Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 17-01-2021 Uruchomiony przez grz_k (administrator) DESKTOP-LRAVR6S (ASUS All Series) (17-01-2021 20:02:26) Uruchomiony z C:\Users\grz_k\Desktop Załadowane profile: grz_k Platform: Windows 10 Pro Wersja 20H2 19042.746 (X64) Język: Polski (Polska) Domyślna przeglądarka: Opera Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0361901.inf_amd64_204a65b18f2a904a\B361909\atiesrxx.exe (Discord Inc. -> Discord Inc.) C:\Users\grz_k\AppData\Local\Discord\app-0.0.309\Discord.exe <6> (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Malwarebytes Corporation -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServices.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_2.47.10001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2011.16.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxApp_48.72.4001.0_x64__8wekyb3d8bbwe\XboxApp.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\osk.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7> (Valve -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3411232 2020-12-21] (Valve -> Valve Corporation) HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32873544 2021-01-15] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [AdobeBridge] => [X] HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3145504 2020-12-02] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [OscarX7Mouse5Mode] => C:\Program Files (x86)\OscarX7Editor5Mode\OscarX7Editor5Mode\OscarEditor.exe [3571712 2013-02-01] () [Brak podpisu cyfrowego] HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [Discord] => C:\Users\grz_k\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub) HKU\S-1-5-21-3511771782-2207123085-3026470419-1001\...\Run: [Gaijin.Net Updater] => C:\Users\grz_k\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2374376 2020-12-03] (Gaijin Network LTD -> Gaijin) HKU\S-1-5-18\...\RunOnce: [Application Restart #0] => C:\Windows\System32\osk.exe [653312 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-18\...\RunOnce: [Application Restart #1] => C:\Windows\System32\osk.exe [653312 2019-12-07] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\87.0.4280.141\Installer\chrmstp.exe [2021-01-17] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0CBEB1A6-5D29-4C57-8FB1-FCE5F41D06A2} - System32\Tasks\Opera scheduled Autoupdate 1597176175 => C:\Users\grz_k\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-05] (Opera Software AS -> Opera Software) Task: {344EDF98-8BF3-4D2D-9683-C290B302E7B5} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1710472 2020-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {3E0D766A-9A1D-419F-BC63-B0AE8051E232} - System32\Tasks\PostponeDeviceSetupToast_S-1-5-21-3511771782-2207123085-3026470419-1001_1 => {5ded83ef-1e99-48cf-bf83-676d2a6db408} C:\Windows\System32\oobe\UserOOBE.dll [411648 2021-01-16] (Microsoft Windows -> Microsoft Corporation) Task: {4A6CD39B-F3FE-493C-AC0A-C3179C0DDFFC} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61624 2020-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {4ECF17D3-2BFB-4677-8CEC-C90AFE529681} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1710472 2020-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {5AD7AA5F-C41A-4BD0-863A-B5BEDE7AAD9B} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3511771782-2207123085-3026470419-500 => C:\Users\grz_k\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {66A80C1D-F58A-4044-8F80-716FFA5EF68C} - System32\Tasks\Agent Activation Runtime\S-1-5-21-3511771782-2207123085-3026470419-1001 => C:\Windows\System32\AgentActivationRuntimeStarter.exe [13312 2020-12-12] (Microsoft Windows -> ) Task: {67D5026B-317C-487E-B1B9-9A6417F55536} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [69304 2020-12-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {69F7DC0E-10FE-4971-9D18-7C27C75C41AD} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-17] (Google LLC -> Google LLC) Task: {A968602B-C09D-4D6E-B30C-A7F84CA11297} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2021-01-17] (Google LLC -> Google LLC) Task: {C80591BB-0F4B-4B03-A28B-9D359E34BDDF} - System32\Tasks\Opera scheduled assistant Autoupdate 1597176186 => C:\Users\grz_k\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-05] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\grz_k\AppData\Local\Programs\Opera\assistant" $(Arg0) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{09f801f3-a2ba-4a62-90ed-3f8c50f94c71}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{ed26066d-afe0-42d5-b119-90bb9d1e7ee7}: [DhcpNameServer] 192.168.42.129 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\grz_k\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-17] Edge Profile: C:\Users\grz_k\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2021-01-14] FireFox: ======== FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Brak podpisu cyfrowego] Chrome: ======= CHR Profile: C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default [2021-01-17] CHR StartupUrls: Default -> "hxxp://192.168.8.1/html/home.html","hxxp://www.sweet-page.com/?type=hp&ts=1408119258&from=cor&uid=WDCXWD2000JS-00MHB0_WD-WCANK884140841408" CHR NewTab: Default -> Active:"chrome-extension://llaficoajjainaijghjlofdfmbjpebpa/newtab.html" CHR Extension: (Prezentacje) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-01-17] CHR Extension: (Dokumenty) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-01-17] CHR Extension: (Dysk Google) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-01-17] CHR Extension: (YouTube) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-01-17] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-01-17] CHR Extension: (Arkusze) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-01-17] CHR Extension: (Dokumenty Google offline) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-01-17] CHR Extension: (LastPass: Free Password Manager) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2021-01-17] CHR Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\iohcojnlgnfbmjfjfkbhahhmppcggdog [2021-01-17] CHR Extension: (Better Battlelog (BBLog)) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjlfnjepjdmlppapoikepbaabbghofma [2021-01-17] CHR Extension: (Red Black) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkdalccnojhegeedgifgmlcggigcgegh [2021-01-17] CHR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\llaficoajjainaijghjlofdfmbjpebpa [2021-01-17] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-17] CHR Extension: (Google Quick Scroll) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\okanipcmceoeemlbjnmnbdibhgpbllgc [2021-01-17] CHR Extension: (Gmail) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-01-17] CHR Extension: (Chrome Media Router) - C:\Users\grz_k\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-17] Opera: ======= OPR Profile: C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable [2021-01-17] OPR Notifications: Opera Stable -> hxxps://forum.dobreprogramy.pl; hxxps://key-drop.com; hxxps://www25a.tabathaherman.pro OPR StartupUrls: Opera Stable -> "chrome-extension://pncpfofkienlinhfknpmgjnjhdoclfhh/newtab.html#" OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2020-11-27] OPR Extension: (EverSync - Sync bookmarks, backup favorites) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\ffhogmjbkahkkpjpjmeppoegnjhpopmc [2020-11-27] OPR Extension: (LastPass: Free Password Manager) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\hnjalnkldgigidggphhmacmimbdlafdo [2020-12-10] OPR Extension: (Zainstaluj rozszerzenia Chrome) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2020-12-05] OPR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2020-12-15] OPR Extension: (Speed Dial [FVD] - New Tab Page, 3D, Sync...) - C:\Users\grz_k\AppData\Roaming\Opera Software\Opera Stable\Extensions\pncpfofkienlinhfknpmgjnjhdoclfhh [2020-11-27] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936456 