Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 27-12-2021 Uruchomiony przez Sejud (administrator) LAPTOP-DMARRTDO (Acer Aspire F5-573G) (03-01-2022 08:46:22) Uruchomiony z C:\Users\Sejud\Desktop Załadowane profile: Sejud Platform: Microsoft Windows 10 Home Wersja 21H1 19043.1415 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Acer Incorporated -> Acer Incorporated) C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe (Apple Inc. -> Apple Inc.) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <14> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe (ICEpower a/s -> ICEpower) C:\Windows\System32\ICEsoundService64.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe (Intel(R) CN -> Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_ceddadac8a2b489e\igfxEM.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\EXCEL.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Sejud\AppData\Local\Microsoft\Teams\current\Teams.exe <9> (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_3.2110.13603.0_x64__8wekyb3d8bbwe\Cortana.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MSPaint_6.2105.4017.0_x64__8wekyb3d8bbwe\PaintStudio.View.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SrTasks.exe <2> (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCopyAccelerator.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvaci.inf_amd64_f010cc3692c89680\Display.NvContainer\NVDisplay.Container.exe <2> (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2018-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506176 2018-11-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2016-06-01] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [146584 2017-11-07] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2976256 2018-01-19] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKU\S-1-5-21-3399972439-3874327177-3901030441-1001\...\Run: [Discord] => C:\Users\Sejud\AppData\Local\Discord\app-0.0.298\Discord.exe (Brak pliku) HKU\S-1-5-21-3399972439-3874327177-3901030441-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\Sejud\AppData\Local\WebEx\ciscowebexstart.exe [4313936 2021-06-06] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-3399972439-3874327177-3901030441-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Sejud\AppData\Local\Microsoft\Teams\Update.exe [2459304 2021-12-26] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-17] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {02DFE313-70AF-4225-8E9F-8D2F642B6582} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6332312 2021-12-20] (Microsoft Corporation -> Microsoft Corporation) Task: {1EE031A2-9171-4CD7-8951-22DE310B13BF} - System32\Tasks\Software Update Application => C:\ProgramData\OEM\UpgradeTool\ListCheck.exe [472992 2016-07-29] (Acer Incorporated -> Acer Incorporated) Task: {22C92506-5F1C-47CF-97CF-8983846C50CC} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1171352 2021-12-20] (Microsoft Corporation -> Microsoft Corporation) Task: {26580DBD-DA55-4D15-B7BB-0D23FC2212CA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-14] (Google Inc -> Google Inc.) Task: {292DA472-06FF-4790-AEC6-6F2D8C132623} - System32\Tasks\DashlaneUpgradeCheck => net [Argument = start "Dashlane Upgrade Service"] Task: {3A391797-BDE4-4FA7-A08F-E5C951C4C10C} - System32\Tasks\Minecraft Education Edition Automatic Updater => C:\Program Files (x86)\Microsoft Studios\Minecraft Education Edition\MinecraftEducationUpdater.exe [5813248 2021-12-09] (Microsoft Studios) [Brak podpisu cyfrowego] Task: {4605A95F-8ED1-4F06-8B73-E32A720441BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {8CA8B979-8868-44BF-91A9-BA6CC51D2390} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108872 2021-12-20] (Microsoft Corporation -> Microsoft Corporation) Task: {9020FB17-6516-44B1-80FD-F63A4F296C8D} - System32\Tasks\BacKGroundAgent => C:\Program Files (x86)\Acer\AOP Framework\BackgroundAgent.exe [65752 2017-03-20] (Acer Incorporated -> Acer Incorporated) Task: {9116A4BD-2760-4584-A041-A95618DA02CC} - System32\Tasks\Minecraft