Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 06-10-2023 Uruchomiony przez apiec (administrator) DESKTOP-FFUIE0P (SAMSUNG ELECTRONICS CO., LTD. 300V3A/300V4A/300V5A/200A4B/200A5B) (17-10-2023 00:17:53) Uruchomiony z C:\Users\apiec\Downloads\frst\FRST64.exe Załadowane profile: apiec Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.3570 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (explorer.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Huawei Technologies Co., Ltd. -> ) C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (services.exe ->) (Huawei Technologies Co., Ltd. -> ) C:\ProgramData\DatacardService\HWDeviceService64.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileCoAuth.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296 2015-08-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242200 2016-11-11] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Ograniczenia <==== UWAGA HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\Run: [MicrosoftEdgeAutoLaunch_160089A1A224CB711EB4F1AC9F0AD24C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4131264 2023-10-13] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2588584 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {9fb291af-66a4-11ee-9e27-e8039a22a11f} - "E:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {9fb29264-66a4-11ee-9e27-e8039a22a11f} - "E:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\PhotoScreensaver.scr [581120 2023-10-15] (Microsoft Windows -> Microsoft Corporation) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {508D2BC7-827B-44DD-9CDB-B97092340ACA} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe [5329808 2023-10-15] (Microsoft Windows -> Microsoft Corporation) Task: {4B0EB8D6-261B-4214-BFDA-7C895142A2E2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {A0ED7DB6-8DDC-4B68-A221-B9D384FFB061} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {E6A7D084-6645-467A-9D28-B61E0D022506} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0A95E3A4-209C-4C81-9FC4-CC6D522DF52D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MpCmdRun.exe [1596304 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BBE861D4-08F1-4726-9B2F-4A50D194D909} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-10-11] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {6D010AAE-8027-471D-8D1B-DBA54DF82C5A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718240 2023-10-11] (Mozilla Corporation -> Mozilla Foundation) Task: {885C3460-3874-4DA0-A070-EE3D098F9B20} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130832 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) Task: {D36937C4-B6AB-4A33-9630-18DC7138F41E} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3316565980-1593576605-2437453199-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130832 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\..\Interfaces\{45f73f01-4f1a-4466-8e7d-6f3c1e5633da}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{7c0972cc-b49e-4e77-9dd6-f3f3afaf8c7a}: [NameServer] 194.204.159.1 194.204.152.34 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default [2023-10-17] Edge HomePage: Default -> hxxp://bing.com/ Edge StartupUrls: Default -> "hxxp://bing.com/" Edge Extension: (Edge relevant text changes) - C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-14] Edge Extension: (Microsoft Edge DevTools Enhancements) - C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kfbdpdaobnofkbopebjglnaadopfikhh [2023-09-12] FireFox: ======== FF ProfilePath: C:\Users\apiec\AppData\Roaming\Mozilla\Firefox\Profiles\rvx86qx3.Domyślny użytkownik [2023-10-17] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.204.1001.0003\FileSyncHelper.exe [3504552 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) R2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] (Huawei Technologies Co., Ltd. -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.204.1001.0003\OneDriveUpdaterService.exe [3841976 2023-10-12] (Microsoft Corporation -> Microsoft Corporation) S2 PLAY ONLINE. RunOuc; C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> ) S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [41928 2023-09-16] (Microsoft Corporation -> Microsoft) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [142304 2022-06-01] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\NisSrv.exe [3116904 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23090.2008-0\MsMpEng.exe [133584 2023-10-14] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Browser; %SystemRoot%\System32\browser.dll [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ew_hwusbdev; C:\WINDOWS\system32\DRIVERS\ew_hwusbdev.sys [109568 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 ew_usbenumfilter; C:\WINDOWS\System32\drivers\ew_usbenumfilter.sys [14976 2012-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 huawei_enumerator; C:\WINDOWS\System32\drivers\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 hwusb_cdcacm; C:\WINDOWS\system32\DRIVERS\ew_cdcacm.sys [124672 2014-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 hwusb_wwanecm; C:\WINDOWS\System32\drivers\ew_wwanecm.sys [379392 2014-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55856 2023-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [572712 2023-10-14] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105872 2023-10-14] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-10-17 00:17 - 2023-10-17 00:18 - 000000000 ____D C:\FRST 2023-10-17 00:17 - 2023-10-17 00:17 - 000000000 ____D C:\Users\apiec\Downloads\frst 2023-10-15 18:36 - 2023-10-15 18:36 - 000016059 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-10-15 18:18 - 2023-10-15 18:18 - 000000000 ___HD C:\$WinREAgent 2023-10-15 18:14 - 2023-10-15 18:14 - 000000000 ____D C:\ProgramData\PLUG 2023-10-15 18:08 - 2023-10-15 18:08 - 000000000 ____D C:\Program Files\RUXIM 2023-10-11 14:11 - 2023-10-15 18:14 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-10-10 17:39 - 2023-10-10 17:39 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\HTML Help 2023-10-10 08:39 - 2023-10-15 18:56 - 101711872 _____ C:\WINDOWS\system32\config\SOFTWARE 2023-10-09 15:22 - 2023-10-09 15:22 - 000001076 _____ C:\Users\Public\Desktop\PLAY ONLINE.lnk 2023-10-09 15:22 - 2023-10-09 15:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PLAY ONLINE 2023-10-09 15:21 - 2023-10-09 15:22 - 000000000 ____D C:\Program Files (x86)\PLAY ONLINE 2023-10-09 14:52 - 2023-10-09 14:52 - 000003656 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask 2023-10-09 14:31 - 2023-10-09 14:31 - 000000207 _____ C:\WINDOWS\tweaking.com-regbackup-DESKTOP-FFUIE0P-Windows-10-Home-(64-bit).dat 2023-10-09 14:30 - 2023-10-09 14:30 - 000000000 ____D C:\RegBackup 2023-10-09 14:28 - 2023-10-09 14:29 - 000388892 _____ C:\WINDOWS\Tweaking.com - Windows Repair Setup Log.txt 2023-10-09 14:28 - 2023-10-09 14:28 - 000000000 ____D C:\Program Files (x86)\Tweaking.com 2023-10-09 14:27 - 2023-10-09 14:27 - 058118520 _____ (Tweaking.com) C:\Users\apiec\Downloads\tweaking.com_windows_repair_aio_setup.exe 2023-10-08 20:08 - 2023-10-08 20:08 - 000000266 __RSH C:\ProgramData\ntuser.pol 2023-10-08 16:57 - 2023-10-08 16:58 - 425525248 _____ C:\Users\apiec\Downloads\Windows.iso 2023-10-08 16:11 - 2023-10-08 16:11 - 001433160 _____ (Akeo Consulting) C:\Users\apiec\Downloads\rufus-4.2.exe 2023-10-08 15:56 - 2023-10-08 15:56 - 000000000 ___HD C:\$Windows.~WS 2023-10-08 14:27 - 2023-10-08 14:27 - 000000000 ____D C:\$WINDOWS.~BT 2023-10-03 13:54 - 2023-10-12 06:27 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-10-03 13:54 - 2023-10-12 06:27 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-10-01 14:44 - 2023-10-09 14:51 - 000000000 ____D C:\Users\apiec\AppData\Local\CrashDumps 2023-10-01 05:44 - 2023-10-01 05:44 - 000000173 ____R C:\Users\apiec\OneDrive\Documents\Notes użytkownika Andrzej.url 2023-09-30 15:48 - 2023-09-30 15:48 - 000000000 ____D C:\Users\apiec\AppData\Local\Backup 2023-09-25 15:33 - 2023-09-25 15:33 - 047667808 _____ (Adlice Software ) C:\Users\apiec\Downloads\RogueKiller_setup.exe 2023-09-21 16:14 - 2023-09-21 16:14 - 008791352 _____ (Malwarebytes) C:\Users\apiec\Downloads\adwcleaner.exe 2023-09-21 16:02 - 2023-10-08 17:11 - 000000000 ____D C:\WINDOWS\Panther 2023-09-20 18:10 - 2023-09-20 18:10 - 000000000 ____D C:\Users\apiec\AppData\Roaming\com.adobe.dunamis 2023-09-20 18:10 - 2023-09-20 18:10 - 000000000 ____D C:\Users\apiec\AppData\LocalLow\Adobe 2023-09-20 18:10 - 2023-09-20 18:10 - 000000000 ____D C:\Users\apiec\AppData\Local\SolidDocuments 2023-09-20 18:10 - 2023-09-20 18:10 - 000000000 ____D C:\Users\apiec\AppData\Local\Adobe 2023-09-20 18:10 - 2023-09-20 18:10 - 000000000 ____D C:\Users\apiec\.ms-ad 2023-09-20 18:07 - 2023-09-20 18:07 - 000000000 ____D C:\Program Files\Adobe 2023-09-20 18:05 - 2023-09-20 18:13 - 000000000 ____D C:\Program Files\Common Files\Adobe 2023-09-20 18:05 - 2023-09-20 18:10 - 000000000 ____D C:\ProgramData\Adobe 2023-09-20 17:29 - 2023-10-12 06:27 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3316565980-1593576605-2437453199-1001 