Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-03-2022 Uruchomiony przez JODA DRUK (administrator) DESKTOP-3KERSLJ (Hewlett-Packard HP EliteDesk 800 G1 TWR) (30-03-2022 11:32:48) Uruchomiony z C:\Users\JODA DRUK\Downloads Załadowane profile: JODA DRUK Platform: Microsoft Windows 10 Pro Wersja 21H2 19044.1586 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\ES1000Service.exe ->) (Electronics for Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\ES1000Server.exe (C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe <2> (C:\Program Files\LibreOffice\program\soffice.exe ->) (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.bin (C:\Program Files\LibreOffice\program\swriter.exe ->) (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.exe (C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe (C:\Program Files\Logitech\LogiOptions\LogiOptions.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe (C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3> (C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe ->) (Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe (EFI Software (Electronics for Imaging, Inc.) -> ) C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager\extract\fsm-2022-03-30-10-47-41-197\FSM\Fiery Software Manager.exe (explorer.exe ->) (Canon Inc. -> CANON INC.) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <10> (explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe (explorer.exe ->) (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Thunderbird\thunderbird.exe <3> (explorer.exe ->) (Paddy Xu) C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.7.1.0_neutral__egxr34yet59cg\Package\QuickLook.exe (explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (explorer.exe ->) (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\swriter.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <8> (services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (services.exe ->) (Canon Inc. -> CANON INC) C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwisam.exe (services.exe ->) (Canon Inc. -> CANON INC.) C:\Windows\System32\cnwiols6.exe (services.exe ->) (EFI Software -> ) C:\Program Files (x86)\EFI\OFASQ2\ofaApp.exe (services.exe ->) (Electronics for Imaging, Inc.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\ES1000Service.exe (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe (services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe (services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (services.exe ->) (Intel(R) Network Platform Group -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe (services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (svchost.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe (svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe (svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (svchost.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe <2> ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [CnwiDeviceAgent] => C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwida.exe [73816 2013-10-02] (Canon Inc. -> CANON INC.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9240512 2017-12-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1492928 2017-12-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [Eraser] => C:\Program Files\Eraser\Eraser.exe [1067024 2018-01-03] (Heidi Computers Ltd -> The Eraser Project) HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [1675680 2021-09-24] (Logitech Inc -> Logitech, Inc.) HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1203856 2017-06-26] (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) HKLM-x32\...\Run: [FRSSysTrayIcon] => C:\Program Files (x86)\Fiery\Applications3\FieryRemoteScanApp\FRSSysTrayIcon.exe [57344 2016-11-08] () [Brak podpisu cyfrowego] HKLM\...\Policies\Explorer: [NoRecentDocsNetHood] 0 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\Run: [MicrosoftEdgeAutoLaunch_ECE8D3D813F48291574DCD17432D0C4B] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\Policies\Explorer: [NoLowDiskSpaceChecks] False HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\MountPoints2: {3013f705-4775-11ec-932c-a0d3c127bead} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\MountPoints2: {30b3442b-24df-11ec-931d-acfd27583924} - "F:\HiSuiteDownLoader.exe" HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\MountPoints2: {4867448d-d1cb-11e8-920e-a0d3c127bead} - "F:\LaunchU3.exe" -a HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\MountPoints2: {6453154d-a687-11ec-9354-a0d3c127bead} - "F:\LaunchU3.exe" -a HKU\S-1-5-21-696834628-1386451695-4253651740-1003\...