Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-05-2020 Uruchomiony przez Bartek (administrator) PC (Gigabyte Technology Co., Ltd. To be filled by O.E.M.) (28-05-2020 19:51:56) Uruchomiony z C:\Users\Bartek\Downloads Załadowane profile: Bartek Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (BitTorrent Inc -> BitTorrent, Inc.) C:\Program Files\uTorrent\uTorrent.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\ControlCenter4\BrCcUxSys.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\ControlCenter4\BrCtrlCntr.exe (Cheetah Mobile Inc. -> Cheetah Mobile,Inc.) C:\Program Files (x86)\cmcm\Clean Master\cmcore.exe (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <3> (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (Dropbox, Inc -> The Qt Company Ltd.) C:\Program Files (x86)\Dropbox\Client\97.4.467\QtWebEngineProcess.exe <3> (DT Soft Ltd -> DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe <2> (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe (GOG Sp. z o.o. -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe (GOG Sp. z o.o. -> GOG.com) C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <16> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Logitech, Inc. -> Logitech Inc.) C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Mega Limited -> Mega Limited) C:\Users\Bartek\AppData\Local\MEGAsync\MEGAsync.exe (Microsoft Corporation -> Microsoft Corporation.) C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\SeaPort.EXE (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\taskmgr.exe (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (SHU sp. z o.o. -> ) C:\Program Files (x86)\SHU\QtWebEngineProcess.exe (SHU sp. z o.o. -> ) C:\Program Files (x86)\SHU\SHU.exe (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <6> (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe [4133072 2012-07-04] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381792 2017-06-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139264 2013-05-14] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4522496 2012-12-27] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [2009088 2013-01-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [588704 2018-03-28] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [6867968 2020-05-12] (Dropbox, Inc -> Dropbox, Inc.) HKLM-x32\...\Run: [cmsc] => c:\program files (x86)\cmcm\Clean Master\cmtray.exe [1607280 2019-12-03] (Cheetah Mobile Inc. -> Cheetah Mobile,Inc.) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13971528 2020-05-06] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [SHU] => C:\Program Files (x86)\SHU\SHU.exe [1058472 2016-10-12] (SHU sp. z o.o. -> ) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd -> DT Soft Ltd) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91667312 2020-05-12] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [uTorrent] => C:\Program Files\uTorrent\uTorrent.exe [808824 2020-02-18] (BitTorrent Inc -> BitTorrent, Inc.) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [launchOnStartup] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13971528 2020-05-06] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [27775672 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13971528 2020-05-06] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [SHU] => C:\Program Files (x86)\SHU\SHU.exe [1058472 2016-10-12] (SHU sp. z o.o. -> ) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [1305408 2011-01-20] (DT Soft Ltd -> DT Soft Ltd) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [91667312 2020-05-12] (Skype Software Sarl -> Skype Technologies S.A.) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [uTorrent] => C:\Program Files\uTorrent\uTorrent.exe [808824 2020-02-18] (BitTorrent Inc -> BitTorrent, Inc.) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [launchOnStartup] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [13971528 2020-05-06] (GOG Sp. z o.o. -> GOG.com) HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [27775672 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\...\Print\Monitors\WSD Port: C:\Windows\system32\WSDMon.dll [224768 2009-07-14] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\...\AppCompatFlags\Custom\Heroes3.exe: [{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb] -> GOG.com Heroes of Might and Magic 3 HKLM\Software\...\AppCompatFlags\Custom\Risen.exe: [{6bd41b13-a359-4b67-811b-48b41f7a63ef}.sdb] -> gogrisen HKLM\Software\...\AppCompatFlags\InstalledSDB\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}: [DatabasePath] -> C:\Windows\AppPatch\Custom\{1d3c859c-1028-4822-b0a7-da4f7bbc18bc}.sdb [2012-11-28] HKLM\Software\...