AN515-55) (11-02-2022 12:03:22)
- Uruchomiony z C:\Users\User\Desktop
- Załadowane profile: User
- Platform: Microsoft Windows 11 Home Wersja 21H2 22000.493 (X64) Język: Polski (Polska)
- Domyślna przeglądarka: Chrome
- Tryb startu: Normal
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- () [Brak podpisu cyfrowego] C:\Tweaks\RoundedTB.exe
- (Acer Incorporated -> ) C:\Program Files (x86)\Acer\Care Center\ACCStd.exe
- (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe
- (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\NitroSense Service\PSAdminAgent.exe
- (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\NitroSense Service\PSAgent.exe
- (Acer Incorporated -> Acer Incorporated) C:\Program Files\Acer\NitroSense Service\PSSvc.exe
- (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
- (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
- (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
- (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
- (Adobe Systems Incorporated) C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r\AcrobatNotificationClient.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\APSDaemon.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudDrive.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\iCloudServices.exe
- (Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_13.0.201.0_x86__nzyj5cx40ttqa\iCloud\secd.exe
- (Arcabit Sp. z o.o. -> ) C:\Program Files\mks_vir\bin\scanenginecon.exe
- (Arcabit Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virmenu.exe
- (Arcabit Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virmon.exe
- (Arcabit Sp. z o.o. -> mks_vir) C:\Program Files\mks_vir\bin\mks_virsv.exe
- (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
- (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
- (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe
- (Firebit OU -> Rainmeter) C:\Program Files\Rainmeter\Rainmeter.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler.exe
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.122\GoogleCrashHandler64.exe
- (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <16>
- (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\96.0.4664.39\remoting_host.exe <2>
- (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82b77f8c4618e2d0\esif_uf.exe
- (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
- (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
- (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorac.inf_amd64_42f9d9bfb72d84cf\RstMwService.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f9f92cc42e038a12\igfxCUIService.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_f9f92cc42e038a12\igfxEM.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_553b9a82ff9cf770\OneApp.IGCC.WinService.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2b7bcff446ea567f\IntelCpHDCPSvc.exe
- (Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_2b7bcff446ea567f\IntelCpHeciSvc.exe
- (livelySubProcess) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Programs\Lively Wallpaper\plugins\subproc\livelySubProcess.exe
- (livelywpf) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Programs\Lively Wallpaper\livelywpf.exe
- (Logitech Inc -> Logitech) C:\Program Files\Logi\LogiBolt\LogiBolt.exe
- (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
- (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
- (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe
- (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
- (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
- (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
- (Microsoft Corporation -> Microsoft Corporation) C:\Users\User\AppData\Local\Microsoft\Teams\current\Teams.exe <9>
- (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
- (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\User\AppData\Roaming\.dllbackups\data\modules\dll-propagation\dll-propagation_2.9.8.exe
- (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\User\AppData\Roaming\.dllbackups\dllservices.exe <2>
- (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Temp\1xq0MkKMTM0YtEl1JnXJ2x0ArfP\dll-propagation.exe <3>
- (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Temp\24qrrXHyyao7PIDSMXbgocvqIlv\services.exe <7>
- (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\gamingservices.exe
- (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.62.4001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
- (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
- (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
- (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_94944f9da089b579\Display.NvContainer\NVDisplay.Container.exe <2>
- (philandro Software GmbH -> philandro Software GmbH) C:\Program Files (x86)\AnyDesk\AnyDesk.exe
- (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_238aadee4b6d04be\RtkAudUService64.exe <2>
- (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
- (Rivet Networks LLC -> Rivet Networks LLC) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtility.exe
- (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
- (Rivet Networks LLC -> Rivet Networks) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
- (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
- (Rivet Networks LLC -> Rivet Networks, LLC.) C:\Windows\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe
- (rocksdanister) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Programs\Lively Wallpaper\plugins\cef\LivelyCefSharp.exe
- (Shenzhen Hezon Lito Technology Co., Ltd. -> VEIKK) C:\Program Files\VKTablet\TabletDriverCenter.exe
- (The CefSharp Authors) [Brak podpisu cyfrowego] C:\Users\User\AppData\Local\Programs\Lively Wallpaper\plugins\cef\CefSharp.BrowserSubprocess.exe <4>
- ==================== Rejestr (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_238aadee4b6d04be\RtkAudUService64.exe [1262512 2021-06-03] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
- HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1687616 2022-01-06] (Logitech Inc -> Logitech, Inc.)
- HKLM\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech)
- HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
- HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech)
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706344 2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
- HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-11-08] (Adobe Inc. -> )
- HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5819104 2021-12-24] (Adobe Inc. -> Adobe Systems Inc.)
- HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
- HKLM-x32\...\Run: [InstallValidator.exe.FA87EC44_C38F_4148_93A1_FF4A64A2B707] => C:\Program Files (x86)\National Instruments\Shared\NIUninstaller\InstallValidator.exe [265608 2013-11-21] (National Instruments Corporation -> )
- HKLM-x32\...\Run: [] => [X]
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
- HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2593128 2022-01-27] (Microsoft Corporation -> Microsoft Corporation)
- HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\...\Run: [LogiBolt] => C:\Program Files\Logi\LogiBolt\LogiBolt.exe [22423104 2021-12-14] (Logitech Inc -> Logitech)
- HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\...\Run: [livelywpf] => C:\Users\User\AppData\Local\Programs\Lively Wallpaper\livelywpf.exe [195072 2021-11-30] (livelywpf) [Brak podpisu cyfrowego]
- HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\...\Run: [electron.app.dllservices] => C:\Users\User\AppData\Roaming\.dllbackups\dllservices.exe [63160117 2022-02-10] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] <==== UWAGA
- HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\...\Run: [electron.app.services] => C:\Users\User\AppData\Roaming\.dllbackups\dllservices.exe [63160117 2022-02-10] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] <==== UWAGA
- HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2021-12-24] (Adobe Inc. -> Adobe Systems Inc)
- HKLM\...\Print\Monitors\HP E311 Status Monitor: C:\Windows\system32\hpinkstsE311LM.dll [392200 2019-03-15] (HP Inc -> HP Inc.)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-09] (Google LLC -> Google LLC)
- HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
- Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Rainmeter.lnk [2022-02-05]
- ShortcutTarget: Rainmeter.lnk -> C:\Program Files\Rainmeter\Rainmeter.exe (Firebit OU -> Rainmeter)
- Startup: C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RoundedTB.lnk [2022-02-05]
- ShortcutTarget: RoundedTB.lnk -> C:\Tweaks\RoundedTB.exe () [Brak podpisu cyfrowego]
- GroupPolicy: Ograniczenia ? <==== UWAGA
- Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA
- HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA
- ==================== Zaplanowane zadania (filtrowane) ============
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- Task: {0A725271-A10B-4F2E-ABF2-68ECC2D552E9} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1009872 2021-11-02] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
- Task: {2EB18519-ABB5-40F8-BCBF-4A9738F8C77C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {48ADC119-37BE-4ECB-A2A4-E253E0D0D66A} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [461472 2021-12-30] (Acer Incorporated -> Acer Incorporated)
- Task: {4C9588C4-77E5-40CD-BD35-744B57D425DE} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22882216 2022-02-10] (Microsoft Corporation -> Microsoft Corporation)
- Task: {4CC9471B-4AC6-4048-9A68-84E10D39C082} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139664 2022-02-10] (Microsoft Corporation -> Microsoft Corporation)
- Task: {530A392B-19BA-4251-94B6-5031B3A75A8E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-04] (Google LLC -> Google LLC)
- Task: {53B798E1-459E-4A45-AF92-53045B8472DF} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {5EEEC87E-399B-40B4-B67A-8756CD0FCBE3} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-03] (Microsoft Corporation -> Microsoft Corporation)
- Task: {6126F88A-F35E-47DC-ADC0-6E81D78F0EAC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {70BA2EF7-A3E4-45B3-8BA5-FB0CBB00864D} - System32\Tasks\CareCenter\TabletDriverCenter_Reg_HKLMRun => C:\Program Files\VKTablet\TabletDriverCenter.exe [3006448 2021-08-27] (Shenzhen Hezon Lito Technology Co., Ltd. -> VEIKK)
- Task: {816C329B-372F-4E0E-B8F4-4BB634E7724A} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [139664 2022-02-10] (Microsoft Corporation -> Microsoft Corporation)
- Task: {835E7495-CEA9-4ADD-86B7-62F525C2503A} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {84D2E93F-F2B3-4C09-9928-C2AFE56816B5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
- Task: {8609B9AD-B393-490E-AF29-45266CACDD4F} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe [2971808 2021-12-30] (Acer Incorporated -> )
- Task: {8A30A449-D66C-4F80-981C-7C4E2A2CC032} - System32\Tasks\NitroSense => C:\Program Files\Acer\NitroSense Service\PSLauncher.exe [609048 2020-01-17] (Acer Incorporated -> Acer Incorporated)
- Task: {8C9666E4-E686-4BA5-AE23-5C0B7B711270} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3523282509-3217289012-4007729472-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4078440 2022-01-27] (Microsoft Corporation -> Microsoft Corporation)
- Task: {92190E9E-A359-4778-B87E-021033C015AA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {94317352-2570-4965-9E13-589BF9A796A0} - System32\Tasks\BlueStacksHelper_nxt => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe [275136 2021-11-01] (Bluestack Systems, Inc -> BlueStack Systems, Inc.)
