Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 16.01.2024 Uruchomiony przez skill (administrator) DESKTOP-KNVOMFR (Micro-Star International Co., Ltd. CX61 0OC/CX61 0OD/CX61 0OL) (18-01-2024 15:50:18) Uruchomiony z C:\Users\skill\Downloads\FRST64.exe Załadowane profile: skill Platforma: Microsoft Windows 10 Pro Wersja 22H2 19045.3930 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eOppFrame.exe (C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (cmd.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\BrowserPrivacyAndSecurity.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18> (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.352\GoogleCrashHandler64.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe (services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE (services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3375064 2023-12-11] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [19572528 2021-09-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [195576 2024-01-17] (ESET, spol. s r.o. -> ESET) HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKLM\Software\Policies\...\system: [AllowClipboardHistory] 0 HKLM\Software\Policies\...\system: [EnableCloudClipboard] 0 HKLM\Software\Policies\...\system: [CloudClipboardAutomaticUpload] 0 HKLM\Software\Policies\...\system: [EnableActivityFeed] 0 HKLM\Software\Policies\...\system: [PublishUserActivities] 0 HKLM\Software\Policies\...\system: [UploadUserActivities] 0 HKU\S-1-5-21-2455803330-2812840290-1380293714-1001\...\Run: [Microsoft Edge Update] => C:\Users\skill\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\MicrosoftEdgeUpdateCore.exe [264264 2023-11-23] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-2455803330-2812840290-1380293714-1001\...\Run: [MicrosoftEdgeAutoLaunch_D10BEFA51995C13B394E9D44B165F29B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3854376 2024-01-17] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\HP E111 Status Monitor: c:\windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\120.0.6099.224\Installer\chrmstp.exe [2024-01-17] (Google LLC -> Google LLC) Startup: C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\svhost.exe [2023-12-04] (Git) [Brak podpisu cyfrowego] GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {EE827D4C-D931-4134-85BC-85C9BED39E44} - System32\Tasks\Christmas Task (One-Time) => "C:\Program Files (x86)\IObit\Advanced SystemCare\Pub\xmas.exe" /xr (Brak pliku) Task: {AD87565B-B0E3-4DE9-AB15-6EE03BA1B092} - System32\Tasks\Driver Booster SkipUAC (skill) => E:\drivebooster\Driver Booster\11.1.0\DriverBooster.exe [9044456 2023-10-26] (IObit CO., LTD -> IObit) Task: {18832F2E-6CBC-438E-8F45-5D3DDE6ABE13} - System32\Tasks\Driver Booster Update => E:\drivebooster\Driver Booster\11.1.0\AutoUpdate.exe [2524648 2023-09-28] (IObit CO., LTD -> IObit) Task: {4A5DCA5A-8B9A-422C-936F-E43FE77D1D70} - System32\Tasks\GoogleUpdateTaskMachineCore{BA2512F7-7475-4726-9DEF-8E329EE83534} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-11-22] (Google LLC -> Google LLC) Task: {538786E5-B8DD-486D-9848-B12198D5B547} - System32\Tasks\GoogleUpdateTaskMachineUA{3D45B49E-4B55-41AE-9E5F-4D37EC8BDB5F} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162080 2023-11-22] (Google LLC -> Google LLC) Task: {072F50D9-8418-4B50-A960-74BECB0238E7} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [5137472 2023-10-16] (Intel Corporation -> Intel Corporation) Task: {BF6A7F3E-BD97-4F08-AFA2-4D40BA94A3C7} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [5137472 2023-10-16] (Intel Corporation -> Intel Corporation) Task: {696ED25B-355E-4036-B30A-08F52F3DFEEF} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2455803330-2812840290-1380293714-1001Core{8B647C49-F667-4C5D-BF8B-58EF231E084E} => C:\Users\skill\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2023-11-23] (Microsoft Corporation -> Microsoft Corporation) Task: {363B3E10-D3E6-4353-9E60-CF22A1094455} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2455803330-2812840290-1380293714-1001UA{4BD722F9-8DAE-4839-A6E2-4E2A652E3876} => C:\Users\skill\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205880 2023-11-23] (Microsoft Corporation -> Microsoft Corporation) Task: {68A250BC-12B7-47CB-8C69-AC28914C7D0B} - System32\Tasks\Opera scheduled Autoupdate 1704315975 => C:\Users\skill\AppData\Local\Programs\Opera\launcher.exe [2350496 