\AppCompatFlags\InstalledSDB\{6bd41b13-a359-4b67-811b-48b41f7a63ef}: [DatabasePath] -> C:\Windows\AppPatch\Custom\{6bd41b13-a359-4b67-811b-48b41f7a63ef}.sdb [2014-03-28] HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\83.0.4103.61\Installer\chrmstp.exe [2020-05-28] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2020-05-04] (Adobe Inc. -> Adobe Systems, Inc.) Startup: C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2020-04-15] ShortcutTarget: MEGAsync.lnk -> C:\Users\Bartek\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited -> Mega Limited) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0197CF3D-2458-4778-9CB4-334F50DB7949} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems) Task: {0D9BEB50-78D1-4635-BEC3-C264BAD818FF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) Task: {10D5BCA1-8BE0-4AB3-927D-C1544CF69823} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1ACB9E38-ED29-4640-811D-2BDF7885AD36} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2CB1AD0D-0B2A-49E2-83FF-3612522E7A54} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.) Task: {2DF86328-E9D3-43E4-A41D-BBABFB850F0F} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_371_Plugin.exe [1458232 2020-05-13] (Adobe Inc. -> Adobe) Task: {4135ACF7-492C-4A17-A2EA-56329FD4E66E} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4F8A5AF5-5BD3-425C-B042-2975BE71B41A} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {60BFC4CE-A262-4612-B5AE-7425D481D60F} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-26] (Dropbox, Inc -> Dropbox, Inc.) Task: {60DB6A7E-4B8A-482D-9C26-4C9C0E0AE440} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.) Task: {70E622A8-F221-408E-9881-20D1289FF0F3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7560E76B-3620-43EF-9215-80A8A24FC132} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {85E498DE-12B8-4FEE-B146-F1500A758CA1} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) Task: {862D05B6-58BE-4CD2-9D82-E44FB1129EF1} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [23571128 2020-05-01] (Piriform Software Ltd -> Piriform Software Ltd) Task: {8753885C-CD0A-4FF3-887E-2490937DECB2} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-1717900023-3265797610-2361103668-1000 => C:\Users\Bartek\AppData\Local\MEGAsync\MEGAupdater.exe [615160 2020-04-15] (Mega Limited -> Mega Limited) Task: {A09724EB-9B89-40B1-89FF-D5ACD7637DCB} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3293168 2020-04-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A9A8E3B3-10C5-485D-9C6F-283D249DE499} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B57370E0-FB27-451C-B5FA-BE32288BB086} - System32\Tasks\Nero\Nero Info => C:\Program Files (x86)\Common Files\Nero\Nero Info\NeroInfo.exe [7018264 2018-07-19] (Nero AG -> Nero AG) Task: {C24712B7-5436-46B9-AACB-84779E33C987} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-04-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C41555BF-1FF3-43F8-BF91-604B0F1A9FC2} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-26] (Dropbox, Inc -> Dropbox, Inc.) Task: {C9F370F3-8C06-4545-84A4-FD79CE0F3DE9} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-05-13] (Adobe Inc. -> Adobe) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe Task: C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{4E15E5C8-0A5E-48D3-82F1-C37435D95715}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_171\bin\ssv.dll [2018-05-31] (Oracle America, Inc. -> Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-05-31] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc. -> McAfee, Inc.) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\ssv.dll [2014-11-16] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Bing Bar Helper -> {d2ce3e00-f94a-4740-988e-03dc2f38c34f} -> C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation -> Microsoft Corporation.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\jp2ssv.dll [2014-11-16] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM-x32 - Bing Bar - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\7.1.362.0\BingExt.dll [2012-02-13] (Microsoft Corporation -> Microsoft Corporation.) DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxps://fpdownload.macromedia.com/get/shockwave/cabs/flash/swflash.cab FireFox: ======== FF DefaultProfile: 2tuiyp66.default FF ProfilePath: C:\Users\Bartek\AppData\Roaming\Mozilla\Firefox\Profiles\2tuiyp66.default [2020-05-28] FF user.js: detected! => C:\Users\Bartek\AppData\Roaming\Mozilla\Firefox\Profiles\2tuiyp66.default\user.js [2015-12-18] FF Homepage: Mozilla\Firefox\Profiles\2tuiyp66.default -> hxxp://www.gazeta.pl/0,0.html?p=190 FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Endpoint Antivirus\Mozilla Thunderbird FF Extension: (ESET Endpoint Security Extension) - C:\Program Files\ESET\ESET Endpoint Antivirus\Mozilla Thunderbird [2013-12-04] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi FF Extension: (McAfee Security Scan Plus) - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_371.dll [2020-05-13] (Adobe Inc. -> ) FF Plugin: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-05-31] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-05-31] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_371.dll [2020-05-13] (Adobe Inc. -> ) FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\Windows\SysWOW64\Adobe\Director\np32dsw_1206147.dll [2013-11-25] (Adobe Systems, Inc.) [Brak podpisu cyfrowego] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\dtplugin\npDeployJava1.dll [2014-11-16] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.25.2 -> C:\Program Files (x86)\Java\jre1.8.0_25\bin\plugin2\npjp2.dll [2014-11-16] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @videolan.org/vlc,version=2.