Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-08-2023 Uruchomiony przez PawełPc (administrator) DESKTOP-S1CFSRR (GIGABYTE AORUS 17G YD) (05-09-2023 16:21:27) Uruchomiony z C:\Users\PawełPc\Desktop\Farbar Recovery Scan Tool\FRST64.exe Załadowane profile: PawełPc Platforma: Microsoft Windows 11 Home Wersja 22H2 22621.2215 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\FusionShortcut.exe () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\GMSG.exe (Adguard Software Limited -> Adguard Software Ltd) C:\Program Files (x86)\Adguard\Adguard.exe (C:\Program Files (x86)\DFX\DFX.exe ->) (Power Technology -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp32.exe (C:\Program Files (x86)\DFX\DFX.exe ->) (Power Technology -> ) C:\Program Files (x86)\DFX\Universal\Apps\DfxSharedApp64.exe (C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe (C:\Program Files\ControlCenter\FusionStation.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\cloudmatrix\CloudMatrixControlCenter.exe (C:\Program Files\ControlCenter\SMV4_Service.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\ControlCenter.exe (C:\Program Files\ControlCenter\SMV4_Service.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\dtyWork.exe (C:\Program Files\ControlCenter\SMV4_Service.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\FusionStation.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (C:\Program Files\PowerToys\modules\Peek\PowerToys.Peek.UI.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\116.0.1938.69\msedgewebview2.exe <6> (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\AlwaysOnTop\PowerToys.AlwaysOnTop.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\Awake\PowerToys.Awake.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\ColorPicker\PowerToys.ColorPickerUI.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\FancyZones\PowerToys.FancyZones.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\KeyboardManager\KeyboardManagerEngine\PowerToys.KeyboardManagerEngine.exe (C:\Program Files\PowerToys\PowerToys.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\PowerOCR\PowerToys.PowerOCR.exe (DriverStore\FileRepository\cui_dch.inf_amd64_6673c5322430fc8a\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_6673c5322430fc8a\igfxEMN.exe (explorer.exe ->) (Gigabyte) [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\OSD\OSDwindow.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\launcher\PowerToys.PowerLauncher.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\modules\Peek\PowerToys.Peek.UI.exe (explorer.exe ->) (Tonec Inc. -> Tonec Inc.) C:\Program Files (x86)\Internet Download Manager\IDMan.exe (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Power Technology -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\DFX\DFX.exe (services.exe ->) () [Brak podpisu cyfrowego] C:\Program Files\ControlCenter\SMV4_Service.exe (services.exe ->) (Adguard Software Limited -> Adguard Software Ltd) C:\Program Files (x86)\Adguard\AdguardSvc.exe (services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe (services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ELANFPService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_6673c5322430fc8a\igfxCUIServiceN.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_a687edda40db3316\OneApp.IGCC.WinService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_3b3ce26993cf233b\IntelCpHDCPSvc.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe (services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe (services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvgbi.inf_amd64_d41f5e0f268f1189\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb1dc9e478096e5f\RtkAudUService64.exe <2> (sihost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5180.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe (svchost.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5180.0_x64__8j3eq9eme6ctt\IGCC.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\PowerToys\PowerToys.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AorusFusion] => C:\Program Files\ControlCenter\FusionStartUp.exe [13824 2019-08-30] () [Brak podpisu cyfrowego] HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_bb1dc9e478096e5f\RtkAudUService64.exe [3496072 2021-12-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [Adguard] => C:\Program Files (x86)\Adguard\Adguard.exe [6346200 2021-12-16] (Adguard Software Limited -> Adguard Software Ltd) HKLM-x32\...\Run: [DFX] => C:\Program Files (x86)\DFX\DFX.exe [1596920 2016-10-14] (Power Technology -> ) [Brak podpisu cyfrowego] HKLM-x32\...\RunOnce: [DriversUpdate] => C:\Program Files\ControlCenter\urgent.exe [14336 2022-04-06] () [Brak podpisu cyfrowego] HKLM\...\Policies\Explorer: [NoThumbnailCache] 0 HKLM\...\Policies\Explorer: [DisableThumbnailCache] 0 HKLM\Software\Policies\...\system: [EnableActivityFeed] 0 HKLM\Software\Policies\...\system: [PublishUserActivities] 0 HKLM\Software\Policies\...\system: [UploadUserActivities] 0 HKLM\Software\Policies\...\system: [AllowCrossDeviceClipboard] 0 HKLM\Software\Policies\...\system: [AllowBlockingAppsAtShutdown] 0 HKLM\Software\Policies\...\system: [EnableSmartScreen] 0 HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\...\Run: [IDMan] => C:\Program Files (x86)\Internet Download Manager\IDMan.exe [5927680 2023-08-03] (Tonec Inc. -> Tonec Inc.) HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\...\Policies\Explorer: [NoThumbnailCache] 0 HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\...\Policies\Explorer: [DisableThumbnailCache] 0 HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\116.0.5845.141\Installer\chrmstp.exe [2023-09-01] (Google LLC -> Google LLC) HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\116.1.57.57\Installer\chrmstp.exe [2023-08-30] (Brave Software, Inc. -> Brave Software, Inc.) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\OSDwindow.lnk [2022-07-16] ShortcutTarget: OSDwindow.lnk -> C:\Program Files\ControlCenter\OSD\OSDwindow.exe (Gigabyte) [Brak podpisu cyfrowego] GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {17A782E7-2B9C-443F-8CCA-6B7DC682C145} - System32\Tasks\Abelssoft\Abelssoft SSD Fresh Settings Check_43 => C:\ProgramData\Abelssoft\SSDFresh\Program [253952 2023-03-29] (Microsoft Windows -> Microsoft Corporation) Task: {04F7C2A1-114D-459F-AFAB-E1A0E2184032} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{403F9B5E-F7F7-44CF-BDED-534DD74450A7} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2023-02-01] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {D3244307-DA3D-4E6B-AC21-FE82D13126C5} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{8A52EC01-4EE8-44E1-8080-AE4AE6A4CCF1} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2023-02-01] (Brave Software, Inc. -> BraveSoftware Inc.) Task: {82FA652B-0480-4835-9B86-9BC85B714313} - System32\Tasks\CCleanerSkipUAC - PawełPc => C:\Users\PawełPc\Desktop\CCleaner.5.65.7632 All. Portable [26.3.20]\Professional\App\CCleaner\CCleaner.exe [31990800 2022-08-12] (Piriform Software Ltd -> Piriform Software