2015-05-14] (Microsoft Windows Hardware Compatibility Publisher -> ) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6744288 2019-06-26] (Malwarebytes Corporation -> Malwarebytes) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2523448 2020-12-02] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3478336 2020-12-02] (Electronic Arts, Inc. -> Electronic Arts) R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2020-12-31] (Even Balance, Inc. -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-01-16] (Microsoft Windows Publisher -> Microsoft Corporation) S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [Brak podpisu cyfrowego] R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [130056 2018-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15368 2015-05-14] (Microsoft Windows Hardware Compatibility Publisher -> ) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [199768 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [20936 2019-06-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [224408 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [73584 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [275232 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [116832 2021-01-17] (Malwarebytes Corporation -> Malwarebytes) S3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2020-06-09] (TEFINCOM S.A. -> The OpenVPN Project) S3 tapprotonvpn; C:\Windows\System32\drivers\tapprotonvpn.sys [49008 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project) S3 tmhidusb; C:\Windows\system32\DRIVERS\tmhidusb.sys [340488 2018-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows -> Microsoft Corporation) S3 semav6msr64; \??\C:\Windows\system32\drivers\semav6msr64.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-17 20:02 - 2021-01-17 20:02 - 000018964 _____ C:\Users\grz_k\Desktop\FRST.txt 2021-01-17 19:58 - 2021-01-17 19:58 - 000275232 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-01-17 19:58 - 2021-01-17 19:58 - 000224408 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2021-01-17 19:58 - 2021-01-17 19:58 - 000116832 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2021-01-17 19:58 - 2021-01-17 19:58 - 000073584 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2021-01-17 19:58 - 2021-01-17 19:58 - 000001885 _____ C:\Users\grz_k\Downloads\FirstBackup.spg 2021-01-17 19:55 - 2021-01-16 09:30 - 000000852 _____ C:\Windows\system32\Drivers\etc\hosts.bak 2021-01-17 19:52 - 2021-01-17 19:53 - 000000000 ____D C:\Users\grz_k\Downloads\ComIntRep_5003 2021-01-17 19:47 - 2021-01-17 19:52 - 003183042 _____ C:\Users\grz_k\Downloads\ComIntRep_5003.zip 2021-01-17 19:46 - 2021-01-17 19:46 - 000009209 _____ C:\Users\grz_k\Downloads\PL.rar 2021-01-17 19:44 - 2021-01-17 19:47 - 000684032 _____ (Speed Guide Inc.) C:\Users\grz_k\Downloads\TCPOptimizer.exe 2021-01-17 19:34 - 2021-01-17 19:34 - 000199768 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-01-17 19:26 - 2021-01-17 19:26 - 000001501 _____ C:\Users\grz_k\Desktop\mbam raport.txt 2021-01-17 18:57 - 2021-01-17 19:28 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-01-17 18:57 - 2021-01-17 18:57 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-01-17 18:57 - 2021-01-17 18:57 - 000000000 ____D C:\Users\grz_k\AppData\Local\mbamtray 2021-01-17 18:57 - 2021-01-17 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2021-01-17 18:57 - 2021-01-17 18:57 - 000000000 ____D C:\Program Files\Malwarebytes 2021-01-17 18:57 - 2019-06-26 13:00 - 000020936 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-01-17 18:37 - 2021-01-17 18:56 - 064333800 _____ (Malwarebytes ) C:\Users\grz_k\Downloads\mb3-setup-1878.1878-3.8.3.2965.exe 2021-01-17 17:55 - 2021-01-17 17:55 - 000000000 ____D C:\Users\grz_k\Desktop\FRST-OlderVersion 2021-01-17 17:54 - 2021-01-17 20:02 - 000000000 ____D C:\FRST 2021-01-17 08:05 - 2021-01-17 08:05 - 000004040 _____ C:\Windows\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-3511771782-2207123085-3026470419-1001_1 