\MountPoints2: {86ac65ee-2b21-11ec-9320-a0d3c127bead} - "F:\HiSuiteDownLoader.exe" HKLM\...\Windows x64\Print Processors\Canon iPF820 Print Processor: C:\Windows\System32\spool\prtprocs\x64\cnwfdpAA.dll [95232 2009-05-08] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Windows x64\Print Processors\KOAXPA_P: C:\Windows\System32\spool\prtprocs\x64\KOAXPA_P.DLL [50792 2019-05-09] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOAYSA_P: C:\Windows\System32\spool\prtprocs\x64\KOAYSA_P.DLL [50184 2015-12-28] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOAYTA_P: C:\Windows\System32\spool\prtprocs\x64\KOAYTA_P.DLL [50176 2016-02-16] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOAYTJ_P: C:\Windows\System32\spool\prtprocs\x64\KOAYTJ_P.DLL [92680 2016-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Monotype Imaging Inc.) HKLM\...\Windows x64\Print Processors\KOBS6A_P: C:\Windows\System32\spool\prtprocs\x64\KOBS6A_P.DLL [59344 2018-05-14] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOBS6F_P: C:\Windows\System32\spool\prtprocs\x64\KOBS6F_P.DLL [552400 2018-05-14] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOBS8A_P: C:\Windows\System32\spool\prtprocs\x64\KOBS8A_P.DLL [50584 2019-03-05] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOBS8F_P: C:\Windows\System32\spool\prtprocs\x64\KOBS8F_P.DLL [559512 2019-03-05] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOBSCA_P: C:\Windows\System32\spool\prtprocs\x64\KOBSCA_P.DLL [61264 2021-06-11] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Windows x64\Print Processors\KOB__A_P: C:\Windows\System32\spool\prtprocs\x64\KOB__A_P.DLL [51200 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\C554SeriesPCL Language Monitor: C:\WINDOWS\system32\KOAYTJ_L.DLL [25600 2016-02-11] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\C554SeriesPS Language Monitor: C:\WINDOWS\system32\KOAYTA_L.DLL [25608 2016-02-16] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\C658SeriesPS Language Monitor: C:\WINDOWS\system32\KOBSCA_L.DLL [34128 2021-06-11] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\C754SeriesPS Language Monitor: C:\WINDOWS\system32\KOAYSA_L.DLL [25608 2015-12-28] (Microsoft Windows Hardware Compatibility Publisher -> KONICA MINOLTA, INC.) HKLM\...\Print\Monitors\Canon IOS Language Monitor: C:\WINDOWS\system32\cnwilm64.dll [16896 2005-11-17] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.) HKLM\...\Print\Monitors\PDF-XChange V6 Printer Port Monitor (Lite): C:\Windows\system32\pxcpm5L.dll [150720 2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\99.0.4844.84\Installer\chrmstp.exe [2022-03-28] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Fiery Command WorkStation 5.lnk [2019-05-22] ShortcutTarget: Fiery Command WorkStation 5.lnk -> C:\Program Files (x86)\Fiery\Applications3\Command WorkStation 5\Contents\WinOS\cws.exe (EFI Software (Electronics for Imaging, Inc.) -> Electronics for Imaging, Inc) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\FTP Utility.lnk [2019-06-25] ShortcutTarget: FTP Utility.lnk -> C:\Program Files (x86)\KONICA MINOLTA\FTP Utility\KMFtp.exe (KONICA MINOLTA BUSINESS TECHNOLOGIES, INC.) [Brak podpisu cyfrowego] Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\imagePROGRAF Status Monitor.lnk [2018-05-21] ShortcutTarget: imagePROGRAF Status Monitor.lnk -> C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwism.exe (Canon Inc. -> CANON INC.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Virtual Router Manager.lnk [2018-10-03] ShortcutTarget: Virtual Router Manager.lnk -> C:\Windows\Installer\{BE905C46-2B34-4D73-AEE1-769ED138E0FF}\_118D1A4EFFA6998C3492EB.exe () [Brak podpisu cyfrowego] ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {041BAEC3-EC2C-4E30-ACBF-2664FCD5031A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe /DeviceScanR6 (Brak pliku) Task: {11E4223D-C905-471D-BD13-97FBC24D7ACE} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - resources updates => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /r (Brak pliku) Task: {19A0A3D2-FCF3-4B76-A57B-E73665A7598C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /u (Brak pliku) Task: {1AEBA061-8C20-4B15-85AC-CD78BFA4BFC1} - System32\Tasks\Fiery Software Manager => C:\Program Files (x86)\Fiery\Fiery Software Manager\Fiery