Ltd) Task: {69EE5A89-CDDE-4E59-982D-6842AB5391AE} - System32\Tasks\GoogleUpdateTaskMachineCore{CD85C0ED-3434-4255-AC73-F7892C40D574} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2021-07-26] (Google Inc -> Google Inc.) Task: {F979F6EC-075E-442B-BA97-32DCBC2F7872} - System32\Tasks\GoogleUpdateTaskMachineUA{781EC072-80B4-4DDA-8D37-62CB8D260D11} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2021-07-26] (Google Inc -> Google Inc.) Task: {CC9C659D-E116-42F6-87DD-626268E85488} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656848 2023-08-04] (Microsoft Corporation -> Microsoft Corporation) Task: {09403EAC-5769-4AEF-ABC0-49B69242D095} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26656848 2023-08-04] (Microsoft Corporation -> Microsoft Corporation) Task: {16C78926-9C64-477E-AA37-618825AADF48} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124568 2023-08-14] (Microsoft Corporation -> Microsoft Corporation) Task: {3DE08240-4DEB-4CEA-AC10-73B195F8DAB2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124568 2023-08-14] (Microsoft Corporation -> Microsoft Corporation) Task: {AF7993EB-ADC5-4BE6-A851-C3006566C034} - System32\Tasks\Microsoft\Windows\AppxDeploymentClient\UCPD velocity => C:\WINDOWS\system32\UCPDMgr.exe [58880 2023-08-25] (Microsoft Windows -> Microsoft Corporation) Task: {9655D3C2-2267-42AA-A603-807063D6F4A5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CDAFD124-F7AA-44FD-9718-8B8D546570DA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {0CA4177C-1575-42A1-A15F-9CCE58AC5872} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {081969B0-B766-41EA-944B-06376B5A654A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {CF41B743-4E9A-49CE-A159-7AC75E20065E} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675232 2023-08-31] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {24F7EC07-9639-482F-A2CF-DC03F347BC77} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [722336 2023-08-31] (Mozilla Corporation -> Mozilla Foundation) Task: {8184A7A8-F0E5-4F18-90EF-2E9BC6A1CA4C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2023-03-07] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {5930C205-2B84-4A9D-BF6C-B5FD2E394D60} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-03-07] (Nvidia Corporation -> NVIDIA Corporation) Task: {C893C795-3F67-4BAA-AE5C-3D2939C00B0A} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A565F9A6-322D-40FA-92BB-8F955957C451} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A662C926-7F7D-43D3-82F3-B4C7665B04DB} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {71AD82A6-BD13-4A3D-9491-FDDAF89F311C} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {13A7F98F-3C67-40FD-8E7F-482D7DE284F4} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {55911842-B7AF-4A20-BF9A-8D0D27E77C51} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {705BAB22-0D47-48CB-98A3-4D89B52D8888} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-03-07] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E20101BE-A4C6-4DED-9F2A-5D5FED986EDF} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130208 2023-09-02] (Microsoft Corporation -> Microsoft Corporation) Task: {9132A031-5AC3-4E4C-ACC9-B6BF187DE9F5} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2209655758-1128453743-3939653386-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130208 2023-09-02] (Microsoft Corporation -> Microsoft Corporation) Task: {70E73A5E-D274-4B68-8970-40E48DB0D410} - System32\Tasks\Opera scheduled Autoupdate 1665155267 => C:\Users\PawełPc\AppData\Local\Programs\Opera\launcher.exe [2730912 2023-08-09] (Opera Norway AS -> Opera Software) Task: {D0AC49AA-B2E4-42EC-BA03-D18C7DF134BB} - System32\Tasks\PowerToys\Autorun for PawełPc => C:\Program Files\PowerToys\PowerToys.exe [1104280 2023-05-31] (Microsoft Corporation -> Microsoft Corporation) Task: {833522E2-89B9-44B3-97F2-927F16DB0947} - System32\Tasks\Remove AdwCleaner Application => c:\windows\system32\CMD.EXE [323584 2023-04-26] (Microsoft Windows -> Microsoft Corporation) -> /C DEL /F /Q "C:\Users\PawełPc\Desktop\AdwCleaner 8.4.0\adwcleaner.exe" Task: {25CFC1F5-417F-4507-A2D0-33B11E55639A} - System32\Tasks\Uninstall AdwCleaner Application => C:\Users\PawełPc\Desktop\AdwCleaner 8.4.0\adwcleaner.exe /uninstall (Brak pliku) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{01916320-6ae2-4bea-8256-934144bd0491}: [NameServer] 1.1.1.2,1.0.0.2 Tcpip\..\Interfaces\{a149482f-ec0a-4e3f-aa07-32c62f345726}: [NameServer] 1.1.1.2,1.0.0.2 Tcpip\..\Interfaces\{a149482f-ec0a-4e3f-aa07-32c62f345726}: [DhcpNameServer] 192.168.1.1 192.168.1.1 HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <==== UWAGA Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-05] Edge Session Restore: Default -> [funkcja włączona] Edge Extension: (Liczba słów) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bglkkgmmlpelbdokjlgbpfkkoplajoop [2023-01-16] Edge Extension: (G-Translate) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gnjlofoomnifeddfeaddgccpngjiphdg [2023-01-16] Edge Extension: (blockerDNS Ad & Tracker Blocking) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\hfkimamjcihdjcpigopphgacppocobpf [2023-01-16] Edge Extension: (Edge relevant text changes) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-08-21] Edge Extension: (IDM Integration Module) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\llbjbkhnmlidjebalopleeepgdfgcpec [2022-07-20] Edge Extension: (Blokowanie reklam w YouTube) - C:\Users\PawełPc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mbdlpgncclnhomdpmicmgdihapedhhak [2023-01-16] Edge HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [llbjbkhnmlidjebalopleeepgdfgcpec] - C:\Program Files (x86)\Internet Download Manager\IDMEdgeExt.crx [2023-08-04] FireFox: ======== FF DefaultProfile: yisrm1gp.default FF ProfilePath: C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default [2023-09-02] FF Session Restore: Mozilla\Firefox\Profiles\yisrm1gp.default -> [funkcja włączona] FF Extension: (Dark Reader) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\addon@darkreader.org.xpi [2021-07-07] FF Extension: (Asystent przeglądarki AdGuard) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\browserassistant@adguard.com.xpi [2021-04-26] FF Extension: (Asystent przeglądarki AdGuard Beta) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\browserassistantbeta@adguard.com.xpi [2021-04-26] [UpdateUrl:hxxps://static.adguard.com/extensions/browserassistant/beta/update.json] FF Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\cashback_letyshops@LetyShops.xpi [2021-07-23] FF Extension: (Enhancer for YouTube™) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2021-06-30] FF Extension: (Ciuvo porównanie cen) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\extension@ciuvo.com.xpi [2019-03-18] FF Extension: (Tampermonkey) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\firefox@tampermonkey.net.xpi [2021-04-30] FF Extension: (Sprawdzanie ortografii i gramatyki – LanguageTool) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\languagetool-webextension@languagetool.org.xpi [2021-07-13] FF Extension: (IDM Integration Module) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\mozilla_cc3@internetdownloadmanager.com.xpi [2021-03-09] FF Extension: (Context Search) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\olivier.debroqueville@gmail.com.xpi [2020-12-03] FF Extension: (Tab Session Manager) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\Tab-Session-Manager@sienori.xpi [2021-06-10] FF Extension: (Google Translator for Firefox) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\translator@zoli.bod.xpi [2019-03-18] FF Extension: (Alitools — asystent zakupów) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{019f5290-6afb-4863-bc31-87cc0b6adb25}.xpi [2021-07-20] FF Extension: (Download Facebook Video or Photo) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{059befdf-8453-432b-b308-13347f60e482}.xpi [2019-03-18] FF Extension: (Flagfox) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2021-07-01] FF Extension: (Search by Image) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [2021-07-26] FF Extension: (Lightshot (narzędzie do zrzutów ekranu)) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{394DCBA4-1F92-4f8e-8EC9-8D2CB90CB69B}.xpi [2020-11-12] FF Extension: (Gesturefy) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [2021-06-22] FF Extension: (alerabat.com | kupony i kody rabatowe) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{6c0839b6-2697-49ca-ac8c-8c65a8d9b7b9}.xpi [2021-07-27] FF Extension: (Dodatek Google Analytics Opt-out firmy Google) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\yisrm1gp.default\Extensions\{6d96bb5e-1175-4ebf-8ab5-5f56f1c79f65}.xpi [2019-05-12] [UpdateUrl:hxxps://tools.google.com/service/update2/ff?guid=%ITEM_ID%&version=%ITEM_VERSION%&application=%APP_ID%&appversion=%APP_VERSION%] FF ProfilePath: C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release [2023-09-02] FF DownloadDir: C:\Users\PawełPc\Desktop FF Session Restore: Mozilla\Firefox\Profiles\sx0mqsmg.default-release -> [funkcja włączona] FF Extension: (Dark Reader) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\addon@darkreader.org.xpi [2023-08-17] FF Extension: (Asystent przeglądarki AdGuard) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\browserassistant@adguard.com.xpi [2023-05-19] FF Extension: (Asystent przeglądarki AdGuard Beta) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\browserassistantbeta@adguard.com.xpi [2023-05-12] [UpdateUrl:hxxps://static.adtidy.org/extensions/browserassistant/beta/update.json] FF Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\cashback_letyshops@LetyShops.xpi [2023-08-29] FF Extension: (Tampermonkey) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\firefox@tampermonkey.net.xpi [2023-07-31] FF Extension: (Sprawdzanie ortografii i gramatyki – LanguageTool) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\languagetool-webextension@languagetool.org.xpi [2023-07-29] FF Extension: (IDM Integration Module) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\mozilla_cc3@internetdownloadmanager.com.xpi [2023-06-08] FF Extension: (Context Search) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\olivier.debroqueville@gmail.com.xpi [2023-08-29] FF Extension: (Tab Session Manager) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\Tab-Session-Manager@sienori.xpi [2022-09-17] FF Extension: (Google Translator for Firefox) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\translator@zoli.bod.xpi [2019-03-18] FF Extension: (Download Facebook Video or Photo) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{059befdf-8453-432b-b308-13347f60e482}.xpi [2019-03-18] FF Extension: (Flagfox) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2023-08-05] FF Extension: (Search by Image) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{2e5ff8c8-32fe-46d0-9fc8-6b8986621f3c}.xpi [2023-07-29] FF Extension: (Lightshot (narzędzie do zrzutów ekranu)) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{394DCBA4-1F92-4f8e-8EC9-8D2CB90CB69B}.xpi [2020-11-12] FF Extension: (Gesturefy) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{506e023c-7f2b-40a3-8066-bc5deb40aebe}.xpi [2022-10-17] FF Extension: (alerabat.com | kupony i cashback) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{6c0839b6-2697-49ca-ac8c-8c65a8d9b7b9}.xpi [2023-06-14] FF Extension: (Dodatek Google Analytics Opt-out firmy Google) - C:\Users\PawełPc\AppData\Roaming\Mozilla\Firefox\Profiles\sx0mqsmg.default-release\Extensions\{6d96bb5e-1175-4ebf-8ab5-5f56f1c79f65}.xpi [2019-05-12] [UpdateUrl:hxxps://tools.google.com/service/update2/ff?guid=%ITEM_ID%&version=%ITEM_VERSION%&application=%APP_ID%&appversion=%APP_VERSION%] FF HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\...\SeaMonkey\Extensions: [mozilla_cc@internetdownloadmanager.com] - C:\Users\PawełPc\AppData\Roaming\IDM\idmmzcc5 FF Extension: (IDM CC) - C:\Users\PawełPc\AppData\Roaming\IDM\idmmzcc5 [2022-12-12] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\...\SeaMonkey\Extensions: [mozilla_cc2@internetdownloadmanager.com] - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi FF Extension: (IDM integration) - C:\Program Files (x86)\Internet Download Manager\idmmzcc2.xpi [2017-12-20] [Przestarzałe] FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-08-01] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-2209655758-1128453743-3939653386-1001: SkypeForBusinessPlugin-16.2 -> C:\Users\PawełPc\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) FF Plugin HKU\S-1-5-21-2209655758-1128453743-3939653386-1001: SkypeForBusinessPlugin64-16.2 -> C:\Users\PawełPc\AppData\Local\Microsoft\SkypeForBusinessPlugin\16.2.0.511\npGatewayNpapi-x64.dll [2019-08-03] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default [2023-09-05] CHR DownloadDir: C:\Users\PawełPc\Desktop CHR HomePage: Default -> hxxps://www.morele.net/ CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Tłumacz Google) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2023-03-23] CHR Extension: (h264ify) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\aleakchihdccplidncghkekgioiakgal [2022-07-14] CHR Extension: (Turn Off the Lights) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfbmjmiodbnnpllbbbfblcplfjjepjdn [2022-07-14] CHR Extension: (Bloker reklam AdGuard) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgnkhhnnamicmpeenaelnjfhikgbkllg [2023-08-17] CHR Extension: (alerabat.com | kupony i cashback) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dacdinoicboceafielngnmjjplncljhj [2023-08-17] CHR Extension: (Tampermonkey) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2023-06-06] CHR Extension: (Clean Master: Najlepszy Cleaner Chrome Cache) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\eagiakjmjnblliacokhcalebgnhellfi [2022-09-30] CHR Extension: (Session Buddy) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2023-07-26] CHR Extension: (Text to speech that brings productivity) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\eidcpcpmmfiolomceegcagooodnaplmp [2022-07-14] CHR Extension: (Tryb ciemny Chrome) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\eiomngfcbbapjpfnhniipcnhaenhohfg [2023-07-17] CHR Extension: (Dodatek Google Analytics Opt-out firmy Google) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fllaojicojecljbmefodhfapmkghcbnh [2022-07-14] CHR Extension: (Wayback Machine) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\fpnmgdkabkmnadcjpehmlllkndpkmiak [2022-12-23] CHR Extension: (Edytor Office) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbkeegbaiigmenfmjfclcdgdpimamgkj [2023-07-21] CHR Extension: (HTTPS Everywhere) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2022-07-14] CHR Extension: (Zapisz na Dysku Google) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2023-02-20] CHR Extension: (LastPass: Free Password Manager) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2023-08-19] CHR Extension: (Cookie-Editor) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\hlkenndednhfkekhgcdicdfddnkalmdm [2023-03-14] CHR Extension: (CrxMouse Chrome™ Gestures) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\jlgkpaicikihijadgifklkbpdajbkhjo [2022-11-29] CHR Extension: (Video DownloadHelper) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2023-08-25] CHR Extension: (Rozszerzenie Google Keep do Chrome) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2023-08-31] CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2023-08-24] CHR Extension: (Sprawdzanie poczty Google) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2022-07-14] CHR Extension: (Microsoft 365) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ndjpnladcallmjemlbaebfadecfhkepb [2023-07-19] CHR Extension: (IDM Integration Module) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2023-07-20] CHR Extension: (Save to Pocket) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2022-11-08] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-14] CHR Extension: (PDF Viewer) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\oemmndcbldboiebfnladdacbdfmadadm [2023-07-11] CHR Extension: (Gesty myszy) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogjdgjefnddnjhkibmblgiofbjdgnahc [2022-07-14] CHR Extension: (Sprawdzanie ortografii i gramatyki – LanguageTool) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\oldceeleldhonbafppcapldpdifcinji [2023-06-20] CHR Extension: (enhanced-h264ify) - C:\Users\PawełPc\AppData\Local\Google\Chrome\User Data\Default\Extensions\omkfmpieigblcllmkgbflkikinpkodlk [2022-08-21] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2023-08-04] CHR HKU\S-1-5-21-2209655758-1128453743-3939653386-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2023-08-04] CHR HKLM-x32\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx [2023-08-04] Opera: ======= OPR Profile: C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable [2023-09-05] OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={searchTerms}&sourceid=opera&ie={inputEncoding}&oe={outputEncoding} OPR DefaultSearchKeyword: Opera Stable -> g OPR Extension: (Bloker reklam AdGuard) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\bopfaehpakahokaelnomggbohfbimcia [2023-08-06] OPR Extension: (Rich Hints Agent) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-07-23] OPR Extension: (Opera Wallet) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-08-26] OPR Extension: (Aria) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-09-03] OPR Extension: (uBlock Origin) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2023-08-11] OPR Extension: (Full Picture: research, analyze with ChatGPT) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\nagnlnlhocpalddpeobhjenafhoaifcc [2023-03-22] OPR Extension: (Alitools — asystent zakupów) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\nkekkheibgkgeepapinkalkongndfajn [2023-08-26] OPR Extension: (Cookie-Editor) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\obagnmmodcahmhfefdipdhipiebejoja [2023-08-14] OPR Extension: (Enhancer for YouTube) - C:\Users\PawełPc\AppData\Roaming\Opera Software\Opera Stable\Extensions\ofhehnfmgbgnkjaojifkmebjjgffjaeh [2023-06-03] Brave: ======= BRA Profile: C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2023-08-19] BRA Extension: (uBlock Origin) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2023-08-14] BRA Extension: (CrxMouse Chrome™ Gestures) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jlgkpaicikihijadgifklkbpdajbkhjo [2023-02-01] BRA Extension: (IDM Integration Module) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ngpampappnmepgilojfohadhhmbhlaek [2023-08-14] BRA Extension: (Brave Ad Block Updater (Exception-exceptions (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2023-08-18] BRA Extension: (Brave Local Data Files Updater) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2023-08-18] BRA Extension: (Brave NTP background images) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2023-06-27] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku - Uzupełnienie (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\bdnfonbomiianhopbpfgfeekmlcbegfo [2023-04-08] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\beeceepafhbchnbfdkfalfipoancnjkm [2023-04-08] BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2023-08-18] BRA Extension: (Wallet Data Files Updater) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2023-08-18] BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2023-08-18] BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2023-04-01] BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2023-08-18] BRA Extension: (Brave NTP sponsored images) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodhafecfemgejckecbnmpobnhmoaoag [2023-08-18] BRA Extension: (Brave Ad Block Updater (Default (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2023-08-18] BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2023-08-18] BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka (plaintext))) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\ngcohbdfildjnmfnicgdipopmlhdcokg [2023-08-18] BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\PawełPc\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2023-08-18] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 Adguard Service; C:\Program Files (x86)\Adguard\AdguardSvc.exe [467416 2021-12-16] (Adguard Software Limited -> Adguard Software Ltd) S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2023-02-01] (Brave Software, Inc. -> BraveSoftware Inc.) S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [174960 2023-02-01] (Brave Software, Inc. -> BraveSoftware Inc.) S3 BraveVpnService; C:\Program Files\BraveSoftware\Brave-Browser\Application\116.1.57.57\brave_vpn_helper.exe [3171864 2023-08-30] (Brave Software, Inc. -> Brave Software, Inc.) S3 BraveVpnWireguardService; C:\Program Files\BraveSoftware\Brave-Browser\Application\116.1.57.57\BraveVpnWireguardService\brave_vpn_wireguard_service.exe [2183192 2023-08-30] (Brave Software, Inc. -> Brave Software, Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11878368 2023-08-04] (Microsoft Corporation -> Microsoft Corporation) R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [43272 2023-07-03] (Intel Corporation -> Intel) R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [212744 2023-07-03] (Intel Corporation -> Intel) R2 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [223352 2021-11-15] (DTS, Inc. -> DTS Inc.