Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-04-2022 Uruchomiony przez Paweł K (administrator) PK (Acer Aspire Z3-710) (24-04-2022 17:58:55) Uruchomiony z C:\Users\Paweł K\Desktop\frst Załadowane profile: Paweł K Platform: Microsoft Windows 10 Home Wersja 21H2 19044.1645 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Common Files\Sophos\Web Intelligence\swi_fc.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFileScanner.exe <2> (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Health\SophosHealth.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Clean\SophosCleanM64.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Endpoint Defense\SEDService.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Endpoint Defense\SSPService.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Safestore\SophosSafestore64.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe (services.exe ->) (Sophos Ltd -> Sophos Limited) C:\Program Files\Sophos\Sophos Network Threat Protection\SophosNtpService.exe (services.exe ->) (Sophos Ltd -> SurfRight B.V.) C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe (Sophos Ltd -> Sophos Limited) C:\Program Files (x86)\Sophos\Sophos Home\SophosUI.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13874392 2015-03-20] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1392856 2015-03-20] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3831808 2021-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Logitech) HKLM-x32\...\Run: [Sophos Home UI] => C:\Program Files (x86)\Sophos\Sophos Home\SophosUI.exe [7716872 2022-01-14] (Sophos Ltd -> Sophos Limited) HKU\S-1-5-21-1755109956-3781858322-2049348421-1002\...\Run: [MicrosoftEdgeAutoLaunch_16B1B7A4CBEB30849A715B7497A5B182] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3540408 2022-04-15] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\CPCA Language Monitor3b: C:\WINDOWS\system32\CNAS0MOK.DLL [1006080 2012-08-09] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.127\Installer\chrmstp.exe [2022-04-17] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0DA7D8C7-D6CA-49A2-A083-29A6EAECE1BE} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-09-10] (Google LLC -> Google LLC) Task: {15C94244-852F-46EA-B87F-2883AD4E0D46} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {524E7C08-AE34-4930-88E7-6A02A28D7BAE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-09-10] (Google LLC -> Google LLC) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.55.1 Tcpip\..\Interfaces\{8c727293-d4bc-4efc-b6fc-ee2a4365fadd}: [DhcpNameServer] 192.168.55.1 Tcpip\..\Interfaces\{cc3d6bf8-b421-499b-ac3f-38829b8c922f}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\Paweł K\AppData\Local\Microsoft\Edge\User Data\Default [2022-04-24] FireFox: ======== FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2022-04-07] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default [2022-04-24] CHR Extension: (Prezentacje) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-09-10] CHR Extension: (Dokumenty) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-09-10] CHR Extension: (Dysk Google) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-20] CHR Extension: (YouTube) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-09-10] CHR Extension: (Arkusze) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-09-10] CHR Extension: (Dokumenty Google offline) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-21] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\Paweł K\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-25] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 hmpalertsvc; C:\Program Files (x86)\HitmanPro.Alert\hmpalert.exe [3122584 2021-11-25] (Sophos Ltd -> SurfRight B.V.