2023-09-18 15:36 - 2023-09-18 15:40 - 000000000 ____D C:\WINDOWS\pss 2023-09-18 15:13 - 2023-09-18 15:13 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2023-09-18 15:11 - 2023-10-15 19:01 - 001758684 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-09-18 15:11 - 2023-10-15 18:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-09-18 15:11 - 2023-09-18 15:11 - 000003494 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-09-18 15:11 - 2023-09-18 15:11 - 000003270 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-09-18 15:11 - 2023-09-18 15:11 - 000000020 ___SH C:\Users\apiec\ntuser.ini 2023-09-18 15:11 - 2023-09-18 15:11 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2023-09-18 15:11 - 2023-09-18 15:11 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime 2023-09-18 15:10 - 2023-09-19 19:19 - 000014341 _____ C:\WINDOWS\diagwrn.xml 2023-09-18 15:10 - 2023-09-19 19:19 - 000009528 _____ C:\WINDOWS\diagerr.xml 2023-09-18 15:06 - 2023-09-18 15:06 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2023-09-18 15:06 - 2023-09-18 15:06 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\SystemCertificates 2023-09-18 15:06 - 2023-09-18 15:06 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\Network 2023-09-18 15:06 - 2023-09-18 15:06 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\Crypto 2023-09-18 15:04 - 2023-09-20 19:05 - 000000000 ____D C:\Users\apiec 2023-09-18 15:04 - 2023-09-18 15:11 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\Windows 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\Ustawienia lokalne 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\Szablony 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\Moje dokumenty 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\Menu Start 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\Dane aplikacji 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\AppData\Local\Tymczasowe pliki internetowe 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\AppData\Local\Historia 2023-09-18 15:04 - 2023-09-18 15:04 - 000000000 _SHDL C:\Users\apiec\AppData\Local\Dane aplikacji 2023-09-18 15:02 - 2023-10-16 17:24 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-09-18 15:02 - 2023-10-15 18:56 - 000444032 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-09-18 14:51 - 2023-09-18 16:02 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2023-09-18 14:50 - 2023-09-18 14:51 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2023-09-18 14:48 - 2023-09-18 14:48 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2023-09-18 14:48 - 2023-09-18 14:48 - 000000000 ____D C:\Program Files\Reference Assemblies 2023-09-18 14:48 - 2023-09-18 14:48 - 000000000 ____D C:\Program Files\MSBuild 2023-09-18 14:48 - 2023-09-18 14:48 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2023-09-18 14:48 - 2023-09-18 14:48 - 000000000 ____D C:\Program Files (x86)\MSBuild 2023-09-18 14:39 - 2023-09-18 14:39 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2023-09-18 14:01 - 2023-10-08 17:11 - 000000000 ____D C:\ESD ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-10-16 23:56 - 2022-06-14 19:04 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-10-16 23:50 - 2022-06-09 11:10 - 000000000 ___RD C:\Users\apiec\OneDrive 2023-10-16 18:44 - 2023-03-10 07:39 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Notepad++ 2023-10-16 18:44 - 2022-06-09 11:09 - 000000000 ____D C:\Users\apiec\AppData\Local\Packages 2023-10-16 16:43 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-10-16 05:08 - 2022-06-09 11:19 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-10-16 04:35 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2023-10-15 19:01 - 2019-12-07 17:08 - 000770188 _____ C:\WINDOWS\system32\perfh015.dat 2023-10-15 19:01 - 2019-12-07 17:08 - 000147620 _____ C:\WINDOWS\system32\perfc015.dat 2023-10-15 19:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-10-15 19:00 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-10-15 18:56 - 2022-06-09 10:59 - 000008192 ___SH C:\DumpStack.log.tmp 2023-10-15 18:56 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-10-15 18:54 - 2019-12-07 17:11 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-10-15 18:54 - 2019-12-07 17:11 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-10-15 18:54 - 2019-12-07 17:08 - 000000000 ____D C:\WINDOWS\SysWOW64\pl 2023-10-15 18:54 - 2019-12-07 17:08 - 000000000 ____D C:\WINDOWS\system32\pl 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Com 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Provisioning 