Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 01.01.2019
- Uruchomiony przez Magda (administrator) MAGDA (04-01-2019 12:39:06)
- Uruchomiony z C:\Users\Magda\Downloads
- Załadowane profile: Magda (Dostępne profile: Magda)
- Platform: Windows 8.1 Connected (Update) (X64) Język: Polski (Polska)
- Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (AMD) C:\Windows\System32\atiesrxx.exe
- (AMD) C:\Windows\System32\atieclxx.exe
- (Microsoft Corporation) C:\Windows\System32\wlanext.exe
- (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe
- () C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTDevMgr.exe
- (Byte Technologies LLC) C:\Program Files\ByteFence\ByteFenceService.exe
- (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
- (EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe
- (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
- () C:\Program Files (x86)\DataCardService\HWDeviceService64.exe
- (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
- (Byte Technologies LLC) C:\Program Files\ByteFence\ByteFence.exe
- (Huawei Technologies Co., Ltd.) C:\Program Files (x86)\DataCardService\DCSHelper.exe
- (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD10\PDVD10Serv.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe
- (Lenovo(beijing) Limited) C:\Windows\System32\LenovoWiFiHotspotSvr.exe
- (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe
- () C:\Program Files\Lenovo\iMController\AutoUpdate.exe
- (McAfee, Inc.) C:\Windows\System32\mfevtps.exe
- (Lenovo) C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe
- () C:\Program Files\CyberLink\Shared files\RichVideo64.exe
- (Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe
- (EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe
- () C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe
- (McAfee, Inc.) C:\Program Files\mcafee\msc\McAPExe.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfefire.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe
- (Realtek Semiconductor Corporation) C:\Program Files (x86)\Realtek\Realtek Bluetooth\BTServer.exe
- (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
- (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
- () C:\Program Files\CONEXANT\ForteConfig\fmapp.exe
- (Realtek semiconductor) C:\Windows\RTFTrack.exe
- (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe
- (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Energy Manager\utility.exe
- (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesApp64.exe
- (Lenovo(beijing) Limited) C:\Program Files (x86)\Lenovo\Lenovo Updates\LU.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Microsoft Corporation) C:\Windows\System32\rundll32.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
- (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.18384_none_fa1d93c39b41b41a\TiWorker.exe
- (McAfee, Inc.) C:\Program Files\mcafee.com\agent\mcupdate.exe
- ==================== Rejestr (filtrowane) ===========================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] ()
- HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
- HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [907480 2013-09-04] (Conexant Systems, Inc.)
- HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2891592 2014-02-12] (ELAN Microelectronics Corp.)
- HKLM\...\Run: [BtServer] => C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe [216064 2014-01-06] (Realtek Semiconductor Corporation)
- HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2014-02-27] (Realtek semiconductor)
- HKLM\...\Run: [PhoneCompanion] => C:\Program Files\Lenovo PhoneCompanion\Phone Companion.exe [836592 2014-09-28] (Lenovo)
- HKLM\...\Run: [Energy Manager] => C:\Program Files (x86)\Lenovo\Energy Manager\Energy Manager.exe [16094704 2014-09-28] (Lenovo(beijing) Limited)
- HKLM\...\Run: [Lenovo Utility] => C:\Program Files (x86)\Lenovo\Energy Manager\Utility.exe [10842096 2014-09-28] (Lenovo(beijing) Limited)
- HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [766688 2014-04-18] (Advanced Micro Devices, Inc.)
- HKLM-x32\...\Run: [mcpltui_exe] => C:\Program Files\Common Files\McAfee\platform\McUICnt.exe [643064 2014-09-17] (McAfee, Inc.)
- HKLM-x32\...\Run: [UpdateP2GShortCut] => C:\Program Files (x86)\Lenovo\Power2Go\MUITransfer\MUIStartMenu.exe [214312 2011-12-06] (CyberLink Corp.)
- HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [240400 2016-12-06] (AVG Technologies CZ, s.r.o.)
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [53729824 2015-08-07] (Skype Technologies S.A.)
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: F - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {03163456-3d4d-11e6-82e7-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {8bbb7334-e6df-11e6-8328-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {8f168287-86e5-11e6-8300-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {8f168588-86e5-11e6-8300-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {995c0a5b-444f-11e6-82e8-68f728020e09} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {995c0aba-444f-11e6-82e8-68f728020e09} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {995c22a8-444f-11e6-82e8-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {cfe1f8c1-fa33-11e8-8411-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {cfe1f92f-fa33-11e8-8411-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {cfe1f9b7-fa33-11e8-8411-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {cfe1fa15-fa33-11e8-8411-1008b1a11b8c} - "F:\AutoRun.exe"
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\...\MountPoints2: {f6391644-66ab-11e6-82fa-68f728020e09} - "F:\AutoRun.exe"
- HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
- HKLM\...\Drivers32-x32: [msacm.clmp3enc] => C:\Program Files (x86)\Lenovo\Power2Go\CLMP3Enc.ACM [217088 2005-05-13] (CyberLink Corp.)
- HKLM\...\Drivers32-x32: [vidc.VP60] => C:\WINDOWS\SysWOW64\vp6vfw.dll [442368 2004-08-18] (On2.com)
- HKLM\...\Drivers32-x32: [vidc.VP61] => C:\WINDOWS\SysWOW64\vp6vfw.dll [442368 2004-08-18] (On2.com)
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> C:\Program Files\Windows Mail\WinMail.exe [2014-10-29] (Microsoft Corporation)
- HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{44BBA840-CC51-11CF-AAFA-00AA00B6015C}] -> C:\Program Files (x86)\Windows Mail\WinMail.exe [2014-10-29] (Microsoft Corporation)
- HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-18] (Google Inc.)
- HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2018-09-20] (Adobe Systems, Inc.)
- HKLM\Software\...\Authentication\Credential Providers: [{d0869df6-64b0-4289-b483-9bff61394420}] -> C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfCredProv.dll [2014-09-28] ()
- Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2015-12-22]
- ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.266\SSScheduler.exe (McAfee, Inc.)
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.0.1
- Tcpip\..\Interfaces\{1B750CAA-A2BA-41A4-B701-C72D621A29A7}: [DhcpNameServer] 217.113.224.135 217.113.224.36
- Tcpip\..\Interfaces\{4E6FEA08-326B-4DE9-BB72-B619B4AAD731}: [DhcpNameServer] 192.168.1.1 192.168.0.1
- Internet Explorer:
- ==================
- HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
- HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
- HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
- SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
- BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-10-20] (Microsoft Corporation)
- Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
- Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
- Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
- Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-04] (Microsoft Corporation)
- Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\mcafee\msc\McSnIePl64.dll [2015-01-13] (McAfee, Inc.)
- Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files (x86)\McAfee\msc\McSnIePl.dll [2015-01-13] (McAfee, Inc.)
- FireFox:
- ========
- FF DefaultProfile: 7ak7h5fx.default
- FF ProfilePath: C:\Users\Magda\AppData\Roaming\Mozilla\Firefox\Profiles\7ak7h5fx.default [2018-12-15]
- FF Homepage: Mozilla\Firefox\Profiles\7ak7h5fx.default -> hxxp://www.interia.pl/#utm_source=instalki1&utm_medium=installer&utm_campaign=instalki1&iwa_source=installer_instalki
- FF HKLM-x32\...\Thunderbird\Extensions: [[email protected]] - C:\Program Files\McAfee\MSK
- FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2015-02-13] [Przestarzałe] [Brak podpisu cyfrowego]
- FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_101.dll [2018-12-07] ()
- FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2015-01-13] ()
- FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-07] ()
- FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-08-26] (Google, Inc.)
- FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\PROGRA~2\mcafee\msc\NPMCSN~1.DLL [2015-01-13] ()
- FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-15] (Microsoft Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-20] (Google Inc.)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> hxxps://www.google.pl/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8
- CHR StartupUrls: Default -> "hxxp://google.pl/","hxxps://www.google.pl/webhp?sourceid=chrome-instant&ion=1&espv=2&ie=UTF-8","hxxp://www.interia.pl/#utm_source=instalki1&utm_medium=installer&utm_campaign=instalki1&iwa_source=installer_instalki"
- CHR Session Restore: Default -> [funkcja włączona]
- CHR Profile: C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default [2019-01-04]
- CHR Extension: (Prezentacje) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
- CHR Extension: (Dokumenty) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
- CHR Extension: (Dysk Google) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-18]
- CHR Extension: (YouTube) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-27]
- CHR Extension: (Adblock Plus) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-12-08]
- CHR Extension: (Google Search) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
- CHR Extension: (Adobe Acrobat) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-01-20]
- CHR Extension: (Arkusze) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-20]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04]
- CHR Extension: (e-pity - dodatek) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2018-03-27]
- CHR Extension: (Gmail) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-31]
- CHR Extension: (Chrome Media Router) - C:\Users\Magda\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-19]
- CHR HKU\S-1-5-21-2276580516-1086920524-3955855896-1002\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx
- ==================== Usługi (filtrowane) ====================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [344064 2014-04-18] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego]
- R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1146128 2016-12-06] (AVG Technologies CZ, s.r.o.)
- R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [84992 2014-01-22] () [Brak podpisu cyfrowego]
- R2 ByteFenceService; c:\program files\bytefence\ByteFenceService.exe [157512 2018-12-18] (Byte Technologies LLC)
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9669920 2018-11-02] (Microsoft Corporation)
- R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [10083120 2018-11-19] (EnigmaSoft Limited)
- R2 ETDService; C:\Program Files\Elantech\ETDService.exe [99632 2013-10-09] (ELAN Microelectronics Corp.)
- R2 HomeNetSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 HWDeviceService64.exe; C:\Program Files (x86)\DatacardService\HWDeviceService64.exe [351888 2016-03-24] ()
- S2 Internet Manager. RunOuc; C:\Program Files (x86)\T-Mobile\InternetManager_H\UpdateDog\ouc.exe [682072 2015-02-24] ()
- S3 Lenovo EasyPlus Hotspot; C:\Program Files (x86)\Common Files\lenovo\easyplussdk\bin\EPHotspot64.exe [533760 2014-06-03] (Lenovo)
- S2 Lenovo System Agent Service; C:\Program Files\Lenovo\iMController\SystemAgentService.exe [584960 2014-05-21] (LENOVO INCORPORATED.)
- R2 LenovoWiFiHotspotSvr; C:\Windows\System32\LenovoWiFiHotspotSvr.exe [198192 2014-09-28] (Lenovo(beijing) Limited)
- S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [1663880 2014-05-06] ()
- R2 LUService; C:\Program Files (x86)\Lenovo\Lenovo Updates\LUService.exe [37624 2014-04-21] (Lenovo(beijing) Limited)
- R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [562200 2015-01-13] (McAfee, Inc.)
- S3 McAWFwk; c:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [332528 2014-03-12] (McAfee, Inc.)
- R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.3.336.0\McCSPServiceHost.exe [422632 2014-11-21] (McAfee, Inc.)
- R2 McMPFSvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- S3 McODS; C:\Program Files\mcafee\VirusScan\mcods.exe [601864 2015-01-07] (McAfee, Inc.)
- S4 McOobeSv2; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [1050952 2014-11-06] (McAfee, Inc.)
- R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [221832 2014-10-01] (McAfee, Inc.)
- R2 mfevtp; C:\WINDOWS\system32\mfevtps.exe [189920 2014-10-01] (McAfee, Inc.)