2023-12-22] (Opera Norway AS -> Opera Software) Task: {839B64DD-8C35-43C6-9078-5A9229B0DF79} - System32\Tasks\Optimize Push Notification Data File-S-1-5-21-2455803330-2812840290-1380293714-1001 => {201600D8-6EFF-48CE-B842-E14D37A0682D} C:\WINDOWS\System32\wpninprc.dll [24064 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {617BE669-301D-4E4E-9F32-2CBB7D0D5577} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\Windows\System32\Wscript.exe [170496 2023-12-04] (Microsoft Windows -> Microsoft Corporation) -> //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs" (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{b4932aff-76a1-45ba-89ef-34b45fa52fff}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{eaa06b54-df20-4828-8861-f5a9975dc711}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge Profile: C:\Users\skill\AppData\Local\Microsoft\Edge\User Data\Default [2024-01-16] Edge Extension: (Dokumenty Google offline) - C:\Users\skill\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-11-28] Edge Extension: (Edge relevant text changes) - C:\Users\skill\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-11-28] Chrome: ======= CHR Profile: C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default [2024-01-18] CHR Notifications: Default -> hxxps://www.facebook.com CHR HomePage: Default -> hxxp://onet.pl/ CHR StartupUrls: Default -> "hxxp://onet.pl/" CHR Extension: (alerabat.com | kupony i cashback) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2023-12-11] CHR Extension: (EditThisCookie) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2023-12-03] CHR Extension: (Dokumenty Google offline) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-01-17] CHR Extension: (New Tab Redirect) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\icpgjfneehieebagbmdbhnlpiopdcmna [2023-12-03] CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2024-01-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-11-22] CHR Extension: (ESET Browser Privacy & Security) - C:\Users\skill\AppData\Local\Google\Chrome\User Data\Default\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam [2024-01-17] CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [43784 2023-11-13] (Intel Corporation -> Intel) S3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [240392 2023-11-13] (Intel Corporation -> Intel) R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [2537928 2024-01-17] (ESET, spol. s r.o. -> ESET) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3850920 2024-01-17] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3850920 2024-01-17] (ESET, spol. s r.o. -> ESET) S3 ggsvc; E:\gameguard\acsvc.exe [338880 2023-11-22] (INPLERON LTD -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9405400 2024-01-02] (Malwarebytes Inc. -> Malwarebytes) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [534472 2023-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21047096 2023-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23110.3-0\NisSrv.exe [3174840 2023-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.23110.3-0\MsMpEng.exe [133592 2023-12-08] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 acdrv; C:\WINDOWS\system32\drivers\acdrv.sys [21561904 2024-01-16] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R3 busenum; C:\WINDOWS\System32\drivers\SteelBus64.sys [146944 2014-10-08] (Microsoft Windows Hardware Compatibility Publisher -> SteelSeries Corporation) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [215616 2024-01-17] (ESET, spol. s r.o. -> ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [120032 2024-01-17] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2023-09-12] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [254344 2024-01-17] (ESET, spol. s r.o. -> ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [55528 2024-01-17] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [81824 2024-01-17] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [124168 2024-01-17] (ESET, spol. s r.o. -> ESET) U5 FC-Link; C:\WINDOWS\system32\drivers\fc_link64.sys [56344 2022-11-04] (Microsoft Windows Hardware Compatibility Publisher -> OnMoon Company LLC) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222784 2024-01-16] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-11-27] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239576 2024-01-02] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 