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\IME 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System 2023-10-15 18:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-10-15 18:54 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2023-10-15 18:52 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-10-15 18:50 - 2019-12-07 17:11 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-10-15 18:50 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2023-10-15 18:50 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2023-10-15 18:15 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-10-15 18:14 - 2022-06-21 15:16 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-10-15 18:14 - 2022-06-14 19:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-10-15 18:12 - 2022-06-09 12:05 - 000000000 ____D C:\ProgramData\Package Cache 2023-10-15 18:11 - 2022-06-15 12:45 - 000000000 ____D C:\Program Files (x86)\dotnet 2023-10-15 18:09 - 2022-07-14 15:15 - 000000000 ____D C:\Users\Default\.dotnet 2023-10-15 18:09 - 2022-06-09 12:06 - 000000000 ____D C:\Program Files\dotnet 2023-10-15 18:07 - 2022-06-09 11:19 - 181553176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-10-15 16:15 - 2022-06-09 11:00 - 000002408 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-10-14 15:14 - 2022-06-09 11:00 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-10-12 06:13 - 2022-06-09 11:09 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-10-12 04:07 - 2022-06-14 19:04 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-10-10 17:26 - 2022-06-09 11:09 - 000000000 ____D C:\ProgramData\Packages 2023-10-10 15:22 - 2023-03-10 07:39 - 000000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2023-10-10 08:39 - 2023-07-02 17:59 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2023-10-09 15:22 - 2022-06-09 11:53 - 000000000 ____D C:\ProgramData\DatacardService 2023-10-08 17:36 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2023-10-01 05:13 - 2022-06-10 14:06 - 000000000 ____D C:\Users\apiec\AppData\Local\PlaceholderTileLogoFolder 2023-09-27 06:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2023-09-27 06:05 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\appcompat 2023-09-21 14:51 - 2022-06-09 11:09 - 000000000 ____D C:\Users\apiec\AppData\Local\D3DSCache 2023-09-20 18:10 - 2022-06-09 11:09 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Adobe 2023-09-20 16:21 - 2023-06-02 17:37 - 000000000 ____D C:\Users\apiec\OneDrive\Documents\Admin 2023-09-18 16:13 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2023-09-18 16:02 - 2023-09-16 17:39 - 000000000 ____D C:\Program Files\IIS 2023-09-18 16:02 - 2023-09-16 14:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.6 2023-09-18 16:02 - 2019-12-07 11:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\spool 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState 2023-09-18 16:02 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2023-09-18 15:11 - 2022-06-09 11:09 - 000000000 ___RD C:\Users\apiec\3D Objects 2023-09-18 15:11 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT 2023-09-18 15:11 - 2019-12-07 11:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2023-09-18 15:06 - 2019-12-07 11:14 - 000000000 __RSD C:\WINDOWS\Media 2023-09-18 15:04 - 2022-06-09 11:08 - 000000000 ____D C:\Program Files\Elantech 2023-09-18 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Windows 2023-09-18 15:03 - 2022-06-09 11:08 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2023-09-18 15:01 - 2019-12-07 11:18 - 000000000 ____D C:\WINDOWS\Setup 2023-09-18 14:58 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2023-09-18 14:52 - 2022-06-09 12:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2022 2023-09-18 14:52 - 2022-06-09 11:08 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2023-09-18 14:51 - 2022-06-09 11:08 - 000000000 ____D C:\Program Files\Realtek 2023-09-18 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2023-09-18 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2023-09-18 14:00 - 2022-06-09 11:13 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\Spelling ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-07-17 18:00 - 2022-07-17 18:00 - 000003584 _____ () C:\Users\apiec\Program.exe 2023-08-02 11:28 - 2023-08-02 11:28 - 000010673 _____ () C:\Users\apiec\AppData\Local\recently-used.xbel 2022-10-27 16:05 - 2023-08-17 14:44 - 000007599 _____ () C:\Users\apiec\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================