- R2 MSK80Service; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [335064 2014-10-31] (McAfee, Inc.)
- R2 PhoneCompanionPusher; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionPusher.exe [288240 2014-09-28] (Lenovo)
- S3 PhoneCompanionVap; C:\Program Files\Lenovo PhoneCompanion\PhoneCompanionVap.exe [308720 2014-09-28] (Lenovo)
- R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [390632 2012-04-25] ()
- R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [536880 2018-11-19] (EnigmaSoft Limited)
- R2 TuneUp.UtilitiesSvc; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesService64.exe [6593536 2018-07-26] (AVG Technologies CZ, s.r.o.)
- R2 VeriFaceSrv; C:\Program Files (x86)\Lenovo\Lenovo VeriFace Pro\VfConnectorService.exe [67856 2014-09-28] ()
- S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation)
- S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation)
- ===================== Sterowniki (filtrowane) ======================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 amdkmcsp; C:\WINDOWS\system32\DRIVERS\amdkmcsp.sys [95080 2017-06-12] (Advanced Micro Devices, Inc. )
- R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [36608 2013-12-12] (Advanced Micro Devices, Inc.)
- R1 amdpsp; C:\WINDOWS\system32\DRIVERS\amdpsp.sys [239976 2017-06-12] (Advanced Micro Devices, Inc. )
- R2 APXACC; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [224992 2013-11-01] (AppEx Networks Corporation)
- R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWB6.sys [222720 2014-03-12] (Advanced Micro Devices)
- R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [72136 2014-10-01] (McAfee, Inc.)
- S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.)
- R3 EnigmaFileMonDriver; C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys [71352 2019-01-04] (EnigmaSoft Limited)
- S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [197704 2013-09-23] (McAfee, Inc.)
- S3 hwusb_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_cdcacm.sys [155136 2017-08-04] (Huawei Technologies Co., Ltd.)
- S3 hwusb_wwanecm; C:\WINDOWS\system32\DRIVERS\ew_wwanecm.sys [352896 2017-08-04] (Huawei Technologies Co., Ltd.)
- R3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [181584 2014-10-01] (McAfee, Inc.)
- R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [313680 2014-10-01] (McAfee, Inc.)
- S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [70608 2014-10-01] (McAfee, Inc.)
- R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [526360 2014-10-01] (McAfee, Inc.)
- R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [786304 2014-10-01] (McAfee, Inc.)
- R3 mfencbdc; C:\WINDOWS\system32\DRIVERS\mfencbdc.sys [447440 2014-09-19] (McAfee, Inc.)
- S3 mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [96600 2014-09-19] (McAfee, Inc.)
- R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [348560 2014-10-01] (McAfee, Inc.)
- S3 NETwNe64; C:\WINDOWS\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
- R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [558296 2014-04-15] (Realtek Semiconductor Corporation)
- R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [9109720 2014-02-27] (Realtek Semiconductor Corp.)
- R3 RTWlanE; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [3593432 2014-10-07] (Realtek Semiconductor Corporation )
- R0 sptd; C:\WINDOWS\System32\Drivers\sptd.sys [381608 2015-06-08] (Duplex Secure Ltd.)
- S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.)
- R3 TuneUpUtilitiesDrv; C:\Program Files (x86)\AVG\AVG PC TuneUp\TuneUpUtilitiesDriver64.sys [32304 2016-02-15] (AVG Netherlands B.V.)