ndextlag; C:\WINDOWS\system32\DRIVERS\ndextlag.sys [59696 2023-03-16] (WHIMSTERS FINANCIAL SOLUTIONS LTD -> Skowsand Tecnologia LTDA) R1 nfextlag; C:\WINDOWS\System32\drivers\nfextlag.sys [102464 2023-10-12] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 SAlphamHid; C:\WINDOWS\System32\drivers\SAlpham64.sys [48792 2023-12-11] (SteelSeries ApS -> SteelSeries ApS) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [55856 2023-12-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [594304 2023-12-08] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2023-12-08] (Microsoft Windows -> Microsoft Corporation) S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscFileFilter.sys [X] S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\win10_amd64\AscRegistryFilter.sys [X] S3 iobit_monitor_server2021; \??\C:\Program Files (x86)\IObit\Advanced SystemCare\drivers\Monitor_win10_x64.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-01-18 15:50 - 2024-01-18 15:51 - 000017297 _____ C:\Users\skill\Downloads\FRST.txt 2024-01-18 15:50 - 2024-01-18 15:50 - 002389504 _____ (Farbar) C:\Users\skill\Downloads\FRST64.exe 2024-01-18 15:50 - 2024-01-18 15:50 - 000000000 ____D C:\Users\skill\Downloads\FRST-OlderVersion 2024-01-18 15:50 - 2024-01-18 15:50 - 000000000 ____D C:\FRST 2024-01-18 12:05 - 2024-01-18 12:05 - 000388608 _____ (Trend Micro Inc.) C:\Users\skill\Downloads\HijackThis_2.0.4.exe 2024-01-17 21:55 - 2024-01-17 21:55 - 000254344 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2024-01-17 21:55 - 2024-01-17 21:55 - 000215616 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2024-01-17 21:55 - 2024-01-17 21:55 - 000124168 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2024-01-17 21:55 - 2024-01-17 21:55 - 000120032 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2024-01-17 21:55 - 2024-01-17 21:55 - 000081824 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2024-01-17 21:55 - 2024-01-17 21:55 - 000000000 ____D C:\Users\skill\AppData\Local\ESET 2024-01-17 21:49 - 2024-01-17 21:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2024-01-17 21:49 - 2024-01-17 21:49 - 000000000 ____D C:\ProgramData\ESET 2024-01-17 21:49 - 2024-01-17 21:49 - 000000000 ____D C:\Program Files\ESET 2024-01-17 21:44 - 2024-01-17 21:44 - 008963864 _____ (ESET) C:\Users\skill\Downloads\eset_internet_security_live_installer.exe 2024-01-17 14:55 - 2024-01-17 14:55 - 000000000 ____D C:\Users\skill\Downloads\Nbox5800 Duo_Multiboot_v2 Multi MAC 09_2013 2024-01-17 14:54 - 2024-01-17 14:54 - 000813561 _____ C:\Users\skill\Downloads\Nbox5800 Duo_Multiboot_v2 Multi MAC 09_2013.zip 2024-01-17 14:45 - 2024-01-17 14:45 - 000811113 _____ C:\Users\skill\Downloads\Nbox Duo_Multiboot FreeBox+B4_team 03_2012 Wersja1b.zip 2024-01-17 14:45 - 2024-01-17 14:45 - 000000000 ____D C:\Users\skill\Downloads\Nbox Duo_Multiboot FreeBox+B4_team 03_2012 Wersja1b 2024-01-16 14:00 - 2024-01-16 14:00 - 000000000 ____D C:\ProgramData\HP 2024-01-16 14:00 - 2017-04-14 07:17 - 003744256 _____ (Hewlett-Packard Development Company, LP) C:\WINDOWS\SysWOW64\HPScanTRDrv_DJ2130.dll 2024-01-16 14:00 - 2017-04-14 07:17 - 003744256 _____ (Hewlett-Packard Development Company, LP) C:\WINDOWS\system32\HPScanTRDrv_DJ2130.dll 2024-01-16 14:00 - 2017-04-14 07:17 - 002952840 _____ (HP Inc.) C:\WINDOWS\system32\hpinkinsE111.exe 2024-01-16 14:00 - 2017-04-14 07:17 - 000583168 _____ (Hewlett-Packard) C:\WINDOWS\system32\HPWia2_DJ2130.dll 2024-01-16 14:00 - 2017-04-14 07:17 - 000393352 _____ (HP Inc.) C:\WINDOWS\system32\hpinkstsE111LM.dll 2024-01-16 14:00 - 2017-04-14 07:17 - 000328328 _____ (HP Inc.) C:\WINDOWS\system32\hpinkcoiE111.dll 2024-01-16 13:44 - 2024-01-16 13:44 - 000000000 ____D C:\WINDOWS\system32\appmgmt 2024-01-16 12:21 - 2024-01-16 12:28 - 000000000 ____D C:\Users\skill\VirtualBox VMs 2024-01-16 12:15 - 2024-01-16 13:37 - 000000000 ____D C:\Users\skill\.VirtualBox 2024-01-16 12:15 - 2024-01-16 12:20 - 000000000 ____D C:\ProgramData\VirtualBox 2024-01-14 15:39 - 2024-01-13 21:18 - 000004393 _____ C:\Users\skill\OneDrive\Pulpit\config.cfg 2024-01-14 15:37 - 2024-01-14 15:37 - 000002735 _____ C:\Users\skill\OneDrive\Pulpit\lastconifgurationdecember.rar 2024-01-13 16:19 - 2024-01-13 16:20 - 000000000 ____D C:\AdwCleaner 2024-01-13 16:16 - 2024-01-13 16:20 - 000000000 ___HD C:\$WinREAgent 2024-01-09 10:03 - 2024-01-09 10:03 - 000004418 _____ C:\Users\skill\OneDrive\Pulpit\config111.cfg 