Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 17-07-2023 Uruchomiony przez Admin (administrator) DESKTOP-CD8GBG4 (17-07-2023 16:53:43) Uruchomiony z C:\Users\Admin\Downloads\FRST64.exe Załadowane profile: Admin Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.3208 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) C:\ProgramData\Battle.net\Agent\Agent.8320\Agent.exe (Blizzard Entertainment, Inc. -> Blizzard Entertainment) D:\Battle.net\Battle.net.exe <3> (C:\Program Files\LGHUB\lghub.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe (C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (D:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <6> (D:\Riot Games\Riot Client\RiotClientServices.exe ->) () [Brak podpisu cyfrowego] D:\Riot Games\Riot Client\RiotClientCrashHandler.exe (Discord Inc. -> Discord Inc.) C:\Users\Admin\AppData\Local\Discord\app-1.0.9015\Discord.exe <6> (DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atieclxx.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <32> (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <4> (explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) D:\Riot Games\Riot Client\RiotClientServices.exe (explorer.exe ->) (Valve Corp. -> Valve Corporation) D:\Program Files (x86)\Steam\steam.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\schtasks.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0360470.inf_amd64_35c64671e7fac064\B360357\atiesrxx.exe (services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe (services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft GameInput\x64\gameinputsvc.exe <2> (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5b6e4554b945d508\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (O&K Software Ltd. -> ) C:\Program Files\Prio\prio_svc.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Wagnardsoft -> Wagnardsoft) C:\ISLC v1.0.2.5\Intelligent standby list cleaner ISLC.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18383336 2017-10-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [3088744 2023-06-19] (Riot Games, Inc. -> Riot Games, Inc.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation) HKLM\Software\Policies\...\system: [PublishUserActivities] 0 HKLM\Software\Policies\...\system: [UploadUserActivities] 0 HKU\S-1-5-21-3585109043-4011664137-1646137907-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [4371816 2023-07-11] (Valve Corp. -> Valve Corporation) HKU\S-1-5-21-3585109043-4011664137-1646137907-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [152025856 2023-06-28] (Logitech Inc -> Logitech, Inc.) HKU\S-1-5-21-3585109043-4011664137-1646137907-1001\...\Run: [Discord] => C:\Users\Admin\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub) HKU\S-1-5-21-3585109043-4011664137-1646137907-1001\...\Run: [RiotClient] => D:\Riot Games\Riot Client\RiotClientServices.exe [70738344 2023-07-01] (Riot Games, Inc. -> Riot Games, Inc.) HKU\S-1-5-18\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe /StartMinimized (Brak pliku) HKU\S-1-5-18\...\Run: [RzAppEngine] => "C:\Program Files\Razer\RzAppEngine\rzappengine.exe" --url-params=autoStart=1&apps=virtual-ring-light (Brak pliku) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\Installer\chrmstp.exe [2023-06-28] (Google LLC -> Google LLC) AppInit_DLLs: prio.dll => C:\Program Files\Prio\prio.dll [16800 2017-01-15] (O&K Software Ltd. -> O&K Software) AppInit_DLLs-x32: prio32.dll => C:\Program Files\Prio\prio32.dll [15264 2017-01-15] (O&K Software Ltd. -> O&K Software) Startup: C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk [2022-01-27] ShortcutTarget: Tworzenie wycinków ekranu i uruchamianie programu OneNote 2007.lnk -> C:\Program Files (x86)\Microsoft Office\Office12\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation) ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {649E29FF-A40C-4012-94B6-2014B2522DAC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {759682A4-18D6-4663-A25D-92327F79E43C} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [506880 2019-12-05] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] Task: {D95645F2-04D2-4237-931B-B9FB9A13AF20} - System32\Tasks\ExitLag-S-1-5-21-3585109043-4011664137-1646137907-1001 => D:\Program Files (x86)\ExitLag\ExitLag.exe --minimized (Brak pliku) Task: {B00113E0-F030-4D41-8855-720CC030F423} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-10-20] (Google Inc -> Google Inc.) Task: {8992DAA4-41B8-4A71-AF89-605F3BE92EFE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2017-10-20] (Google Inc -> Google Inc.) Task: {D5F7E83D-3D34-46D7-96E5-B73A25274310} - System32\Tasks\Intelligent StandbyList Cleaner => C:\ISLC v1.0.2.5\Intelligent standby list cleaner ISLC.exe [426752 2021-08-23] (Wagnardsoft -> Wagnardsoft) Task: {6218ED92-4FA7-4EE5-9E05-5837AE23F70C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {9892B52D-2A24-4F64-9A18-7E6F7BD67FC1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D87EC90A-50E4-46E5-B638-ACC6EC0A699B} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {18BF23E7-B02D-4A4E-9A14-A9235FEC90FE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {2C42135E-163B-4F67-A118-0D60628FBEB2} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [506880 2019-12-05] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] Task: {39728EF7-01A3-48A0-B633-F97901365DDE} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {729F3D31-9B3B-476F-9E54-E1FDD3995478} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation) Task: {D0F4F3AC-3632-4C47-8F66-62548C2E11DB} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {00E2D0B2-EE45-4C9B-A681-1D08CD2FC405} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BDEAA0BC-41A5-4716-BFA0-E469F7428B0B} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9C425F0F-E2F0-421B-8986-B0069879254E} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {02DDA169-0D4C-4EC7-98C4-AF34F53CD598} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {626CB8FA-8D59-4BDA-9A93-721E6766D4F5} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6DE3FED5-46B9-4C62-A157-D5943ECB620A} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-17] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2A054FD6-D0F1-49B1-8F7B-6DC814BAC1D3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3585109043-4011664137-1646137907-1001 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe /reporting (Brak pliku) Task: {A76F9CF9-45A1-46C3-91A0-A6F9C15746E6} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {76A392AF-50AA-49D4-ADD0-A98A02EC9112} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2019-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{c18906dd-18cf-499b-895d-e7563fada5e8}: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{d9340183-e185-44f0-9c36-cad695f1e1ab}: [DhcpNameServer] 192.168.43.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge Profile: C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default [2023-07-13] Edge Extension: (Edge relevant text changes) - C:\Users\Admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-07-13] FireFox: ======== FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN -> VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-08-09] (VideoLAN -> VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2023-07-17] CHR Notifications: Default -> hxxps://ktomalek.pl; hxxps://meet.google.com; hxxps://www.facebook.com; hxxps://www.reddit.com; hxxps://www.youtube.com CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2023-07-14] CHR Extension: (Dokumenty Google offline) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-05-18] CHR Extension: (Morpheon Dark) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mafbdhjdkjnoafhfelkjpchpaepjknad [2022-01-18] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-21] CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\System Profile [2022-10-19] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [838760 2023-07-17] (ASUSTeK Computer Inc. -> ) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8906088 2021-02-25] (BattlEye Innovations e.K. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2023-07-06] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EQU8_39; C:\ProgramData\EQU8\KovaaK's\bin\anticheat.x64.equ8.exe [8344720 2022-03-11] (Int3 Software AB -> Int3 Software AB) S3 EQU8_4; C:\ProgramData\EQU8\AimLab\bin\anticheat.x64.equ8.exe [8468624 2021-12-16] (Int3 Software AB -> Int3 Software AB) R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10589952 2023-06-28] (Logitech Inc -> Logitech, Inc.) S3 Origin Client Service; D:\Origin\OriginClientService.exe [2572096 2023-03-13] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3491144 2023-03-13] (Electronic Arts, Inc. -> Electronic Arts) R2 prio_svc; C:\Program Files\Prio\prio_svc.exe [12704 2017-01-15] (O&K Software Ltd. -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [402216 2023-07-12] (Microsoft Windows Publisher -> Microsoft Corporation) S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [11047944 2023-06-19] (Riot Games, Inc. -> Riot Games, Inc.) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe [3232576 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe [133592 2023-06-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5b6e4554b945d508\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_5b6e4554b945d508\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [2986792 2023-07-13] (Activision Publishing Inc -> Activision Blizzard, Inc.) S3 EQU8_HELPER_39; C:\WINDOWS\system32\DRIVERS\EQU8_HELPER_39.sys [38032 2021-07-05] (Int3 Software AB -> ) S3 hidusbf; C:\WINDOWS\system32\DRIVERS\hidusbf.sys [25288 2016-04-16] (Jeshua Starr Scully -> SweetLow) R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-26] (Logitech Inc -> Logitech) R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-26] (Logitech Inc -> Logitech) R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-26] (Logitech Inc -> Logitech) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-03-17] (Nvidia Corporation -> NVIDIA Corporation) S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [27744 2021-03-09] (Daniel Terhell -> Resplendence Software Projects Sp.) S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc) S3 RzDev_0064; C:\WINDOWS\System32\drivers\RzDev_0064.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) S3 RzDev_0083; C:\WINDOWS\System32\drivers\RzDev_0083.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) S3 RzDev_0084; C:\WINDOWS\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc) R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [23403712 2023-06-19] (Riot Games, Inc. -> Riot Games, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2023-06-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [498944 2023-06-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99568 2023-06-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-07-17 16:53 - 2023-07-17 16:53 - 000000000 ____D C:\Users\Admin\Downloads\FRST-OlderVersion 2023-07-17 16:49 - 2023-07-17 16:49 - 004846272 _____ (Husdawg, LLC) C:\Users\Admin\Downloads\Detection (1).exe 2023-07-17 16:47 - 2023-07-17 16:47 - 004846272 _____ (Husdawg, LLC) C:\Users\Admin\Downloads\Detection.exe 2023-07-15 03:54 - 2023-07-15 03:54 - 000001456 _____ C:\Users\Admin\Downloads\soccer_venezuela_primera_division_3553847_new_512k.m3u8 2023-07-14 19:30 - 2023-07-14 19:30 - 000389119 _____ C:\Users\Admin\Downloads\Interception.zip 2023-07-14 14:35 - 2023-07-14 14:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blur Busters 2023-07-14 14:32 - 2023-07-14 14:32 - 002089984 _____ C:\Users\Admin\Downloads\BlurBustersStrobeUtilitySetup_v209 (1).msi 2023-07-14 01:57 - 2023-07-14 01:57 - 070780128 _____ (Riot Games, Inc.) C:\Users\Admin\Downloads\Install VALORANT (1).exe 2023-07-14 01:57 - 2023-07-14 01:57 - 000001529 _____ C:\Users\Public\Desktop\VALORANT.lnk 2023-07-14 01:57 - 2023-07-14 01:57 - 000000000 ____D C:\Program Files\Riot Vanguard 2023-07-13 22:25 - 2023-07-13 22:25 - 000000403 _____ C:\Users\Public\Desktop\Call of Duty.lnk 2023-07-13 22:25 - 2023-07-13 22:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Call of Duty 2023-07-13 12:59 - 2023-07-13 12:59 - 000083999 _____ C:\Users\Admin\Downloads\EwidencjaCzerwiecDanielKowalski.pdf 2023-07-13 12:58 - 2023-07-13 12:58 - 000085174 _____ C:\Users\Admin\Downloads\EwidencjaMajDanielKowalski.pdf 2023-07-12 11:30 - 2023-07-12 11:30 - 000000000 ___HD C:\$WinREAgent 2023-07-06 16:18 - 2023-07-06 16:18 - 000000223 _____ C:\Users\Admin\Desktop\Apex Legends.url 2023-07-01 00:11 - 2023-06-26 10:45 - 000848992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2023-07-01 00:11 - 2023-06-26 10:45 - 000848992 _____ C:\WINDOWS\system32\vulkaninfo.exe 2023-07-01 00:11 - 2023-06-26 10:45 - 000713824 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-07-01 00:11 - 2023-06-26 