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-04-14] (VideoLAN) [Brak podpisu cyfrowego] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-05-04] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Bartek\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies SF -> Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\Bartek\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2020-05-22] (Ubisoft Entertainment Sweden AB -> ) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Bartek\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies SF -> Unity Technologies ApS) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701: @zoom.us/ZoomVideoPlugin -> C:\Users\Bartek\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-05-18] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.) FF Plugin HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2020-05-22] (Ubisoft Entertainment Sweden AB -> ) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default [2020-05-28] CHR HomePage: Default -> hxxp://www.gazeta.pl/0,0.html?p=190 CHR Extension: (Adobe Acrobat) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-05-28] CHR Extension: (Skype) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2020-05-28] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-05-28] CHR Extension: (Dogry) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\okaknalkhkbidbafdapgbmcaidbibccf [2018-01-18] CHR Extension: (Chrome Media Router) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-28] CHR Extension: (AgarMods) - C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ppicejeobmahfceapknbioadhaoeehac [2015-07-01] CHR Profile: C:\Users\Bartek\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-28] CHR HKU\S-1-5-21-1717900023-3265797610-2361103668-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKU\S-1-5-21-1717900023-3265797610-2361103668-1000-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-05282020185838701\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AppleChargerSrv; C:\Windows\System32\AppleChargerSrv.exe [31272 2010-04-06] (Giga-Byte Technology -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8413472 2020-02-20] (BattlEye Innovations e.K. -> ) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2012-10-26] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R2 cmcore; c:\program files (x86)\cmcm\Clean Master\cmcore.exe [397936 2019-12-03] (Cheetah Mobile Inc. -> Cheetah Mobile,Inc.) S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-26] (Dropbox, Inc -> Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2019-03-26] (Dropbox, Inc -> Dropbox, Inc.) R2 DbxSvc; C:\Windows\system32\DbxSvc.exe [44552 2020-05-12] (Dropbox, Inc -> Dropbox, Inc.) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4132456 2019-01-25] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [780928 2018-06-22] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) S3 EhttpSrv; C:\Program Files\ESET\ESET Endpoint Antivirus\EHttpSrv.exe [35720 2012-07-04] (ESET, spol. s r.o. -> ESET) R2 ekrn; C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe [999704 2012-07-04] (ESET, spol. s r.o. -> ESET) S3 ESHASRV; C:\Program Files\ESET\ESET Endpoint Antivirus\EShaSrv.exe [190208 2012-07-04] (ESET, spol. s r.o. -> ESET) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1748552 2020-05-06] (GOG Sp. z o.o. -> GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-02-28] (GOG Sp. z o.o. -> GOG.com) S3 ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [160256 2011-08-30] (Intel Corporation) [Brak podpisu cyfrowego] S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166720 2012-07-05] (Intel Corporation -> Intel Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [6933272 2020-05-26] (Malwarebytes Inc -> Malwarebytes) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc. -> McAfee, Inc.) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [4307704 2016-02-25] (INCA Internet Co.,Ltd. -> INCA Internet Co., Ltd.) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [850928 2020-03-18] (NVIDIA Corporation -> NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [860016 2019-11-21] (NVIDIA Corporation -> NVIDIA Corporation) R3 sppuinotify; C:\Windows\system32\sppuinotify.dll [65536 2014-11-25] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13088784 2020-05-25] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 AppleCharger; C:\Windows\System32\DRIVERS\AppleCharger.sys [22680 2012-10-25] (Giga-Byte Technology -> ) R2 atksgt; C:\Windows\System32\DRIVERS\atksgt.sys [314016 2019-01-25] (Tages SA -> ) S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2019-01-25] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2019-01-25] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [254528 2014-03-07] (DT Soft Ltd -> DT Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [213416 2012-07-10] (ESET, spol. s r.o. -> ESET) U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [179920 2012-07-10] (ESET, spol. s r.o. -> ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [152136 2012-03-29] (ESET, spol. s r.o. -> ESET) R2 epfwwfpr; C:\Windows\System32\DRIVERS\epfwwfpr.sys [140752 2012-03-29] (ESET, spol. s r.o. -> ESET) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2020-05-26] (Malwarebytes Corporation -> Malwarebytes) S3 gdrv; C:\Windows\gdrv.sys [25640 2013-12-05] (Giga-Byte Technology -> Windows (R) Server 2003 DDK provider) S3 GVTDrv64; C:\Windows\GVTDrv64.sys [30528 2013-12-05] (GIGA-BYTE TECHNOLOGY CO., LTD -> ) S3 ksapi64; C:\Windows\system32\drivers\ksapi64.sys [81584 2019-12-03] (Beijing Kingsoft Security software Co.,Ltd -> Kingsoft Corporation) R2 lirsgt; C:\Windows\System32\DRIVERS\lirsgt.sys [43680 2019-01-25] (Tages SA -> ) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [214496 2020-05-26] (Malwarebytes Inc -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [195432 2020-05-28] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73368 2020-05-28] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248968 2020-05-28] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [112752 2020-05-28] (Malwarebytes Inc -> Malwarebytes) R3 MEIx64; C:\Windows\System32\DRIVERS\HECIx64.sys [62784 2012-07-02] (Intel Corporation -> Intel Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2020-04-01] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69840 2020-03-06] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [67456 2020-03-11] (NVIDIA Corporation -> NVIDIA Corporation) R3 RTL8167; C:\Windows\System32\DRIVERS\Rt64win7.sys [646248 2011-09-29] (Realtek Semiconductor Corp -> Realtek) S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [1528976 2013-03-05] (Realtek Semiconductor Corp -> Realtek Semiconductor Corporation) S4 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [163644 2017-09-03] (Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K.) [Brak podpisu cyfrowego] R0 sptd; C:\Windows\System32\Drivers\sptd.sys [393880 2019-01-25] (Disc Soft Ltd -> Duplex Secure Ltd.) S3 tap0901t; C:\Windows\System32\DRIVERS\tap0901t.sys [39464 2016-04-27] (Tunngle.net GmbH -> Tunngle.net GmbH) R3 WinDriver1411; C:\Windows\System32\drivers\windrvr1411.sys [271184 2019-12-06] (Jungo Connectivity Ltd. -> Jungo Connectivity) U3 aa39c2s0; C:\Windows\System32\Drivers\aa39c2s0.sys [0 0000-00-00] (Advanced Micro Devices) <==== UWAGA (zerobajtowy plik/folder) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-28 19:52 - 2020-05-28 19:52 - 000004340 _____ C:\Users\Bartek\Downloads\AdwCleanerS00.txt 2020-05-28 19:52 - 2020-05-28 19:52 - 000004018 _____ C:\Users\Bartek\Downloads\AdwCleanerC00.txt 2020-05-28 19:14 - 2020-05-28 19:14 - 000000000 ____D C:\Users\Bartek\AppData\LocalLow\IGDump 2020-05-28 18:59 - 2020-05-28 18:59 - 000073368 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2020-05-28 18:58 - 2020-05-28 18:58 - 000195432 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2020-05-28 18:58 - 2020-05-28 18:58 - 000112752 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2020-05-28 18:54 - 2020-05-28 18:54 - 000248968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2020-05-28 18:48 - 2020-05-28 19:13 - 000000000 ____D C:\Users\Bartek\Downloads\FRST-OlderVersion 2020-05-28 18:48 - 2020-05-28 18:51 - 000100609 _____ C:\Users\Bartek\Downloads\Fixlog.txt 2020-05-28 18:46 - 2020-05-28 18:48 - 000042099 _____ C:\Users\Bartek\Downloads\fixlist.txt 2020-05-28 18:06 - 2020-05-28 18:06 - 000086086 _____ C:\Users\Bartek\Documents\bookmarks_28.05.2020.html 2020-05-28 00:11 - 2020-05-28 00:11 - 000003869 _____ C:\Users\Bartek\AppData\Local\recently-used.xbel 2020-05-27 10:40 - 2020-05-27 10:40 - 000133774 _____ C:\Users\Bartek\Downloads\Shortcut.txt 2020-05-27 10:37 - 2020-05-27 10:40 - 000090997 _____ C:\Users\Bartek\Downloads\Addition.txt 2020-05-27 10:31 - 2020-05-28 19:52 - 000034566 _____ C:\Users\Bartek\Downloads\FRST.txt 2020-05-27 10:30 - 2020-05-28 19:52 - 000000000 ____D C:\FRST 2020-05-27 10:25 - 2020-05-28 18:48 - 002288640 _____ (Farbar) C:\Users\Bartek\Downloads\FRST64.exe 2020-05-27 09:47 - 2020-05-27 09:47 - 008402608 _____ (Malwarebytes) C:\Users\Bartek\Downloads\AdwCleaner (1).exe 2020-05-26 15:49 - 2020-05-26 15:49 - 001221757 _____ C:\Users\Bartek\Downloads\Kosik Rafal - Felix, Net i Nika oraz Gang Niewidzialnych Ludzi.pdf 2020-05-26 15:26 - 2020-05-26 15:26 - 000001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2020-05-26 15:26 - 2020-05-26 15:26 - 000001035 _____ C:\Users\Public\Desktop\TeamViewer.lnk 2020-05-26 15:26 - 2020-05-26 15:26 - 000001035 _____ C:\ProgramData\Desktop\TeamViewer.lnk 