Software Manager.exe [6349552 2017-07-10] (EFI Software (Electronics for Imaging, Inc.) -> ) Task: {1CA9A52B-2058-4AE1-9AD5-2F150C366BA1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {29270BFE-4D75-4C6F-A21A-8550F18B7267} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXWarningTask => C:\WINDOWS\System32\RemoteFXvGPUDisablement.exe Warning (Brak pliku) Task: {298D0069-1C78-4A60-8C24-C4C2126C85A5} - System32\Tasks\CWS Analytics => C:\ProgramData\efiLINQ\efiLINQ.exe [2289664 2015-11-11] (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] <==== UWAGA Task: {2A06695A-DAD6-4917-9301-7A15F801196B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2018-05-21] (Google Inc -> Google Inc.) Task: {33317538-2998-42C1-9698-D87B138D2469} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3B723798-627C-48B7-8176-207DEE3002AA} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580696 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {3B7C8315-CE6A-41CE-8A22-7F31005175BE} - System32\Tasks\Microsoft\Windows\termsrv\RemoteFX\RemoteFXvGPUDisableTask => C:\WINDOWS\System32\RemoteFXvGPUDisablement.exe Disable (Brak pliku) Task: {3F55712E-9B16-4392-BD0D-A6F385959560} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22580696 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {4134ADB8-B2D9-4A8A-8D36-8E0915E0DFCD} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /r /m (Brak pliku) Task: {42C63A1C-E76F-457B-ADE1-A07C72F72E46} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MpCmdRun.exe [979568 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {49BE1665-11F9-4F50-BDDC-64BCF48064A1} - System32\Tasks\UsbFix Monitor => C:\Program Files (x86)\UsbFix\Modules\UsbFixMonitor.exe [1235968 2021-10-06] () [Brak podpisu cyfrowego] Task: {5DDA3401-832D-488E-9595-B88BB2C644F0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe /send (Brak pliku) Task: {5F0BD018-4C9E-407D-B462-A809A560C53E} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe -task -source HPSA (Brak pliku) Task: {6DE1B335-099E-4204-80FB-8027681B5410} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /taskrestart (Brak pliku) Task: {7AB389AF-9A80-48A9-83D7-57D60F128AE7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-18] (Adobe Inc. -> Adobe Inc.) Task: {8011C888-97B0-4CEC-90E1-9B4339D1795F} - System32\Tasks\Microsoft\OneCore\DirectX\asfost => C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe /silent /unregister C:\PROGRA~2\COMMON~1\GRADES~1\INILCH~1\IEOELM~1.DLL Task: {80EC7C28-259D-46EC-A567-4D0280BD7C59} - System32\Tasks\LINQ_wxWidgets => C:\ProgramData\efiLINQ\efiLINQ.exe [2289664 2015-11-11] (Electronics For Imaging, Inc.) [Brak podpisu cyfrowego] <==== UWAGA Task: {87240A30-C5C6-4E6D-B34A-506707442FC4} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /L Analysis (Brak pliku) Task: {B2B19C72-6ED2-4F6C-B0C3-56FB13DB9B50} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [668464 2017-02-24] (Intel(R) Trust Services -> Intel(R) Corporation) Task: {B7DDE477-634A-4F35-8A52-5B5DC1CA3B98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2018-05-21] (Google Inc -> Google Inc.) Task: {C3F904F6-256D-43D2-A757-5B30C9812086} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [110968 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) Task: {C755A59C-5452-4D8F-96DE-7D3B9C93AE5A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe /noreport (Brak pliku) Task: {EB3B016C-2ED2-45CD-A17F-CC2D7F1C34B5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [110968 2022-03-15] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\..\Interfaces\{06d72e3c-2503-4399-9e0e-a3fe7e636cc9}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{09d3a9b5-afae-4c5c-8004-8c073be1aaf7}: [NameServer] 1.1.1.1,1.0.0.1 Tcpip\..\Interfaces\{8ac9d67d-6ee1-47ca-8dbb-623f1215e232}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{b3db9438-754d-4ad4-bb02-0952fe5d3f17}: [NameServer] 1.1.1.1,1.0.0.