Education Weekly Updater => C:\Program Files (x86)\Microsoft Studios\Minecraft Education Edition\MinecraftEducationUpdater.exe [5813248 2021-12-09] (Microsoft Studios) [Brak podpisu cyfrowego] Task: {92977984-A7FA-4A58-B521-364A621E530E} - System32\Tasks\Oem\AcerJumpstartTask => C:\Program Files (x86)\Acer\Acer Jumpstart\hermes.exe /default (Brak pliku) Task: {AAED2415-F33B-4B38-BCD9-F9825CD7A7A1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {B4A1A8F3-33D1-480D-830A-D4523F3F2212} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [855352 2016-02-19] (Intel(R) Trusted Connect Service -> Intel(R) Corporation) Task: {BECF16BA-503A-4746-B7FB-E3DF9B0834C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C0703B06-AEC2-415C-91A8-546417416CC0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153752 2017-03-14] (Google Inc -> Google Inc.) Task: {C83C2D47-5F4C-4776-9B77-214E32C4698E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22797704 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) Task: {CAFA9C39-506B-4EC7-BAA1-F24D78BE800C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D40286C8-50FF-4934-AFF0-2409DA94D2FE} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22797704 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) Task: {D69C523A-0E00-4FD0-AE1D-8B40C519FE5A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [6332312 2021-12-20] (Microsoft Corporation -> Microsoft Corporation) Task: {D6C08823-5BDE-48D1-8DC8-D9028A204AD9} - System32\Tasks\ACC => C:\Program Files (x86)\Acer\Care Center\LiveUpdateChecker.exe -auto (Brak pliku) Task: {DFF324AD-56A8-46B1-BF1F-DA355703D0C9} - System32\Tasks\FubToolByPLD => C:\OEM\Preload\FubTool\FubTool.exe [30976 2015-05-14] (Acer Incorporated -> ) Task: {FAC138A2-E110-4E51-AD97-58D8FDB471AF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [108872 2021-12-20] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{7b98f057-96c2-4f71-ad52-d776bf14514d}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\Sejud\AppData\Local\Microsoft\Edge\User Data\Default [2022-01-01] FireFox: ======== FF Extension: (Polski Language Pack) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\langpack-pl@firefox.mozilla.org [2016-12-03] [Przestarzałe] FF Extension: (Mozilla Partner Defaults) - C:\Program Files (x86)\Mozilla Firefox\distribution\extensions\partnerdefaults@mozilla.com [2016-12-03] [Przestarzałe] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-11-05] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-11-05] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default [2022-01-03] CHR Notifications: Default -> hxxps://connect.syslinq.co; hxxps://forum.dobreprogramy.pl; hxxps://www-hewalex-pl-01.salesmanagopush.com; hxxps://www.facebook.com CHR Extension: (Dokumenty) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-22] CHR Extension: (Dysk Google) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-05] CHR Extension: (YouTube) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-03-14] CHR Extension: (Arkusze) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-22] CHR Extension: (Dokumenty Google offline) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-06] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-02] CHR Extension: (Gmail) - C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-05] CHR Profile: C:\Users\Sejud\AppData\Local\Google\Chrome\User Data\System Profile [2020-09-28] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6877224 2018-07-10] (BattlEye Innovations e.K. -> ) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-01-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12129128 2021-12-10] (Microsoft Corporation -> Microsoft Corporation) S2 Dashlane Upgrade Service; C:\Program Files (x86)\Dashlane\Upgrade\DashlaneUpgradeService.exe [83992 2017-08-23] (Dashlane -> Dashlane, Inc.) R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2016-03-02] (Intel Corporation) [Brak podpisu cyfrowego] S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-02] (Intel