2024-01-08 14:43 - 2024-01-18 14:02 - 000008192 ___SH C:\DumpStack.log.tmp 2024-01-08 14:41 - 2021-09-26 19:13 - 003168280 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll 2024-01-08 14:41 - 2021-09-26 19:13 - 001382128 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll 2024-01-08 14:41 - 2021-09-26 19:13 - 000873352 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll 2024-01-08 14:41 - 2021-09-26 19:13 - 000158592 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll 2024-01-08 14:41 - 2021-09-26 19:13 - 000075432 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 003601384 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 003445640 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 003375928 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 001110072 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000692064 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000392776 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000343608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000327176 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000327176 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000220288 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000192880 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000116440 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll 2024-01-08 14:41 - 2021-09-26 19:12 - 000093808 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll 2024-01-08 14:41 - 2021-09-26 19:11 - 003843944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll 2024-01-08 14:41 - 2021-09-26 19:10 - 006532712 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys 2024-01-08 14:41 - 2021-09-26 19:10 - 003676976 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl 2024-01-08 14:41 - 2021-09-26 19:10 - 003159680 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll 2024-01-08 14:41 - 2021-09-26 19:10 - 002930056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll 2024-01-08 14:41 - 2021-09-26 19:10 - 000023600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll 2024-01-08 14:41 - 2021-09-26 19:09 - 000122240 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll 2024-01-05 20:54 - 2024-01-05 21:12 - 000000000 ____D C:\Users\skill\AppData\Roaming\TeamViewer 2024-01-05 18:27 - 2024-01-18 14:02 - 000000000 ____D C:\Program Files\TeamViewer 2024-01-05 18:27 - 2024-01-05 18:40 - 000000000 ____D C:\Users\skill\AppData\Local\TeamViewer 2024-01-05 18:27 - 2024-01-05 18:27 - 000000893 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk 2024-01-04 14:58 - 2024-01-08 14:43 - 810430376 _____ C:\WINDOWS\MEMORY.DMP 2024-01-04 14:58 - 2024-01-08 14:43 - 000000000 ____D C:\WINDOWS\Minidump 2024-01-04 14:58 - 2024-01-04 14:59 - 001258268 _____ C:\WINDOWS\Minidump\010424-5031-01.dmp 2024-01-04 12:14 - 2024-01-18 14:07 - 001767980 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2024-01-04 12:14 - 2024-01-04 12:14 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2024-01-04 12:13 - 2024-01-04 12:13 - 000000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2024-01-04 12:13 - 2024-01-04 12:13 - 000000020 ___SH C:\Users\skill\ntuser.ini 2024-01-04 12:11 - 2024-01-04 12:11 - 000000414 __RSH C:\ProgramData\ntuser.pol 2024-01-04 12:10 - 2024-01-18 14:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2024-01-04 12:10 - 2024-01-04 12:10 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2024-01-04 12:10 - 2024-01-04 12:10 - 000007623 _____ C:\WINDOWS\diagerr.xml 2024-01-04 12:10 - 2024-01-04 12:10 - 000003746 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2455803330-2812840290-1380293714-1001UA{4BD722F9-8DAE-4839-A6E2-4E2A652E3876} 2024-01-04 12:10 - 2024-01-04 12:10 - 000003712 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2455803330-2812840290-1380293714-1001Core{8B647C49-F667-4C5D-BF8B-58EF231E084E} 2024-01-04 12:10 - 2024-01-04 12:10 - 000003646 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1704315975 2024-01-04 12:10 - 2024-01-04 12:10 - 000003582 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA{3D45B49E-4B55-41AE-9E5F-4D37EC8BDB5F} 2024-01-04 12:10 - 2024-01-04 12:10 - 000003492 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2024-01-04 12:10 - 2024-01-04 12:10 - 000003418 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore{BA2512F7-7475-4726-9DEF-8E329EE83534} 2024-01-04 12:10 - 2024-01-04 12:10 - 