2020-05-26 15:26 - 2020-05-26 15:26 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\TeamViewer 2020-05-26 15:26 - 2020-05-26 15:26 - 000000000 ____D C:\Users\Bartek\AppData\Local\TeamViewer 2020-05-26 15:25 - 2020-05-28 18:54 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-05-26 15:24 - 2020-05-26 15:24 - 027605848 _____ (TeamViewer Germany GmbH) C:\Users\Bartek\Downloads\TeamViewer_Setup.exe 2020-05-26 11:33 - 2020-05-26 11:33 - 000214496 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2020-05-26 11:33 - 2020-05-26 11:33 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2020-05-26 11:33 - 2020-05-26 11:33 - 000001960 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-05-26 11:33 - 2020-05-26 11:33 - 000001948 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2020-05-26 11:33 - 2020-05-26 11:33 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2020-05-26 11:33 - 2020-05-26 11:33 - 000000000 ____D C:\Users\Bartek\AppData\Local\mbamtray 2020-05-26 11:33 - 2020-05-26 11:33 - 000000000 ____D C:\Users\Bartek\AppData\Local\mbam 2020-05-26 11:32 - 2020-05-26 11:32 - 005489944 _____ (Ghisler Software GmbH) C:\Users\Bartek\Downloads\tcmd951x64.exe 2020-05-26 11:32 - 2020-05-26 11:32 - 000000646 _____ C:\Users\Bartek\Desktop\Total Commander 64 bit.lnk 2020-05-26 11:32 - 2020-05-26 11:32 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander 2020-05-26 11:32 - 2020-05-26 11:32 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\GHISLER 2020-05-26 11:32 - 2020-05-26 11:32 - 000000000 ____D C:\Users\Bartek\AppData\Local\GHISLER 2020-05-26 11:32 - 2020-05-26 11:32 - 000000000 ____D C:\totalcmd 2020-05-26 11:32 - 2020-05-26 11:32 - 000000000 ____D C:\Program Files\Malwarebytes 2020-05-26 11:31 - 2020-05-26 11:31 - 001980016 _____ (Malwarebytes) C:\Users\Bartek\Downloads\MBSetup.exe 2020-05-26 11:05 - 2020-05-26 11:05 - 000028278 _____ C:\Windows\system32\cc_20200526_110547.reg 2020-05-26 11:04 - 2020-05-26 11:04 - 000000082 _____ C:\Windows\system32\cc_20200526_110359.reg 2020-05-26 10:42 - 2020-05-26 10:42 - 000013750 _____ C:\Windows\system32\cc_20200526_104250.reg 2020-05-26 08:06 - 2020-05-26 08:06 - 005092138 _____ C:\Users\Bartek\Downloads\Romantyzm.pdf 2020-05-26 00:44 - 2020-05-26 00:44 - 000644780 _____ C:\Windows\system32\cc_20200526_004404.reg 2020-05-26 00:40 - 2020-05-26 00:40 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2020-05-26 00:40 - 2020-05-26 00:40 - 000002798 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2020-05-26 00:40 - 2020-05-26 00:40 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2020-05-26 00:40 - 2020-05-26 00:40 - 000000822 _____ C:\ProgramData\Desktop\CCleaner.lnk 2020-05-26 00:40 - 2020-05-26 00:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2020-05-26 00:40 - 2020-05-26 00:40 - 000000000 ____D C:\Program Files\CCleaner 2020-05-26 00:39 - 2020-05-26 00:39 - 025306104 _____ (Piriform Software Ltd) C:\Users\Bartek\Downloads\ccsetup566.exe 2020-05-26 00:38 - 2020-05-26 00:38 - 009142272 _____ C:\Users\Bartek\Downloads\hamachi (4).msi 2020-05-25 11:19 - 2020-05-25 11:19 - 000413933 _____ C:\Users\Bartek\Downloads\Listening-Test-1-part-51.pdf 2020-05-25 00:23 - 2020-05-25 00:23 - 000063475 _____ C:\Users\Bartek\Downloads\focus-on-3a (1).pdf 2020-05-25 00:05 - 2020-05-25 00:05 - 000000000 __RHD C:\MSOCache 2020-05-25 00:00 - 2020-05-27 07:19 - 000088960 _____ C:\Users\Bartek\AppData\Local\GDIPFONTCACHEV1.DAT 2020-05-24 23:43 - 2020-05-24 23:43 - 000114352 _____ (GameRanger Technologies) C:\Users\Bartek\Downloads\GameRangerSetup.exe 2020-05-24 23:43 - 2020-05-24 23:43 - 000001065 _____ C:\Users\Bartek\Desktop\GameRanger.lnk 2020-05-24 23:43 - 2020-05-24 23:43 - 000001051 _____ C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GameRanger.lnk 2020-05-24 23:43 - 2020-05-24 23:43 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\GameRanger 2020-05-24 23:28 - 2020-05-28 18:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tunngle 2020-05-24 23:28 - 2020-05-24 23:32 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Tunngle 2020-05-24 23:28 - 2020-05-24 23:30 - 000000000 ____D C:\ProgramData\Tunngle 2020-05-24 23:28 - 2020-05-24 23:28 - 000000000 ____D C:\Users\Public\Documents\Tunngle 2020-05-24 23:28 - 2020-05-24 23:28 - 000000000 ____D C:\Users\Bartek\Documents\Tunngle 2020-05-24 23:28 - 2020-05-24 23:28 - 000000000 ____D C:\ProgramData\Documents\Tunngle 2020-05-24 23:28 - 2016-04-27 00:49 - 000039464 _____ (Tunngle.net GmbH) C:\Windows\system32\Drivers\tap0901t.sys 2020-05-24 16:57 - 2020-05-24 16:57 - 000401037 _____ C:\Users\Bartek\Downloads\pre-fce-reporting-verbs (1).pdf 2020-05-24 16:55 - 2020-05-24 16:55 - 000063475 _____ C:\Users\Bartek\Downloads\focus-on-3a.pdf 2020-05-23 23:33 - 2020-05-23 23:33 - 781524988 _____ C:\Windows\MEMORY.DMP 2020-05-23 23:33 - 2020-05-23 23:33 - 001455888 _____ C:\Windows\Minidump\052320-26332-01.dmp 2020-05-20 10:17 - 2020-05-20 10:17 - 001954951 _____ C:\Users\Bartek\Downloads\image0-skonwertowany.pdf 