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\JODA DRUK\AppData\Local\Microsoft\Edge\User Data\Default [2022-03-30] FireFox: ======== FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-04-19] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2016-04-19] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN -> VideoLAN) FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-03-02] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2016-04-19] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-05-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-05-22] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-03-07] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2016-04-19] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-696834628-1386451695-4253651740-1003: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-696834628-1386451695-4253651740-1003: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-696834628-1386451695-4253651740-1003: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2017-03-06] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR Profile: C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default [2022-03-30] CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR Extension: (Prezentacje) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-22] CHR Extension: (Dokumenty) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-22] CHR Extension: (Dysk Google) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-27] CHR Extension: (YouTube) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-22] CHR Extension: (DjVu Viewer and Reader) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\chnjifppcgdoacjkgnmkhphgfgdnkfjk [2019-01-21] CHR Extension: (uBlock Origin) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-03-03] CHR Extension: (Arkusze) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-22] CHR Extension: (Word Online) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2019-12-20] CHR Extension: (Dokumenty Google offline) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-03-16] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-02-01] CHR Extension: (Gmail) - C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-27] CHR Profile: C:\Users\JODA DRUK\AppData\Local\Google\Chrome\User Data\System Profile [2018-06-08] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-18] (Adobe Inc. -> Adobe Inc.) R2 Canon imagePROGRAF Status Monitor; C:\Program Files\Canon\imagePROGRAFStatusMonitor\cnwisam.exe [755288 2014-07-03] (Canon Inc. -> CANON INC) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11649952 2022-03-07] (Microsoft Corporation -> Microsoft Corporation) R2 EFI ES1000; C:\Program Files (x86)\Common Files\EFI\EFI ES-1000 Service\ES1000Service.exe [11776 2009-10-19] (Electronics for Imaging, Inc.) [Brak podpisu cyfrowego] S3 EFI License Manager; C:\Program Files (x86)\EFI\EFILM\lmgrd.exe [1429328 2019-05-22] (Flexera Software LLC -> Flexera) S3 Fiery Mailbox Synchronization; C:\Program Files (x86)\Fiery\Applications3\FieryRemoteScanApp\FRSMailboxSyncService.exe [12288 2016-11-08] (Electronics For Imaging) [Brak podpisu cyfrowego] S3 hasplms; C:\WINDOWS\system32\hasplms.exe [3500552 2018-07-18] (SafeNet Canada, Inc. -> SafeNet, Inc.) S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP) S3 Huawei E3272; C:\ProgramData\MobileBrServ\mbbservice.exe [240720 2013-12-03] (Huawei Technologies Co., Ltd. -> ) R2 iPFDeviceAgentService; C:\WINDOWS\system32\cnwiols6.exe [217416 2013-02-26] (Canon Inc. -> CANON INC.) R2 ofaApp; C:\Program Files (x86)\EFI\OFASQ2\ofaApp.exe [2531008 2019-05-22] (EFI Software -> ) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [6228008 2022-03-09] (Microsoft Windows Publisher -> Microsoft Corporation) S3 Virtual Router; C:\Program Files (x86)\Virtual Router\VirtualRouterService.exe [12288 2013-02-10] (Chris Pietschmann (hxxp://pietschsoft.com)) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\NisSrv.exe [3046608 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2202.4-0\MsMpEng.exe [132504 2022-03-15] (Microsoft Windows Publisher -> Microsoft Corporation) S2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AmUStor; C:\WINDOWS\system32\drivers\AmUStorU.sys [136760 2019-05-07] (Alcorlink Corp. -> ) S3 athur; C:\WINDOWS\System32\drivers\athuwbx.sys [2702336 2013-11-20] (Microsoft Windows Hardware Compatibility Publisher -> Qualcomm Atheros Communications, Inc.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R2 hardlock; C:\WINDOWS\system32\drivers\hardlock.sys [1971208 2018-07-18] (SafeNet Canada, Inc. -> SafeNet, Inc.) R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [48080 2018-02-12] (AnchorFree Inc -> The OpenVPN Project) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) R1 veracrypt; C:\WINDOWS\System32\drivers\veracrypt.sys [828688 2018-07-03] (IDRIX -> IDRIX) U5 vwifimp; C:\Windows\System32\Drivers\vwifimp.sys [50688 2019-12-07] (Microsoft Windows -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49600 2022-03-15] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [35584 2018-02-26] (WDKTestCert wdclab,130885612892544312 -> Western Digital Technologies, Inc.) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [439544 2022-03-15] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [90360 2022-03-15] (Microsoft Windows -> Microsoft Corporation) S3 AppleLowerFilter; \SystemRoot\System32\drivers\AppleLowerFilter.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-03-30 11:17 - 2022-03-30 11:19 - 221515106 _____ C:\Users\JODA DRUK\Downloads\Aspekte B2 - Arbeitsbuch.pdf 2022-03-30 11:17 - 2022-03-30 11:18 - 217854785 _____ C:\Users\JODA DRUK\Downloads\Aspekte_ Mittelstufe Deutsch. Lehrbuch 2 - Niveau B2 ( PDFDrive ).rar 2022-03-30 10:54 - 2022-03-30 10:54 - 000004782 _____ C:\Users\JODA DRUK\Desktop\UsbFix_Report.txt 2022-03-30 10:03 - 2022-03-30 10:46 - 106168320 _____ C:\WINDOWS\system32\config\SOFTWARE 2022-03-30 09:59 - 2022-03-30 10:03 - 000000000 ____D C:\WINDOWS\Microsoft Antimalware 2022-03-30 09:11 - 2022-03-30 10:38 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2022-03-30 09:09 - 2022-03-30 10:46 - 000885286 _____ C:\WINDOWS\ntbtlog.txt 2022-03-30 08:38 - 2022-03-30 08:38 - 000079925 _____ C:\Users\JODA DRUK\Documents\Rysunek1do koncepcji-Model.pdf 2022-03-30 08:36 - 2022-03-30 08:37 - 000052321 _____ C:\Users\JODA DRUK\Downloads\Addition.txt 2022-03-30 08:34 - 2022-03-30 11:33 - 000033822 _____ C:\Users\JODA DRUK\Downloads\FRST.txt 2022-03-30 08:34 - 2022-03-30 11:33 - 000000000 ____D C:\FRST 2022-03-30 08:34 - 2022-03-30 08:34 - 000000000 ____D C:\Users\JODA DRUK\Downloads\FRST-OlderVersion 2022-03-30 08:33 - 2022-03-30 08:34 - 002365440 _____ (Farbar) C:\Users\JODA DRUK\Downloads\FRST64.exe 2022-03-30 08:29 - 2022-03-30 10:54 - 000001956 _____ C:\Users\Public\Desktop\UsbFix Anti-Malware.lnk 2022-03-30 08:29 - 2022-03-30 08:29 - 004868504 _____ (SOSVirus) C:\Users\JODA DRUK\Downloads\UsbFix_2020.exe 2022-03-30 08:29 - 2022-03-30 08:29 - 004868504 _____ (SOSVirus) C:\Users\JODA DRUK\Downloads\UsbFix_2020 (1).exe 2022-03-30 08:29 - 2022-03-30 08:29 - 000003276 _____ C:\WINDOWS\system32\Tasks\UsbFix Monitor 2022-03-30 08:29 - 2022-03-30 08:29 - 000000000 ____D C:\Program Files (x86)\UsbFix 2022-03-30 08:18 - 2022-03-30 10:26 - 000001276 _____ C:\Users\JODA DRUK\Desktop\ESET Online Scanner.lnk 2022-03-30 08:18 - 2022-03-30 08:18 - 015274968 _____ (ESET) C:\Users\JODA DRUK\Downloads\esetonlinescanner.exe 2022-03-30 08:17 - 2022-03-30 08:17 - 008540344 _____ (Malwarebytes) C:\Users\JODA DRUK\Downloads\adwcleaner_8.3.1.exe 2022-03-30 08:17 - 2022-03-30 08:17 - 000259880 _____ (AVAST Software) C:\Users\JODA DRUK\Downloads\avast_free_antivirus_setup_online.exe 2022-03-30 08:17 - 2022-03-30 08:17 - 000000000 ____D C:\ProgramData\Avast Software 2022-03-29 14:08 - 2022-03-29 14:08 - 006956008 _____ C:\Users\JODA DRUK\Downloads\BHC754ePSWinx64_5120PL.zip 2022-03-29 14:08 - 2022-03-29 14:08 - 000000000 ____D C:\Users\JODA DRUK\Downloads\BHC754ePSWinx64_5120PL 2022-03-29 14:08 - 2015-12-28 22:36 - 000025608 _____ (KONICA MINOLTA, INC.) C:\WINDOWS\system32\KOAYSA_L.DLL 2022-03-29 14:07 - 2022-03-29 14:07 - 010485760 _____ C:\Users\JODA DRUK\Downloads\BHC754ePSMacOS109_540MU.dmg 2022-03-29 14:00 - 2022-03-29 14:00 - 012686609 _____ C:\Users\JODA DRUK\Downloads\IT5PSWinx64_11200PL.zip 2022-03-29 14:00 - 2022-03-29 14:00 - 000000000 ____D C:\Users\JODA DRUK\Downloads\IT5PSWinx64_11200PL 2022-03-29 14:00 - 2019-05-09 06:03 - 000025704 _____ (KONICA MINOLTA, INC.) C:\WINDOWS\system32\KOAXPA_L.DLL 2022-03-29 12:45 - 2022-03-29 12:45 - 000295381 _____ C:\Users\JODA DRUK\Downloads\wykres wykres 2.pdf 2022-03-29 11:28 - 2022-03-29 11:28 - 000076992 _____ C:\Users\JODA DRUK\Downloads\Projekt-pala-A2.pdf 2022-03-28 13:06 - 2022-03-28 13:06 - 000270583 _____ C:\Users\JODA DRUK\Downloads\JK_Przekrój_Poprzeczny.pdf 2022-03-28 13:06 - 2022-03-28 13:06 - 000131261 _____ C:\Users\JODA DRUK\Downloads\JK_Rzut_Podłużny.pdf 2022-03-28 12:11 - 2022-03-29 10:49 - 000000000 ____D C:\Users\JODA DRUK\Desktop\29,03 2022-03-28 08:17 - 2022-03-28 08:17 - 001311346 _____ C:\Users\JODA DRUK\Downloads\PIT - 4.pdf 2022-03-25 14:58 - 2022-03-25 14:58 - 001045997 _____ C:\Users\JODA DRUK\Downloads\rtrttt.pdf 2022-03-25 14:58 - 2022-03-25 14:58 - 001045997 _____ C:\Users\JODA DRUK\Downloads\rtrttt (1).pdf 2022-03-25 13:45 - 2022-03-25 13:45 - 000151462 _____ C:\Users\JODA DRUK\Documents\Budynek-Rzut parteru.pdf 2022-03-25 13:45 - 2022-03-25 13:45 - 000132488 _____ C:\Users\JODA DRUK\Documents\Budynek-Fudnamenty.pdf 2022-03-25 13:44 - 2022-03-25 13:44 - 000053350 _____ C:\Users\JODA DRUK\Documents\Budynek-Widok B-B.pdf 2022-03-25 13:44 - 2022-03-25 13:44 - 000053344 _____ C:\Users\JODA DRUK\Documents\Budynek-Widok A-A.pdf 2022-03-24 12:45 - 2022-03-24 12:45 - 000198571 _____ C:\Users\JODA DRUK\Downloads\Otworki.pdf 2022-03-24 12:38 - 2022-03-24 12:38 - 000103301 _____ C:\Users\JODA DRUK\Downloads\Projekt-Budownictwo-Ogólne.pdf 2022-03-24 12:32 - 2022-03-24 12:32 - 000016588 _____ C:\Users\JODA DRUK\Downloads\Tabelki do projektu 1 2022.doc.odt 2022-03-24 12:28 - 2022-03-24 01:18 - 012507330 _____ C:\Users\JODA DRUK\Desktop\23 marzec kondygnacja.pdf 2022-03-24 09:31 - 2022-03-24 09:31 - 000095814 _____ C:\Users\JODA DRUK\Downloads\technologia001-rysunek-druk.pdf 2022-03-23 11:31 - 2022-03-23 11:31 - 000066174 _____ C:\Users\JODA DRUK\Downloads\img.webp 2022-03-23 10:45 - 2022-03-23 10:45 - 000455265 _____ C:\Users\JODA DRUK\Downloads\video-1648020733.mp4 2022-03-23 10:27 - 2022-03-23 10:27 - 000412785 _____ C:\Users\JODA DRUK\Downloads\PREZENTACJA-TEIOB.pdf 2022-03-23 09:13 - 2022-03-23 09:13 - 000417884 _____ C:\Users\JODA DRUK\Documents\koncpecja_arch-bud_1-Układ1.pdf 2022-03-22 12:49 - 2022-03-22 12:49 - 000151594 _____ C:\Users\JODA DRUK\Downloads\Rysunek-Agata.pdf 2022-03-18 12:30 - 2022-03-18 12:30 - 000032158 _____ C:\Users\JODA DRUK\Downloads\Potwierdzenie_transakcji_nr_0128331498_180322 (1).pdf 2022-03-18 12:27 - 2022-03-18 12:27 - 000032158 _____ C:\Users\JODA DRUK\Downloads\Potwierdzenie_transakcji_nr_0128331498_180322.pdf 2022-03-18 10:08 - 2022-03-18 10:08 - 000000000 ____D C:\Users\JODA DRUK\Downloads\fwdzaproszenie 2022-03-18 10:07 - 2022-03-18 10:07 - 001846248 _____ C:\Users\JODA DRUK\Downloads\fwdzaproszenie.zip 2022-03-17 13:56 - 2022-03-17 13:56 - 000128268 _____ C:\Users\JODA DRUK\Downloads\Piętro-2_1.2-próba4.pdf 2022-03-17 12:53 - 2022-03-17 12:53 - 000165902 _____ C:\Users\JODA DRUK\Documents\projekt O-Układ1.pdf 2022-03-17 12:51 - 2022-03-17 12:51 - 000208692 _____ C:\Users\JODA DRUK\Downloads\Rzut kondygnacji z detalem.pdf 2022-03-17 12:48 - 2022-03-17 12:48 - 000007023 _____ C:\Users\JODA DRUK\Downloads\Fizyka-Budowlana-Layout1.pdf 2022-03-17 12:40 - 2022-03-17 12:40 - 000248339 _____ C:\Users\JODA DRUK\Documents\Rysunek1-Układ2.pdf 2022-03-17 11:10 - 2022-03-17 11:10 - 000086676 _____ C:\Users\JODA DRUK\Downloads\Konsultacje-2-Układ2.pdf 2022-03-16 12:57 - 2022-03-16 12:57 - 001974178 _____ C:\Users\JODA DRUK\Downloads\formularz-pole-powierzchni.pdf 2022-03-16 11:12 - 2022-03-16 11:12 - 031166839 _____ C:\Users\JODA DRUK\Downloads\Arbeitbuch MOTIVE A1.pdf 2022-03-16 11:12 - 2022-03-16 11:12 - 025190911 _____ C:\Users\JODA DRUK\Downloads\Motive A1 - Kursbuch.pdf 2022-03-16 10:56 - 2022-03-16 10:56 - 000104213 _____ C:\Users\JODA DRUK\Downloads\Rysunek2-układ1.pdf 2022-03-16 10:56 - 2022-03-16 10:56 - 000104213 _____ C:\Users\JODA DRUK\Downloads\Rysunek2-układ1 (1).pdf 2022-03-15 14:42 - 2022-03-15 14:42 - 000074713 _____ C:\Users\JODA DRUK\Downloads\label-2022-03-15T12_42_57.746Z.pdf 2022-03-15 12:01 - 2022-03-15 12:01 - 005250714 _____ C:\Users\JODA DRUK\Downloads\duble z.pdf 2022-03-15 12:01 - 2022-03-15 12:01 - 003485625 _____ C:\Users\JODA DRUK\Downloads\duble s.pdf 2022-03-15 12:01 - 2022-03-15 12:01 - 003401341 _____ C:\Users\JODA DRUK\Downloads\duble c.pdf 2022-03-15 08:43 - 2022-03-15 08:43 - 000281824 _____ C:\Users\JODA DRUK\Downloads\projekt 1.pdf 2022-03-15 08:43 - 2022-03-15 08:43 - 000281824 _____ C:\Users\JODA DRUK\Downloads\projekt 1 (1).pdf 2022-03-14 15:40 - 2022-03-14 15:43 - 893350543 _____ C:\Users\JODA DRUK\AppData\LocalLow\00013748.TMP 2022-03-14 15:40 - 2022-03-14 15:40 - 000006396 _____ C:\Users\JODA DRUK\AppData\LocalLow\sdf3748.tmp 2022-03-14 15:40 - 2022-03-14 15:40 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\ped3748.tmp 2022-03-14 15:40 - 2022-03-14 15:40 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\icm3748.tmp 2022-03-14 15:40 - 2022-03-14 15:40 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\ftd3748.tmp 2022-03-14 15:40 - 2022-03-14 15:40 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\cpd3748.tmp 2022-03-14 15:40 - 2022-03-14 15:40 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\brd3748.tmp 2022-03-14 15:37 - 2022-03-14 15:38 - 013842456 _____ C:\Users\JODA DRUK\AppData\LocalLow\00018a09.TMP 2022-03-14 15:37 - 2022-03-14 15:37 - 000006396 _____ C:\Users\JODA DRUK\AppData\LocalLow\sdf8A09.tmp 2022-03-14 15:37 - 2022-03-14 15:37 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\ped8A09.tmp 2022-03-14 15:37 - 2022-03-14 15:37 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\icm8A09.tmp 2022-03-14 15:37 - 2022-03-14 15:37 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\ftd8A09.tmp 2022-03-14 15:37 - 2022-03-14 15:37 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\cpd8A09.tmp 2022-03-14 15:37 - 2022-03-14 15:37 - 000000000 _____ C:\Users\JODA DRUK\AppData\LocalLow\brd8A09.tmp 2022-03-10 13:17 - 2022-03-10 13:17 - 000131070 _____ C:\Users\JODA DRUK\Downloads\rzut kondygnacji_693fe75af38e2048b35763e31af87892.pdf 2022-03-10 13:17 - 2022-03-10 13:17 - 000015812 _____ C:\Users\JODA DRUK\Downloads\układ konstrukcyjny_c0b3b742f4e0f36fc3ee174402ec2e16.pdf 2022-03-10 13:17 - 2022-03-10 13:17 - 000006690 _____ C:\Users\JODA DRUK\Downloads\siatka modularna_d993c62355b58e00d98d31eb597b760b.pdf 2022-03-10 11:12 - 2022-03-10 11:12 - 000218126 _____ C:\Users\JODA DRUK\Downloads\koncepcja_es.pdf 2022-03-10 11:02 - 2022-03-10 11:02 - 000113971 _____ C:\Users\JODA DRUK\Documents\projekt 1 p-3-Model.pdf 2022-03-10 10:39 - 2022-03-10 10:39 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat DC.lnk 2022-03-10 10:39 - 2022-03-10 10:39 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat DC.lnk 2022-03-10 10:38 - 2022-03-10 10:38 - 000000000 ____D C:\Program Files\Common Files\Adobe 2022-03-10 10:38 - 2022-03-10 10:38 - 000000000 ____D C:\Program Files\Adobe 2022-03-10 10:25 - 2022-03-10 10:25 - 001397362 _____ C:\Users\JODA DRUK\Downloads\Projekt-TBIP-cz.1_merged.pdf 2022-03-10 09:59 - 2022-03-14 13:11 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2022-03-09 17:23 - 2022-03-09 17:23 - 000223744 _____ C:\WINDOWS\SysWOW64\TpmTool.exe 2022-03-09 17:23 - 2022-03-09 17:23 - 000195584 _____ C:\WINDOWS\system32\uwfcfgmgmt.dll 2022-03-09 17:23 - 2022-03-09 17:23 - 000011911 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2022-03-09 17:22 - 2022-03-09 17:22 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2022-03-09 17:22 - 2022-03-09 17:22 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2022-03-09 17:22 - 2022-03-09 17:22 - 000272896 _____ C:\WINDOWS\system32\TpmTool.exe 2022-03-09 17:16 - 2022-03-09 17:16 - 000000000 ___HD C:\$WinREAgent 2022-03-09 15:08 - 2022-03-09 15:08 - 000645886 _____ C:\Users\JODA DRUK\Downloads\dzień kobiet (1).pdf 2022-03-09 14:44 - 2022-03-09 14:44 - 000056484 _____ C:\Users\JODA DRUK\Downloads\wniosek_o_stypendium_rektora_2022-03-09 (1).pdf 2022-03-09 14:43 - 2022-03-09 14:43 - 000055814 _____ C:\Users\JODA DRUK\Downloads\wniosek_o_stypendium_rektora_2022-03-09.pdf 2022-03-09 10:50 - 2022-03-09 10:51 - 001038324 _____ C:\Users\JODA DRUK\Downloads\Sprawozdanie 2022.pdf 2022-03-09 10:44 - 2022-03-09 10:44 - 001038324 _____ C:\Users\JODA DRUK\Downloads\Sprawozdanie-2022.pdf 2022-03-09 10:44 - 2022-03-09 10:44 - 000016650 _____ C:\Users\JODA DRUK\Downloads\PROJKET-BOZFB-final.pdf 2022-03-08 14:58 - 2022-03-08 14:58 - 000645886 _____ C:\Users\JODA DRUK\Downloads\dzień kobiet.pdf 2022-03-08 09:18 - 2022-03-08 09:18 - 000350334 _____ C:\Users\JODA DRUK\Documents\Rys.1 2 Pyta fundamentowa BC Podział FINAL-Model2.pdf 2022-03-08 09:15 - 2022-03-08 09:15 - 000334887 _____ C:\Users\JODA DRUK\Documents\Rys.1 2 Pyta fundamentowa BC Podział FINAL-Model.pdf 2022-03-08 09:11 - 2022-03-08 09:11 - 028939683 _____ C:\Users\JODA DRUK\Downloads\Rys.1 2 Pyta fundamentowa BC Podział FINAL.dwg 2022-03-07 09:42 - 2022-03-07 09:42 - 000879120 _____ C:\Users\JODA DRUK\Downloads\DL with cutter.pdf 2022-03-01 09:18 - 2022-03-01 09:18 - 000288768 _____ C:\WINDOWS\system32\Windows.Management.InprocObjects.dll 2022-03-01 09:18 - 2022-03-01 09:18 - 000162816 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2022-03-01 09:02 - 2022-03-01 09:03 - 000000000 ____D C:\WINDOWS\system32\Download ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-03-30 11:31 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-03-30 10:59 - 2020-01-16 14:15 - 000000000 ____D C:\ProgramData\Mozilla 2022-03-30 10:58 - 2018-06-29 12:41 - 000000000 ____D C:\Users\JODA DRUK\AppData\LocalLow\Mozilla 2022-03-30 10:57 - 2018-05-21 18:23 - 000000000 ____D C:\Program Files (x86)\Google 2022-03-30 10:51 - 2021-06-18 17:14 - 001939124 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2022-03-30 10:51 - 2019-12-07 17:09 - 000829192 _____ C:\WINDOWS\system32\perfh015.dat 2022-03-30 10:51 - 2019-12-07 17:09 - 000174176 _____ C:\WINDOWS\system32\perfc015.dat 2022-03-30 10:51 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF 2022-03-30 10:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2022-03-30 10:47 - 2019-05-22 13:32 - 000000170 _____ C:\Users\JODA DRUK\AppData\Roaming\com.efi.FierySoftwareManager 2022-03-30 10:47 - 2019-05-22 13:32 - 000000000 ____D C:\Users\JODA DRUK\AppData\Roaming\Fiery Software Manager 2022-03-30 10:46 - 2021-06-18 17:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2022-03-30 10:46 - 2021-06-18 17:05 - 000008192 ___SH C:\DumpStack.log.tmp 2022-03-30 10:46 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2022-03-30 10:46 - 2018-05-21 15:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2022-03-30 10:46 - 2018-05-21 15:58 - 000000000 __SHD C:\Users\JODA DRUK\IntelGraphicsProfiles 2022-03-30 10:26 - 2020-02-06 09:14 - 000001382 _____ C:\Users\JODA DRUK\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk 2022-03-30 09:32 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2022-03-30 09:16 - 2020-02-06 09:13 - 000000000 ____D C:\AdwCleaner 2022-03-30 09:16 - 2018-05-24 08:15 - 000000000 ____D C:\Users\JODA DRUK\AppData\Roaming\Hewlett-Packard 2022-03-30 09:16 - 2018-05-24 08:14 - 000000000 ____D C:\Users\JODA DRUK\AppData\Local\Hewlett-Packard 2022-03-30 09:16 - 2018-05-24 08:14 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2022-03-30 09:16 - 2018-05-24 08:14 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard 2022-03-30 09:06 - 2021-06-18 17:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2022-03-30 08:49 - 2021-12-02 11:59 - 000000000 ____D C:\Program Files (x86)\EaseUS 2022-03-30 08:48 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-03-30 08:48 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\Registration 2022-03-30 08:48 - 2018-05-21 15:55 - 000000000 ____D C:\Users\JODA DRUK\AppData\Local\Packages 2022-03-30 08:35 - 2018-06-07 13:51 - 000000000 ____D C:\skany 2022-03-30 08:03 - 2018-05-21 15:55 - 000000000 ____D C:\Users\JODA DRUK\AppData\Local\PlaceholderTileLogoFolder 2022-03-28 15:03 - 2021-06-18 17:07 - 000000000 ____D C:\Users\JODA DRUK 2022-03-28 07:50 - 2020-10-01 09:53 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-03-28 07:49 - 2018-05-21 18:24 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-03-24 11:58 - 2018-05-23 08:23 - 000000000 ____D C:\Users\JODA DRUK\AppData\Local\D3DSCache 2022-03-15 09:28 - 2018-11-19 10:42 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2022-03-15 08:28 - 2018-05-15 11:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2022-03-14 16:15 - 2019-03-28 16:20 - 000000000 ____D C:\Users\JODA DRUK\.dbus-keyrings 2022-03-14 13:11 - 2018-06-29 12:41 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2022-03-10 18:28 - 2021-06-18 17:05 - 000851512 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2022-03-10 18:27 - 2019-12-07 17:12 - 000000000 ___SD C:\WINDOWS\system32\AppV 2022-03-10 18:27 - 2019-12-07 17:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2022-03-10 18:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2022-03-10 18:27 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing 2022-03-10 10:39 - 2021-06-18 17:13 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2022-03-10 10:38 - 2018-05-21 18:23 - 000000000 ____D C:\ProgramData\Adobe 2022-03-09 17:25 - 2020-10-01 08:18 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-03-09 17:25 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2022-03-09 17:22 - 2021-06-18 17:06 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2022-03-09 17:16 - 2018-05-23 12:12 - 000000000 ____D C:\WINDOWS\system32\MRT 2022-03-09 17:13 - 2018-05-23 12:11 - 145666720 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2022-03-09 09:06 - 2021-06-30 09:21 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d76453e95f172c 2022-03-09 09:06 - 2021-06-18 17:13 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2022-03-01 16:27 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2022-03-01 09:06 - 2019-06-18 11:17 - 000000000 ____D C:\Program Files\UNP ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-05-22 13:32 - 2022-03-30 10:47 - 000000170 _____ () C:\Users\JODA DRUK\AppData\Roaming\com.efi.FierySoftwareManager 2022-01-18 14:59 - 2022-01-18 14:59 - 000005778 _____ () C:\Users\JODA DRUK\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================