- S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation)
- S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation)
- S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink)
- S1 ESProtectionDriver; \??\C:\WINDOWS\system32\drivers\mbae64.sys [X]
- S3 MBAMFarflt; system32\DRIVERS\farflt.sys [X]
- S3 MBAMProtection; \SystemRoot\system32\DRIVERS\mbam.sys [X]
- S3 MBAMWebProtection; \SystemRoot\system32\DRIVERS\mwac.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc - utworzone pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2019-01-04 10:49 - 2019-01-04 10:50 - 000041629 _____ C:\Users\Magda\Desktop\zalacznik1-regulamin.pdf
- 2019-01-04 00:16 - 2019-01-04 00:16 - 000003332 _____ C:\WINDOWS\System32\Tasks\ByteFence
- 2019-01-04 00:16 - 2019-01-04 00:16 - 000001050 _____ C:\Users\Magda\Desktop\ByteFence Anti-Malware.lnk
- 2019-01-04 00:16 - 2019-01-04 00:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ByteFence Anti-Malware
- 2019-01-04 00:13 - 2019-01-04 10:10 - 000000000 ____D C:\Program Files\ByteFence
- 2019-01-04 00:13 - 2019-01-04 00:12 - 007127416 _____ (VS Revo Group ) C:\Users\Magda\Downloads\revosetup.exe
- 2019-01-04 00:11 - 2019-01-04 00:11 - 000003856 _____ C:\WINDOWS\System32\Tasks\WorldofTanks3
- 2019-01-04 00:11 - 2019-01-04 00:11 - 000003856 _____ C:\WINDOWS\System32\Tasks\WorldofTanks2
- 2019-01-04 00:11 - 2019-01-04 00:11 - 000003856 _____ C:\WINDOWS\System32\Tasks\WorldofTanks1
- 2019-01-04 00:10 - 2019-01-04 00:11 - 000000000 ____D C:\Users\Magda\AppData\Roaming\WorldofTanks
- 2019-01-04 00:10 - 2019-01-04 00:10 - 000002473 _____ C:\Users\Magda\Desktop\WorldofTanks.lnk
- 2019-01-04 00:10 - 2019-01-04 00:10 - 000000000 ____D C:\Users\Magda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WorldofTanks
- 2019-01-04 00:05 - 2019-01-04 00:06 - 002522376 _____ ( ) C:\Users\Magda\Downloads\pobierz_Revo_uninstaller_32-bit_wersja_stabilna_V2.0.6_3540451388.exe
- 2019-01-03 23:54 - 2019-01-04 10:28 - 000071352 _____ (EnigmaSoft Limited) C:\WINDOWS\system32\Drivers\EnigmaFileMonDriver.sys
- 2019-01-03 23:41 - 2019-01-03 23:52 - 002522376 _____ ( ) C:\Users\Magda\Downloads\pobierz_Revo_uninstaller_32-bit_wersja_stabilna_V2.0.6_1633583891.exe
- 2019-01-03 21:52 - 2019-01-03 21:55 - 000411159 _____ ( ) C:\Users\Magda\Downloads\pobierz_Revo_uninstaller_32-bit_wersja_stabilna_V2.0.6_2583762945.exe
- 2019-01-03 15:40 - 2019-01-03 15:40 - 000281392 _____ C:\WINDOWS\Minidump\010319-31656-01.dmp
- 2018-12-21 15:15 - 2018-12-14 08:38 - 000790016 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
- 2018-12-21 15:15 - 2018-12-14 07:33 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
- 2018-12-20 22:35 - 2018-12-20 22:35 - 002207392 _____ C:\Users\Magda\Downloads\cennik_karta_podarunkowa_pl.pdf
- 2018-12-17 17:50 - 2018-12-17 17:50 - 000000000 ____D C:\Users\Magda\AppData\Local\mbam
- 2018-12-17 17:47 - 2018-12-17 17:47 - 000000000 ____D C:\Users\Magda\AppData\Local\mbamtray
- 2018-12-17 17:37 - 2018-12-17 17:43 - 081227760 _____ (Malwarebytes ) C:\Users\Magda\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.508-1.0.8211.exe
- 2018-12-15 11:17 - 2018-12-15 11:30 - 000000000 ____D C:\AdwCleaner
- 2018-12-15 11:16 - 2018-12-15 11:17 - 007321808 _____ (Malwarebytes) C:\Users\Magda\Downloads\adwcleaner_7.2.5.0.exe
- 2018-12-15 10:53 - 2018-12-17 17:27 - 000001867 _____ C:\Users\Magda\Downloads\Fixlog.txt
- 2018-12-15 10:51 - 2018-12-15 10:52 - 000002132 _____ C:\Users\Magda\Downloads\cznluypatkbnhmumwe.txt
- 2018-12-15 01:20 - 2018-12-15 01:20 - 000336672 _____ C:\WINDOWS\Minidump\121518-245765-01.dmp