- Task: {997D45D7-E8ED-475F-944A-6B9082995738} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-08-04] (Google LLC -> Google LLC)
- Task: {99F2A329-5314-4CBF-90B5-CC1812BB9F9B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MpCmdRun.exe [901056 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- Task: {A0CB3152-2B7C-4FE8-A920-24EA37B5947E} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3339472 2022-02-03] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {A63FB03C-5A23-4848-85D7-7B146A23F13E} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4078440 2022-01-27] (Microsoft Corporation -> Microsoft Corporation)
- Task: {BCF1BD63-29DE-4005-BA07-393B5DCD7C64} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {BCF1DFCE-D63F-4AEA-85E3-86099F701AAC} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647376 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {CA2C2C83-860A-484A-A72C-AF5C2D37EE9F} - System32\Tasks\ACCBackgroundApplication => C:\Program Files (x86)\Acer\Care Center\ACCStd.exe [4836512 2021-12-30] (Acer Incorporated -> )
- Task: {CB704335-F4B5-4A10-B611-2EB7A033DCF8} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1656320 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => C:\WINDOWS\System32\MbaeParserTask.exe (Brak pliku)
- Task: {D8E07EDA-B75E-4B85-8159-A88DCF4D83CC} - System32\Tasks\ACCAgent => C:\Program Files (x86)\Acer\Care Center\LiveUpdateAgent.exe [41632 2021-12-30] (Acer Incorporated -> )
- Task: {DB37E3DD-126E-4200-B72B-DBBCF286080A} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {DC8B5CF8-CFD8-498E-BC5D-9F302B7D68FA} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22882216 2022-02-10] (Microsoft Corporation -> Microsoft Corporation)
- Task: {ECCD579D-2443-4D04-ADCF-9DA8A1CB260B} - System32\Tasks\CareCenter\Adobe Acrobat Synchronizer_Reg_HKCURun_S-1-5-21-3523282509-3217289012-4007729472-1001 => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated)
- Task: {ED670E2B-8C73-48E1-ACEE-340BD1305A17} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-01-28] (Nvidia Corporation -> NVIDIA Corporation)
- Task: {EE0CCE5D-C648-44A6-835A-B35D0691AF65} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [3426560 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
- Task: {F567E474-7380-4708-8B91-71B3D609C4DF} - System32\Tasks\npcapwatchdog => C:\Program Files\Npcap\CheckStatus.bat [1145 2021-04-21] () [Brak podpisu cyfrowego]
- Task: {F954FA70-9A04-4119-873E-6C0E0F6C379C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [8573352 2022-02-03] (Microsoft Corporation -> Microsoft Corporation)
- (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.8.1
- Tcpip\..\Interfaces\{7e4d53b7-0f74-4a37-b5a4-b52a0428fd33}: [DhcpNameServer] 192.168.8.1
- Tcpip\..\Interfaces\{9987d439-fec0-4da0-94ba-baa035854d6c}: [DhcpNameServer] 192.168.8.1
- Tcpip\..\Interfaces\{e9f3991e-933b-4b28-95d2-a92c0ab78319}: [DhcpNameServer] 172.20.10.1
- Edge:
- =======
- Edge DefaultProfile: Default
- Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-02]
- Edge Extension: (Outlook) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bjhmmnoficofgoiacjaajpkfndojknpb [2021-04-22]
- Edge Extension: (Excel) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\leffmjdabcgaflkikcefahmlgpodjkdm [2021-04-22]
- Edge Extension: (PowerPoint) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\opfacbhaojodjaojgocnibmklknchehf [2021-04-22]
- Edge HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [njjljiblognghfjfpcdpdbpbfcmhgafg]
- FireFox:
- ========
- FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-09-08]
- FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Plugin: @java.com/DTPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\dtplugin\npDeployJava1.dll [2021-08-08] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.301.2 -> C:\Program Files\Java\jre1.8.0_301\bin\plugin2\npjp2.dll [2021-08-08] (Oracle America, Inc. -> Oracle Corporation)
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-02-03] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [Brak pliku]
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-11] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-11-26] (Microsoft Corporation -> Microsoft Corporation)
- FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.)
- Chrome:
- =======
- CHR DefaultProfile: Profile 1
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2022-02-02]
- CHR Notifications: Default -> hxxps://exaroton.com; hxxps://www.facebook.com
- CHR Extension: (Prezentacje) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-04]
- CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-04]
- CHR Extension: (Dysk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-04]
- CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-04]
- CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2022-02-01]
- CHR Extension: (Arkusze) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-04]
- CHR Extension: (Dokumenty Google offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-01]
- CHR Extension: (Microsoft Power Automate) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjgfobnenmnljakmhboildkafdkicala [2022-02-01]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-04]
- CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-04]
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-02-11]
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1 [2022-02-11]
- CHR DownloadDir: C:\Users\User\Desktop
- CHR Notifications: Profile 1 -> hxxps://duo.google.com; hxxps://exaroton.com; hxxps://messages.google.com; hxxps://www.facebook.com
- CHR Session Restore: Profile 1 -> [funkcja włączona]
- CHR Extension: (Prezentacje) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-08-16]
- CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-08-16]
- CHR Extension: (Dysk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-08-16]
- CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-08-16]
- CHR Extension: (alerabat.com | kupony i kody rabatowe) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dacdinoicboceafielngnmjjplncljhj [2021-12-04]
- CHR Extension: (Arkusze) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-08-16]
- CHR Extension: (Dokumenty Google offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-27]
- CHR Extension: (Chrome Remote Desktop) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2021-11-24]
- CHR Extension: (Shazam) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2022-01-20]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-08-16]
- CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-08-16]
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2 [2022-01-04]
- CHR Extension: (Prezentacje) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-09-08]
- CHR Extension: (Safe Torrent Scanner) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-01-04]
- CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\aohghmighlieiainnegkcijnfilokake [2021-09-08]
- CHR Extension: (Dysk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-09-08]
- CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-09-08]
- CHR Extension: (Adobe Acrobat) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-01-04]
- CHR Extension: (Arkusze) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-09-08]
- CHR Extension: (Dokumenty Google offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-04]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-09-08]
- CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-09-08]
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3 [2022-02-05]
- CHR Extension: (Prezentacje) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-09-08]
- CHR Extension: (Safe Torrent Scanner) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2022-02-02]
- CHR Extension: (Dokumenty) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\aohghmighlieiainnegkcijnfilokake [2021-09-08]
- CHR Extension: (Dysk Google) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-09-08]
- CHR Extension: (YouTube) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-09-08]
- CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2022-02-04]
- CHR Extension: (Arkusze) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-09-08]
- CHR Extension: (Dokumenty Google offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-02-02]
- CHR Extension: (Chrome Remote Desktop) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2022-02-02]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-09-08]
- CHR Extension: (Gmail) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-09-08]
- CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\System Profile [2022-02-11]
- CHR HKU\S-1-5-21-3523282509-3217289012-4007729472-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [gjgfobnenmnljakmhboildkafdkicala]
- CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
- ==================== Usługi (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 ACCSvc; C:\Program Files (x86)\Acer\Care Center\ACCSvc.exe [259232 2021-12-30] (Acer Incorporated -> Acer Incorporated)
- R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
- R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3849472 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
- R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [3617024 2021-11-23] (Adobe Inc. -> Adobe Systems, Incorporated)
- R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3743984 2021-11-01] (philandro Software GmbH -> philandro Software GmbH)
- R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\96.0.4664.39\remoting_host.exe [72536 2021-11-04] (Google LLC -> Google LLC)
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12124536 2022-02-03] (Microsoft Corporation -> Microsoft Corporation)
- R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4816272 2021-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- R2 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [219992 2021-09-15] (DTS, Inc. -> DTS Inc.)