000003280 _____ C:\WINDOWS\system32\Tasks\Optimize Push Notification Data File-S-1-5-21-2455803330-2812840290-1380293714-1001 2024-01-04 12:10 - 2024-01-04 12:10 - 000003268 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2024-01-04 12:10 - 2024-01-04 12:10 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2455803330-2812840290-1380293714-1001 2024-01-04 12:10 - 2024-01-04 12:10 - 000002970 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2024-01-04 12:10 - 2024-01-04 12:10 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2455803330-2812840290-1380293714-1001 2024-01-04 12:10 - 2024-01-04 12:10 - 000002814 _____ C:\WINDOWS\system32\Tasks\Christmas Task (One-Time) 2024-01-04 12:10 - 2024-01-04 12:10 - 000002738 _____ C:\WINDOWS\system32\Tasks\USER_ESRV_SVC_QUEENCREEK 2024-01-04 12:10 - 2024-01-04 12:10 - 000002726 _____ C:\WINDOWS\system32\Tasks\Driver Booster SkipUAC (skill) 2024-01-04 12:10 - 2024-01-04 12:10 - 000002664 _____ C:\WINDOWS\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2024-01-04 12:10 - 2024-01-04 12:10 - 000002534 _____ C:\WINDOWS\system32\Tasks\Driver Booster Update 2024-01-04 12:10 - 2024-01-04 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\WPD 2024-01-04 12:10 - 2024-01-04 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Service 2024-01-04 12:10 - 2024-01-04 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Safer-Networking 2024-01-04 12:10 - 2024-01-04 12:10 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo 2024-01-04 12:07 - 2024-01-04 12:07 - 000000000 ____D C:\Users\Default\AppData\Roaming\Microsoft\Network 2024-01-04 12:05 - 2024-01-18 15:39 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2024-01-04 12:05 - 2024-01-13 16:31 - 000260256 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2024-01-04 12:01 - 2024-01-04 12:05 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Crypto 2024-01-04 12:01 - 2024-01-04 12:01 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\SystemCertificates 2024-01-04 12:01 - 2024-01-04 12:01 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Network 2024-01-04 11:59 - 2024-01-04 12:05 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2024-01-04 11:58 - 2024-01-18 14:01 - 000000000 ____D C:\Users\skill 2024-01-04 11:58 - 2024-01-04 12:13 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows 2024-01-04 11:58 - 2024-01-04 11:59 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\Ustawienia lokalne 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\Szablony 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\Moje dokumenty 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\Menu Start 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\Dane aplikacji 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\AppData\Local\Tymczasowe pliki internetowe 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\AppData\Local\Historia 2024-01-04 11:58 - 2024-01-04 11:58 - 000000000 _SHDL C:\Users\skill\AppData\Local\Dane aplikacji 2024-01-04 11:55 - 2024-01-04 11:55 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2024-01-04 11:55 - 2024-01-04 11:55 - 000000000 ____D C:\Program Files\Reference Assemblies 2024-01-04 11:55 - 2024-01-04 11:55 - 000000000 ____D C:\Program Files\MSBuild 2024-01-04 11:55 - 2024-01-04 11:55 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2024-01-04 11:55 - 2024-01-04 11:55 - 000000000 ____D C:\Program Files (x86)\MSBuild 2024-01-04 11:52 - 2024-01-13 16:19 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2024-01-04 11:49 - 2024-01-04 11:49 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2024-01-04 11:40 - 2024-01-16 13:52 - 000000000 ___DC C:\WINDOWS\Panther 2024-01-04 11:30 - 2024-01-04 11:40 - 000000000 ____D C:\ESD 2024-01-04 11:28 - 2024-01-04 11:28 - 000000000 ___HD C:\$Windows.