- 2018-12-15 01:16 - 2019-01-03 15:40 - 630200940 _____ C:\WINDOWS\MEMORY.DMP
- 2018-12-14 23:28 - 2018-12-14 23:28 - 000371282 _____ C:\Users\Magda\Downloads\gmer.zip
- 2018-12-14 23:12 - 2018-12-14 23:12 - 000057887 _____ C:\Users\Magda\Downloads\Shortcut.txt
- 2018-12-14 23:05 - 2018-12-16 12:36 - 000047017 _____ C:\Users\Magda\Downloads\Addition.txt
- 2018-12-14 22:59 - 2019-01-04 12:43 - 000025395 _____ C:\Users\Magda\Downloads\FRST.txt
- 2018-12-14 22:59 - 2019-01-04 12:38 - 000000000 ____D C:\Users\Magda\Downloads\FRST-OlderVersion
- 2018-12-14 22:58 - 2019-01-04 12:38 - 002426368 _____ (Farbar) C:\Users\Magda\Downloads\FRST64.exe
- 2018-12-14 22:54 - 2019-01-04 12:39 - 000000000 ____D C:\FRST
- 2018-12-12 10:47 - 2018-11-28 10:39 - 004168704 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
- 2018-12-12 10:47 - 2018-11-28 09:08 - 015441408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
- 2018-12-12 10:47 - 2018-11-28 09:04 - 013322240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
- 2018-12-12 10:47 - 2018-11-15 04:00 - 025735680 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
- 2018-12-12 10:47 - 2018-11-15 03:34 - 020281856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
- 2018-12-12 10:47 - 2018-11-15 02:51 - 000498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
- 2018-12-12 10:47 - 2018-11-15 02:50 - 000576512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
- 2018-12-12 10:47 - 2018-11-13 05:35 - 005778944 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
- 2018-12-12 10:47 - 2018-11-13 05:00 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
- 2018-12-12 10:47 - 2018-11-13 04:52 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
- 2018-12-12 10:47 - 2018-11-13 04:51 - 015284736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
- 2018-12-12 10:47 - 2018-11-13 04:43 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
- 2018-12-12 10:47 - 2018-11-13 04:42 - 004494848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
- 2018-12-12 10:47 - 2018-11-13 04:38 - 013681152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
- 2018-12-12 10:47 - 2018-11-13 04:38 - 004859904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
- 2018-12-12 10:47 - 2018-11-13 04:37 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
- 2018-12-12 10:47 - 2018-11-13 04:27 - 001555968 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
- 2018-12-12 10:47 - 2018-11-13 04:18 - 004386816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
- 2018-12-12 10:47 - 2018-11-13 04:16 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
- 2018-12-12 10:47 - 2018-11-13 04:15 - 001330176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
- 2018-12-12 10:47 - 2018-11-13 04:14 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
- 2018-12-12 10:47 - 2018-11-10 20:42 - 001368584 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
- 2018-12-12 10:47 - 2018-11-10 20:36 - 007371720 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
- 2018-12-12 10:47 - 2018-11-10 20:25 - 000121288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
- 2018-12-12 10:47 - 2018-11-10 19:54 - 001308456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
- 2018-12-12 10:47 - 2018-11-10 19:53 - 000356088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
- 2018-12-12 10:47 - 2018-11-10 17:34 - 001754112 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
- 2018-12-12 10:47 - 2018-11-10 17:25 - 001085440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