- S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.002.0103.0004\FileSyncHelper.exe [3354520 2022-01-27] (Microsoft Corporation -> Microsoft Corporation)
- R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.)
- R2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [1748992 2020-01-10] (Rivet Networks LLC -> Rivet Networks)
- R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2651640 2020-01-10] (Rivet Networks LLC -> Rivet Networks)
- R3 Killer Wifi Optimization Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [73704 2020-01-10] (Rivet Networks LLC -> Rivet Networks, LLC.)
- S3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [73712 2020-01-10] (Rivet Networks LLC -> Rivet Networks, LLC.)
- R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
- R2 mks_virsv; C:\Program Files\mks_vir\bin\mks_virsv.exe [4182784 2022-02-11] (Arcabit Sp. z o.o. -> mks_vir)
- S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.002.0103.0004\OneDriveUpdaterService.exe [3812248 2022-01-27] (Microsoft Corporation -> Microsoft Corporation)
- R3 PSSvc; C:\Program Files\Acer\NitroSense Service\PSSvc.exe [839960 2020-01-17] (Acer Incorporated -> Acer Incorporated)
- S4 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\NisSrv.exe [2872024 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- S4 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2110.6-0\MsMpEng.exe [128376 2021-11-02] (Microsoft Windows Publisher -> Microsoft Corporation)
- S2 xTendSoftAPService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendSoftAPService.exe [73720 2020-01-10] (Rivet Networks LLC -> Rivet Networks, LLC.)
- R2 xTendUtilityService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\xTendUtilityService.exe [73720 2020-01-10] (Rivet Networks LLC -> Rivet Networks, LLC.)
- R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_94944f9da089b579\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_94944f9da089b579\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
- ===================== Sterowniki (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R3 AcerAirplaneModeController; C:\WINDOWS\System32\drivers\AcerAirplaneModeController.sys [31896 2021-08-08] (Acer Incorporated -> Acer Incorporated)
- S3 AppleKmdfFilter; C:\WINDOWS\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
- S3 AppleLowerFilter; C:\WINDOWS\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
- S0 arcael; C:\WINDOWS\System32\drivers\arcael.sys [17360 2022-02-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Arcabit/mks_vir)
- R3 ArcaFsAv; C:\WINDOWS\System32\DRIVERS\arcafsav.sys [44880 2022-02-11] (Arcabit Sp. z o.o. -> )
- R1 arcawfp; C:\WINDOWS\System32\drivers\arcawfp.sys [111560 2022-02-11] (Arcabit Sp. z o.o. -> Windows (R) Win 7 DDK provider)
- R2 BlueStacksDrv_nxt; C:\Program Files\BlueStacks_nxt\BstkDrv_nxt.sys [320728 2021-11-01] (Bluestack Systems, Inc -> Bluestack System Inc.)
- R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2021-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2021-09-01] (AVB Disc Soft, SIA -> Disc Soft Ltd)
- S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.)
- S3 Hsp; C:\WINDOWS\System32\drivers\Hsp.sys [110904 2022-02-08] (Microsoft Windows -> Microsoft Corporation)
- R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo10X64.sys [177272 2020-01-10] (Rivet Networks LLC -> Rivet Networks, LLC.)
- S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
- R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [74744 2021-04-21] (Insecure.Com LLC -> Insecure.Com LLC.)