~WS 2024-01-04 11:28 - 2024-01-04 11:28 - 000000000 ____D C:\Program Files (x86)\WindowsInstallationAssistant 2024-01-04 11:13 - 2016-08-11 13:19 - 004009984 _____ C:\WINDOWS\system32\ffmpeg.dll 2024-01-04 09:59 - 2024-01-04 09:59 - 000000198 _____ C:\Users\skill\OneDrive\Pulpit\Counter-Strike.url 2024-01-03 22:24 - 2024-01-18 14:07 - 000000000 ___HD C:\Users\skill\Downloads\.opera 2024-01-03 22:24 - 2024-01-18 14:07 - 000000000 ___HD C:\Users\skill\.opera 2024-01-03 20:47 - 2024-01-03 20:47 - 000000000 ____D C:\Users\skill\AppData\Local\NVIDIA 2024-01-03 20:39 - 2024-01-04 11:59 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation 2024-01-03 20:38 - 2024-01-03 20:38 - 040421064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 035268296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 020107920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 017432992 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 010320528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 008785944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 005276064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 005045704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 004625552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 004304672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 002033112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001734288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6442531.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001536144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001467864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6442531.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001465432 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001462024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001169120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001145536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001130584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001006800 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 001006800 _____ C:\WINDOWS\system32\vulkan-1.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000915088 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000870096 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000794440 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000668664 _____ C:\WINDOWS\system32\nvofapi64.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000638176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000631896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000552328 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000534936 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000522144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000457096 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2024-01-03 20:38 - 2024-01-03 20:38 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2024-01-03 20:38 - 2024-01-03 20:38 - 000286416 _____ C:\WINDOWS\system32\vulkaninfo.exe 2024-01-03 20:38 - 2024-01-03 20:38 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2024-01-03 20:38 - 2024-01-03 20:38 - 000260304 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2024-01-03 20:38 - 2024-01-03 20:38 - 000049910 _____ C:\WINDOWS\system32\nvinfo.pb 2024-01-02 16:51 - 2024-01-02 16:57 - 000000000 __SHD C:\ProgramData\SystemPropertiesDataExecutionPrevention 2024-01-02 16:46 - 2024-01-17 22:21 - 000000000 ____D C:\Users\skill\AppData\Roaming\ieui 2024-01-02 15:48 - 2024-01-02 21:08 - 000003676 _____ C:\WINDOWS\SysWOW64\pubfreeware.ini 2024-01-02 15:21 - 2024-01-02 15:29 - 000000000 ____D C:\Users\skill\AppData\Local\Proton 2024-01-02 15:21 - 2024-01-02 15:21 - 000000000 ____D C:\Users\skill\AppData\Local\ToastNotificationManagerCompat 2024-01-02 14:52 - 2024-01-02 15:05 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LagoFast 2023-12-28 22:10 - 2024-01-04 13:00 - 000000000 ____D C:\Users\skill\AppData\Local\D3DSCache 2023-12-26 13:45 - 2023-12-26 13:45 - 000000000 ____D C:\Users\skill\AppData\Roaming\NVIDIA 2023-12-26 13:38 - 2024-01-18 14:02 - 000000000 ____D C:\ProgramData\NVIDIA 2023-12-26 13:38 - 2023-12-26 13:38 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2023-12-26 13:38 - 2019-04-09 12:43 - 005365744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 002624824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 001767736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 000651576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 000450872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 000124784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2023-12-26 13:38 - 2019-04-09 12:43 - 000082984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2023-12-26 13:38 - 2019-04-09 11:08 - 008530822 _____ C:\WINDOWS\system32\nvcoproc.bin 2023-12-26 13:38 - 2019-03-30 10:37 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2023-12-26 13:37 - 2024-01-04 12:06 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2023-12-26 13:37 - 2024-01-04 12:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2023-12-26 13:36 - 2017-05-18 07:54 - 000047008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvpciflt.sys 2023-12-26 13:36 - 2017-05-18 07:52 - 001996704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438205.dll 2023-12-26 13:36 - 2017-05-18 07:52 - 001598368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438205.dll 2023-12-26 13:36 - 2017-05-18 07:50 - 010648520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2023-12-26 13:36 - 2017-05-18 07:50 - 008891160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2023-12-26 13:34 - 2023-12-26 13:34 - 010078168 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2023-12-26 13:34 - 2023-12-26 13:34 - 000804824 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys 2023-12-26 13:32 - 2023-12-26 13:32 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2023-12-26 13:10 - 2024-01-04 09:39 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2023-12-26 13:02 - 2023-12-26 13:32 - 000476260 _____ C:\WINDOWS\ntbtlog.txt 2023-12-26 12:52 - 2024-01-02 14:36 - 001096608 _____ C:\Users\skill\OneDrive\Pulpit\client.dll 2023-12-26 12:31 - 2023-12-26 12:31 - 000000000 ____D C:\Users\skill\AppData\Local\VCLStylesSkin 2023-12-26 12:26 - 2023-12-26 12:27 - 000000000 ____D C:\Users\skill\OneDrive\Pulpit\Half-Life 2023-12-23 11:33 - 2024-01-04 12:05 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HLTooLz 2023-12-23 11:32 - 2023-12-23 11:32 - 000249856 _____ (Microsoft Corporation) C:\WINDOWS\Setup1.exe 2023-12-23 11:32 - 2023-12-23 11:32 - 000073216 _____ (Microsoft Corporation) C:\WINDOWS\ST6UNST.EXE 2023-12-22 18:21 - 2023-12-22 18:21 - 000000000 ____R C:\WINDOWS\SysWOW64\version_IObitDel.dll 2023-12-22 18:18 - 2023-12-22 18:18 - 000000000 ____D C:\ProgramData\iTop 2023-12-22 18:17 - 2024-01-04 12:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 11 2023-12-22 18:17 - 2023-12-22 18:18 - 000000000 ____D C:\Program Files (x86)\iTop Data Recovery 2023-12-22 18:17 - 2023-12-22 18:17 - 000000000 ____D C:\Users\skill\AppData\Roaming\iTop Data Recovery 2023-12-21 22:37 - 2023-12-21 22:37 - 001296856 ____N (Realtek ) C:\WINDOWS\system32\Drivers\rt640x64.sys 2023-12-21 14:24 - 2024-01-08 14:42 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2023-12-21 14:24 - 2024-01-04 12:05 - 000000000 ____D C:\WINDOWS\system32\SRSLabs 2023-12-21 14:24 - 2023-12-21 14:24 - 000000000 ____D C:\Program Files\Realtek 2023-12-21 10:54 - 2023-12-21 10:54 - 000000000 ____D C:\Users\skill\AppData\Local\cache ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2024-01-18 15:50 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2024-01-18 15:04 - 2023-12-04 03:46 - 000000000 ____D C:\WINDOWS\SystemTemp 2024-01-18 15:04 - 2023-11-22 13:53 - 000000000 ____D C:\Program Files (x86)\Google 2024-01-18 14:07 - 2019-12-07 16:09 - 000785550 _____ C:\WINDOWS\system32\perfh015.dat 2024-01-18 14:07 - 2019-12-07 16:09 - 000152410 _____ C:\WINDOWS\system32\perfc015.dat 2024-01-18 14:04 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2024-01-18 14:03 - 2023-11-27 20:00 - 000000000 ____D C:\Users\skill\AppData\Local\Malwarebytes 2024-01-18 14:02 - 2023-11-22 13:53 - 000000000 __SHD C:\Users\skill\IntelGraphicsProfiles 2024-01-18 14:01 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2024-01-18 12:31 - 2023-11-22 13:44 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2024-01-18 12:31 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2024-01-18 12:31 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2024-01-18 12:05 - 2023-11-22 13:51 - 000000000 ____D C:\Users\skill\AppData\Local\VirtualStore 2024-01-17 22:04 - 2023-11-22 13:54 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2024-01-17 21:55 - 2023-09-12 16:15 - 000055528 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2024-01-17 21:49 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2024-01-16 14:17 - 2023-11-22 14:31 - 021561904 _____ C:\WINDOWS\system32\Drivers\acdrv.sys 2024-01-16 14:17 - 2023-11-22 14:30 - 000000000 ____D C:\Users\skill\AppData\Roaming\FASTCUP 2024-01-16 13:33 - 2023-11-28 10:34 - 000000000 ____D C:\Users\skill\AppData\Local\ExitLag 2024-01-14 20:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2024-01-13 16:30 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2024-01-13 16:30 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2024-01-13 