10:45 - 000713824 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2023-07-01 00:11 - 2023-06-26 10:44 - 001487384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2023-07-01 00:11 - 2023-06-26 10:44 - 001227312 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2023-07-01 00:11 - 2023-06-26 10:44 - 000653408 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2023-07-01 00:11 - 2023-06-26 10:44 - 000653408 _____ C:\WINDOWS\system32\vulkan-1.dll 2023-07-01 00:11 - 2023-06-26 10:44 - 000637024 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2023-07-01 00:11 - 2023-06-26 10:44 - 000637024 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2023-07-01 00:11 - 2023-06-26 10:40 - 000934448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2023-07-01 00:11 - 2023-06-26 10:40 - 000669232 _____ C:\WINDOWS\system32\nvofapi64.dll 2023-07-01 00:11 - 2023-06-26 10:40 - 000504320 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 002168368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 001621528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 001538048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 001195520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 000992816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2023-07-01 00:11 - 2023-06-26 10:39 - 000777216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2023-07-01 00:11 - 2023-06-26 10:39 - 000769024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 014520344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 012066328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 006190640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 005844504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 005550640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 003482648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2023-07-01 00:11 - 2023-06-26 10:38 - 000459288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2023-07-01 00:11 - 2023-06-26 10:37 - 000852976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2023-07-01 00:11 - 2023-06-24 03:20 - 000107938 _____ C:\WINDOWS\system32\nvinfo.pb 2023-06-28 13:26 - 2023-06-28 13:26 - 000000650 _____ C:\Users\Public\Desktop\Logitech G HUB.lnk 2023-06-28 13:26 - 2023-06-28 13:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi 2023-06-28 13:26 - 2023-06-28 13:26 - 000000000 ____D C:\Program Files\LGHUB 2023-06-20 19:00 - 2023-06-20 19:00 - 000000000 ____D C:\Users\Admin\Documents\CD Projekt Red 2023-06-20 18:52 - 2023-06-20 18:52 - 000000000 ____D C:\Intel ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-07-17 16:55 - 2021-04-23 14:06 - 000000000 ____D C:\Users\Admin\AppData\Local\Battle.net 2023-07-17 16:54 - 2022-10-18 12:31 - 000021441 _____ C:\Users\Admin\Downloads\FRST.txt 2023-07-17 16:53 - 2022-10-18 12:30 - 002384384 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe 2023-07-17 16:53 - 2022-10-14 03:15 - 000000000 ____D C:\FRST 2023-07-17 16:49 - 2021-12-16 01:28 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-07-17 16:49 - 2020-03-18 21:37 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache 2023-07-17 16:49 - 2017-10-20 12:34 - 000000000 ____D C:\Program Files (x86)\Google 2023-07-17 16:33 - 2021-04-21 13:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-07-17 16:16 - 2021-11-19 13:58 - 000000000 ____D C:\Users\Admin\AppData\Local\Discord 2023-07-17 13:21 - 2021-11-19 13:58 - 000000000 ____D C:\Users\Admin\AppData\Roaming\discord 2023-07-17 13:21 - 2017-10-20 11:50 - 000000000 ____D C:\ProgramData\NVIDIA 2023-07-17 13:14 - 2021-04-23 11:14 - 000000000 ____D C:\ProgramData\Riot Games 2023-07-17 12:15 - 2021-04-21 13:45 - 000000000 ____D C:\Users\Admin 2023-07-17 11:45 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-07-17 11:45 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-07-17 11:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-07-17 11:23 - 2021-04-21 13:50 - 001767980 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-07-17 11:23 - 2019-12-07 17:09 - 000784296 _____ C:\WINDOWS\system32\perfh015.dat 2023-07-17 11:23 - 2019-12-07 17:09 - 000152192 _____ C:\WINDOWS\system32\perfc015.dat 2023-07-17 11:23 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-07-17 11:19 - 2021-04-23 11:29 