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8347832 2022-04-24] (Malwarebytes Inc -> Malwarebytes) R2 SAVAdminService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SAVAdminService.exe [308112 2021-07-07] (Sophos Ltd -> Sophos Limited) R2 SAVService; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\SavService.exe [216728 2021-07-07] (Sophos Ltd -> Sophos Limited) R2 SntpService; C:\Program Files\Sophos\Sophos Network Threat Protection\SophosNtpService.exe [9517912 2022-01-25] (Sophos Ltd -> Sophos Limited) R2 Sophos AutoUpdate Service; C:\Program Files (x86)\Sophos\AutoUpdate\ALsvc.exe [808664 2022-01-17] (Sophos Ltd -> Sophos Limited) R2 Sophos Clean Service; C:\Program Files\Sophos\Clean\SophosCleanM64.exe [1481160 2021-10-01] (Sophos Ltd -> Sophos Limited) R2 Sophos Endpoint Defense Service; C:\Program Files\Sophos\Endpoint Defense\SEDService.exe [3667888 2021-12-13] (Sophos Ltd -> Sophos Limited) R2 Sophos File Scanner Service; C:\Program Files\Sophos\Sophos File Scanner\SophosFS.exe [1134104 2022-01-17] (Sophos Ltd -> Sophos Limited) R2 Sophos Health Service; C:\Program Files (x86)\Sophos\Health\SophosHealth.exe [1555024 2021-10-05] (Sophos Ltd -> Sophos Limited) R2 Sophos MCS Agent; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsAgent.exe [1290536 2022-01-17] (Sophos Ltd -> Sophos Limited) R2 Sophos MCS Client; C:\Program Files (x86)\Sophos\Management Communications System\Endpoint\McsClient.exe [1432600 2022-01-17] (Sophos Ltd -> Sophos Limited) R2 Sophos Safestore Service; C:\Program Files\Sophos\Safestore\SophosSafestore64.exe [3631336 2021-10-01] (Sophos Ltd -> Sophos Limited) R2 Sophos System Protection Service; C:\Program Files\Sophos\Endpoint Defense\SSPService.exe [11898424 2021-12-13] (Sophos Ltd -> Sophos Limited) R2 Sophos Web Control Service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Control\swc_service.exe [351336 2020-09-25] (Sophos Ltd -> Sophos Limited) R2 swi_filter; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_filter.exe [483680 2021-07-07] (Sophos Ltd -> Sophos Limited) R2 swi_service; C:\Program Files (x86)\Sophos\Sophos Anti-Virus\Web Intelligence\swi_service.exe [3608056 2021-07-07] (Sophos Ltd -> Sophos Limited) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [103888 2022-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 hmpalert; C:\WINDOWS\system32\drivers\hmpalert.sys [685608 2021-11-25] (Microsoft Windows Hardware Compatibility Publisher -> SurfRight B.V.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [223176 2022-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2022-04-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [193992 2022-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [70072 2022-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239560 2022-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [158856 2022-04-24] (Malwarebytes Inc -> Malwarebytes) R1 SAVOnAccess; C:\WINDOWS\System32\DRIVERS\savonaccess.sys [216280 2020-09-25] (Sophos Ltd -> Sophos Limited) S3 sdcfilter; C:\WINDOWS\system32\DRIVERS\sdcfilter.sys [38144 2020-03-20] (Sophos Limited -> Sophos Limited) R1 sntp; C:\WINDOWS\system32\DRIVERS\sntp.sys [259088 2022-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Sophos Limited) S0 Sophos ELAM; C:\WINDOWS\System32\DRIVERS\SophosEL.sys [26032 2021-12-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Sophos Limited) R0 Sophos Endpoint Defense; C:\WINDOWS\System32\DRIVERS\SophosED.sys [2582568 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher -> Sophos Limited) S4 SophosBootDriver; C:\WINDOWS\system32\DRIVERS\SophosBootDriver.sys [45840 2020-03-20] (Sophos Limited -> Sophos Limited) R1 swi_callout; C:\WINDOWS\system32\DRIVERS\swi_callout.sys [47760 2020-03-20] (Sophos Limited -> Sophos Limited) S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2015-11-05] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-04-24 17:51 - 2022-04-24 17:59 - 000000000 ____D C:\FRST 2022-04-24 17:51 - 2022-04-24 17:58 - 000000000 ____D C:\Users\Paweł K\Desktop\frst 2022-04-24 17:47 - 2022-04-24 17:48 - 000000000 ____D C:\AdwCleaner 2022-04-24 17:47 - 2022-04-24 17:47 - 008551608 _____ (Malwarebytes) C:\Users\Paweł K\Downloads\adwcleaner.exe 2022-04-24 17:42 - 2022-04-24 17:42 - 008540344 _____ (Malwarebytes) C:\Users\Paweł K\Downloads\adwcleaner_8.3.1.exe 2022-04-24 17:40 - 2022-04-24 17:40 - 000193992 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2022-04-24 17:40 - 2022-04-24 17:40 - 000158856 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2022-04-24 17:40 - 2022-04-24 17:40 - 000070072 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2022-04-24 17:34 - 2022-04-24 17:34 - 000000000 ____D C:\Users\Paweł K\AppData\Local\mbam 2022-04-24 17:32 - 2022-04-24 17:32 - 000239560 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2022-04-24 17:32 - 2022-04-24 17:32 - 000223176 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2022-04-24 17:32 - 2022-04-24 17:32 - 000103888 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2022-04-24 17:32 - 2022-04-24 17:32 - 000002037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2022-04-24 17:32 - 2022-04-24 17:32 - 000002025 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2022-04-24 17:32 - 2022-04-24 17:31 - 000021480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2022-04-24 17:31 - 2022-04-24 17:31 - 000000000 ____D C:\ProgramData\Malwarebytes 2022-04-24 17:31 - 2022-04-24 17:31 - 000000000 ____D C:\Program Files\Malwarebytes 2022-04-24 17:30 - 2022-04-24 17:30 - 002443448 _____ (Malwarebytes) C:\Users\Paweł K\Downloads\MBSetup.exe 2022-04-22 17:23 - 2022-04-22 17:23 - 000070769 _____ C:\Users\Paweł K\Downloads\foneo_faktura_286_04_2022.pdf 2022-04-20 10:37 - 2022-04-20 10:37 - 000371689 _____ C:\Users\Paweł K\Downloads\dokumenty (1).zip 2022-04-20 10:25 - 2022-04-20 10:26 - 000016704 _____ C:\Users\Paweł K\Downloads\PK rozliczenie 2021 Santander.xlsx 2022-04-20 10:03 - 2022-04-20 10:03 - 000465494 _____ C:\Users\Paweł K\Downloads\FVS 04.2022 (1).pdf 2022-04-19 15:24 - 2022-04-19 15:24 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2022-04-19 15:24 - 2022-04-19 15:24 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2022-04-19 15:24 - 2022-04-19 15:24 - 000011803 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-04-19 15:23 - 2022-04-19 15:23 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-04-19 15:13 - 2022-04-19 15:13 - 000000000 ___HD C:\$WinREAgent 2022-04-19 14:00 - 2022-04-19 14:00 - 000144312 _____ C:\Users\Paweł K\Downloads\FW_wyniki_miesiaca_marca_2022 (1).zip 2022-04-19 13:59 - 2022-04-19 13:59 - 000000118 _____ C:\Users\Paweł K\Downloads\attachment1.2 (1).txt 2022-04-19 13:55 - 2022-04-19 13:55 - 000465494 _____ C:\Users\Paweł K\Downloads\FVS 04.2022.pdf 2022-04-19 13:53 - 2022-04-19 13:53 - 000369409 _____ C:\Users\Paweł K\Downloads\Faktura sprzedaży (7).pdf 2022-04-12 15:59 - 2022-04-12 15:59 - 000180350 _____ C:\Users\Paweł K\Downloads\0599641-Tax - Fiscal list of income-20211231.pdf 2022-04-12 15:58 - 2022-04-12 15:58 - 000128191 _____ C:\Users\Paweł K\Downloads\0599641-Tax - Statement Capital gains_losses+other income & tax info-20211231.pdf 2022-04-11 11:46 - 2022-04-11 11:46 - 000030446 _____ C:\Users\Paweł K\Downloads\00008-2022-KPO-0001-000053231.pdf 2022-04-08 08:15 - 2022-04-08 08:15 - 000003338 _____ C:\Users\Paweł K\Downloads\noname 2022-04-07 15:15 - 2022-04-07 15:15 - 000033867 _____ C:\Users\Paweł K\Downloads\metal fach (6).pdf 2022-04-07 14:20 - 2022-04-07 14:20 - 000033157 _____ C:\Users\Paweł K\Downloads\metal fach (5).pdf 2022-04-06 09:35 - 2022-04-06 09:35 - 000144312 _____ C:\Users\Paweł K\Downloads\FW_wyniki_miesiaca_marca_2022.zip 2022-04-04 20:03 - 2022-04-04 20:03 - 000240878 _____ C:\Users\Paweł K\Downloads\599.641 E_banking1_romeo582 (3).pdf 2022-04-03 09:45 - 2022-04-03 09:45 - 000199617 _____ C:\Users\Paweł K\Downloads\188-C-2022.pdf 2022-04-03 09:44 - 2022-04-03 09:44 - 000200960 _____ C:\Users\Paweł K\Downloads\189-C-2022.pdf 2022-04-01 14:05 - 2022-04-01 14:05 - 001476278 _____ C:\Users\Paweł K\Downloads\Statement 68087 31-DEC-21.pdf 2022-04-01 13:58 - 2022-04-01 13:58 - 000199021 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (7).pdf 2022-04-01 13:56 - 2022-04-01 13:56 - 000323601 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (6).pdf 2022-04-01 13:54 - 2022-04-01 13:54 - 000199020 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (4).pdf 2022-04-01 13:54 - 2022-04-01 13:54 - 000199013 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (5).pdf 2022-03-31 18:09 - 2022-03-31 18:09 - 000240878 _____ C:\Users\Paweł K\Downloads\599.641 E_banking1_romeo582 (2).pdf 2022-03-31 15:50 - 2022-03-31 15:50 - 000240878 _____ C:\Users\Paweł K\Downloads\599.641 E_banking1_romeo582 (1).pdf 2022-03-31 13:49 - 2022-03-31 13:49 - 000252878 _____ C:\Users\Paweł K\Downloads\599.641 E_banking2_romeo582.pdf 2022-03-31 13:41 - 2022-03-31 13:41 - 000240878 _____ C:\Users\Paweł K\Downloads\599.641 E_banking1_romeo582.pdf 2022-03-31 13:12 - 2022-03-31 13:12 - 000173658 _____ C:\Users\Paweł K\Downloads\wyborbieglego.pdf (2) (1).xml 2022-03-31 13:10 - 2022-03-31 13:10 - 000167493 _____ C:\Users\Paweł K\Downloads\wyborbieglego.pdf (2).xml 2022-03-31 13:09 - 2022-03-31 13:09 - 000131196 _____ C:\Users\Paweł K\Downloads\Uchwała o zatwierdzeniu sprawozdania (1).pdf 2022-03-31 13:07 - 2022-03-31 13:07 - 000093183 _____ C:\Users\Paweł K\Downloads\81qydwivofiw1veken6abinrakpohu1ksdguzk1a (1).pdf 2022-03-31 13:01 - 2022-03-31 13:01 - 000180860 _____ C:\Users\Paweł K\Downloads\lista obec.PDF 2022-03-31 12:59 - 2022-03-31 12:59 - 000171101 _____ C:\Users\Paweł K\Downloads\Uchwała o PODZIALE ZYSKU (1).pdf 2022-03-31 12:57 - 2022-03-31 12:57 - 000171965 _____ C:\Users\Paweł K\Downloads\Uchwała o PODZIALE ZYSKU za poprzednie lata (1).pdf 2022-03-31 12:52 - 2022-03-31 12:52 - 000093183 _____ C:\Users\Paweł K\Downloads\81qydwivofiw1veken6abinrakpohu1ksdguzk1a.pdf 2022-03-31 12:51 - 2022-03-31 12:51 - 000182609 _____ C:\Users\Paweł K\Downloads\Uchwała o zatwierdzeniu sprawozdania.pdf.xml 2022-03-31 12:46 - 2022-03-31 12:46 - 000131196 _____ C:\Users\Paweł K\Downloads\Uchwała o zatwierdzeniu sprawozdania.pdf 2022-03-31 12:46 - 2022-03-31 12:46 - 000129543 _____ C:\Users\Paweł K\Downloads\Uchwała o PODZIALE ZYSKU za poprzednie lata.pdf 2022-03-31 12:46 - 2022-03-31 12:46 - 000128455 _____ C:\Users\Paweł K\Downloads\Uchwała o PODZIALE ZYSKU.pdf 2022-03-31 12:46 - 2022-03-31 12:46 - 000093183 _____ C:\Users\Paweł K\Downloads\lista obecności.pdf 2022-03-31 12:45 - 2022-03-31 12:45 - 000167493 _____ C:\Users\Paweł K\Downloads\wyborbieglego.pdf (1).xml 2022-03-31 12:43 - 2022-03-31 12:43 - 000167493 _____ C:\Users\Paweł K\Downloads\wyborbieglego.pdf.xml 2022-03-30 22:18 - 2022-03-30 22:18 - 000241381 _____ C:\Users\Paweł K\Downloads\FW_agenda_spotkania.zip 2022-03-29 13:42 - 2022-03-29 13:42 - 000323592 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (3).pdf 2022-03-29 13:41 - 2022-03-29 13:41 - 000199017 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (2).pdf 2022-03-29 13:39 - 2022-03-29 13:39 - 000199008 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21 (1).pdf 2022-03-29 13:38 - 2022-03-29 13:38 - 000323598 _____ C:\Users\Paweł K\Downloads\Annual Financial Summary for Tax Purposes 68087 31-DEC-21.pdf 2022-03-29 13:26 - 2022-03-29 13:26 - 000333232 _____ C:\Users\Paweł K\Downloads\E-Banking Guide - 68087 - PAWEL KROWICKI.pdf 2022-03-29 13:15 - 2022-03-29 13:15 - 000191580 _____ C:\Users\Paweł K\Downloads\Valuation_0599641.001_31.12.2021.pdf 2022-03-28 19:28 - 2022-03-28 19:29 - 000030678 _____ C:\Users\Paweł K\Downloads\00007-2022-KPO-0001-000053231.pdf 2022-03-28 02:05 - 2022-03-28 02:05 - 000883595 _____ C:\Users\Paweł K\Downloads\3587_001.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-04-24 17:58 - 2020-09-10 12:07 - 000000000 ____D C:\WINDOWS\CryptoGuard 2022-04-24 17:58 - 2020-09-10 11:43 - 000000000 ____D C:\Program Files (x86)\Google 2022-04-24 17:57 - 2020-09-10 12:07 - 000000000 ____D C:\ProgramData\HitmanPro.Alert 2022-04-24 17:56 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-04-24 17:55 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-04-24 17:32 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2022-04-24 17:31 - 2020-09-18 20:08 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-04-24 17:31 - 2020-09-18 20:08 - 000002290 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2022-04-24 17:31 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-04-24 17:31 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-04-24 17:28 - 2020-09-10 11:22 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2022-04-24 17:28 - 2019-03-29 10:01 - 000000000 __SHD C:\Users\Paweł K\IntelGraphicsProfiles 2022-04-22 20:40 - 2021-04-05 14:48 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-04-21 15:54 - 2021-12-13 23:01 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1755109956-3781858322-2049348421-1002 2022-04-21 15:54 - 2021-04-05 14:55 - 000003358 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1755109956-3781858322-2049348421-1002 2022-04-21 15:54 - 2021-04-04 19:09 - 000002437 _____ C:\Users\Paweł K\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-04-20 10:45 - 2021-04-04 19:09 - 000000000 ____D C:\Users\Paweł K 2022-04-20 10:13 - 2021-04-05 14:57 - 001767984 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-04-20 10:13 - 2019-12-07 17:08 - 000784340 _____ C:\WINDOWS\system32\perfh015.dat 2022-04-20 10:13 - 2019-12-07 17:08 - 000152236 _____ C:\WINDOWS\system32\perfc015.dat 2022-04-20 10:06 - 2021-04-05 14:55 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-04-20 10:06 - 2021-04-05 14:48 - 000008192 ___SH C:\DumpStack.log.tmp 2022-04-20 09:53 - 2021-04-05 14:55 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2022-04-20 09:53 - 2021-04-05 14:55 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2022-04-20 00:04 - 2020-09-10 12:07 - 000000000 ____D C:\Program Files (x86)\HitmanPro.Alert 2022-04-20 00:03 - 2020-09-10 12:05 - 000000000 ____D C:\Program Files\Sophos 2022-04-19 23:58 - 2021-04-05 14:48 - 000455440 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-04-19 23:58 - 2020-09-10 11:43 - 000002257 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-04-19 23:57 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-04-19 23:57 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-04-19 15:27 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-04-19 15:10 - 2020-09-10 12:23 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-04-19 15:08 - 2020-09-10 12:23 - 143823848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-04-14 00:22 - 2020-09-10 11:47 - 000002140 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2022-04-06 08:15 - 2020-09-14 08:51 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-04-06 08:11 - 2021-04-13 10:42 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d72a1a80a900a9 2022-04-06 08:11 - 2021-04-05 14:55 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================