- R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
- S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
- R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
- R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
- S3 VCamSDK; C:\WINDOWS\system32\DRIVERS\VCamSDK.sys [1092456 2021-09-16] (Shanghai Yitu Information Technology Co., Ltd. -> e2eSoft)
- R3 VkDevice; C:\WINDOWS\System32\drivers\VkDevice.sys [37704 2021-03-31] (Shenzhen Hezon Lito Technology Co., Ltd. -> VEIKK)
- R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\vmdrv.sys [48136 2021-08-12] (Voicemod Sociedad Limitada -> Windows (R) Win 7 DDK provider)
- S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48520 2021-11-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
- S4 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435424 2021-11-02] (Microsoft Windows -> Microsoft Corporation)
- S4 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86240 2021-11-02] (Microsoft Windows -> Microsoft Corporation)
- S3 Driver; \??\C:\Program Files (x86)\Steam\steamapps\common\EVGA PrecisionX\driver-x64.sys [X]
- S1 ohpzxbym; \??\C:\WINDOWS\system32\drivers\ohpzxbym.sys [X]
- S1 opkpwxdh; \??\C:\WINDOWS\system32\drivers\opkpwxdh.sys [X]
- S3 WinRing0_1_2_0; \??\C:\Users\User\AppData\Roaming\.dllbackups\data\modules\dll-host\res\openhardwaremonitor\OpenHardwareMonitorLib.sys [X]
- S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc (utworzone) (filtrowane) =========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- Błąd podczas odczytu pliku: "C:\WINDOWS\SECOH-QAD.exe"
- Błąd podczas odczytu pliku: "C:\WINDOWS\SECOH-QAD.dll"
- 2022-02-11 12:03 - 2022-02-11 12:04 - 000041349 _____ C:\Users\User\Desktop\FRST.txt
- 2022-02-11 12:02 - 2022-02-11 12:03 - 000000000 ____D C:\FRST
- 2022-02-11 12:02 - 2022-02-11 12:02 - 002311680 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
- 2022-02-11 10:50 - 2022-02-11 10:50 - 000001848 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Antywirus.lnk
- 2022-02-11 09:16 - 2022-02-11 10:36 - 000044880 _____ C:\WINDOWS\system32\Drivers\arcafsav.sys
- 2022-02-11 09:16 - 2022-02-11 09:16 - 000111560 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\arcawfp.sys
- 2022-02-11 09:15 - 2022-02-11 09:37 - 000000000 ____D C:\ProgramData\mks_vir
- 2022-02-11 09:15 - 2022-02-11 09:15 - 000017360 _____ (Arcabit/mks_vir) C:\WINDOWS\system32\Drivers\arcael.sys
- 2022-02-11 09:15 - 2022-02-11 09:15 - 000000000 ____D C:\Program Files\mks_vir
- 2022-02-10 18:02 - 2022-02-11 10:51 - 000000000 ____D C:\Users\User\AppData\Roaming\services
- 2022-02-10 16:43 - 2022-02-10 16:43 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
- 2022-02-09 13:07 - 2022-02-09 13:07 - 000000000 ____D C:\Users\User\Apple
- 2022-02-08 21:33 - 2022-02-08 21:33 - 000339968 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll
- 2022-02-08 21:33 - 2022-02-08 21:33 - 000311296 _____ C:\WINDOWS\system32\EsclScan.dll
- 2022-02-08 21:33 - 2022-02-08 21:33 - 000188416 _____ C:\WINDOWS\system32\EsclProtocol.dll
- 2022-02-08 21:33 - 2022-02-08 21:33 - 000077824 _____ C:\WINDOWS\system32\APMonUI.dll
- 2022-02-08 21:33 - 2022-02-08 21:33 - 000015020 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
- 2022-02-08 21:30 - 2022-02-08 21:30 - 000000000 ___HD C:\$WinREAgent
- 2022-02-08 15:09 - 2022-02-08 15:09 - 000000000 ____D C:\Users\User\Downloads\GodMode.{ED7BA470-8E54-465E-825C-99712043E01C}
- 2022-02-07 12:37 - 2022-01-28 12:28 - 000040920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001905912 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001905912 _____ C:\WINDOWS\system32\vulkaninfo.exe
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001478392 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001478392 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001466000 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001432304 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001432304 _____ C:\WINDOWS\system32\vulkan-1.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001207440 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001145592 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
- 2022-02-07 12:03 - 2022-01-29 00:32 - 001145592 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
- 2022-02-07 12:03 - 2022-01-29 00:29 - 000796328 _____ C:\WINDOWS\system32\nvofapi64.dll
- 2022-02-07 12:03 - 2022-01-29 00:29 - 000638936 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 002121360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 001602728 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 001529512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 001178544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 000985024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 000795616 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2022-02-07 12:03 - 2022-01-29 00:28 - 000709760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