2021-01-17 00:40 - 2021-01-17 00:40 - 000002329 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-01-17 00:40 - 2021-01-17 00:40 - 000002288 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-01-17 00:40 - 2021-01-17 00:40 - 000000000 ____D C:\Program Files\Google 2021-01-17 00:37 - 2021-01-17 00:37 - 000003568 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-01-17 00:37 - 2021-01-17 00:37 - 000003444 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-01-16 21:44 - 2021-01-16 21:44 - 000020480 _____ () C:\Users\grz_k\Downloads\Noclip-346-1-00-1608396550.exe 2021-01-16 21:02 - 2021-01-16 21:03 - 000821073 _____ C:\Users\grz_k\Downloads\cyberpunk_2077_v103v106_plus_32_trainer.zip 2021-01-16 13:04 - 2021-01-16 13:04 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Tropico 4 2021-01-16 10:55 - 2021-01-16 10:55 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2021-01-16 10:55 - 2021-01-16 10:55 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2021-01-16 10:55 - 2021-01-16 10:55 - 000467968 _____ C:\Windows\system32\AssignedAccessCsp.dll 2021-01-16 10:55 - 2021-01-16 10:55 - 000157184 _____ C:\Windows\system32\uwfcsp.dll 2021-01-16 10:55 - 2021-01-16 10:55 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll 2021-01-16 10:55 - 2021-01-16 10:55 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll 2021-01-16 10:55 - 2021-01-16 10:55 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 002254336 _____ C:\Windows\system32\dwmscene.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 001162240 _____ C:\Windows\system32\MBR2GPT.EXE 2021-01-16 10:54 - 2021-01-16 10:54 - 000729600 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2021-01-16 10:54 - 2021-01-16 10:54 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2021-01-16 10:54 - 2021-01-16 10:54 - 000544768 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000455680 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000422912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-01-16 10:54 - 2021-01-16 10:54 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2021-01-16 10:54 - 2021-01-16 10:54 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2021-01-16 10:54 - 2021-01-16 10:54 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2021-01-16 10:54 - 2021-01-16 10:54 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe 2021-01-16 10:54 - 2021-01-16 10:54 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2021-01-16 10:54 - 2021-01-16 10:54 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2021-01-16 10:54 - 2021-01-16 10:54 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2021-01-16 10:54 - 2021-01-16 10:54 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-01-16 10:54 - 2021-01-16 10:54 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2021-01-16 10:54 - 2021-01-16 10:54 - 000010894 _____ C:\Windows\system32\DrtmAuthTxt.wim 2021-01-16 10:53 - 2021-01-16 10:53 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-01-16 10:53 - 2021-01-16 10:53 - 000643072 _____ C:\Windows\system32\WindowManagementAPI.dll 2021-01-16 10:53 - 2021-01-16 10:53 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-01-16 10:53 - 2021-01-16 10:53 - 000455168 _____ C:\Windows\system32\ssdm.dll 2021-01-16 10:53 - 2021-01-16 10:53 - 000306688 _____ C:\Windows\system32\HeatCore.dll 2021-01-16 10:53 - 2021-01-16 10:53 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2021-01-16 10:53 - 2021-01-16 10:53 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-01-16 10:53 - 2021-01-16 10:53 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll 2021-01-16 10:40 - 2021-01-17 00:44 - 000000000 ____D C:\Users\grz_k\AppData\Local\Google 2021-01-16 10:40 - 2021-01-17 00:37 - 000000000 ____D C:\Program Files (x86)\Google 2021-01-16 10:40 - 2021-01-16 10:40 - 001321688 _____ (Google LLC) C:\Users\grz_k\Downloads\ChromeSetup.exe 2021-01-16 09:51 - 2021-01-16 09:51 - 000000000 ___HD C:\$WinREAgent 2021-01-16 09:29 - 2021-01-16 09:29 - 