Corporation) [Brak podpisu cyfrowego] S3 Minecraft Education Updater; C:\Program Files (x86)\Microsoft Studios\Minecraft Education Edition\MinecraftEducationUpdater.exe [5813248 2021-12-09] (Microsoft Studios) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_f010cc3692c89680\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_f010cc3692c89680\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 LMDriver; C:\WINDOWS\System32\drivers\LMDriver.sys [31000 2018-05-15] (Acer Incorporated -> Acer Incorporated) R3 RadioShim; C:\WINDOWS\System32\drivers\RadioShim.sys [25368 2018-05-15] (Acer Incorporated -> Acer Incorporated) R3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [69048 2021-03-03] (Famatech Corp. -> Famatech Corp.) S3 sshid; C:\WINDOWS\system32\DRIVERS\sshid.sys [57440 2020-10-09] (SteelSeries ApS -> SteelSeries ApS) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-12-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435432 2021-12-17] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-17] (Microsoft Windows -> Microsoft Corporation) S3 dg_ssudbus; \SystemRoot\system32\DRIVERS\ssudbus.sys [X] S3 MpKsl091cb83a; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{DEE27E87-5726-450C-A244-50EC5A9A03C8}\MpKslDrv.sys [X] S3 ssudmdm; \SystemRoot\system32\DRIVERS\ssudmdm.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-01-03 08:46 - 2022-01-03 08:48 - 000019141 _____ C:\Users\Sejud\Desktop\FRST.txt 2022-01-03 08:43 - 2022-01-03 08:44 - 002311168 _____ (Farbar) C:\Users\Sejud\Desktop\FRST64.exe 2022-01-03 08:25 - 2022-01-03 08:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2022-01-03 08:25 - 2022-01-03 08:25 - 000000000 ____D C:\Program Files (x86)\HD Tune 2022-01-03 08:24 - 2022-01-03 08:24 - 000642632 _____ (EFD Software ) C:\Users\Sejud\Desktop\hdtune_255.exe 2021-12-20 10:11 - 2021-12-20 10:11 - 000000000 ____D C:\WINDOWS\SystemTemp 2021-12-18 02:11 - 2021-12-18 02:11 - 000002336 _____ C:\Users\Public\Desktop\Minecraft Education Edition.lnk 2021-12-18 02:08 - 2021-12-18 02:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Education Edition 2021-12-18 02:08 - 2021-12-18 02:08 - 000003748 _____ C:\WINDOWS\system32\Tasks\Minecraft Education Weekly Updater 2021-12-18 02:08 - 2021-12-18 02:08 - 000003438 _____ C:\WINDOWS\system32\Tasks\Minecraft Education Edition Automatic Updater 2021-12-18 02:08 - 2021-12-18 02:08 - 000000000 ____D C:\Program Files (x86)\Microsoft Studios 2021-12-17 22:11 - 2021-12-17 22:11 - 000011979 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-12-17 22:10 - 2021-12-17 22:10 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2021-12-17 22:09 - 2021-12-17 22:09 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-12-17 22:08 - 2021-12-17 22:08 - 000272384 _____ C:\WINDOWS\system32\TpmTool.exe 2021-12-17 21:02 - 2021-12-17 21:02 - 000000000 ___HD C:\$WinREAgent 2021-12-12 19:21 - 2021-12-12 19:21 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3399972439-3874327177-3901030441-1001 2021-12-10 12:52 - 2021-12-10 13:02 - 000000000 ____D C:\Users\Sejud\Desktop\Respo kids 2021-12-06 12:56 - 2021-12-06 12:56 - 000201614 _____ C:\Users\Sejud\Desktop\14304027719954.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-01-03 08:47 - 2020-09-21 10:53 - 000000000 ____D C:\FRST 2022-01-03 08:47 - 2020-09-01 23:12 - 000004226 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{239C36EE-D111-4160-B42A-75EEF0FED2DE} 2022-01-03 08:46 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-01-03 08:23 - 2017-03-14 20:43 - 000000000 ____D C:\Program Files (x86)\Google 2022-01-03 08:15 - 2017-03-14 20:57 - 000000000 ____D C:\Users\Sejud\AppData\Local\Discord 2022-01-03 08:14 - 2020-09-01 23:12 - 000003508 _____ C:\WINDOWS\system32\Tasks\DashlaneUpgradeCheck 2022-01-03 08:11 - 2020-09-01 22:33 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-01-02 23:26 - 2017-11-30 12:31 - 000000000 ____D C:\Users\Sejud\Desktop\Grafik 2022-01-02 21:23 - 2020-09-01 22:49 - 001769800 