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.169.0813.0001\FileSyncHelper.exe [3516832 2023-09-02] (Microsoft Corporation -> Microsoft Corporation) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.169.0813.0001\OneDriveUpdaterService.exe [3853840 2023-09-02] (Microsoft Corporation -> Microsoft Corporation) R2 SMV4_Service; C:\Program Files\ControlCenter\SMV4_Service.exe [25600 2021-03-18] () [Brak podpisu cyfrowego] R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [256632 2022-12-13] (Intel Corporation -> Intel Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-08-24] (Microsoft Windows Publisher -> Microsoft Corporation) S3 BraveElevationService; "C:\Program Files\BraveSoftware\Brave-Browser\Application\116.1.57.57\elevation_service.exe" [X] R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvgbi.inf_amd64_d41f5e0f268f1189\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvgbi.inf_amd64_d41f5e0f268f1189\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [98840 2021-11-02] (Microsoft Windows Hardware Compatibility Publisher -> Adguard Software Ltd) S1 amsdk; C:\WINDOWS\system32\drivers\amsdk.sys [232792 2023-04-10] (Zemana D.O.O. Sarajevo -> Copyright 2018.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [544768 2023-05-26] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [184320 2023-05-26] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 CorsairGamingAudioService; C:\Windows\System32\drivers\CorsairGamingAudio64.sys [63008 2023-01-20] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1x64.sys [28008 2015-08-31] (Power Technology -> Windows (R) Win 7 DDK provider) R3 DFX12; C:\WINDOWS\system32\drivers\dfx12x64.sys [39048 2015-11-15] (Power Technology -> Windows (R) Win 7 DDK provider) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R1 dokan1; C:\WINDOWS\System32\DRIVERS\dokan1.sys [138760 2021-01-14] (ADAPP SASU -> Dokan Project) R1 ElRawDisk; C:\WINDOWS\system32\drivers\rsdrvx64.sys [26024 2021-03-23] (EldoS Corporation -> EldoS Corporation) R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_2546dafe2183e972\iaLPSS2_GPIO2_TGL.sys [131224 2021-07-19] (Intel Corporation -> Intel Corporation) R2 IDMWFP; C:\WINDOWS\system32\DRIVERS\idmwfp.sys [171512 2023-02-15] (Microsoft Windows Hardware Compatibility Publisher -> Tonec Inc.) R3 MpKsl8993778a; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{53E4DC20-D28F-47FC-8647-C31C40276F73}\MpKslDrv.sys [222464 2023-09-05] (Microsoft Windows -> Microsoft Corporation) R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2023-03-07] (Nvidia Corporation -> NVIDIA Corporation) R3 nvpcf; C:\WINDOWS\System32\drivers\nvpcf.sys [240152 2023-05-24] (NVIDIA Corporation -> NVIDIA Corporation) S3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_affac63db0770a78\rt25cx21x64.sys [713112 2022-10-16] (Realtek Semiconductor Corp. -> Realtek) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S4 UCPD; C:\WINDOWS\System32\drivers\UCPD.sys [29184 2023-08-25] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [55872 2023-08-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) U5 WdDevFlt; C:\Windows\System32\Drivers\WdDevFlt.sys [169232 2022-05-07] (Microsoft Windows -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [574872 2023-08-24] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2023-08-24] (Microsoft Windows -> Microsoft Corporation) S3 WinDivert1.1; E:\Komputerowe\Microsoft Toolkit Collection Pack November 2018\AAct_v3.8.4_Portable\wdvdriver\x64WDV\WinDivert.sys [35376 2022-12-30] (Nemea Mjukvaruutveckling AB -> Basil Projects) R3 WinRing0_1_2_0; C:\Program Files\ControlCenter\cloudmatrix\Battery\CloudMatrixBattery.sys [14544 2023-09-05] (Noriyuki MIYAZAKI -> OpenLibSys.org) S3 SIUSBXP; \??\C:\Windows\system32\drivers\SiUSBXp.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-09-05 12:55 - 2023-09-05 12:55 - 000799498 _____ C:\WINDOWS\system32\perfh015.dat 2023-09-05 12:55 - 2023-09-05 12:55 - 000158512 _____ C:\WINDOWS\system32\perfc015.dat 2023-09-04 22:53 - 2023-09-04 23:11 - 1267376732 _____ C:\Users\PawełPc\Desktop\Naciągacze Matchstick Men (2003).mp4 2023-09-02 22:08 - 2023-09-02 22:08 - 000000000 ____D C:\ProgramData\Key Metric Software 2023-09-02 22:07 - 2023-09-02 22:07 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Key Metric Software 2023-09-02 18:28 - 2023-09-02 18:28 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-09-02 18:28 - 2023-09-02 18:28 - 000002193 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-09-01 15:08 - 2023-09-01 15:08 - 027968658 _____ C:\Users\PawełPc\Desktop\Ransomware Defender Pro 4.4.1 Crack.rar 2023-08-31 14:49 - 2023-08-31 15:07 - 1097771831 _____ C:\Users\PawełPc\Desktop\Wyrolowani Role Models (2008).mp4 2023-08-29 21:35 - 2023-08-29 21:49 - 936097788 _____ C:\Users\PawełPc\Desktop\Oni żyją They Live (1988).mp4 2023-08-28 22:45 - 2023-08-28 22:45 - 000000133 _____ C:\Users\PawełPc\Desktop\rapidox.pl.txt 2023-08-27 21:02 - 2023-08-27 21:04 - 1274579096 _____ C:\Users\PawełPc\Desktop\S. W. A. T. Jednostka Specjalna S.W.A.T. (2003).mp4 2023-08-27 20:17 - 2023-09-01 20:04 - 000000000 ____D C:\Users\PawełPc\Desktop\Pati 2023 [Sezon 01] [1080p.WEB-DL.H264.AC3-FT] [Serial Polski] 2023-08-25 22:26 - 2023-08-25 22:26 - 000050630 _____ C:\Users\PawełPc\Desktop\7.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000044745 _____ C:\Users\PawełPc\Desktop\5.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000044737 _____ C:\Users\PawełPc\Desktop\1.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000044736 _____ C:\Users\PawełPc\Desktop\2.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000044534 _____ C:\Users\PawełPc\Desktop\6.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000044130 _____ C:\Users\PawełPc\Desktop\4.m3u 2023-08-25 22:25 - 2023-08-25 22:25 - 000015593 _____ C:\Users\PawełPc\Desktop\3.m3u 2023-08-25 15:40 - 2023-08-25 15:42 - 000000000 ___HD C:\$WinREAgent 2023-08-23 19:46 - 2023-08-23 19:46 - 000001545 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk 2023-08-23 15:51 - 2023-08-23 15:51 - 000000103 _____ C:\Users\PawełPc\Desktop\CDA.txt 2023-08-21 18:47 - 2023-08-21 18:47 - 000003340 _____ C:\WINDOWS\system32\Tasks\Remove AdwCleaner Application 2023-08-21 18:47 - 2023-08-21 18:47 - 000003322 _____ C:\WINDOWS\system32\Tasks\Uninstall AdwCleaner Application 2023-08-21 18:40 - 2023-08-21 18:40 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2023-08-21 18:39 - 2023-08-21 18:41 - 000452688 _____ C:\WINDOWS\ntbtlog.txt 2023-08-21 18:39 - 2023-08-21 18:40 - 000027603 _____ C:\WINDOWS\ZAM.krnl.trace 2023-08-20 13:44 - 2023-08-20 14:24 - 3398944772 _____ C:\Users\PawełPc\Desktop\Nitro Circus. Film (2012).avi 2023-08-20 11:55 - 2023-08-20 12:06 - 1004083685 _____ C:\Users\PawełPc\Desktop\Broken flowers (2005).mp4 2023-08-19 00:09 - 2023-08-19 00:39 - 000000000 ____D C:\Users\PawełPc\Desktop\Moje.Zdj 2023-08-15 21:45 - 2023-08-15 21:45 - 000000266 __RSH C:\ProgramData\ntuser.pol 2023-08-14 16:46 - 2023-08-14 17:23 - 000000000 ____D C:\Users\PawełPc\Desktop\Yahoo Cookies 2023-08-14 15:53 - 2023-08-30 17:24 - 000000000 ____D C:\Users\PawełPc\Desktop\Telegram 2023-08-14 15:46 - 2023-08-14 15:46 - 051388450 _____ C:\Users\PawełPc\Desktop\tportable-x64.4.8.10.zip 2023-08-14 00:48 - 2023-08-14 00:48 - 000150927 _____ C:\Users\PawełPc\Desktop\Yahoo Cookies ( dostępy do maili , mogą byc tam paypale itd).rar 2023-08-11 14:42 - 2023-08-11 14:42 - 000004264 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1665155267 2023-08-11 14:42 - 2023-08-11 14:42 - 000001422 _____ C:\Users\PawełPc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2023-08-09 18:24 - 2023-08-09 18:24 - 000104829 _____ C:\Users\PawełPc\Desktop\oswiadczenie-odstapienia-od-umowy-wykonania-instalacji-pompy-ciepla.pdf 2023-08-07 11:04 - 2023-08-07 11:04 - 010423878 _____ C:\Users\PawełPc\Desktop\20230807_110425_adg_settings_7.8.3779.0.adg 2023-08-04 22:30 - 2023-08-04 22:30 - 000000000 ____D C:\Users\PawełPc\Desktop\Załącznik do maila 2023-08-04 19:28 - 2023-08-04 19:28 - 001005789 _____ C:\Users\PawełPc\Desktop\Załącznik do maila.zip 2023-08-04 19:28 - 2023-08-04 19:28 - 000768620 _____ C:\Users\PawełPc\Desktop\Załącznik do maila1.zip 2023-07-31 20:26 - 2023-08-21 00:16 - 000178048 _____ C:\Users\Public\Documents\SIGVERIF.TXT 2023-07-20 20:35 - 2023-08-31 14:33 - 000000647 _____ C:\Users\PawełPc\Desktop\GRA.txt 2023-07-14 11:02 - 2023-07-14 11:02 - 000000000 ____D C:\Users\PawełPc\AppData\Local\Abelssoft 2023-07-14 10:38 - 2023-05-26 12:47 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthA2dp.sys 2023-07-14 10:38 - 2023-05-26 12:47 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthHfEnum.sys 2023-07-13 23:46 - 2023-07-13 23:46 - 002649072 _____ (Malwarebytes) C:\Users\PawełPc\Desktop\MBSetup.exe 2023-07-03 00:56 - 2023-07-10 23:27 - 000000092 _____ C:\Users\PawełPc\Desktop\Kredyty bankowe, błędy.txt 2023-06-30 21:04 - 2023-06-26 10:45 - 000848992 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2023-06-30 21:04 - 2023-06-26 10:45 - 000848992 _____ C:\WINDOWS\system32\vulkaninfo.exe 2023-06-30 21:04 - 2023-06-26 10:45 - 000713824 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2023-06-30 21:04 - 2023-06-26 10:45 - 000713824 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2023-06-30 21:04 - 2023-06-26 10:44 - 001487384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2023-06-30 21:04 - 2023-06-26 10:44 - 001227312 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2023-06-30 21:04 - 2023-06-26 10:44 - 000653408 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2023-06-30 21:04 - 2023-06-26 10:44 - 000653408 _____ C:\WINDOWS\system32\vulkan-1.dll 2023-06-30 21:04 - 2023-06-26 10:44 - 000637024 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2023-06-30 21:04 - 2023-06-26 10:44 - 000637024 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2023-06-30 21:04 - 2023-06-26 10:40 - 000934448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll 2023-06-30 21:04 - 2023-06-26 10:40 - 000669232 _____ C:\WINDOWS\system32\nvofapi64.dll 2023-06-30 21:04 - 2023-06-26 10:40 - 000504320 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 002168368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 001621528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 001538048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 001195520 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 000992816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2023-06-30 21:04 - 2023-06-26 10:39 - 000777216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe 2023-06-30 21:04 - 2023-06-26 10:39 - 000769024 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 014520344 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 012066328 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 006190640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 005844504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 005550640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 003482648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2023-06-30 21:04 - 2023-06-26 10:38 - 000459288 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe 2023-06-30 21:04 - 2023-06-26 10:37 - 000852976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe 2023-06-30 21:04 - 2023-06-26 10:36 - 007858072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2023-06-30 21:04 - 2023-06-26 10:36 - 006736984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2023-06-30 21:04 - 2023-06-24 03:20 - 000107938 _____ C:\WINDOWS\system32\nvinfo.pb 2023-06-28 13:26 - 2023-09-05 16:17 - 000000000 ____D C:\WINDOWS\system32\Tasks\PowerToys 2023-06-28 13:26 - 2023-06-28 13:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerToys (Preview) 2023-06-28 13:07 - 2023-07-13 12:33 - 000000000 ____D C:\Users\PawełPc\AppData\Local\Adobe 2023-06-27 18:26 - 2023-06-20 17:58 - 000515528 _____ (Intel) C:\WINDOWS\system32\libvpl.dll 2023-06-27 18:26 - 2023-06-20 17:58 - 000455664 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll 2023-06-27 18:26 - 2023-06-20 17:51 - 000497648 _____ C:\WINDOWS\system32\ze_tracing_layer.dll 2023-06-27 18:26 - 2023-06-20 17:51 - 000437752 _____ C:\WINDOWS\system32\ze_loader.dll 2023-06-27 18:26 - 2023-06-20 17:51 - 000288192 _____ C:\WINDOWS\system32\ze_validation_layer.dll 2023-06-27 18:25 - 2023-06-20 17:57 - 000937504 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll 2023-06-27 18:25 - 2023-06-20 17:56 - 000700360 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll 2023-06-27 18:25 - 2023-06-20 17:55 - 000586232 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll 2023-06-27 18:25 - 2023-06-20 17:55 - 000447760 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll 2023-06-27 18:25 - 2023-06-20 17:54 - 000488056 _____ C:\WINDOWS\SysWOW64\IntelControlLib32.dll 2023-06-27 18:25 - 2023-06-20 17:50 - 027958720 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll 2023-06-27 18:25 - 2023-06-20 17:50 - 020682736 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll 2023-06-27 18:25 - 2023-06-20 17:49 - 000274288 _____ C:\WINDOWS\system32\ControlLib.dll 2023-06-27 18:25 - 2023-06-20 17:49 - 000223608 _____ C:\WINDOWS\SysWOW64\ControlLib32.dll 2023-06-25 19:54 - 2023-06-25 19:54 - 000000000 ____D C:\Users\PawełPc\AppData\Local\SquirrelTemp 2023-06-25 00:54 - 2023-09-05 16:21 - 000000000 ____D C:\FRST 2023-06-23 18:11 - 2023-06-23 18:11 - 000487688 _____ C:\Users\PawełPc\Desktop\Voice.ai-Downloader-alphaver-997b06157ac740ff96e9fbbfe7fa74c0.exe 2023-06-20 10:50 - 2023-06-20 10:50 - 005177152 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\Netwtw10.sys 2023-06-20 10:50 - 2023-06-20 10:50 - 001476880 _____ (Intel Corporation) C:\WINDOWS\system32\IntelIHVRouter10.dll 2023-06-09 12:19 - 2023-06-09 12:19 - 000000000 ____D C:\Users\PawełPc\Documents\FXHOME ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-09-05 16:22 - 2023-06-04 13:23 - 000000000 ____D C:\ProgramData\Adguard 2023-09-05 16:21 - 2022-08-19 12:14 - 000000000 ____D C:\Users\PawełPc\Desktop\Farbar Recovery Scan Tool 2023-09-05 16:20 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-09-05 16:19 - 2022-07-14 00:17 - 000000000 ____D C:\Program Files (x86)\Google 2023-09-05 16:18 - 2022-08-19 18:17 - 000000000 ____D C:\ProgramData\NVIDIA 2023-09-05 16:18 - 2022-07-15 22:11 - 000000000 ____D C:\Program Files (x86)\Adguard 2023-09-05 16:18 - 2022-07-13 23:28 - 000000010 ____H C:\Users\Public\Documents\username.txt 2023-09-05 16:18 - 2022-07-13 23:28 - 000000007 ____H C:\Users\Public\Documents\kbformate.txt 2023-09-05 16:17 - 2022-11-22 22:02 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-09-05 16:17 - 2022-07-13 21:52 - 000000000 __SHD C:\Users\PawełPc\IntelGraphicsProfiles 2023-09-05 16:17 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ServiceState 2023-09-05 16:17 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-09-05 16:17 - 2021-07-26 20:36 - 000000000 ____D C:\Intel 2023-09-05 14:57 - 2022-07-17 21:35 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\DMCache 2023-09-05 14:57 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2023-09-05 14:57 - 2022-05-07 07:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-09-05 12:55 - 2022-11-22 22:04 - 001797768 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-09-05 12:55 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF 2023-09-05 00:47 - 2023-05-12 15:30 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Corsair 2023-09-05 00:45 - 2022-08-19 17:46 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Wise Uninstaller 2023-09-04 16:37 - 2022-08-19 21:36 - 000000000 ____D C:\Users\PawełPc\AppData\Local\D3DSCache 2023-09-03 18:18 - 2022-11-22 22:00 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-09-02 22:06 - 2023-01-03 20:36 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Notepad++ 2023-09-02 22:06 - 2022-08-23 17:22 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\qBittorrent 2023-09-02 18:32 - 2022-07-13 21:36 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-09-02 18:32 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps 2023-09-02 18:32 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-09-02 18:28 - 2023-01-19 18:35 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-09-02 18:28 - 2022-11-22 22:02 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2209655758-1128453743-3939653386-1001 2023-09-01 17:18 - 2022-07-13 23:28 - 000000000 ____D C:\Users\PawełPc\AppData\Local\CrashDumps 2023-09-01 10:11 - 2022-07-20 23:06 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-09-01 10:11 - 2022-07-20 23:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-09-01 00:00 - 2022-07-14 00:17 - 000002260 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-09-01 00:00 - 2022-07-14 00:17 - 000002219 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2023-08-31 15:04 - 2022-07-20 23:06 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-08-30 22:45 - 2022-07-13 21:50 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2023-08-30 21:38 - 2023-02-01 22:19 - 000002387 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk 2023-08-28 10:30 - 2022-07-15 15:28 - 000000000 ____D C:\Program Files\WinRAR 2023-08-27 20:07 - 2022-07-15 15:29 - 000001101 _____ C:\ProgramData\Microsoft\Windows\Start Menu\WinRAR.lnk 2023-08-27 20:07 - 2022-07-15 15:29 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-08-27 20:07 - 2022-07-15 15:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2023-08-26 22:48 - 2023-02-28 22:04 - 000000000 ____D C:\ProgramData\Package Cache 2023-08-26 22:48 - 2022-07-13 23:08 - 000000000 ____D C:\Program Files\Intel 2023-08-25 17:33 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate 2023-08-25 17:17 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-08-25 17:04 - 2022-11-22 22:00 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK 2023-08-25 17:01 - 2022-11-22 22:00 - 000389128 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\UUS 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\Provisioning 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-08-25 17:01 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-08-25 15:44 - 2022-11-22 22:01 - 003210752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-08-24 10:07 - 2022-07-13 21:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-08-23 15:49 - 2023-04-25 23:56 - 000000187 _____ C:\Users\PawełPc\Desktop\WPLIK do 19.11.2023.txt 2023-08-20 23:32 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2023-08-20 01:24 - 2022-09-21 15:31 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Microsoft\Szablony 2023-08-14 19:13 - 2022-09-23 21:48 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2023-08-13 18:31 - 2022-09-21 15:31 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Microsoft\Word 2023-08-11 15:01 - 2022-11-22 22:02 - 000000000 ____D C:\WINDOWS\system32\Tasks\Abelssoft 2023-08-11 14:54 - 2022-07-17 21:35 - 000000000 ____D C:\Program Files (x86)\Internet Download Manager 2023-08-11 14:53 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup 2023-08-11 14:52 - 2022-07-13 21:48 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-08-11 14:51 - 2022-07-17 21:35 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\IDM 2023-08-11 14:44 - 2022-07-13 21:48 - 175983240 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-08-09 19:09 - 2022-09-21 15:31 - 000000000 ____D C:\Users\PawełPc\AppData\Roaming\Microsoft\Office 2023-08-07 16:32 - 2023-02-01 22:19 - 000003668 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineUA{8A52EC01-4EE8-44E1-8080-AE4AE6A4CCF1} 2023-08-07 16:32 - 2023-02-01 22:19 - 000003544 _____ C:\WINDOWS\system32\Tasks\BraveSoftwareUpdateTaskMachineCore{403F9B5E-F7F7-44CF-BDED-534DD74450A7} ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-12-19 18:47 - 2022-12-19 18:47 - 000000227 _____ () C:\ProgramData\fontcacheev1.dat 2017-01-14 13:37 - 2017-01-14 13:37 - 002174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll 2022-12-09 12:54 - 2022-12-09 12:54 - 000000012 _____ () C:\Users\PawełPc\AppData\Roaming\2457fe3357cbf1220231e8917326f70f 2023-03-01 02:07 - 2023-03-01 02:07 - 000000039 _____ () C:\Users\PawełPc\AppData\Roaming\epm_user.ini 2023-05-14 17:43 - 2023-05-14 17:45 - 000000128 _____ () C:\Users\PawełPc\AppData\Roaming\winscp.rnd 2022-11-23 12:53 - 2023-01-19 02:18 - 000007601 _____ () C:\Users\PawełPc\AppData\Local\Resmon.ResmonCfg 2022-07-31 15:49 - 2022-07-31 15:49 - 003212320 _____ () C:\Users\PawełPc\AppData\Local\usbdrvtemp.7zz ==================== SigCheckExt ========================= 2022-12-09 12:35 - 2011-12-07 20:37 - 000148992 _____ ( ) C:\WINDOWS\system32\lagarith.dll 2022-12-09 12:35 - 2017-07-30 13:50 - 003799552 _____ (x264vfw project) C:\WINDOWS\system32\x264vfw64.dll 2022-12-09 12:35 - 2019-12-28 12:00 - 000784384 _____ C:\WINDOWS\system32\xvidcore.dll 2022-12-09 12:35 - 2019-12-28 12:00 - 000310784 _____ C:\WINDOWS\system32\xvidvfw.dll 2022-07-13 23:44 - 2022-07-13 23:44 - 000010752 _____ C:\WINDOWS\SetupAfterRebootService.exe 2022-04-06 08:58 - 2022-04-06 08:58 - 000017920 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\acpimof.dll 2022-12-04 23:29 - 2006-08-25 21:17 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl70.dll 2022-12-04 23:29 - 2011-01-12 20:53 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\atl71.dll 2022-12-09 12:35 - 2011-12-07 20:32 - 000216064 _____ ( ) C:\WINDOWS\SysWOW64\lagarith.dll 2022-12-04 23:29 - 2006-08-25 22:07 - 001024000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70chs.