000000000 ____D C:\AdwCleaner 2021-01-16 09:21 - 2021-01-16 09:21 - 000000000 ____D C:\Users\grz_k\AppData\Local\mbam 2021-01-16 09:21 - 2021-01-16 09:21 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-16 09:18 - 2021-01-16 09:18 - 002086424 _____ (Malwarebytes) C:\Users\grz_k\Downloads\MBSetup.exe 2021-01-16 09:16 - 2021-01-16 09:20 - 008458096 _____ (Malwarebytes) C:\Users\grz_k\Desktop\adwcleaner_8.0.9.exe 2021-01-15 13:49 - 2021-01-15 15:32 - 000000000 ____D C:\Users\grz_k\AppData\Local\STAR WARS Battlefront II 2021-01-15 13:49 - 2021-01-15 13:50 - 000000000 ____D C:\Users\grz_k\Documents\STAR WARS Battlefront II 2021-01-15 12:26 - 2021-01-15 12:26 - 000000873 _____ C:\Users\Public\Desktop\STAR WARS Battlefront II.lnk 2021-01-15 12:26 - 2021-01-15 12:26 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller 2021-01-15 12:26 - 2021-01-15 12:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STAR WARS Battlefront II 2021-01-15 10:05 - 2021-01-15 10:17 - 000000000 ____D C:\Users\grz_k\AppData\LocalLow\BitTorrent 2021-01-14 22:46 - 2021-01-14 22:46 - 000072615 _____ C:\Users\grz_k\Downloads\generImg.php 2021-01-12 09:14 - 2021-01-12 09:14 - 000000222 _____ C:\Users\grz_k\Desktop\Wreckfest.url 2021-01-11 17:49 - 2021-01-11 17:49 - 000000056 _____ C:\Users\grz_k\Downloads\stream.pls 2021-01-10 01:16 - 2021-01-10 01:16 - 000356768 _____ (Igor Pavlov) C:\Users\grz_k\Downloads\ISLC v1.0.2.2.exe 2021-01-10 01:16 - 2021-01-10 01:16 - 000000000 ____D C:\Users\grz_k\Downloads\ISLC v1.0.2.2 2021-01-08 13:17 - 2021-01-08 13:17 - 000000999 _____ C:\Users\grz_k\Desktop\HD Tune.lnk 2021-01-08 13:17 - 2021-01-08 13:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2021-01-08 13:17 - 2021-01-08 13:17 - 000000000 ____D C:\Program Files (x86)\HD Tune 2021-01-07 23:43 - 2021-01-07 23:43 - 000065259 _____ C:\Users\grz_k\Downloads\FAKTURA-F_10516668_01_21-KONTO_13329803.pdf 2021-01-07 20:04 - 2021-01-17 17:55 - 002295296 _____ (Farbar) C:\Users\grz_k\Desktop\FRST64.exe 2021-01-07 14:53 - 2021-01-07 14:53 - 000000222 _____ C:\Users\grz_k\Desktop\Farming Simulator 19.url 2021-01-06 23:26 - 2021-01-06 23:26 - 006507097 _____ C:\Users\grz_k\Downloads\wsusoffline120.zip 2021-01-02 18:06 - 2021-01-02 18:06 - 000000000 ____D C:\Users\grz_k\AppData\Local\FLiNGTrainer 2021-01-02 14:59 - 2021-01-02 14:59 - 000000839 _____ C:\Users\grz_k\Desktop\World of Tanks EU.lnk 2021-01-02 14:52 - 2021-01-04 15:57 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Wargaming.net 2021-01-02 14:52 - 2021-01-02 14:59 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wargaming.net 2021-01-02 14:52 - 2021-01-02 14:52 - 000000846 _____ C:\Users\grz_k\Desktop\Game Center.lnk 2021-01-02 14:49 - 2021-01-02 14:49 - 000000000 ____D C:\ProgramData\Wargaming.net 2021-01-02 12:12 - 2021-01-02 12:12 - 000001078 _____ C:\Users\grz_k\Desktop\WarThunder.lnk 2021-01-02 12:12 - 2021-01-02 12:12 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2021-01-02 12:12 - 2021-01-02 12:12 - 000000000 ____D C:\Users\grz_k\AppData\Local\Gaijin 2021-01-02 12:12 - 2021-01-02 12:12 - 000000000 ____D C:\ProgramData\Gaijin 2021-01-01 13:23 - 2021-01-01 23:25 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2021-01-01 13:23 - 2021-01-01 23:25 - 000000000 ____D C:\ProgramData\EA Logs 2021-01-01 13:23 - 2021-01-01 13:23 - 000000000 ____D C:\Users\grz_k\Documents\Battlefield 3 2021-01-01 13:23 - 2021-01-01 13:23 - 000000000 ____D C:\ProgramData\EA Core 2021-01-01 10:35 - 2021-01-01 10:35 - 000000000 ____D C:\Users\grz_k\Documents\Cyberpunk 2077 2020-12-31 20:15 - 2020-12-31 20:15 - 000076152 _____ C:\Windows\system32\PnkBstrA.exe 2020-12-31 20:12 - 2021-01-01 13:23 - 000000000 ____D C:\Users\grz_k\AppData\Local\PunkBuster 2020-12-31 20:07 - 2020-12-31 20:08 - 000000000 ____D C:\Users\grz_k\Documents\Battlefield 4 2020-12-31 16:39 - 2020-12-31 18:35 - 000000000 ____D C:\Users\grz_k\Downloads\fgdgdfg 2020-12-31 16:36 - 2020-12-31 16:36 - 000000000 ____D C:\Users\grz_k\AppData\Local\INetHistory 