2020-05-19 11:08 - 2020-05-19 11:08 - 000063857 _____ C:\Users\Bartek\Downloads\A6_WB.zip 2020-05-19 10:48 - 2020-05-19 10:49 - 002162923 _____ C:\Users\Bartek\Downloads\CCF20200519_0001.pdf 2020-05-19 08:33 - 2020-05-19 08:33 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth Pro.lnk 2020-05-19 08:33 - 2020-05-19 08:33 - 000002164 _____ C:\Users\Public\Desktop\Google Earth Pro.lnk 2020-05-19 08:33 - 2020-05-19 08:33 - 000002164 _____ C:\ProgramData\Desktop\Google Earth Pro.lnk 2020-05-19 08:32 - 2020-05-19 08:32 - 000000000 ____D C:\Program Files\Google 2020-05-18 15:35 - 2020-05-18 15:35 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom 2020-05-18 09:56 - 2020-05-18 09:56 - 000070293 _____ C:\Users\Bartek\Downloads\11.05-pre-fce-HOMEWORK-listening-reading.pdf 2020-05-17 21:00 - 2020-05-17 21:00 - 000413933 _____ C:\Users\Bartek\Downloads\Listening-Test-1-part-5.pdf 2020-05-17 16:22 - 2020-05-17 16:22 - 000620533 _____ C:\Users\Bartek\Downloads\adj-and-adv-10 (1).pdf 2020-05-17 15:46 - 2020-05-17 15:46 - 000620533 _____ C:\Users\Bartek\Downloads\adj-and-adv-10.pdf 2020-05-17 15:44 - 2020-05-17 15:44 - 000497523 _____ C:\Users\Bartek\Downloads\adj-and-adv-9.pdf 2020-05-15 22:30 - 2020-05-15 22:30 - 000002700 _____ C:\Users\Bartek\Downloads\Jebus King.zip 2020-05-15 22:21 - 2020-05-15 22:21 - 000002325 _____ C:\Users\Bartek\Downloads\Jebus-King-2.5.zip 2020-05-14 19:01 - 2020-05-14 18:57 - 000045045 _____ C:\Users\Bartek\Desktop\Projekt Scratch (3).sb3 2020-05-14 18:57 - 2020-05-14 18:57 - 000045045 _____ C:\Users\Bartek\Downloads\Projekt Scratch (3).sb3 2020-05-14 17:26 - 2020-05-14 17:26 - 000044518 _____ C:\Users\Bartek\Downloads\Projekt Scratch (2).sb3 2020-05-14 12:06 - 2020-05-14 12:32 - 000009025 _____ C:\Users\Bartek\Documents\Bartosz Traczyk IIC.odt 2020-05-14 11:53 - 2020-05-14 11:53 - 000013180 _____ C:\Users\Bartek\Downloads\2 hi spr 1.odt 2020-05-13 20:35 - 2020-05-13 20:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2020-05-13 16:13 - 2020-05-13 16:13 - 000242335 _____ C:\Users\Bartek\Downloads\Czy-to-sie-moze-udac.pdf 2020-05-12 19:23 - 2020-05-12 19:23 - 000279588 _____ C:\Users\Bartek\Downloads\O26_Faktura_zbiorowa_000-051-8701-7104_20_04_F004_U2004281073456137173.pdf 2020-05-12 19:20 - 2020-05-12 19:20 - 000315342 _____ C:\Users\Bartek\Downloads\FAKTURA-P-588765-20040556944070-00023257.pdf 2020-05-12 14:18 - 2020-05-12 14:18 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-stable.sys 2020-05-12 14:18 - 2020-05-12 14:18 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-dev.sys 2020-05-12 14:18 - 2020-05-12 14:18 - 000047600 _____ (Dropbox, Inc.) C:\Windows\system32\Drivers\dbx-canary.sys 2020-05-12 14:18 - 2020-05-12 14:18 - 000044552 _____ (Dropbox, Inc.) C:\Windows\system32\DbxSvc.exe 2020-05-11 11:25 - 2020-05-11 11:25 - 000401037 _____ C:\Users\Bartek\Downloads\pre-fce-reporting-verbs.pdf 2020-05-10 18:46 - 2020-05-10 18:46 - 000134645 _____ C:\Users\Bartek\Downloads\Sernikobrownies z malinami - Glowne zdjecie - Wskazowki - Zdjecia krokow - 2012-04-14 (1).pdf 2020-05-10 18:45 - 2020-05-10 18:45 - 000134645 _____ C:\Users\Bartek\Downloads\Sernikobrownies z malinami - Glowne zdjecie - Wskazowki - Zdjecia krokow - 2012-04-14.pdf 2020-05-10 11:14 - 2020-05-10 11:14 - 004901220 _____ C:\Users\Bartek\Downloads\holiday_posterlow.pdf 2020-05-10 11:14 - 2020-05-10 11:14 - 000605427 _____ C:\Users\Bartek\Downloads\adj-and-adv-5.pdf 2020-05-10 11:14 - 2020-05-10 11:14 - 000602523 _____ C:\Users\Bartek\Downloads\adj-and-adv-7.pdf 2020-05-10 11:14 - 2020-05-10 11:14 - 000593671 _____ C:\Users\Bartek\Downloads\adj-and-adv-8.pdf 2020-05-10 11:14 - 2020-05-10 11:14 - 000537160 _____ C:\Users\Bartek\Downloads\adj-and-adv-6.pdf 2020-05-10 11:11 - 2020-05-10 11:11 - 000114489 _____ C:\Users\Bartek\Downloads\travelling-key.pdf 2020-05-10 11:11 - 2020-05-10 11:11 - 000114489 _____ C:\Users\Bartek\Downloads\travelling-key (1).pdf 2020-05-10 11:10 - 2020-05-10 11:11 - 001771811 _____ C:\Users\Bartek\Downloads\holiday_reading.pdf 2020-05-06 09:46 - 2020-05-06 09:46 - 000047981 _____ C:\Users\Bartek\Downloads\Tango.pdf 2020-05-04 09:27 - 2020-05-04 09:27 - 001438822 _____ C:\Users\Bartek\Downloads\pre-fce-reported-speech.pdf 2020-05-03 18:17 - 2020-05-03 18:17 - 000549466 _____ C:\Users\Bartek\Downloads\adj-and-adv-4.pdf 2020-05-03 18:17 - 2020-05-03 18:17 - 000086068 _____ C:\Users\Bartek\Downloads\travelling.pdf 2020-05-03 18:16 - 2020-05-03 18:16 - 000614540 _____ C:\Users\Bartek\Downloads\adj-and-adv-2.pdf 2020-05-03 18:16 - 2020-05-03 18:16 - 000601527 _____ C:\Users\Bartek\Downloads\adj-and-adv-3.pdf 2020-05-03 18:15 - 2020-05-03 18:15 - 000761582 _____ C:\Users\Bartek\Downloads\adj-and-adv-1.pdf 2020-04-30 17:36 - 2020-04-30 17:36 - 000001101 _____ C:\Users\Public\Desktop\PIT Gofin 2019.lnk 2020-04-30 17:36 - 2020-04-30 17:36 - 000001101 _____ C:\ProgramData\Desktop\PIT Gofin 2019.lnk 2020-04-30 17:36 - 2020-04-30 17:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Program