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-01-02 21:23 - 2019-12-07 16:08 - 000785594 _____ C:\WINDOWS\system32\perfh015.dat 2022-01-02 21:23 - 2019-12-07 16:08 - 000152454 _____ C:\WINDOWS\system32\perfc015.dat 2022-01-02 21:23 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2022-01-02 21:20 - 2017-03-14 20:28 - 000000000 __SHD C:\Users\Sejud\IntelGraphicsProfiles 2022-01-01 20:48 - 2020-09-01 23:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-01-01 20:48 - 2020-09-01 22:32 - 000008192 ___SH C:\DumpStack.log.tmp 2022-01-01 20:46 - 2020-04-09 19:59 - 000044478 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2022-01-01 20:45 - 2020-07-14 22:51 - 000021435 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1 2022-01-01 20:15 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-01-01 20:15 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-01-01 20:09 - 2020-04-09 19:59 - 000125233 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2021-12-26 19:18 - 2021-11-14 10:36 - 000002372 _____ C:\Users\Sejud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-12-26 19:18 - 2021-11-14 10:36 - 000002364 _____ C:\Users\Sejud\Desktop\Microsoft Teams.lnk 2021-12-22 21:25 - 2020-04-09 19:59 - 000013932 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1 2021-12-22 13:45 - 2020-04-11 18:24 - 000011383 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2021-12-21 10:02 - 2018-08-16 09:58 - 000007909 _____ C:\WINDOWS\BRRBCOM.INI 2021-12-20 16:54 - 2016-12-03 20:21 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2021-12-20 10:24 - 2018-08-16 10:16 - 000000000 ____D C:\Users\Sejud\AppData\Local\D3DSCache 2021-12-20 10:15 - 2020-09-01 22:33 - 000432856 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-12-20 10:15 - 2020-04-09 19:59 - 000001206 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1 2021-12-20 10:13 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2021-12-20 10:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-12-20 10:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-12-20 10:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-12-20 10:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-12-20 10:12 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-12-20 10:11 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-12-20 10:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-12-20 10:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-12-20 10:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-12-20 10:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-12-20 07:58 - 2019-05-15 21:47 - 000000000 ____D C:\Users\Sejud\Desktop\GLE 2021-12-19 15:47 - 2020-06-10 09:04 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-12-18 09:45 - 2017-11-27 12:23 - 000000000 ___RD C:\Users\Sejud\3D Objects 2021-12-17 22:21 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-12-17 20:37 - 2017-03-19 09:29 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-12-17 20:36 - 2017-03-14 20:47 - 000002311 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-12-17 20:25 - 2018-02-17 21:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-12-17 20:23 - 2017-03-19 09:29 - 137938848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-12-12 19:21 - 2020-11-01 18:09 - 000002431 _____ C:\Users\Sejud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-12-12 19:21 - 2020-09-01 23:12 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3399972439-3874327177-3901030441-1001 2021-12-12 19:10 - 2020-09-01 23:12 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-12-12 19:10 - 2020-09-01 23:12 - 000003386 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-12-10 12:35 - 2018-06-20 07:19 - 000000000 ____D C:\Users\Sejud\AppData\Local\PlaceholderTileLogoFolder 2021-12-07 14:12 - 2017-03-28 10:03 - 000000000 ____D C:\Users\Sejud\AppData\Local\ConnectedDevicesPlatform 2021-12-06 11:40 - 2017-08-17 11:52 - 000195230 _____ C:\Users\Sejud\Desktop\Deklaracje VAT Sejud 2016.xlsx ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================