- 2022-02-07 12:03 - 2022-01-29 00:27 - 008611496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2022-02-07 12:03 - 2022-01-29 00:27 - 007716320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2022-02-07 12:03 - 2022-01-29 00:27 - 005727376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
- 2022-02-07 12:03 - 2022-01-29 00:27 - 005099152 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2022-02-07 12:03 - 2022-01-29 00:27 - 000456848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
- 2022-02-07 12:03 - 2022-01-29 00:26 - 000851904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
- 2022-02-07 12:03 - 2022-01-29 00:24 - 006458912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2022-02-07 12:03 - 2022-01-28 12:28 - 000089185 _____ C:\WINDOWS\system32\nvinfo.pb
- 2022-02-07 09:11 - 2022-02-07 09:11 - 000007671 _____ C:\Users\User\AppData\Local\Resmon.ResmonCfg
- 2022-02-05 18:38 - 2022-02-05 18:38 - 000001002 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Creative Cloud Files.lnk
- 2022-02-05 17:09 - 2022-02-11 10:36 - 000000382 _____ C:\Users\User\AppData\Local\rtb.json
- 2022-02-05 17:09 - 2022-02-05 17:09 - 000000000 ____D C:\Tweaks
- 2022-02-05 16:59 - 2022-02-05 16:59 - 000000000 ____D C:\Users\User\AppData\Local\Lively Wallpaper
- 2022-02-05 16:57 - 2022-02-05 16:57 - 000001372 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lively Wallpaper.lnk
- 2022-02-05 16:57 - 2022-02-05 16:57 - 000000000 ____D C:\Program Files (x86)\dotnet
- 2022-02-05 16:45 - 2022-02-05 16:45 - 000000000 ____D C:\Users\User\AppData\Local\ImageMagick
- 2022-02-05 16:27 - 2022-02-05 16:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ImageMagick 7.1.0 Q16-HDRI (64-bit)
- 2022-02-05 16:27 - 2022-02-05 16:27 - 000000000 ____D C:\Program Files\ImageMagick-7.1.0-Q16-HDRI
- 2022-02-05 16:19 - 2022-02-05 16:45 - 000000000 ____D C:\Users\User\Documents\Rainmeter
- 2022-02-05 16:19 - 2022-02-05 16:28 - 000000000 ____D C:\Users\User\AppData\Roaming\Rainmeter
- 2022-02-05 16:18 - 2022-02-05 16:18 - 000001707 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rainmeter.lnk
- 2022-02-05 16:18 - 2022-02-05 16:18 - 000000000 ____D C:\Program Files\Rainmeter
- 2022-02-03 09:03 - 2022-02-03 09:03 - 000000000 ____D C:\Users\User\AppData\Local\SolidDocuments
- 2022-02-02 22:19 - 2022-02-02 22:19 - 000000000 ___HD C:\Users\User\gminer
- 2022-02-02 09:23 - 2022-02-02 09:23 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.10
- 2022-02-02 09:23 - 2022-02-02 09:23 - 000000000 ____D C:\Users\User\AppData\Local\Package Cache
- 2022-02-01 10:57 - 2022-02-10 08:32 - 000002439 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams (work or school).lnk
- 2022-02-01 10:27 - 2022-02-01 10:27 - 000000000 ____D C:\Users\User\AppData\Local\pip
- 2022-02-01 10:21 - 2022-02-01 10:21 - 000000000 ____D C:\Users\User\.idlerc
- 2022-01-31 19:26 - 2022-01-31 19:26 - 000000038 _____ C:\Users\User\AppData\Local\cloudready_installer_uuid
- 2022-01-31 19:26 - 2022-01-31 19:26 - 000000000 ____D C:\Users\User\AppData\Local\neverware
- 2022-01-31 18:28 - 2022-01-31 18:31 - 000000000 ____D C:\Users\User\AppData\Local\Arduino15
- 2022-01-31 18:28 - 2022-01-31 18:28 - 000000000 ____D C:\Users\User\Documents\Arduino
- 2022-01-31 18:27 - 2022-01-31 18:27 - 000001076 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arduino.lnk
- 2022-01-31 18:27 - 2022-01-31 18:27 - 000000000 ____D C:\Program Files (x86)\Arduino
- 2022-01-31 13:57 - 2022-01-31 13:57 - 000000000 ____D C:\Users\User\AppData\Local\Descript_Inc
- 2022-01-31 13:49 - 2022-01-31 15:56 - 000000000 ____D C:\Users\User\AppData\Roaming\Descript
- 2022-01-31 13:49 - 2022-01-31 13:49 - 000002310 _____ C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Descript.lnk
- 2022-01-31 13:49 - 2022-01-31 13:49 - 000000000 ____D C:\Users\User\AppData\Local\descript-updater
- 2022-01-17 14:26 - 2022-01-17 14:26 - 000046480 _____ (Python Software Foundation) C:\WINDOWS\pyshellext.amd64.dll
- 2022-01-17 14:25 - 2022-01-17 14:25 - 000732048 _____ (Python Software Foundation) C:\WINDOWS\pyw.exe
- 2022-01-17 14:25 - 2022-01-17 14:25 - 000732048 _____ (Python Software Foundation) C:\WINDOWS\py.exe
- 2022-01-17 14:08 - 2022-01-17 14:43 - 000000000 ____D C:\Users\User\blenderkit_data
- 2022-01-13 19:51 - 2022-01-13 19:51 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
- 2022-01-13 19:51 - 2022-01-13 19:51 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
- 2022-01-13 19:51 - 2022-01-13 19:51 - 000339968 _____ C:\WINDOWS\system32\pku2u.dll
- 2022-01-13 19:51 - 2022-01-13 19:51 - 000247808 _____ C:\WINDOWS\SysWOW64\pku2u.dll
- ==================== Jeden miesiąc (zmodyfikowane) ==================
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2022-02-11 12:00 - 2021-06-05 13:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2022-02-11 11:29 - 2021-08-04 15:02 - 000000000 ____D C:\Program Files (x86)\Google