PIT Gofin 2019 - rozliczenie roczne 2020-04-30 17:35 - 2020-04-30 17:35 - 009098872 _____ (Wydawnictwo Podatkowe GOFIN sp. z o.o. ) C:\Users\Bartek\Downloads\PITGofin2019_13.0.32.87 (1).exe 2020-04-30 17:34 - 2020-04-30 17:35 - 009098872 _____ (Wydawnictwo Podatkowe GOFIN sp. z o.o. ) C:\Users\Bartek\Downloads\PITGofin2019_13.0.32.87.exe 2020-04-29 13:20 - 2020-04-29 13:20 - 000817027 _____ C:\Users\Bartek\Downloads\Mrożek Sławomir - Tango (1).epub 2020-04-29 09:29 - 2020-04-29 09:30 - 001385472 _____ C:\Users\Bartek\Downloads\Analiza-SWOT.ppt 2020-04-28 15:12 - 2020-04-28 15:15 - 061257992 _____ C:\Users\Bartek\Downloads\Faithful1002 1.15.2-r1 (Open Me!).zip ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-28 19:45 - 2015-02-22 21:15 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\uTorrent 2020-05-28 19:32 - 2019-03-26 11:15 - 000001152 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineUA.job 2020-05-28 19:03 - 2013-12-04 15:27 - 000000000 ____D C:\ProgramData\NVIDIA 2020-05-28 18:59 - 2011-04-12 15:21 - 000740422 _____ C:\Windows\system32\perfh015.dat 2020-05-28 18:59 - 2011-04-12 15:21 - 000155996 _____ C:\Windows\system32\perfc015.dat 2020-05-28 18:59 - 2009-07-14 07:13 - 001670518 _____ C:\Windows\system32\PerfStringBackup.INI 2020-05-28 18:59 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2020-05-28 18:56 - 2018-03-20 17:12 - 000000000 ____D C:\Users\Bartek\AppData\Local\SHU 2020-05-28 18:53 - 2019-03-26 11:15 - 000001148 _____ C:\Windows\Tasks\DropboxUpdateTaskMachineCore.job 2020-05-28 18:53 - 2013-12-23 09:55 - 000000000 _____ C:\Windows\system32\Drivers\lvuvc.hs 2020-05-28 18:53 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-05-28 18:52 - 2009-07-14 06:45 - 000024480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-05-28 18:52 - 2009-07-14 06:45 - 000024480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-05-28 18:51 - 2018-10-13 14:07 - 000000000 ____D C:\Users\Bartek\AppData\Local\CrashDumps 2020-05-28 18:51 - 2016-03-06 23:25 - 000000000 ____D C:\Users\Bartek\AppData\LocalLow\Temp 2020-05-28 18:50 - 2020-04-08 11:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wiedźmin Powrót Białego Wilka 2020-05-28 18:50 - 2019-11-29 19:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2020-05-28 18:50 - 2019-08-31 23:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sid Meiers Civilization VI Gathering Storm 2020-05-28 18:50 - 2019-04-14 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crashday Redline Edition 2020-05-28 18:50 - 2019-02-07 10:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Optymalizacja systemu 2020-05-28 18:50 - 2019-01-25 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2020-05-28 18:50 - 2018-09-01 12:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grinding Gear Games 2020-05-28 18:50 - 2018-04-16 23:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer 2020-05-28 18:50 - 2018-04-06 20:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sid Meiers Civilization VI Rise and Fall 2020-05-28 18:50 - 2018-03-25 14:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Metro 2033 Redux 2020-05-28 18:50 - 2018-03-03 15:50 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crossout 2020-05-28 18:50 - 2018-02-19 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Deluxe Ski Jump 4 2020-05-28 18:50 - 2018-02-03 11:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War Warhammer 2 2020-05-28 18:50 - 2017-12-06 20:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StarCraft II 2020-05-28 18:50 - 2017-10-24 23:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War - WARHAMMER II 2020-05-28 18:50 - 2017-09-17 16:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gothic III 2020-05-28 18:50 - 2017-09-03 07:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gothic II 2020-05-28 18:50 - 2017-03-26 10:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Might and Magic Heroes VII 2020-05-28 18:50 - 2016-11-17 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Total War ROME II Emperor Edition 2020-05-28 18:50 - 2016-09-22 15:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warcraft 2020-05-28 18:50 - 2016-07-28 15:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 3 Wild Hunt 2020-05-28 18:50 - 2016-07-27 15:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2020-05-28 18:50 - 2015-12-06 15:20 - 000000000 ____D C:\Users\Bartek\Desktop\wszytko 2020-05-28 18:50 - 2015-09-25 15:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hearthstone 2020-05-28 18:50 - 2015-09-05 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Warships 2020-05-28 18:50 - 2015-02-22 22:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Heroes of Might and Magic III - Złota Edycja 2020-05-28 18:50 - 2015-01-08 21:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Szkola podstawowa klasa 4 2020-05-28 18:50 - 2014-05-14 18:20 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2020-05-28 18:50 - 2014-03-07 18:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Elder