2020-12-31 15:32 - 2021-01-01 23:25 - 000348360 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2020-12-31 15:32 - 2021-01-01 23:25 - 000280904 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2020-12-31 15:32 - 2021-01-01 13:28 - 000076152 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2020-12-31 15:32 - 2020-12-31 15:32 - 000000779 _____ C:\Users\Public\Desktop\Battlefield 4.lnk 2020-12-31 15:32 - 2020-12-31 15:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 4 2020-12-31 15:32 - 2020-12-31 15:32 - 000000000 ____D C:\Program Files (x86)\Battlelog Web Plugins 2020-12-31 11:57 - 2020-12-31 11:57 - 000000000 ____D C:\Users\grz_k\AppData\Local\GOG.com 2020-12-30 18:33 - 2020-12-30 18:33 - 000000000 ____D C:\Users\grz_k\AppData\Local\Ragnotechpowered 2020-12-30 18:31 - 2020-12-30 18:31 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime 2020-12-28 13:58 - 2020-12-28 13:58 - 000000268 _____ C:\Users\grz_k\Desktop\Borderlands 2.url 2020-12-26 15:42 - 2020-12-26 15:42 - 000001690 _____ C:\Users\grz_k\Downloads\ASTON BASE ZANDVOORT.json 2020-12-25 18:58 - 2020-12-26 09:12 - 000000298 _____ C:\Users\grz_k\Desktop\Darkest Dungeon®.url 2020-12-22 01:46 - 2020-12-22 01:46 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2020-12-19 21:44 - 2020-12-19 21:44 - 000000414 _____ C:\Users\grz_k\Downloads\stutteringfixes1.0-338-1-0-1608376399.zip 2020-12-19 21:11 - 2020-12-19 21:11 - 000002354 _____ C:\Users\Public\Desktop\5-Mode Oscar Editor.lnk 2020-12-19 21:11 - 2020-12-19 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\A4Tech Software 2020-12-19 21:11 - 2020-12-19 21:11 - 000000000 ____D C:\Program Files (x86)\OscarX7Editor5Mode 2020-12-19 16:57 - 2020-12-19 16:57 - 000828378 _____ C:\Users\grz_k\Downloads\131987996_180210973785321_4106053715006024113_n.mp4 2020-12-19 15:08 - 2020-12-19 15:08 - 001859368 _____ C:\Users\grz_k\Downloads\1608319938.mp4 2020-12-18 21:27 - 2020-12-18 21:27 - 000000000 ____D C:\Users\grz_k\AppData\Local\Intel 2020-12-18 21:26 - 2020-12-18 21:26 - 000000000 ____D C:\ProgramData\Intel 2020-12-18 21:26 - 2020-12-18 21:26 - 000000000 ____D C:\Program Files\Intel 2020-12-18 21:24 - 2020-12-18 21:24 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2020-12-18 21:24 - 2020-12-18 21:24 - 000000000 ____D C:\Users\grz_k\.cache 2020-12-18 21:24 - 2020-12-18 21:24 - 000000000 ____D C:\Program Files\ASUS 2020-12-18 21:24 - 2020-12-18 21:24 - 000000000 ____D C:\Program Files (x86)\ASUS 2020-12-18 21:24 - 2015-05-14 04:47 - 000037384 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2020-12-18 21:24 - 2015-05-14 04:47 - 000015368 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-17 20:03 - 2020-11-27 13:31 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\discord 2021-01-17 19:59 - 2020-11-27 13:30 - 000000000 ____D C:\Program Files (x86)\Steam 2021-01-17 19:58 - 2020-11-27 12:34 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2021-01-17 19:58 - 2020-09-27 08:34 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-01-17 19:58 - 2020-09-27 06:33 - 000008192 ___SH C:\DumpStack.log.tmp 2021-01-17 19:58 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-17 19:58 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI 2021-01-17 19:55 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness 2021-01-17 19:19 - 2020-11-27 12:18 - 001768428 _____ C:\Windows\system32\PerfStringBackup.INI 2021-01-17 19:19 - 2019-12-07 16:09 - 000784444 _____ C:\Windows\system32\perfh015.dat 2021-01-17 19:19 - 2019-12-07 16:09 - 000152340 _____ C:\Windows\system32\perfc015.dat 2021-01-17 19:19 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF 2021-01-17 19:17 - 2020-12-14 18:42 - 000000000 ____D C:\Users\grz_k\AppData\Local\CrashDumps 2021-01-17 18:57 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-01-17 18:45 - 2020-12-05 08:58 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Origin 2021-01-17 18:45 - 2020-12-05 08:58 - 000000000 ____D C:\ProgramData\Origin 