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70cht.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70deu.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70enu.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70esp.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70fra.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70ita.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70jpn.dll 2022-12-04 23:29 - 2006-08-25 22:15 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70kor.dll 2022-12-04 23:29 - 2006-08-25 22:28 - 001017344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfc70u.dll 2022-12-04 23:29 - 2011-01-12 21:19 - 001060864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71.dll 2022-12-04 23:29 - 2011-01-12 21:25 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHS.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71CHT.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71DEU.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ENU.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ESP.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71FRA.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71ITA.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71JPN.DLL 2022-12-04 23:29 - 2011-01-12 21:25 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71KOR.DLL 2022-12-04 23:29 - 2011-01-12 21:36 - 001054208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFC71u.dll 2022-12-04 23:29 - 2008-04-15 14:00 - 001355776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvbvm50.dll 2022-12-04 23:29 - 2005-01-20 17:25 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvci70.dll 2022-12-04 23:29 - 2002-01-05 03:40 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVCP70.DLL 2022-12-04 23:29 - 2007-02-01 18:13 - 000503808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp71.dll 2022-12-04 23:29 - 2007-01-30 18:04 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr70.dll 2022-12-04 23:29 - 2007-02-01 15:11 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr71.dll 2022-12-04 23:29 - 1994-11-17 23:00 - 000210944 _____ C:\WINDOWS\SysWOW64\msvcrt10.dll 2022-12-04 23:29 - 1996-01-12 02:00 - 000722192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Vb40032.dll 2022-12-09 12:35 - 2017-07-30 13:50 - 003850240 _____ (x264vfw project) C:\WINDOWS\SysWOW64\x264vfw.dll 2022-12-09 12:35 - 2019-12-28 12:00 - 000681984 _____ C:\WINDOWS\SysWOW64\xvidcore.dll 2022-12-09 12:35 - 2019-12-28 12:00 - 000284160 _____ C:\WINDOWS\SysWOW64\xvidvfw.dll 2022-07-14 00:24 - 2022-07-13 17:33 - 000855040 _____ (Parhelia Tools) C:\Users\PawełPc\Desktop\Google Chrome Backup 2.1.0.216.exe 2023-02-14 23:00 - 2023-02-14 23:00 - 001068266 _____ (Tomasz Pawlak ) C:\Users\PawełPc\Desktop\KGB Archiver 1.2.1.24.exe 2023-06-01 21:05 - 2023-06-01 21:05 - 008612957 _____ (ALLCinema Ltd. ) C:\Users\PawełPc\Desktop\Klikacz_v30.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Firmware Boot Manager --------------------- identifier {fwbootmgr} displayorder {bootmgr} timeout 1 Windows Boot Manager -------------------- identifier {bootmgr} device partition=\Device\HarddiskVolume2 path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI description Windows Boot Manager locale pl-PL inherit {globalsettings} flightsigning Yes default {current} resumeobject {213f2794-264e-11ed-a74d-d85ed3063a26} displayorder {current} toolsdisplayorder {memdiag} timeout 0 Windows Boot Loader ------------------- identifier {213f2792-264e-11ed-a74d-d85ed3063a26} device ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{213f2793-264e-11ed-a74d-d85ed3063a26} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[unknown]\Recovery\WindowsRE\Winre.wim,{213f2793-264e-11ed-a74d-d85ed3063a26} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Windows Boot Loader ------------------- identifier {current} device partition=C: path \WINDOWS\system32\winload.efi description Windows 11 locale pl-PL inherit {bootloadersettings} recoverysequence {213f2797-264e-11ed-a74d-d85ed3063a26} displaymessageoverride Recovery recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 osdevice partition=C: systemroot \WINDOWS resumeobject {213f2794-264e-11ed-a74d-d85ed3063a26} nx OptIn bootmenupolicy Standard quietboot Yes Windows Boot Loader ------------------- identifier {213f2797-264e-11ed-a74d-d85ed3063a26} device ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{213f2798-264e-11ed-a74d-d85ed3063a26} path \windows\system32\winload.efi description Windows Recovery Environment locale pl-PL inherit {bootloadersettings} displaymessage Recovery osdevice ramdisk=[\Device\HarddiskVolume5]\Recovery\WindowsRE\Winre.wim,{213f2798-264e-11ed-a74d-d85ed3063a26} systemroot \windows nx OptIn bootmenupolicy Standard winpe Yes Resume from Hibernate --------------------- identifier {213f2794-264e-11ed-a74d-d85ed3063a26} device partition=C: path \WINDOWS\system32\winresume.efi description Windows Resume Application locale pl-PL inherit {resumeloadersettings} recoverysequence {213f2797-264e-11ed-a74d-d85ed3063a26} recoveryenabled Yes isolatedcontext Yes allowedinmemorysettings 0x15000075 filedevice partition=C: custom:21000026 partition=C: filepath \hiberfil.sys bootmenupolicy Standard debugoptionenabled No Windows Memory Tester --------------------- identifier {memdiag} device partition=\Device\HarddiskVolume2 path \EFI\Microsoft\Boot\memtest.efi description Diagnostyka pamięci systemu Windows locale pl-PL inherit {globalsettings} badmemoryaccess Yes EMS Settings ------------ identifier {emssettings} bootems No Debugger Settings ----------------- identifier {dbgsettings} debugtype Local RAM Defects ----------- identifier {badmemory} Global Settings --------------- identifier {globalsettings} inherit {dbgsettings} {emssettings} {badmemory} Boot Loader Settings -------------------- identifier {bootloadersettings} inherit {globalsettings} {hypervisorsettings} Hypervisor Settings ------------------- identifier {hypervisorsettings} hypervisordebugtype Serial hypervisordebugport 1 hypervisorbaudrate 115200 Resume Loader Settings ---------------------- identifier {resumeloadersettings} inherit {globalsettings} Device options -------------- identifier {213f2798-264e-11ed-a74d-d85ed3063a26} description Windows Recovery ramdisksdidevice partition=\Device\HarddiskVolume5 ramdisksdipath \Recovery\WindowsRE\boot.sdi ==================== Koniec FRST.txt ========================