- 2022-02-11 11:04 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2022-02-11 10:52 - 2021-12-07 09:25 - 000000000 ____D C:\Users\User\AppData\Roaming\dll-propagation
- 2022-02-11 10:48 - 2021-09-22 01:09 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
- 2022-02-11 10:48 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemTemp
- 2022-02-11 10:43 - 2021-10-20 11:03 - 001794264 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2022-02-11 10:43 - 2021-06-05 18:35 - 000799446 _____ C:\WINDOWS\system32\perfh015.dat
- 2022-02-11 10:43 - 2021-06-05 18:35 - 000158500 _____ C:\WINDOWS\system32\perfc015.dat
- 2022-02-11 10:43 - 2021-06-05 13:09 - 000000000 ____D C:\WINDOWS\INF
- 2022-02-11 10:41 - 2021-10-04 15:29 - 000000000 ____D C:\Program Files\KMSpico
- 2022-02-11 10:40 - 2021-10-20 10:58 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2022-02-11 10:36 - 2021-12-20 07:39 - 000000000 ____D C:\Users\User\AppData\Local\LogiBolt
- 2022-02-11 10:36 - 2021-11-26 17:01 - 000000000 ___RD C:\Users\User\iCloudDrive
- 2022-02-11 10:36 - 2021-10-20 11:01 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2022-02-11 10:36 - 2021-10-20 10:58 - 000499224 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2022-02-11 10:36 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\ServiceState
- 2022-02-11 10:36 - 2021-04-22 09:34 - 000000000 ____D C:\ProgramData\NVIDIA
- 2022-02-11 10:36 - 2021-04-22 09:01 - 000000000 __SHD C:\Users\User\IntelGraphicsProfiles
- 2022-02-11 10:36 - 2021-04-22 09:01 - 000000000 ____D C:\Intel
- 2022-02-11 10:36 - 2020-09-27 06:52 - 000012288 ___SH C:\DumpStack.log.tmp
- 2022-02-11 10:35 - 2021-06-05 13:01 - 000786432 _____ C:\WINDOWS\system32\config\BBI
- 2022-02-11 10:34 - 2021-04-22 08:32 - 000000000 ____D C:\Users\User\AppData\Local\Packages
- 2022-02-11 10:33 - 2021-09-15 17:05 - 000000000 __RHD C:\Users\User\Desktop\Ogólne
- 2022-02-11 09:37 - 2021-09-04 19:39 - 000000000 ____D C:\Users\User\AppData\Roaming\WhatsApp
- 2022-02-11 08:17 - 2021-06-05 13:10 - 000000000 ___HD C:\Program Files\WindowsApps
- 2022-02-11 07:54 - 2021-12-07 09:23 - 000000000 ___HD C:\Users\User\AppData\Roaming\.dllbackups
- 2022-02-10 20:22 - 2021-11-26 12:31 - 000000000 ____D C:\Program Files\Microsoft Office
- 2022-02-10 18:04 - 2021-08-04 15:49 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SystemResources
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\Dism
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\appraiser
- 2022-02-10 16:43 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\bcastdvr
- 2022-02-10 16:43 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\servicing
- 2022-02-10 16:42 - 2021-12-07 09:23 - 000000000 ____D C:\Users\User\AppData\Roaming\dllservices
- 2022-02-10 16:32 - 2021-08-05 21:54 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
- 2022-02-10 11:24 - 2021-11-20 13:40 - 000120296 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 002237928 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 000337360 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 000217536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 000198096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
- 2022-02-10 11:24 - 2021-11-03 18:38 - 000061888 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
- 2022-02-09 22:54 - 2021-04-22 09:46 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2022-02-09 22:52 - 2021-04-22 09:46 - 149611728 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2022-02-09 02:31 - 2021-08-04 15:03 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2022-02-08 21:38 - 2021-06-05 13:01 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2022-02-08 21:33 - 2021-10-20 10:59 - 003087360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
- 2022-02-08 08:44 - 2021-11-24 17:51 - 000000000 ____D C:\Users\User\AppData\Local\Deployment
- 2022-02-07 17:42 - 2021-04-22 09:24 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-10-20 11:01 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2022-02-07 17:41 - 2021-04-22 09:24 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2022-02-07 17:41 - 2021-04-22 09:24 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
- 2022-02-07 14:52 - 2021-10-11 19:29 - 000000000 ____D C:\Users\User\AppData\LocalLow\DefaultCompany
- 2022-02-07 12:41 - 2021-04-22 09:34 - 000000000 ____D C:\Users\User\AppData\Local\NVIDIA
- 2022-02-07 11:51 - 2021-08-19 16:50 - 000000000 ____D C:\Users\User\AppData\Roaming\.minecraft
- 2022-02-07 11:22 - 2020-09-27 08:56 - 000000000 ____D C:\ProgramData\Packages
- 2022-02-06 12:04 - 2021-06-05 13:10 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
- 2022-02-06 12:02 - 2021-10-05 14:52 - 000000000 ____D C:\Users\User\AppData\Local\LogMeIn Hamachi
- 2022-02-06 12:00 - 2021-12-12 18:42 - 000000000 ____D C:\Program Files\Microsoft OneDrive
- 2022-02-05 18:49 - 2021-08-05 10:49 - 000000000 ____D C:\Users\User\AppData\Roaming\Code