- 2018-12-12 10:47 - 2018-11-10 17:22 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
- 2018-12-12 10:47 - 2018-11-10 17:15 - 001491968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
- 2018-12-12 10:47 - 2018-11-03 19:28 - 002532344 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
- 2018-12-12 10:47 - 2018-11-03 18:41 - 001903456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
- 2018-12-12 10:47 - 2018-11-03 16:25 - 002348032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
- 2018-12-12 10:47 - 2018-11-03 16:11 - 001556992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
- 2018-12-12 10:47 - 2018-10-06 17:43 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
- 2018-12-12 10:47 - 2018-10-06 17:13 - 000113664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
- 2018-12-12 10:47 - 2018-10-05 18:06 - 001200640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
- 2018-12-12 10:47 - 2018-10-05 18:06 - 000323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll
- 2018-12-12 10:47 - 2018-10-05 17:20 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
- 2018-12-12 10:47 - 2018-10-05 17:20 - 000200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GlobCollationHost.dll
- 2018-12-12 10:47 - 2018-10-05 16:18 - 000513376 _____ C:\WINDOWS\SysWOW64\locale.nls
- 2018-12-12 10:47 - 2018-10-05 16:18 - 000513376 _____ C:\WINDOWS\system32\locale.nls
- 2018-12-10 17:35 - 2018-12-10 17:39 - 011048767 _____ C:\Users\Magda\Downloads\Gummi Miś - Bańkę Łap [Mpgun.com].mp4
- 2018-12-09 11:19 - 2018-12-09 11:19 - 000001232 _____ C:\Users\Public\Desktop\Internet Manager.lnk
- 2018-12-09 11:19 - 2018-12-09 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Internet Manager
- 2018-12-09 11:19 - 2018-12-09 11:19 - 000000000 ____D C:\Program Files (x86)\DataCardService
- 2018-12-09 11:19 - 2017-08-04 07:53 - 000352896 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_wwanecm.sys
- 2018-12-09 11:19 - 2017-08-04 07:53 - 000155136 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_cdcacm.sys
- 2018-12-09 11:19 - 2017-08-04 07:53 - 000026368 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_usbenumfilter.sys
- 2018-12-09 11:19 - 2014-09-11 08:36 - 000457728 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbwwan.sys
- 2018-12-09 11:19 - 2013-11-30 09:55 - 000226176 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ewusbmdm.sys
- 2018-12-09 11:19 - 2013-01-25 02:16 - 000109568 _____ (Huawei Technologies Co., Ltd.) C:\WINDOWS\system32\Drivers\ew_hwusbdev.sys
- ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2019-01-04 12:41 - 2015-01-09 21:11 - 000003598 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2276580516-1086920524-3955855896-1002
- 2019-01-04 12:29 - 2015-01-13 18:30 - 000000000 __RDO C:\Users\Magda\OneDrive
- 2019-01-04 12:27 - 2014-09-28 22:20 - 000801022 _____ C:\WINDOWS\system32\perfh015.dat
- 2019-01-04 12:27 - 2014-09-28 22:20 - 000160728 _____ C:\WINDOWS\system32\perfc015.dat
- 2019-01-04 12:27 - 2014-03-18 10:53 - 001817498 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2019-01-04 12:27 - 2013-08-22 14:36 - 000000000 ____D C:\WINDOWS\Inf
- 2019-01-04 10:13 - 2017-08-04 22:54 - 000001243 _____ C:\Users\Magda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wi-FiHotspotChgToast.lnk
- 2019-01-04 10:13 - 2014-09-28 13:44 - 000000000 ____D C:\ProgramData\LU
- 2019-01-04 09:49 - 2013-08-22 15:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2019-01-04 01:53 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports
- 2019-01-03 22:42 - 2015-01-09 21:04 - 000000000 ____D C:\Users\Magda
