FireFox: ======== FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default [2020-05-14] CHR DownloadDir: E:\Moje\apobrane CHR Extension: (Prezentacje) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-02-11] CHR Extension: (Dokumenty) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-02-11] CHR Extension: (Dysk Google) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-02-11] CHR Extension: (YouTube) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-02-11] CHR Extension: (Arkusze) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-02-11] CHR Extension: (Dokumenty Google offline) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-05-11] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-09] CHR Extension: (Gmail) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-06-26] CHR Extension: (Chrome Media Router) - C:\Users\oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-05-11] Opera: ======= OPR DownloadDir: E:\Moje\apobrane OPR Notifications: hxxps://forum.dobreprogramy.pl; hxxps://multikino.pl; hxxps://www.facebook.com OPR Session Restore: -> [funkcja włączona] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AnyDesk; C:\Program Files (x86)\AnyDesk\AnyDesk.exe [3025872 2019-11-29] (philandro Software GmbH -> ) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-04] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-04-04] (ESET, spol. s r.o. -> ESET) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [874472 2020-03-04] (NVIDIA Corporation -> NVIDIA Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5381128 2019-01-08] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13084688 2020-05-25] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.7-0\NisSrv.exe [3284840 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2001.7-0\MsMpEng.exe [103168 2020-02-04] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [154336 2020-04-04] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [188872 2020-03-18] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [115960 2020-03-18] (ESET, spol. s r.o. -> ESET) S3 ew_usbccgpfilter; C:\Windows\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5ef913e2bcf39373\nvlddmkm.sys [23287696 2020-03-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [45960 2020-02-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [376032 2020-02-04] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [53984 2020-02-04] (Microsoft Windows -> Microsoft Corporation) S3 intaud_WaveExtensible; \SystemRoot\system32\drivers\intelaud.sys [X] S3 iwdbus; \SystemRoot\System32\drivers\iwdbus.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-06-15 18:43 - 2020-06-15 18:43 - 000055415 _____ C:\Users\oem\AppData\Local\recently-used.xbel 2020-06-15 16:44 - 2020-06-15 21:44 - 000006679 _____ C:\Users\oem\Desktop\FRST.txt 2020-06-15 16:44 - 2020-06-15 21:44 - 000000000 ____D C:\FRST 2020-06-15 16:42 - 2020-06-15 16:40 - 002289152 _____ (Farbar) C:\Users\oem\Desktop\FRST64 (1).exe 2020-06-14 21:11 - 2020-06-14 21:17 - 000000000 ____D C:\Windows\SmartFix 2020-06-14 21:11 - 2020-06-14 21:11 - 000000000 ___DL C:\Windows\AntiSMS 2020-06-14 21:11 - 2020-06-14 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartFix 2020-06-14 21:09 - 2020-06-14 19:46 - 054636536 _____ (simplix) C:\Users\oem\Desktop\SmartFix.exe 2020-06-06 21:47 - 2020-06-06 21:47 - 000000000 ____D C:\Users\oem\AppData\Local\Viber 2020-06-06 17:15 - 2020-06-07 07:05 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2020-06-02 18:33 - 2020-06-02 18:33 - 008402608 _____ (Malwarebytes) C:\Users\oem\Desktop\adwcleaner_8.0.5.exe 2020-05-30 10:51 - 2020-06-09 16:35 - 000004654 _____ C:\Windows\system32\Tasks\Adobe Flash Player PPAPI Notifier 2020-05-30 10:51 - 2020-06-09 16:35 - 000004480 _____ C:\Windows\system32\Tasks\Adobe Flash Player Updater 2020-05-27 19:01 - 2020-05-27 19:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud 2020-05-17 19:21 - 2020-06-06 21:01 - 000000000 ____D C:\Users\oem\AppData\Local\WhatsApp ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-06-15 21:41 - 2019-11-04 18:17 - 000000000 ____D C:\Users\oem\AppData\LocalLow\Mozilla 2020-06-15 21:39 - 2018-09-15 09:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-06-15 