16:22 - 2023-11-22 14:02 - 000918944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2024-01-13 16:20 - 2023-12-11 22:30 - 000000000 ____D C:\Program Files (x86)\IObit 2024-01-13 16:20 - 2023-12-11 22:15 - 000000000 ____D C:\Users\skill\AppData\LocalLow\IObit 2024-01-13 16:20 - 2023-12-11 22:14 - 000000000 ____D C:\Users\skill\AppData\Roaming\IObit 2024-01-13 16:20 - 2023-12-11 22:14 - 000000000 ____D C:\ProgramData\IObit 2024-01-13 16:16 - 2023-11-22 14:00 - 000000000 ____D C:\WINDOWS\system32\MRT 2024-01-13 16:12 - 2023-11-22 13:59 - 189718008 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2024-01-09 17:55 - 2023-11-22 15:09 - 000000000 ____D C:\Users\skill\AppData\Roaming\TS3Client 2024-01-08 14:23 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2024-01-05 18:31 - 2023-11-22 13:51 - 000000000 ____D C:\Users\skill\AppData\Local\Packages 2024-01-05 08:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2024-01-04 12:18 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2024-01-04 12:13 - 2023-11-22 13:51 - 000000000 __RHD C:\Users\Public\AccountPictures 2024-01-04 12:13 - 2023-11-22 13:51 - 000000000 ___RD C:\Users\skill\3D Objects 2024-01-04 12:13 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2024-01-04 12:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2024-01-04 12:10 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2024-01-04 12:10 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2024-01-04 12:10 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2024-01-04 12:08 - 2019-12-07 10:14 - 000000000 __RSD C:\WINDOWS\Media 2024-01-04 12:06 - 2023-11-27 17:40 - 000000000 ____D C:\Program Files\Elantech 2024-01-04 12:06 - 2023-11-22 13:51 - 000000000 ____D C:\Intel 2024-01-04 12:05 - 2023-11-22 14:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GameGuard 2024-01-04 12:05 - 2023-11-22 14:20 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-04 12:05 - 2023-11-22 14:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2024-01-04 12:05 - 2023-11-22 13:56 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-01-04 12:05 - 2023-11-22 13:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2024-01-04 12:05 - 2023-11-22 13:52 - 000000000 ___RD C:\Users\skill\OneDrive 2024-01-04 12:05 - 2023-11-22 13:51 - 000000000 ____D C:\Program Files\Intel 2024-01-04 12:05 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2024-01-04 12:05 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2024-01-04 12:04 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2024-01-04 12:01 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2024-01-04 11:59 - 2023-11-22 14:31 - 000000000 ____D C:\Users\skill\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SteelSeries 2024-01-04 11:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2024-01-04 11:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2024-01-04 11:36 - 2023-12-11 22:15 - 000000000 ____D C:\ProgramData\ProductData 2024-01-04 09:28 - 2023-11-22 14:16 - 000000000 ____D C:\Users\skill\AppData\Local\Steam 2024-01-02 22:14 - 2023-11-29 21:02 - 000000000 ____D C:\Users\skill\AppData\Local\CrashDumps 2024-01-02 20:38 - 2023-11-27 13:15 - 000000000 ____D C:\Users\skill\AppData\Local\ElevatedDiagnostics 2024-01-02 14:32 - 2023-12-11 22:30 - 000000000 ____D C:\ProgramData\ProductData3 ==================== Pliki w katalogu głównym wybranych folderów ======== 2023-12-05 10:40 - 2023-12-05 10:40 - 000000130 _____ () C:\Users\skill\AppData\Roaming\9CHOr1640DVr.vbs 2023-12-10 14:09 - 2023-12-10 14:09 - 000000130 _____ () C:\Users\skill\AppData\Roaming\d7wN2aqzW1ON.vbs 2023-12-06 18:20 - 2023-12-06 18:20 - 000000130 _____ () C:\Users\skill\AppData\Roaming\DhuIkVLb44Gv.vbs 2023-12-04 21:12 - 2023-12-04 21:12 - 000000130 _____ () C:\Users\skill\AppData\Roaming\p320nlJp0VoF.vbs 2023-12-11 20:12 - 2023-12-11 20:12 - 000000130 _____ () C:\Users\skill\AppData\Roaming\ToAch4lddWNk.vbs 2023-12-08 14:19 - 2023-12-08 14:19 - 000000130 _____ () C:\Users\skill\AppData\Roaming\wHvIckONkQq8.vbs 2023-12-10 14:26 - 2023-12-10 14:26 - 000000130 _____ () C:\Users\skill\AppData\Roaming\YvjWKWO1WVc9.vbs ==================== FCheck ================================ (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) FCheck: C:\WINDOWS\SysWOW64\version_IObitDel.dll [2023-12-22] <==== UWAGA (zerobajtowy plik/folder) ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================