- 2019-01-03 20:36 - 2014-09-28 13:31 - 000012800 _____ C:\WINDOWS\system32\VfService.trf
- 2019-01-03 15:40 - 2015-01-23 15:03 - 000000000 ____D C:\WINDOWS\Minidump
- 2018-12-30 18:40 - 2013-08-22 14:25 - 000262144 ___SH C:\WINDOWS\system32\config\ELAM
- 2018-12-24 10:51 - 2017-12-15 18:43 - 000000000 ____D C:\Users\Magda\AppData\LocalLow\Mozilla
- 2018-12-21 16:54 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\rescache
- 2018-12-21 16:21 - 2013-08-22 16:20 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2018-12-20 20:05 - 2017-07-26 09:35 - 000003166 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2276580516-1086920524-3955855896-1002
- 2018-12-20 20:03 - 2017-03-02 19:43 - 000002357 _____ C:\Users\Magda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive dla Firm.lnk
- 2018-12-20 19:58 - 2015-01-23 10:55 - 000003482 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
- 2018-12-20 19:58 - 2015-01-23 10:55 - 000003354 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
- 2018-12-18 19:54 - 2015-01-23 10:55 - 000002221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-12-18 19:54 - 2015-01-23 10:55 - 000002180 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2018-12-17 18:18 - 2018-11-19 16:00 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited
- 2018-12-15 11:31 - 2015-06-08 20:19 - 000000000 ____D C:\Program Files (x86)\Nero
- 2018-12-15 11:30 - 2015-09-09 14:11 - 000002406 _____ C:\Users\Magda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder.lnk
- 2018-12-15 11:18 - 2015-01-09 21:04 - 000000000 ____D C:\Users\Magda\AppData\Local\SweetLabs App Platform
- 2018-12-15 11:03 - 2013-08-22 14:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI
- 2018-12-15 10:59 - 2015-03-18 14:11 - 000000000 ____D C:\Users\Magda\AppData\LocalLow\Temp
- 2018-12-15 01:20 - 2013-08-22 15:44 - 000528024 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2018-12-15 01:16 - 2016-06-29 20:39 - 000000000 ____D C:\ProgramData\DatacardService
- 2018-12-15 01:02 - 2015-01-13 20:13 - 000000000 ____D C:\WINDOWS\system32\MRT
- 2018-12-15 00:56 - 2015-01-13 20:12 - 137260640 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
- 2018-12-13 20:10 - 2017-12-20 12:59 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- 2018-12-10 23:04 - 2015-04-01 10:14 - 000592616 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
- 2018-12-09 11:16 - 2016-07-07 16:17 - 000000000 ____D C:\Program Files (x86)\T-Mobile
- 2018-12-08 16:41 - 2018-07-07 14:10 - 000000404 _____ C:\WINDOWS\BRWMARK.INI
- 2018-12-07 09:24 - 2018-03-13 19:48 - 000004556 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier
- 2018-12-07 09:24 - 2015-03-25 07:42 - 000004388 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
- 2018-12-07 09:24 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2018-12-07 09:24 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\Macromed
- ==================== Pliki w katalogu głównym wybranych folderów =======
- 2015-10-27 20:30 - 2015-10-27 20:30 - 000000000 _____ () C:\Users\Magda\AppData\Roaming\.NANotifyHere
- 2015-01-09 21:05 - 2019-01-04 12:23 - 007476842 _____ () C:\Users\Magda\AppData\Local\BTServer.log
- Niektóre pliki w TEMP:
- ====================
- 2018-12-17 23:01 - 2018-12-17 23:01 - 000000000 ____D () C:\Users\Magda\AppData\Local\Temp\obexpf.dll
- ==================== Bamital & volsnap ======================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
- LastRegBack: 2018-12-30 14:33
- ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement