Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 27-02-2023 Uruchomiony przez kamil (administrator) KAMIL (Dell Inc. OptiPlex 7010) (28-02-2023 07:18:00) Uruchomiony z D:\Pobrane Załadowane profile: kamil Platform: Microsoft Windows 10 Home Wersja 22H2 19045.2604 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Brother Industries, Ltd. -> Brother Industries, Ltd.) C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe (C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe ->) (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\BrUtilities\BrLogRx.exe (C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe ->) (H und H Software GmbH -> H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\vc10tray.exe (C:\Program Files\iVMS-4200 Station\iVMS-4200\iVMS-4200 Client\iVMS-4200.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\iVMS-4200 Station\iVMS-4200\iVMS-4200 Client\DecodeProcess\DecodeProcess.exe (C:\Program Files\iVMS-4200 Station\iVMS-4200\iVMS-4200 Client\iVMS-4200.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\iVMS-4200 Station\Nginx\nginx.exe <2> (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCopyAccelerator.exe (C:\Users\kamil\AppData\Local\GG\Application\gghub.exe ->) (Xevin Consulting -> GG Network S.A.) C:\Users\kamil\AppData\Local\GG\Application\ggapp.exe (C:\Users\kamil\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\kamil\AppData\Local\Programs\Opera\95.0.4635.46\opera_crashreporter.exe (explorer.exe ->) (GG Network S.A. -> GG Network S.A.) C:\Users\kamil\AppData\Local\GG\Application\gghub.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <52> (explorer.exe ->) (HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> ) C:\Program Files\iVMS-4200 Station\iVMS-4200\iVMS-4200 Client\iVMS-4200.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7> (explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <4> (explorer.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe (explorer.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectUI.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe (explorer.exe ->) (Remote Utilities LLC -> Remote Utilities LLC) C:\Program Files (x86)\Remote Utilities - Viewer\rutview.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe (H+H Software GmbH -> H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe (Kilonova LLC -> Skillbrains) C:\Program Files (x86)\Skillbrains\lightshot\5.5.0.4\Lightshot.exe (Opera Norway AS -> Opera Software) C:\Users\kamil\AppData\Local\Programs\Opera\opera.exe <37> (services.exe ->) (Arvato Digital Services Canada Inc -> arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (services.exe ->) (Firebird Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe (services.exe ->) (Firebird Project) [Brak podpisu cyfrowego] C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe (services.exe ->) (H und H Software GmbH -> H+H Software GmbH) C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe (services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (services.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe (services.exe ->) (Microsoft) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe (services.exe ->) (Microsoft) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe (services.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\MacriumService.exe (services.exe ->) (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe (services.exe ->) (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23012.155.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe <3> (svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> (svchost.exe ->) (QNAP Systems, Inc. -> ) C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe (svchost.exe ->) (SOSVIRUS (LE BOZEC CEDRIC, DOMINIQUE, MARIE) -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe (svchost.exe ->) (WhatsApp Inc.) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2306.4.0_x64__cv1g1gvanyjgm\WhatsApp.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtDCpl64.exe [2917632 2015-05-27] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.) HKLM\...\Run: [Reflect UI] => C:\Program Files\Macrium\Common\ReflectUI.exe [7580488 2021-04-30] (Paramount Software UK Ltd -> Paramount Software UK Ltd) HKLM-x32\...\Run: [VC10Player] => C:\Program Files (x86)\Virtual CD v10\System\VC10Play.exe [409440 2019-05-06] (H+H Software GmbH -> H+H Software GmbH) HKLM-x32\...\Run: [Lightshot] => C:\Program Files (x86)\Skillbrains\lightshot\Lightshot.exe [226728 2019-07-21] (Kilonova LLC -> ) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [146584 2017-11-07] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2976256 2018-01-19] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3581952 2017-04-05] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [QfinderPro] => C:\Program Files (x86)\QNAP\Qfinder\QfinderPro.exe [8231224 2016-08-12] (QNAP Systems, Inc. -> ) HKLM-x32\...\Run: [Qsync] => C:\Program Files (x86)\QNAP\Qsync\Qsync.exe [73438520 2019-10-09] (QNAP Systems, Inc. -> QNAP Systems, Inc.) HKLM-x32\...\Run: [SPUpDateServerrun] => C:\Program Files (x86)\hik\update_server\startUp.exe [27352 2020-07-30] (Hangzhou Ezviz Software Co., Ltd. -> ) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\MRT: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Windows Defender Security Center: Ograniczenia <==== UWAGA HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [Lync] => C:\Program Files\Microsoft Office\root\Office16\lync.exe [26363216 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [com.squirrel.Teams.Teams] => C:\Users\kamil\AppData\Local\Microsoft\Teams\Update.exe [2455264 2021-09-20] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [GG] => C:\Users\kamil\AppData\Local\GG\Application\gghub.exe [4078144 2019-09-10] (GG Network S.A. -> GG Network S.A.) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [MicrosoftEdgeAutoLaunch_79C999F0AD65A01173697ECF2D69C522] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4243360 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [Opera Browser Assistant] => C:\Users\kamil\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3916232 2022-12-20] (Opera Norway AS -> Opera Software) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38935376 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\RunOnce: [FlashPlayerUpdate] => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-25] (Adobe Inc. -> Adobe) HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {04a20409-2a50-11ec-b076-3417eba6f2f2} - "D:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {10e22b4f-bd16-11eb-b01f-3417eba6f2f2} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {2265d209-e8f0-11ea-af88-3417eba6f2f2} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {2db98770-98c9-11ed-b105-3417eba6f2f2} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {69518c8f-44e4-11eb-afc5-3417eba6f2f2} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {911e85eb-9114-11eb-affc-3417eba6f2f2} - "E:\HiSuiteDownLoader.exe" HKU\S-1-5-21-4200854220-3294602373-1765642704-1003\...\MountPoints2: {a4abe37c-9965-11ec-b0c5-3417eba6f2f2} - "D:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\HP1006PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1006PP.dll [65024 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\HP E611 Status Monitor: C:\WINDOWS\system32\hpinkstsE611LM.dll [401920 2019-07-01] (Hewlett Packard -> HP Inc.) HKLM\...\Print\Monitors\HP1006LM: C:\WINDOWS\system32\HP1006LM.DLL [198144 2013-04-15] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [2061184 2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) HKLM\...\Print\Monitors\rica6Plm: C:\WINDOWS\system32\rica6Plm.dll [28160 2013-12-26] (Microsoft Windows Hardware Compatibility Publisher -> RICOH CO.,Ltd.) HKLM\Software\...\AppCompatFlags\Custom\Comarch Biuro Rachunkowe.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\Custom\Comarch ERP Altum HR.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\Custom\Comarch ERP Enterprise HR.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\Custom\Comarch ERP XL HR.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\Custom\Comarch OPT!MA.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\Custom\Dms.OptimaUIBroker.exe: [{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb] -> Comarch ERP WMPAINT Fix HKLM\Software\...\AppCompatFlags\InstalledSDB\{6713fee8-dd53-48f5-adc5-b5a0498bde48}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{6713fee8-dd53-48f5-adc5-b5a0498bde48}.sdb [2022-12-10] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.178\Installer\chrmstp.exe [2023-02-28] (Google LLC -> Google LLC) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {05CBE605-62DC-4059-8479-FDF2978B9496} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-12-01] (Mozilla Corporation -> Mozilla Foundation) Task: {0FF32E99-A49F-4733-A0DC-6771D22ED22E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-23] (Google Inc -> Google LLC) Task: {136E0B01-B695-4DEC-80B9-D39C631B63AC} - System32\Tasks\Opera scheduled Autoupdate 1568271519 => C:\Users\kamil\AppData\Local\Programs\Opera\launcher.exe [2635208 2023-02-15] (Opera Norway AS -> Opera Software) Task: {1CCF48D7-A10F-4613-8DB2-1760D9A052B5} - System32\Tasks\update-sys => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe [414872 2017-04-12] (OOO Lightshot -> TODO: ) Task: {2107E17A-AD41-4D94-AB5B-FBCD7F3DC991} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [926896 2012-09-23] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {28582CF1-DB33-4E6E-B88E-1937BC253EAF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-23] (Google Inc -> Google LLC) Task: {3C0E36D8-087B-4797-AAC8-581026E2A2EC} - System32\Tasks\CCleanerSkipUAC - kamil => C:\Program Files\CCleaner\CCleaner.exe [32617808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {49C34A67-5CF3-4B4E-922F-6C7935FA3169} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4713808 2023-01-11] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "fb7f183a-b33c-4cc2-9fcf-ddbc2272c521" --version "6.08.10255" --silent Task: {591E25C5-FAEF-49B6-9B6F-7BD6D79E22FB} - System32\Tasks\Opera scheduled assistant Autoupdate 1582783615 => C:\Users\kamil\AppData\Local\Programs\Opera\launcher.exe [2635208 2023-02-15] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\kamil\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {592B369F-A39D-402D-ABC2-A0CAD6407791} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334600 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {5AE424BC-2602-4D54-92FC-50BB9C3F66B9} - System32\Tasks\Wyłącz kompa => C:\Windows\System32\shutdown.exe Task: {6B8C8A38-7D9F-48F1-9D7F-2F203E44D056} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_293_pepper.exe [1453112 2019-11-25] (Adobe Inc. -> Adobe) Task: {991A05B6-5FA4-4191-98C7-487E311A68A8} - System32\Tasks\UsbFix Boot Scan => C:\Program Files (x86)\UsbFix\UsbFix.exe [2053256 2020-12-02] (SOSVIRUS (LE BOZEC CEDRIC, DOMINIQUE, MARIE) -> ) [Brak podpisu cyfrowego] Task: {A602F512-34CE-45A8-82F5-1B423E6CB463} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {A68B267E-5B4E-457B-8264-8DF9205F1293} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26334600 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {A6A15959-AEF4-4425-AEA0-967BA1A5077D} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [168920 2023-02-02] (Microsoft Corporation -> Microsoft Corporation) Task: {B8C6EDD9-2190-4570-83CF-6F8E82EB2487} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BCAAEE18-D6BA-4990-8182-260884D6E8A5} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144264 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {C0FC3EF7-2214-451D-8BF5-C7403981F070} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C518B535-6751-4D99-AF2C-D529B8D1A8EF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-01-11] (Piriform Software Ltd -> Piriform) Task: {CBD09F29-034B-4A9C-AE50-D06C5C80FE8D} - System32\Tasks\GoogleUpdateTaskMachineCore1d7366b15243134 => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-09-23] (Google Inc -> Google LLC) Task: {CC23404A-2AE2-4E85-8234-807DD8F80D65} - System32\Tasks\Microsoft\Windows\EDP\Presentatiodxm => C:\WINDOWS\SysWOW64\RUNDLL32 C:\ProgramData\OverProper\SentBlrrt\TWMEasls_v3HW06S.dll lbfst_RhfxZMY Task: {D34E3C83-9BFF-4BC9-BC20-C2AE7DD3BD58} - System32\Tasks\iSCSIAgentAutoStartup => C:\Program Files (x86)\QNAP\Qfinder\iSCSIAgent.exe [1739576 2016-08-12] (QNAP Systems, Inc. -> ) Task: {E0453D41-C474-4203-A803-091C5767BB38} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1003448 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) Task: {E922C207-43C1-41B1-B7B4-CE54632B5ED4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MpCmdRun.exe [1592184 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {EC61BE30-673C-4F01-83D4-0F931F774C12} - System32\Tasks\UsbFix Monitor => C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe [1239176 2020-12-02] (SOSVIRUS (LE BOZEC CEDRIC, DOMINIQUE, MARIE) -> ) [Brak podpisu cyfrowego] (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe Task: C:\WINDOWS\Tasks\KamilBackup.job => C:\DeltaCopy\KamilBackup.dcp Task: C:\WINDOWS\Tasks\update-S-1-5-21-4200854220-3294602373-1765642704-1003.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe Task: C:\WINDOWS\Tasks\update-sys.job => C:\Program Files (x86)\Skillbrains\Updater\Updater.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 185.172.85.85 185.172.85.120 Tcpip\..\Interfaces\{2F5F3888-1882-44A1-906A-894119E751D2}: [DhcpNameServer] 192.168.113.1 185.251.37.37 Tcpip\..\Interfaces\{3d2ca4f7-d11d-4e04-8266-6c79463106ef}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{8ef75120-2f87-4015-a47f-98bbe791192e}: [DhcpNameServer] 185.172.85.85 185.172.85.120 Tcpip\..\Interfaces\{EEFCEE30-CC5A-4C2B-98B7-F7A8EEE32BC7}: [DhcpNameServer] 192.168.111.1 185.251.37.37 Tcpip\..\Interfaces\{f61fda3a-62fd-4240-b688-a580bf7d1d6c}: [DhcpNameServer] 192.168.42.129 Edge: ======= DownloadDir: C:\Users\kamil\Downloads Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-28] Edge DownloadDir: Default -> C:\Users\kamil\Downloads Edge Extension: (Edge relevant text changes) - C:\Users\kamil\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-02-02] FireFox: ======== FF DefaultProfile: wu6w2332.default FF ProfilePath: C:\Users\kamil\AppData\Roaming\Mozilla\Firefox\Profiles\wu6w2332.default [2019-10-24] FF ProfilePath: C:\Users\kamil\AppData\Roaming\Mozilla\Firefox\Profiles\x8ko17ae.default-release [2023-02-27] FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2021-07-19] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: Web Components -> C:\Program Files (x86)\Web Components\npWebVideoPlugin.dll [2017-08-22] (HANGZHOU HIKVISION DIGITAL TECHNOLOGY CO.,LTD. -> ) FF Plugin HKU\S-1-5-21-4200854220-3294602373-1765642704-1003: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2018-12-13] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-4200854220-3294602373-1765642704-1003: SkypeForBusinessPlugin-16.2 -> C:\Users\kamil\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-4200854220-3294602373-1765642704-1003: SkypeForBusinessPlugin64-16.2 -> C:\Users\kamil\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi-x64.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default [2019-11-14] CHR Extension: (Prezentacje) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-09-23] CHR Extension: (Dokumenty) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-09-23] CHR Extension: (Dysk Google) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-09-23] CHR Extension: (YouTube) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-09-23] CHR Extension: (Arkusze) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-09-23] CHR Extension: (Dokumenty Google offline) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-09-25] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-10] CHR Extension: (Gmail) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-09-23] CHR Extension: (Chrome Media Router) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-14] CHR Profile: C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-02-28] CHR DownloadDir: D:\Pobrane CHR Extension: (Tłumacz Google) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2022-03-10] CHR Extension: (Slinky Elegancki) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\bmanlajnpdncmhfkiccmbgeocgbncfln [2022-12-06] CHR Extension: (Web Developer Toolbar) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\deeboegbjcnfgidliakhpoapnpomphji [2020-04-07] CHR Extension: (MozBar) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eakacpaijcpapndcfffdgphdiccmpknp [2022-01-24] CHR Extension: (Copyfish 🐟 Free OCR Software) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\eenjdnjldapjajjofmldgmkjaienebbj [2023-02-10] CHR Extension: (Dokumenty Google offline) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-02-14] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\kamil\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Profile: C:\Users\kamil\AppData\Local\Google\Chrome\User Data\System Profile [2019-10-10] Opera: ======= OPR Profile: C:\Users\kamil\AppData\Roaming\Opera Software\Opera Stable [2023-02-28] OPR DownloadDir: D:\Pobrane OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\kamil\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-11-02] OPR Extension: (Opera Wallet) - C:\Users\kamil\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-02-28] OPR Extension: (Amazon Assistant Promotion) - C:\Users\kamil\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-09-03] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) "vdrv1000" => serwis został odblokowany. <==== UWAGA S3 AJRouter; C:\WINDOWS\SysWOW64\AJRouter.dll [25088 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 AppIDSvc; C:\WINDOWS\SysWOW64\appidsvc.dll [102912 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 Appinfo; C:\WINDOWS\SysWOW64\appinfo.dll [160256 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 AppReadiness; C:\WINDOWS\SysWOW64\AppReadiness.dll [683008 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 AppXSvc; C:\WINDOWS\SysWOW64\appxdeploymentserver.dll [3701760 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 AudioEndpointBuilder; C:\WINDOWS\SysWOW64\AudioEndpointBuilder.dll [735232 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 Audiosrv; C:\WINDOWS\SysWOW64\Audiosrv.dll [1942528 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 autotimesvc; C:\WINDOWS\SysWOW64\autotimesvc.dll [116224 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 AxInstSV; C:\WINDOWS\SysWOW64\AxInstSV.dll [110592 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BcastDVRUserService; C:\WINDOWS\SysWOW64\BcastDVRUserService.dll [1392640 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BDESVC; C:\WINDOWS\SysWOW64\bdesvc.dll [524800 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 BFE; C:\WINDOWS\SysWOW64\bfe.dll [878080 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BITS; C:\WINDOWS\SysWOW64\qmgr.dll [1581056 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BluetoothUserService; C:\WINDOWS\SysWOW64\Microsoft.Bluetooth.UserService.dll [532992 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 BrokerInfrastructure; C:\WINDOWS\SysWOW64\psmsrv.dll [236544 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 Browser; C:\WINDOWS\SysWOW64\browser.dll [134656 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-01-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R3 BthAvctpSvc; C:\WINDOWS\SysWOW64\BthAvctpSvc.dll [382976 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 bthserv; C:\WINDOWS\SysWOW64\bthserv.dll [223744 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 camsvc; C:\WINDOWS\SysWOW64\CapabilityAccessManager.dll [344576 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 CaptureService; C:\WINDOWS\SysWOW64\CaptureService.dll [128000 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 cbdhsvc; C:\WINDOWS\SysWOW64\cbdhsvc.dll [1122816 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 CDPSvc; C:\WINDOWS\SysWOW64\CDPSvc.dll [644096 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S2 CDPUserSvc; C:\WINDOWS\SysWOW64\CDPUserSvc.dll [524800 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 CertPropSvc; C:\WINDOWS\SysWOW64\certprop.dll [192512 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12554240 2023-02-23] (Microsoft Corporation -> Microsoft Corporation) S3 ComarchAutomatSynchronizacji; C:\Program Files (x86)\Comarch ERP Optima\ComarchOptimaSerwisOperacjiAutomatycznych.exe [1645056 2022-12-14] (Comarch S.A.) [Brak podpisu cyfrowego] S3 ConsentUxUserSvc; C:\WINDOWS\SysWOW64\ConsentUxClient.dll [177152 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 CryptSvc; C:\WINDOWS\SysWOW64\cryptsvc.dll [96256 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 DcomLaunch; C:\WINDOWS\SysWOW64\rpcss.dll [1259008 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 defragsvc; C:\WINDOWS\SysWOW64\defragsvc.dll [494080 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 DeviceAssociationService; C:\WINDOWS\SysWOW64\das.dll [482816 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DeviceInstall; C:\WINDOWS\SysWOW64\umpnpmgr.dll [126976 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DevicesFlowUserSvc; C:\WINDOWS\SysWOW64\DevicesFlowBroker.dll [749056 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DevQueryBroker; C:\WINDOWS\SysWOW64\DevQueryBroker.dll [34304 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 diagsvc; C:\WINDOWS\SysWOW64\DiagSvc.dll [212992 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S4 DiagTrack; C:\WINDOWS\SysWOW64\diagtrack.dll [3771392 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 DispBrokerDesktopSvc; C:\WINDOWS\SysWOW64\DispBroker.Desktop.dll [404992 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DisplayEnhancementService; C:\WINDOWS\SysWOW64\Microsoft.Graphics.Display.DisplayEnhancementService.dll [1171968 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dmwappushservice; C:\WINDOWS\SysWOW64\dmwappushsvc.dll [58368 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 Dnscache; C:\WINDOWS\SysWOW64\dnsrslvr.dll [350208 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S2 DoSvc; C:\WINDOWS\SysWOW64\dosvc.dll [1601536 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dot3svc; C:\WINDOWS\SysWOW64\dot3svc.dll [268288 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 DPS; C:\WINDOWS\SysWOW64\dps.dll [169984 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 DsmSvc; C:\WINDOWS\SysWOW64\DeviceSetupManager.dll [265728 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DsSvc; C:\WINDOWS\SysWOW64\DsSvc.dll [153088 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 DusmSvc; C:\WINDOWS\SysWOW64\dusmsvc.dll [358912 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 Eaphost; C:\WINDOWS\SysWOW64\eapsvc.dll [110080 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 EFS; C:\WINDOWS\SysWOW64\efssvc.dll [79872 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 embeddedmode; C:\WINDOWS\SysWOW64\embeddedmodesvc.dll [172032 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 EntAppSvc; C:\WINDOWS\SysWOW64\EnterpriseAppMgmtSvc.dll [521728 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 EventLog; C:\WINDOWS\SysWOW64\wevtsvc.dll [1918976 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 fdPHost; C:\WINDOWS\SysWOW64\fdPHost.dll [21504 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 FDResPub; C:\WINDOWS\SysWOW64\fdrespub.dll [35328 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 fhsvc; C:\WINDOWS\SysWOW64\fhsvc.dll [120832 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbguard.exe [81920 2013-03-19] (Firebird Project) [Brak podpisu cyfrowego] R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_1\bin\fbserver.exe [2785280 2013-03-19] (Firebird Project) [Brak podpisu cyfrowego] R2 FontCache; C:\WINDOWS\SysWOW64\FntCache.dll [1885184 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 FrameServer; C:\WINDOWS\SysWOW64\FrameServer.dll [743424 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S2 gpsvc; C:\WINDOWS\SysWOW64\gpsvc.dll [1255936 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 GraphicsPerfSvc; C:\WINDOWS\SysWOW64\GraphicsPerfSvc.dll [97792 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2023-01-25] (HP Inc. -> HP Inc.) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-12-27] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 icssvc; C:\WINDOWS\SysWOW64\tetheringservice.dll [236032 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 IKEEXT; C:\WINDOWS\SysWOW64\ikeext.dll [1042944 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 iphlpsvc; C:\WINDOWS\SysWOW64\iphlpsvc.dll [830976 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 IpxlatCfgSvc; C:\WINDOWS\SysWOW64\IpxlatCfg.dll [64512 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 KtmRm; C:\WINDOWS\SysWOW64\msdtckrm.dll [372224 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 LanmanServer; C:\WINDOWS\SysWOW64\srvsvc.dll [280064 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 LanmanWorkstation; C:\WINDOWS\SysWOW64\wkssvc.dll [292352 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 lfsvc; C:\WINDOWS\SysWOW64\lfsvc.dll [47104 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 LicenseManager; C:\WINDOWS\SysWOW64\LicenseManagerSvc.dll [50176 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 lltdsvc; C:\WINDOWS\SysWOW64\lltdsvc.dll [265728 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 lmhosts; C:\WINDOWS\SysWOW64\lmhsvc.dll [27136 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 LSM; C:\WINDOWS\SysWOW64\lsm.dll [676864 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 LxpSvc; C:\WINDOWS\SysWOW64\LanguageOverlayServer.dll [317952 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [8929608 2021-04-30] (Paramount Software UK Ltd -> Paramount Software UK Ltd) S2 MapsBroker; C:\WINDOWS\SysWOW64\moshost.dll [92160 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 MessagingService; C:\WINDOWS\SysWOW64\MessagingService.dll [88064 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 mpssvc; C:\WINDOWS\SysWOW64\mpssvc.dll [1062912 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 MSiSCSI; C:\WINDOWS\SysWOW64\iscsiexe.dll [151040 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 NaturalAuthentication; C:\WINDOWS\SysWOW64\NaturalAuth.dll [831488 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 NcaSvc; C:\WINDOWS\SysWOW64\ncasvc.dll [170496 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 NcbService; C:\WINDOWS\SysWOW64\ncbservice.dll [374784 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 NcdAutoSetup; C:\WINDOWS\SysWOW64\NcdAutoSetup.dll [89600 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 Netman; C:\WINDOWS\SysWOW64\netman.dll [262144 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 netprofm; C:\WINDOWS\SysWOW64\netprofmsvc.dll [610816 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 NetSetupSvc; C:\WINDOWS\SysWOW64\NetSetupSvc.dll [336896 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 NgcCtnrSvc; C:\WINDOWS\SysWOW64\NgcCtnrSvc.dll [810496 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 NgcSvc; C:\WINDOWS\SysWOW64\ngcsvc.dll [957952 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 NlaSvc; C:\WINDOWS\SysWOW64\nlasvc.dll [382976 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 nsi; C:\WINDOWS\SysWOW64\nsisvc.dll [30720 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S2 OneSyncSvc; C:\WINDOWS\SysWOW64\APHostService.dll [351744 2019-03-18] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 p2pimsvc; C:\WINDOWS\SysWOW64\pnrpsvc.dll [353280 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 p2psvc; C:\WINDOWS\SysWOW64\p2psvc.dll [428544 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 PhoneSvc; C:\WINDOWS\SysWOW64\PhoneService.dll [943616 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 PimIndexMaintenanceSvc; C:\WINDOWS\SysWOW64\PimIndexMaintenance.dll [190464 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 PlugPlay; C:\WINDOWS\SysWOW64\umpnpmgr.dll [126976 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 PNRPAutoReg; C:\WINDOWS\SysWOW64\pnrpauto.dll [27136 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 PNRPsvc; C:\WINDOWS\SysWOW64\pnrpsvc.dll [353280 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 PolicyAgent; C:\WINDOWS\SysWOW64\ipsecsvc.dll [447488 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 Power; C:\WINDOWS\SysWOW64\umpo.dll [158720 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 ProfSvc; C:\WINDOWS\SysWOW64\profsvc.dll [491520 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (Arvato Digital Services Canada Inc -> arvato digital services llc) S3 PushToInstall; C:\WINDOWS\SysWOW64\PushToInstall.dll [269824 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 RasAuto; C:\WINDOWS\SysWOW64\rasauto.dll [104448 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 RasMan; C:\WINDOWS\SysWOW64\rasmans.dll [913408 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 RBSS_OptimaBI; C:\Program Files (x86)\Comarch ERP Optima\Analizy BI\bin\reports book\Comarch.Msp.ReportsBook.Subscriptions.Service.exe [207944 2022-10-13] (Comarch S.A. -> Comarch S.A.) S4 RemoteRegistry; C:\WINDOWS\SysWOW64\regsvc.dll [160768 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 RetailDemo; C:\WINDOWS\SysWOW64\RDXService.dll [742912 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 RmSvc; C:\WINDOWS\SysWOW64\RMapi.dll [156672 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 RpcEptMapper; C:\WINDOWS\SysWOW64\RpcEpMap.dll [80384 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 RpcSs; C:\WINDOWS\SysWOW64\rpcss.dll [1259008 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SCardSvr; C:\WINDOWS\SysWOW64\SCardSvr.dll [263680 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 ScDeviceEnum; C:\WINDOWS\SysWOW64\ScDeviceEnum.dll [200192 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 Schedule; C:\WINDOWS\SysWOW64\schedsvc.dll [858112 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SCPolicySvc; C:\WINDOWS\SysWOW64\certprop.dll [192512 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SDRSVC; C:\WINDOWS\SysWOW64\SDRSVC.dll [148480 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 seclogon; C:\WINDOWS\SysWOW64\seclogon.dll [31232 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 SEMgrSvc; C:\WINDOWS\SysWOW64\SEMgrSvc.dll [1270784 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 SENS; C:\WINDOWS\SysWOW64\sens.dll [73728 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SensorService; C:\WINDOWS\SysWOW64\SensorService.dll [487424 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SensrSvc; C:\WINDOWS\SysWOW64\sensrsvc.dll [176640 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SharedAccess; C:\WINDOWS\SysWOW64\ipnathlp.dll [629760 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SharedRealitySvc; C:\WINDOWS\SysWOW64\SharedRealitySvc.dll [472576 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S4 shpamsvc; C:\WINDOWS\SysWOW64\Windows.SharedPC.AccountManager.dll [239104 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 SmsRouter; C:\WINDOWS\SysWOW64\SmsRouterSvc.dll [599552 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 SSDPSRV; C:\WINDOWS\SysWOW64\ssdpsrv.dll [240128 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 SstpSvc; C:\WINDOWS\SysWOW64\sstpsvc.dll [206336 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 ss_conn_service; C:\Program Files\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-06-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) R2 ss_conn_service2; C:\Program Files\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [935352 2020-06-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) R2 stisvc; C:\WINDOWS\SysWOW64\wiaservc.dll [669696 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 StorSvc; C:\WINDOWS\SysWOW64\storsvc.dll [1007616 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 svsvc; C:\WINDOWS\SysWOW64\svsvc.dll [13824 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 swprv; C:\WINDOWS\SysWOW64\swprv.dll [456704 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 SysMain; C:\WINDOWS\SysWOW64\sysmain.dll [996352 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 SystemEventsBroker; C:\WINDOWS\SysWOW64\SystemEventsBrokerServer.dll [275968 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 TabletInputService; C:\WINDOWS\SysWOW64\TabSvc.dll [223232 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [15110968 2022-11-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 TermService; C:\WINDOWS\SysWOW64\termsrv.dll [1060352 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] <==== UWAGA (Brak ServiceDLL) R2 Themes; C:\WINDOWS\SysWOW64\themeservice.dll [67072 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 TimeBrokerSvc; C:\WINDOWS\SysWOW64\TimeBrokerServer.dll [172032 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 TrkWks; C:\WINDOWS\SysWOW64\trkwks.dll [112128 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 TroubleshootingSvc; C:\WINDOWS\SysWOW64\MitigationClient.dll [394752 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 UmRdpService; C:\WINDOWS\SysWOW64\umrdp.dll [421888 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [12288 2022-05-24] (Microsoft) [Brak podpisu cyfrowego] S3 UserDataSvc; C:\WINDOWS\SysWOW64\userdataservice.dll [1536512 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 UserManager; C:\WINDOWS\SysWOW64\usermgr.dll [1282048 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 UsoSvc; C:\WINDOWS\SysWOW64\usosvc.dll [520192 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 VC10SecS; C:\Program Files (x86)\Virtual CD v10\System\VC10SecS.exe [146976 2016-05-02] (H und H Software GmbH -> H+H Software GmbH) S3 vmicrdv; C:\WINDOWS\SysWOW64\icsvcext.dll [311808 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 vmicvss; C:\WINDOWS\SysWOW64\icsvcext.dll [311808 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 W32Time; C:\WINDOWS\SysWOW64\w32time.dll [495616 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 WaaSMedicSvc; C:\WINDOWS\SysWOW64\WaaSMedicSvc.dll [355840 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WalletService; C:\WINDOWS\SysWOW64\WalletService.dll [430592 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WarpJITSvc; C:\WINDOWS\SysWOW64\Windows.WARP.JITService.dll [61952 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 WbioSrvc; C:\WINDOWS\SysWOW64\wbiosrvc.dll [955904 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 Wcmsvc; C:\WINDOWS\SysWOW64\wcmsvc.dll [1036800 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 wcncsvc; C:\WINDOWS\SysWOW64\wcncsvc.dll [478208 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Wecsvc; C:\WINDOWS\SysWOW64\wecsvc.dll [199680 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WEPHOSTSVC; C:\WINDOWS\SysWOW64\wephostsvc.dll [27648 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 wercplsupport; C:\WINDOWS\SysWOW64\wercplsupport.dll [122880 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WerSvc; C:\WINDOWS\SysWOW64\WerSvc.dll [224256 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WFDSConMgrSvc; C:\WINDOWS\SysWOW64\wfdsconmgrsvc.dll [740352 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WiaRpc; C:\WINDOWS\SysWOW64\wiarpc.dll [83968 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-02-15] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WlanSvc; C:\WINDOWS\SysWOW64\wlansvc.dll [2656768 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 wlidsvc; C:\WINDOWS\SysWOW64\wlidsvc.dll [2157568 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 wlpasvc; C:\WINDOWS\SysWOW64\lpasvc.dll [1390080 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WManSvc; C:\WINDOWS\SysWOW64\Windows.Management.Service.dll [863744 2019-09-16] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [19968 2022-05-24] (Microsoft) [Brak podpisu cyfrowego] S3 WpcMonSvc; C:\WINDOWS\SysWOW64\WpcDesktopMonSvc.dll [2120704 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WPDBusEnum; C:\WINDOWS\SysWOW64\wpdbusenum.dll [83456 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 WpnService; C:\WINDOWS\SysWOW64\WpnService.dll [252416 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S2 WpnUserService; C:\WINDOWS\SysWOW64\WpnUserService.dll [82432 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 wuauserv; C:\WINDOWS\SysWOW64\wuaueng.dll [3105280 2019-10-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WwanSvc; C:\WINDOWS\SysWOW64\wwansvc.dll [1761792 2019-07-09] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 XblAuthManager; C:\WINDOWS\SysWOW64\XblAuthManager.dll [1063936 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 XblGameSave; C:\WINDOWS\SysWOW64\XblGameSave.dll [1263616 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 XboxGipSvc; C:\WINDOWS\SysWOW64\XboxGipSvc.dll [72704 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 XboxNetApiSvc; C:\WINDOWS\SysWOW64\XboxNetApiSvc.dll [1268224 2019-03-19] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 RBMS_OptimaBI; C:\Program Files (x86)\Comarch ERP Optima\Analizy BI\bin\reports book\Comarch.BI.Mobile.Service.exe [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [36280 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> ) R0 EPMVolFl; C:\WINDOWS\System32\drivers\EPMVolFl.sys [30136 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> Windows (R) Codename Longhorn DDK provider) R0 EUDCPEPM; C:\WINDOWS\System32\drivers\EUDCPEPM.sys [85424 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) R1 EUEDKEPM; C:\WINDOWS\system32\drivers\EUEDKEPM.sys [33712 2020-02-23] (CHENGDU YIWO Tech Development Co., Ltd. -> CHENGDU YIWO Tech Development Co., Ltd) S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-12-27] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R2 NPF; C:\WINDOWS\System32\drivers\npf.sys [36600 2023-02-21] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) R2 NPF; C:\Windows\SysWOW64\drivers\npf.sys [36600 2019-03-14] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [49152 2020-09-01] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 vcd10bus; C:\WINDOWS\System32\drivers\vcd10bus.sys [40464 2008-06-17] (H und H Software GmbH -> H+H Software GmbH) R1 vdrv1000; C:\WINDOWS\System32\drivers\vdrv1000.sys [226080 2012-12-06] (H und H Software GmbH -> H+H Software GmbH) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-02-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-02-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-02-15] (Microsoft Windows -> Microsoft Corporation) S3 EuGdiDrv; \SystemRoot\system32\EuGdiDrv.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-02-28 07:17 - 2023-02-28 07:18 - 000000000 ____D C:\FRST 2023-02-27 14:57 - 2023-02-27 14:58 - 000000000 ____D C:\Program Files (x86)\UsbFix 2023-02-27 14:57 - 2023-02-27 14:57 - 000003270 _____ C:\WINDOWS\system32\Tasks\UsbFix Boot Scan 2023-02-27 14:57 - 2023-02-27 14:57 - 000003268 _____ C:\WINDOWS\system32\Tasks\UsbFix Monitor 2023-02-27 10:17 - 2023-02-27 10:30 - 000000000 ____D C:\Users\kamil\Documents\fv medycyna 2023-02-24 10:37 - 2023-02-24 10:37 - 000310884 _____ C:\Users\kamil\Documents\24 48 machines quotation 20230224.pdf 2023-02-23 15:13 - 2023-02-23 15:13 - 005571056 _____ C:\Users\kamil\Downloads\Oferta Hydrosprzęt - Copy.pdf 2023-02-23 06:59 - 2023-02-23 06:59 - 000009279 _____ C:\Users\kamil\Desktop\1. 2023_BZP 00095928_01.pdf 2023-02-21 09:36 - 2023-02-21 09:36 - 000000000 ____D C:\Users\kamil\Documents\TP-Link 2023-02-21 09:36 - 2023-02-21 09:36 - 000000000 ____D C:\Users\kamil\AppData\Roaming\TP-Link 2023-02-21 09:33 - 2023-02-21 09:33 - 000036600 _____ (Riverbed Technology, Inc.) C:\WINDOWS\system32\Drivers\npf.sys 2023-02-21 09:33 - 2023-02-21 09:33 - 000001406 _____ C:\Users\Public\Desktop\VIGI Security Manager.lnk 2023-02-21 09:33 - 2023-02-21 09:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VIGI Security Manager 2023-02-21 09:33 - 2023-02-21 09:33 - 000000000 ____D C:\Program Files (x86)\TP-Link 2023-02-21 07:07 - 2023-02-23 09:17 - 000000000 ____D C:\Program Files\Mozilla Thunderbird 2023-02-20 14:05 - 2023-02-20 14:05 - 000005921 _____ C:\Users\kamil\AppData\Local\recently-used.xbel 2023-02-20 11:57 - 2023-02-20 11:57 - 000072153 _____ C:\Users\kamil\Documents\20230220_115354850_CEN2302201095348_4UHGWF_001_trn_exp_confirm.pdf 2023-02-17 13:56 - 2023-02-17 13:56 - 000187487 _____ C:\Users\kamil\Documents\202302FVxk230001150074.pdf 2023-02-17 08:57 - 2023-02-17 08:57 - 000110259 _____ C:\Users\kamil\Documents\proforma_v2_i_106-02-23-PF-UI.pdf 2023-02-16 15:03 - 2023-02-16 15:03 - 000158361 _____ C:\Users\kamil\Documents\Sales invoice - Pro forma invoice - 2023-02-16.pdf 2023-02-16 07:55 - 2023-02-16 07:55 - 000000000 ___HD C:\$WinREAgent 2023-02-15 13:30 - 2023-02-15 13:30 - 000057657 _____ C:\Users\kamil\Documents\faktura (1).pdf 2023-02-15 07:06 - 2023-02-15 07:06 - 000702571 _____ C:\Users\kamil\Desktop\Flashbay_Wycena_Q1609208-2.pdf 2023-02-14 08:52 - 2023-02-14 08:52 - 000150601 _____ C:\Users\kamil\Downloads\Faktura_Vat_14572_naz_02_2023.pdf 2023-02-14 08:52 - 2023-02-14 08:52 - 000149978 _____ C:\Users\kamil\Downloads\Faktura_Vat_14466_naz_02_2023.pdf 2023-02-14 08:34 - 2023-02-14 08:34 - 001155074 _____ C:\Users\kamil\Documents\Scan2023-02-14_083354.pdf 2023-02-14 07:03 - 2023-02-14 07:03 - 000101651 _____ C:\Users\kamil\Documents\CV_Maciej_Czajkowski.pdf 2023-02-13 10:50 - 2023-02-13 10:50 - 003063836 _____ C:\Users\kamil\Documents\BOMAG BC 771 RB.pdf 2023-02-13 07:28 - 2023-02-13 07:28 - 000212484 _____ C:\Users\kamil\Downloads\003.webp 2023-02-13 07:10 - 2023-02-13 07:10 - 000192177 _____ C:\Users\kamil\Documents\document.pdf 2023-02-08 11:21 - 2023-02-08 11:21 - 003323624 _____ C:\Users\kamil\Documents\KCMB_V02.12.zip 2023-02-07 09:22 - 2023-02-07 09:22 - 000129871 _____ C:\Users\kamil\Desktop\piotrpanek8705@gmail.com - dostawa minikoparki Liugong 9035E - 186.pdf 2023-02-03 11:45 - 2023-02-03 11:49 - 280349389 _____ C:\Users\kamil\Desktop\771RB - wymiary.pdf 2023-02-03 11:44 - 2023-02-03 11:44 - 001478520 _____ C:\Users\kamil\Desktop\671RS - wymiary.pdf 2023-02-02 10:15 - 2023-02-02 10:15 - 003057782 _____ C:\Users\kamil\Documents\Kukla 2 szyby.pdf 2023-02-01 13:53 - 2023-02-01 13:53 - 000072183 _____ C:\Users\kamil\Documents\20230201_123010400_CEN2302010577125_4UHGWF_001_trn_exp_confirm.pdf 2023-02-01 12:59 - 2023-02-01 12:59 - 000077669 _____ C:\Users\kamil\Downloads\CV_ML.pdf 2023-02-01 12:34 - 2023-02-01 12:34 - 000331595 _____ C:\Users\kamil\Downloads\SWIADECTWO-UKONCZENIA.pdf 2023-01-31 13:47 - 2023-01-31 13:55 - 000000000 ____D C:\Users\kamil\Documents\katalog mostów cat 980k ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-02-28 07:20 - 2019-09-23 12:34 - 000000000 ____D C:\Program Files (x86)\Google 2023-02-28 07:18 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-02-28 07:04 - 2020-01-13 07:48 - 000000000 ____D C:\Users\kamil\AppData\Roaming\Remote Utilities Files 2023-02-28 07:02 - 2022-11-17 09:10 - 000000000 ____D C:\Program Files\CCleaner 2023-02-28 07:02 - 2019-09-12 07:55 - 000000000 ____D C:\Users\kamil\AppData\Local\Packages 2023-02-28 07:00 - 2022-09-05 06:03 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-02-28 06:59 - 2019-09-12 08:02 - 000000000 ____D C:\Users\kamil\AppData\LocalLow\Mozilla 2023-02-28 06:56 - 2020-08-05 09:59 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-02-28 06:56 - 2020-08-05 09:59 - 000002286 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-02-28 06:56 - 2019-09-23 12:35 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-02-28 06:55 - 2022-10-24 10:11 - 000001960 _____ C:\Users\Public\Desktop\UsbFix Anti-Malware.lnk 2023-02-28 06:55 - 2019-09-13 09:19 - 000000000 ____D C:\Users\kamil\AppData\Roaming\GG 2023-02-28 06:55 - 2019-09-12 12:05 - 000000000 __SHD C:\Users\kamil\IntelGraphicsProfiles 2023-02-27 15:06 - 2019-09-21 08:34 - 000002470 ____H C:\Users\kamil\Documents\Default.rdp 2023-02-27 11:01 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2023-02-27 08:46 - 2020-09-01 12:08 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-02-27 08:00 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-02-27 08:00 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-02-27 07:03 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-02-23 15:14 - 2020-09-01 12:09 - 000000000 ____D C:\Users\kamil 2023-02-23 09:54 - 2021-02-08 08:52 - 000000000 ____D C:\Program Files (x86)\Comarch ERP Optima 2023-02-23 09:54 - 2019-09-12 08:28 - 000000000 ____D C:\ProgramData\Comarch ERP Optima 2023-02-23 09:26 - 2019-09-25 11:54 - 000000000 ____D C:\Program Files\Microsoft Office 2023-02-23 09:25 - 2020-09-01 12:18 - 001771160 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-02-23 09:25 - 2019-12-07 16:08 - 000784340 _____ C:\WINDOWS\system32\perfh015.dat 2023-02-23 09:25 - 2019-12-07 16:08 - 000152236 _____ C:\WINDOWS\system32\perfc015.dat 2023-02-23 09:18 - 2020-09-01 12:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-02-23 09:18 - 2020-09-01 12:08 - 000853480 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-02-23 09:18 - 2020-09-01 12:08 - 000008192 ___SH C:\DumpStack.log.tmp 2023-02-23 09:18 - 2019-10-14 10:50 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs 2023-02-23 09:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-02-23 09:17 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2023-02-23 09:17 - 2019-09-12 08:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-02-23 06:59 - 2020-09-01 12:15 - 000004188 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1568271519 2023-02-23 06:59 - 2019-09-12 07:58 - 000001444 _____ C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2023-02-23 06:58 - 2019-09-12 07:57 - 000000000 ___RD C:\Users\kamil\OneDrive 2023-02-22 06:57 - 2019-09-12 08:02 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk 2023-02-21 07:10 - 2020-01-23 07:42 - 000000000 ____D C:\iVMS-4200 2023-02-20 14:27 - 2019-09-13 10:10 - 000000000 ____D C:\Users\kamil\AppData\Local\babl-0.1 2023-02-20 14:05 - 2019-09-13 10:10 - 000000000 ____D C:\Users\kamil\AppData\Local\gtk-2.0 2023-02-16 08:02 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-02-16 08:00 - 2020-09-01 12:09 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-02-15 07:14 - 2019-08-15 23:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-02-13 10:48 - 2020-02-18 14:36 - 000000000 ____D C:\Users\kamil\Desktop\Oferty 2023-02-10 14:12 - 2019-11-05 11:32 - 000000266 __RSH C:\ProgramData\ntuser.pol 2023-02-10 10:33 - 2020-07-28 09:57 - 000000130 _____ C:\WINDOWS\SysWOW64\rufus.ini 2023-02-08 11:01 - 2019-08-15 23:03 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-02-07 09:08 - 2022-11-17 09:10 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-02-06 07:05 - 2019-09-12 07:58 - 000000000 ____D C:\Users\kamil\AppData\Local\PlaceholderTileLogoFolder 2023-02-03 07:07 - 2020-09-01 12:15 - 000003566 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-02-03 07:07 - 2020-09-01 12:15 - 000003442 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-02-02 12:37 - 2021-12-13 07:04 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4200854220-3294602373-1765642704-1003 2023-02-02 12:37 - 2020-09-01 12:15 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4200854220-3294602373-1765642704-1003 2023-02-02 12:37 - 2020-09-01 12:09 - 000002462 _____ C:\Users\kamil\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-10-17 08:49 - 2022-10-24 11:20 - 000000128 ____H () C:\Users\kamil\AppData\Roaming\d9135c394decbfc1cfce595848be5701eeb798e2 2022-10-17 08:49 - 2022-10-24 11:20 - 000000128 ____H () C:\Users\kamil\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6 2023-02-20 14:05 - 2023-02-20 14:05 - 000005921 _____ () C:\Users\kamil\AppData\Local\recently-used.xbel 2019-09-26 12:21 - 2019-09-26 12:21 - 000000003 _____ () C:\Users\kamil\AppData\Local\updater.log 2019-09-26 12:21 - 2019-09-26 12:21 - 000000424 _____ () C:\Users\kamil\AppData\Local\UserProducts.xml ==================== FLock ============================== 2020-03-31 12:56 C:\ProgramData\Brother ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================