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat 2023-07-17 11:16 - 2021-07-06 12:31 - 000000000 ____D C:\Users\Admin\AppData\Roaming\LGHUB 2023-07-17 11:16 - 2021-07-06 12:31 - 000000000 ____D C:\Users\Admin\AppData\Local\LGHUB 2023-07-17 11:16 - 2021-04-22 18:03 - 000877320 _____ C:\WINDOWS\system32\wpbbin.exe 2023-07-17 11:16 - 2021-04-22 18:03 - 000838760 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe 2023-07-17 11:16 - 2021-04-21 13:49 - 000003126 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher 2023-07-17 11:16 - 2021-04-21 13:49 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-07-17 11:16 - 2021-04-21 13:44 - 000008192 ___SH C:\DumpStack.log.tmp 2023-07-17 11:16 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-07-17 03:47 - 2022-03-08 02:48 - 000000000 ____D C:\ISLC v1.0.2.5 2023-07-17 03:47 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-07-15 14:28 - 2021-10-26 15:21 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk 2023-07-15 14:28 - 2021-04-21 13:44 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-07-15 14:28 - 2019-12-07 11:10 - 000002349 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk 2023-07-15 14:28 - 2019-10-07 18:07 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2023-07-15 14:28 - 2017-10-20 12:09 - 000000000 ____H C:\ProgramData\DP45977C.lfl 2023-07-14 23:46 - 2021-04-21 13:44 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-07-14 23:12 - 2022-02-12 01:31 - 000000016 _____ C:\ProgramData\mntemp 2023-07-14 23:12 - 2017-10-20 12:34 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-07-14 02:13 - 2017-10-20 12:20 - 000914872 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2023-07-14 01:57 - 2021-10-04 23:53 - 000000683 _____ C:\Users\Public\Desktop\Riot Client.lnk 2023-07-14 01:57 - 2021-04-23 11:14 - 000000000 ____D C:\Users\Admin\AppData\Local\Riot Games 2023-07-14 01:57 - 2021-04-23 11:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2023-07-13 22:17 - 2022-02-08 00:31 - 000000000 ____D C:\ProgramData\Battle.net_components 2023-07-12 13:15 - 2021-04-23 11:13 - 000000805 _____ C:\Users\Admin\Desktop\Nowy dokument tekstowy (3).txt 2023-07-12 12:00 - 2021-04-21 13:44 - 000482312 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-07-12 12:00 - 2019-12-07 17:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-07-12 12:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-07-12 11:36 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-07-12 11:34 - 2021-04-21 13:48 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-07-12 11:30 - 2017-10-20 12:17 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-07-12 11:28 - 2017-10-20 12:17 - 173351160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-07-12 02:22 - 2021-04-23 11:11 - 000000000 ____D C:\Users\Admin\AppData\Local\CrashDumps 2023-07-12 00:41 - 2021-11-19 13:58 - 000002231 _____ C:\Users\Admin\Desktop\Discord.lnk 2023-07-07 18:40 - 2021-04-21 13:55 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-07-07 18:40 - 2021-04-21 13:55 - 000003472 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d736a4410dda5c 2023-07-02 16:12 - 2023-04-21 02:51 - 000000112 _____ C:\Users\Admin\Desktop\ANALIZA.txt 2023-07-01 00:13 - 2021-04-22 12:11 - 000000000 ____D C:\Users\Admin\AppData\Local\NVIDIA 2023-06-28 23:50 - 2017-10-20 12:34 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-06-26 10:36 - 2023-04-19 12:15 - 006736984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2023-06-26 10:36 - 2023-03-15 05:20 - 007858072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2023-06-22 19:27 - 2021-04-25 18:48 - 000000000 ____D C:\Users\Admin\AppData\Local\Steam 2023-06-17 13:19 - 2022-12-29 19:21 - 002807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000493048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000247288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000202232 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll 2023-06-17 13:19 - 2022-12-29 19:21 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe 2023-06-17 13:19 - 2022-12-29 19:21 - 000062968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-08-14 19:15 - 2022-08-15 17:58 - 000000101 _____ () C:\Users\Admin\AppData\Roaming\prio.ini ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================