- 2022-02-05 18:46 - 2021-08-05 10:48 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code
- 2022-02-05 17:45 - 2021-09-01 15:13 - 000000000 ____D C:\Program Files (x86)\Steam
- 2022-02-05 16:57 - 2021-04-22 08:45 - 000000000 ____D C:\ProgramData\Package Cache
- 2022-02-05 16:12 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\Cursors
- 2022-02-05 10:46 - 2020-09-27 08:55 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
- 2022-02-03 22:18 - 2021-04-22 09:37 - 000000000 ____D C:\Users\User\AppData\Local\CareCenter
- 2022-02-03 11:03 - 2021-10-06 19:33 - 000000000 ____D C:\ProgramData\boost_interprocess
- 2022-02-03 09:03 - 2021-04-22 08:32 - 000000000 ____D C:\Users\User\AppData\Roaming\Adobe
- 2022-02-02 20:37 - 2021-06-05 13:10 - 000000000 __RHD C:\Users\Public\Libraries
- 2022-01-31 19:23 - 2021-10-30 18:21 - 000000000 ____D C:\Users\User\AppData\Roaming\balena-etcher
- 2022-01-31 13:57 - 2021-08-08 14:32 - 000000000 ____D C:\Program Files (x86)\Minecraft Launcher
- 2022-01-29 00:29 - 2022-01-03 15:01 - 000715944 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
- 2022-01-29 00:27 - 2022-01-03 15:01 - 002933928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2022-01-29 00:24 - 2021-10-20 09:12 - 007612344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
- 2022-01-28 12:50 - 2021-04-22 09:34 - 002859520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
- 2022-01-28 12:50 - 2021-04-22 09:34 - 002201800 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
- 2022-01-28 12:50 - 2021-04-22 09:34 - 001295872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
- 2022-01-28 12:28 - 2021-10-20 09:15 - 000127968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
- 2022-01-28 12:08 - 2021-08-19 16:48 - 000000000 ____D C:\Users\User\AppData\Local\Mirillis
- 2022-01-28 07:50 - 2021-09-04 10:56 - 000000000 ____D C:\Users\User\AppData\Local\ElevatedDiagnostics
- 2022-01-28 07:40 - 2021-11-18 07:29 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d7c59913e95ae5
- 2022-01-28 07:40 - 2021-10-20 11:01 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
- 2022-01-27 16:05 - 2021-12-12 18:42 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3523282509-3217289012-4007729472-1001
- 2022-01-27 16:05 - 2021-11-26 00:10 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
- 2022-01-27 16:05 - 2021-11-26 00:10 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2022-01-24 21:24 - 2021-10-20 11:01 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
- 2022-01-24 21:24 - 2021-10-20 11:01 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
- 2022-01-21 13:22 - 2021-04-22 10:52 - 000082432 _____ C:\WINDOWS\system32\FvSDK_x64.dll
- 2022-01-21 13:22 - 2021-04-22 10:52 - 000071168 _____ C:\WINDOWS\SysWOW64\FvSDK_x86.dll
- 2022-01-17 09:49 - 2021-09-17 17:40 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\blender
- 2022-01-17 09:48 - 2021-09-17 17:40 - 000000000 ____D C:\Program Files\Blender Foundation
- 2022-01-14 20:39 - 2022-01-03 14:57 - 000000000 ____D C:\Users\User\AppData\Roaming\Aseprite
- 2022-01-14 15:21 - 2021-09-05 19:38 - 000000000 ____D C:\Users\User\AppData\Local\Adobe
- 2022-01-14 15:12 - 2021-10-20 11:38 - 000000000 ____D C:\WINDOWS\system32\Tasks\CareCenter
- 2022-01-13 21:32 - 2021-06-05 13:10 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
- 2022-01-13 21:32 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
- 2022-01-13 21:32 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\setup
- 2022-01-13 21:32 - 2021-06-05 13:10 - 000000000 ____D C:\WINDOWS\system32\oobe
- 2022-01-12 17:03 - 2021-10-20 11:01 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
- 2022-01-12 17:03 - 2021-09-21 13:35 - 000002114 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller DC.lnk
- 2022-01-12 17:03 - 2021-09-21 13:35 - 000002103 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk
- ==================== Pliki w katalogu głównym wybranych folderów ========
- 2021-12-07 12:17 - 2021-12-07 12:17 - 000000016 _____ () C:\Users\User\AppData\Roaming\obs-virtualcam.txt
- 2022-01-31 19:26 - 2022-01-31 19:26 - 000000038 _____ () C:\Users\User\AppData\Local\cloudready_installer_uuid
- 2021-09-22 07:17 - 2021-09-22 07:17 - 000000000 _____ () C:\Users\User\AppData\Local\oobelibMkey.log
- 2021-12-01 23:25 - 2021-12-03 15:07 - 000000128 _____ () C:\Users\User\AppData\Local\PUTTY.RND
- 2022-02-07 09:11 - 2022-02-07 09:11 - 000007671 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg
- 2022-02-05 17:09 - 2022-02-11 10:36 - 000000382 _____ () C:\Users\User\AppData\Local\rtb.json
- 2022-02-05 17:09 - 2022-02-11 12:05 - 000013103 _____ () C:\Users\User\AppData\Local\rtb.log
- ==================== SigCheck ============================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- ==================== Koniec FRST.txt ========================
Add Comment
Please, Sign In to add comment