2021-01-17 17:42 - 2020-09-27 06:33 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-01-17 12:29 - 2020-11-27 12:18 - 000000000 ____D C:\Users\grz_k\AppData\Local\D3DSCache 2021-01-17 08:18 - 2020-12-05 09:29 - 000000000 ____D C:\Program Files (x86)\Origin Games 2021-01-17 08:18 - 2020-12-05 08:58 - 000000000 ____D C:\Users\grz_k\AppData\Local\Origin 2021-01-17 01:53 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-17 01:44 - 2020-11-27 23:41 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2021-01-16 14:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF 2021-01-16 11:00 - 2020-09-27 06:33 - 004948160 _____ C:\Windows\system32\FNTCACHE.DAT 2021-01-16 10:59 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-16 10:59 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-01-16 10:59 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Sysprep 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Com 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellComponents 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\IME 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr 2021-01-16 10:59 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-16 10:56 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp 2021-01-16 10:53 - 2020-09-27 08:36 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2021-01-16 09:56 - 2020-12-12 10:15 - 000000000 ____D C:\Windows\system32\MRT 2021-01-16 09:55 - 2020-12-12 10:15 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-01-16 09:20 - 2020-11-27 13:22 - 000000000 ____D C:\Users\grz_k\AppData\Local\AMD_Common 2021-01-15 20:18 - 2020-11-27 12:13 - 000000000 ____D C:\Users\grz_k 2021-01-15 19:39 - 2020-11-27 14:07 - 000000000 ____D C:\Users\grz_k\AppData\Local\Battle.net 2021-01-15 10:17 - 2020-12-06 03:01 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\BitTorrent 2021-01-14 17:45 - 2020-12-05 09:16 - 000000000 ____D C:\Program Files (x86)\Origin 2021-01-09 02:26 - 2020-09-27 08:36 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-08 21:49 - 2020-11-27 12:17 - 000000000 ____D C:\Users\grz_k\AppData\Local\PlaceholderTileLogoFolder 2021-01-08 12:52 - 2020-11-28 22:34 - 000004248 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1597176175 2021-01-08 12:52 - 2020-11-28 22:34 - 000001409 _____ C:\Users\grz_k\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2021-01-07 22:15 - 2020-11-27 14:04 - 000000000 ____D C:\Program Files (x86)\Battle.net 2021-01-05 21:39 - 2020-11-27 12:59 - 000000000 ____D C:\Users\grz_k\Documents\My Games 2021-01-02 12:33 - 2020-12-14 18:42 - 000000000 ____D C:\Users\grz_k\AppData\Local\NVIDIA Corporation 2021-01-01 13:23 - 2020-12-05 09:16 - 000000000 ____D C:\ProgramData\Electronic Arts 2020-12-31 19:19 - 2020-11-27 12:47 - 000000000 ____D C:\Users\grz_k\AppData\Local\AcTools Content Manager 2020-12-31 18:18 - 2020-12-04 19:44 - 000000132 _____ C:\Users\grz_k\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe 2020-12-31 15:32 - 2020-11-27 12:37 - 000000000 ____D C:\ProgramData\Package Cache 2020-12-30 19:43 - 2020-11-27 12:57 - 000000000 ____D C:\Users\grz_k\Desktop\Nowy folder 2020-12-30 19:30 - 2020-11-27 12:59 - 000000000 ____D C:\Users\grz_k\Documents\Avalanche Studios 2020-12-26 09:29 - 2020-11-27 12:59 - 000000000 ____D C:\Users\grz_k\Documents\Darkest 2020-12-26 09:15 - 2020-11-27 15:14 - 000000000 ____D C:\Program Files\Epic Games 2020-12-23 00:55 - 2020-11-27 12:16 - 000000000 ___RD C:\Users\grz_k\OneDrive 2020-12-21 09:21 - 2020-11-27 12:15 - 000000000 ____D C:\Users\grz_k\AppData\Local\Packages 2020-12-18 10:12 - 2020-11-27 12:15 - 000000000 ____D C:\Users\grz_k\AppData\Roaming\Adobe ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-12-04 19:44 - 2020-12-31 18:18 - 000000132 _____ () C:\Users\grz_k\AppData\Roaming\Preferencje formatu PNG CS6 firmy Adobe 2020-12-09 22:09 - 2020-12-09 22:09 - 000007597 _____ () C:\Users\grz_k\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================