21:34 - 2019-02-11 14:12 - 000000000 ____D C:\Windows\system32\SleepStudy 2020-06-15 19:02 - 2019-02-28 22:22 - 000000000 ____D C:\Users\oem\AppData\Local\CrashDumps 2020-06-15 19:00 - 2019-11-21 18:11 - 000000000 ____D C:\Users\oem\AppData\Local\babl-0.1 2020-06-15 18:19 - 2019-03-03 16:04 - 000000000 ____D C:\Users\oem\AppData\Local\gtk-2.0 2020-06-15 12:25 - 2019-02-11 15:23 - 000000000 ____D C:\ProgramData\NVIDIA 2020-06-15 08:05 - 2019-02-11 14:13 - 002052646 _____ C:\Windows\system32\PerfStringBackup.INI 2020-06-15 08:05 - 2018-09-15 18:43 - 000889024 _____ C:\Windows\system32\perfh015.dat 2020-06-15 08:05 - 2018-09-15 18:43 - 000198760 _____ C:\Windows\system32\perfc015.dat 2020-06-15 08:05 - 2018-09-15 09:31 - 000000000 ____D C:\Windows\INF 2020-06-15 08:04 - 2020-02-28 08:36 - 000000000 ____D C:\Users\oem\opera autoupdate 2020-06-15 08:04 - 2019-12-10 07:47 - 000000000 ____D C:\Users\oem\Downloads\opera autoupdate 2020-06-15 07:59 - 2019-03-01 09:40 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2020-06-15 07:59 - 2019-02-11 14:12 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-06-15 07:58 - 2018-09-15 08:09 - 000524288 _____ C:\Windows\system32\config\BBI 2020-06-15 07:05 - 2019-09-24 07:07 - 000000000 ____D C:\Users\oem\AppData\Roaming\WhatsApp 2020-06-14 21:17 - 2019-04-10 17:49 - 000000000 __SHD C:\AdwCleaner 2020-06-14 20:43 - 2019-02-11 14:22 - 000000000 ___RD C:\Users\oem\OneDrive 2020-06-14 20:42 - 2019-02-11 14:19 - 000002411 _____ C:\Users\oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-06-14 18:50 - 2018-09-15 09:33 - 000000000 ___HD C:\Program Files\WindowsApps 2020-06-14 18:50 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\AppReadiness 2020-06-12 16:23 - 2019-02-28 16:24 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-06-11 15:43 - 2018-09-15 09:23 - 000000000 ____D C:\Windows\CbsTemp 2020-06-10 15:07 - 2020-02-27 08:27 - 000004440 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1582784836 2020-06-09 16:35 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2020-06-09 16:35 - 2018-09-15 09:33 - 000000000 ____D C:\Windows\system32\Macromed 2020-06-09 07:33 - 2019-02-11 14:37 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-06-09 07:33 - 2019-02-11 14:37 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-06-07 07:05 - 2020-05-13 16:37 - 000001288 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2020-06-06 21:53 - 2019-02-28 11:10 - 000000000 ____D C:\Users\oem\AppData\Roaming\ViberPC 2020-06-04 13:00 - 2019-02-11 14:22 - 000003376 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1631062182-3745506741-2849799659-1001 2020-06-04 13:00 - 2019-02-11 14:20 - 000000000 ____D C:\Users\oem\AppData\Local\Packages 2020-05-30 10:51 - 2019-02-11 14:39 - 000000000 ____D C:\Users\oem\AppData\Local\Adobe 2020-05-27 16:25 - 2019-12-09 17:14 - 000004244 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1575904470 2020-05-27 16:25 - 2019-12-09 17:14 - 000001432 _____ C:\Users\oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk 2020-05-22 14:31 - 2019-02-28 11:48 - 000004232 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1551347315 2020-05-22 14:31 - 2019-02-28 11:48 - 000001403 _____ C:\Users\oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2020-05-17 19:21 - 2020-04-03 10:20 - 000002197 _____ C:\Users\oem\Desktop\WhatsApp.lnk 2020-05-17 19:21 - 2019-09-24 07:07 - 000000000 ____D C:\Users\oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2020-05-17 19:21 - 2019-09-24 07:07 - 000000000 ____D C:\Users\oem\AppData\Local\SquirrelTemp 2020-05-17 17:41 - 2019-02-28 19:02 - 000000000 ____D C:\Users\oem\AppData\Roaming\vlc ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-02-28 11:03 - 2019-02-28 11:03 - 000000268 ___RH () C:\Users\oem\AppData\Roaming\Folder Actions 2019-02-28 11:03 - 2019-02-28 11:03 - 000000268 ___RH () C:\Users\oem\AppData\Roaming\Font Book 2020-06-15 18:43 - 2020-06-15 18:43 - 000055415 _____ () C:\Users\oem\AppData\Local\recently-used.xbel 2019-09-15 19:04 - 2019-09-15 19:04 - 000000017 _____ () C:\Users\oem\AppData\Local\resmon.resmoncfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================