Scrolls V Skyrim 2020-05-28 18:50 - 2014-01-11 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\World of Tanks 2020-05-28 18:38 - 2018-05-17 20:25 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\discord 2020-05-28 14:49 - 2016-01-06 20:29 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\.minecraft 2020-05-28 00:22 - 2013-12-08 17:24 - 000002230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-05-28 00:22 - 2013-12-08 17:24 - 000002189 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-05-28 00:22 - 2013-12-08 17:24 - 000002189 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2020-05-28 00:11 - 2020-02-18 22:37 - 000000000 ____D C:\Users\Bartek\AppData\Local\gtk-2.0 2020-05-28 00:11 - 2020-02-18 22:34 - 000000000 ____D C:\Users\Bartek\AppData\Local\babl-0.1 2020-05-28 00:11 - 2018-10-01 21:31 - 000000000 ____D C:\Users\Bartek\Desktop\Kacper 2020-05-27 09:49 - 2019-02-07 10:21 - 000000000 ____D C:\Program Files (x86)\Nero 2020-05-27 09:48 - 2015-06-25 16:30 - 000000000 ____D C:\AdwCleaner 2020-05-27 07:15 - 2009-07-14 06:45 - 000355120 _____ C:\Windows\system32\FNTCACHE.DAT 2020-05-26 23:18 - 2016-05-14 08:56 - 000000000 ____D C:\Program Files (x86)\Minecraft 2020-05-26 17:05 - 2018-01-20 15:54 - 000000000 ____D C:\Users\Bartek\Documents\Biblioteka calibre 2020-05-26 12:39 - 2013-12-04 15:32 - 000001169 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2020-05-26 12:39 - 2013-12-04 15:32 - 000001151 _____ C:\Users\Public\Desktop\Firefox.lnk 2020-05-26 12:39 - 2013-12-04 15:32 - 000001151 _____ C:\ProgramData\Desktop\Firefox.lnk 2020-05-26 12:39 - 2013-12-04 14:26 - 000001425 _____ C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2020-05-26 12:34 - 2019-02-07 10:20 - 000000000 ____D C:\ProgramData\Nero 2020-05-26 11:33 - 2013-12-22 14:25 - 000000000 ____D C:\ProgramData\Malwarebytes 2020-05-26 10:49 - 2014-01-13 15:55 - 009142272 _____ C:\Users\Bartek\Downloads\hamachi.msi 2020-05-25 11:45 - 2017-10-29 11:57 - 000049664 ___SH C:\Users\Bartek\Thumbs.db 2020-05-25 00:53 - 2015-05-22 14:16 - 000000000 ____D C:\Users\Bartek\Steam 2020-05-24 23:17 - 2015-03-31 14:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2020-05-24 22:50 - 2016-02-14 12:23 - 000015607 _____ C:\Windows\BRRBCOM.INI 2020-05-23 23:33 - 2014-09-15 17:55 - 000000000 ____D C:\Windows\Minidump 2020-05-23 18:15 - 2016-04-08 11:09 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2020-05-23 16:48 - 2017-07-12 15:59 - 000000000 ____D C:\Users\Bartek\AppData\Local\Ubisoft Game Launcher 2020-05-23 07:59 - 2018-02-21 10:15 - 000001347 _____ C:\Users\Bartek\Desktop\Roblox Player.lnk 2020-05-23 07:59 - 2018-02-21 10:14 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2020-05-23 07:58 - 2018-02-21 10:14 - 000001166 _____ C:\Users\Bartek\Desktop\Roblox Studio.lnk 2020-05-20 12:52 - 2020-01-11 21:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2020-05-20 12:52 - 2013-12-10 19:16 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Skype 2020-05-18 15:35 - 2020-04-01 16:32 - 000001879 _____ C:\Users\Bartek\Desktop\Zoom.lnk 2020-05-18 15:35 - 2020-03-26 12:09 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\Zoom 2020-05-13 20:35 - 2019-03-26 11:15 - 000000000 ____D C:\Program Files (x86)\Dropbox 2020-05-13 17:17 - 2019-10-09 21:17 - 006136376 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerInstaller.exe 2020-05-13 17:17 - 2018-03-14 10:17 - 000004552 _____ C:\Windows\system32\Tasks\Adobe Flash Player NPAPI Notifier 2020-05-13 17:17 - 2013-12-07 15:53 - 000842296 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe 2020-05-13 17:17 - 2013-12-07 15:53 - 000175160 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2020-05-13 17:17 - 2013-12-07 15:53 - 000004412 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater 2020-05-13 17:17 - 2013-12-07 15:53 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2020-05-13 17:17 - 2013-12-07 15:53 - 000000000 ____D C:\Windows\system32\Macromed 2020-05-12 07:57 - 2009-07-14 07:08 - 000032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2020-05-07 08:13 - 2016-12-28 23:38 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy 2020-04-30 20:29 - 2018-04-28 15:42 - 000000000 ____D C:\Users\Bartek\AppData\Roaming\ePitGofin 2020-04-30 17:36 - 2016-05-02 13:02 - 000000000 ____D C:\Users\Bartek\Documents\Pit GOFIN 2020-04-30 17:36 - 2016-05-02 13:01 - 000000000 ____D C:\Program Files (x86)\Gofin ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-02-21 01:03 - 2020-02-27 16:16 - 000028672 _____ () C:\Users\Bartek\AppData\Roaming\crash.bin 2015-02-22 21:22 - 2015-02-22 21:22 - 000000000 _____ () C:\Users\Bartek\AppData\Roaming\EF4E.tmp 2020-05-28 00:11 - 2020-05-28 00:11 - 000003869 _____ () C:\Users\Bartek\AppData\Local\recently-used.xbel 2018-05-09 15:48 - 2018-05-20 18:36 - 000007602 _____ () C:\Users\Bartek\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2020-05-27 11:44 ==================== Koniec FRST.txt ========================