Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 13-05-2020 01 Uruchomiony przez Ania (administrator) ANIA-KOMPUTER (SAMSUNG ELECTRONICS CO., LTD. RV410/RV510/S3510/E3510) (14-05-2020 11:58:21) Uruchomiony z C:\Users\Ania\Downloads Załadowane profile: Ania Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 8 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler.exe (AVAST Software s.r.o. -> AVAST Software) C:\Program Files (x86)\AVAST Software\Browser\Update\1.4.136.333\AvastBrowserCrashHandler64.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe <2> (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMSWCS.EXE (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Virtualization Handler\CVHSVC.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftlist.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Application Virtualization Client\sftvsa.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <4> (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Piriform Ltd -> Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Reason Software Company Inc. -> Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Reason Software Company Inc. -> Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplms.exe (SafeNet Canada, Inc. -> SafeNet, Inc.) C:\Windows\System32\hasplmv.exe <2> (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe (ZTE CORPORATION -> ) C:\Program Files (x86)\Cyfrowy Polsat\MF60\CancelAutoPlay_df.exe (ZTE CORPORATION -> ) C:\Program Files (x86)\Cyfrowy Polsat\MF60\CheckNDISPort_df.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11369576 2010-08-11] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2586504 2010-08-05] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [108216 2020-04-20] (Avast Software s.r.o. -> AVAST Software) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [CheckNDISPort_df] => C:\Program Files (x86)\Cyfrowy Polsat\MF60\CheckNDISPort_df.exe [440648 2012-07-31] (ZTE CORPORATION -> ) HKLM-x32\...\Run: [CancelAutoPlay_df] => C:\Program Files (x86)\Cyfrowy Polsat\MF60\CancelAutoPlay_df.exe [440136 2012-07-31] (ZTE CORPORATION -> ) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle America, Inc. -> Oracle Corporation) HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (Canon Inc. -> CANON INC.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-3906805819-1324049368-2853143880-1000\...\Run: [AutoStartNPSAgent] => C:\Program Files (x86)\Samsung\Samsung New PC Studio\NPSAgent.exe [102400 2009-04-02] (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] HKU\S-1-5-21-3906805819-1324049368-2853143880-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [18630056 2018-09-10] (Piriform Ltd -> Piriform Ltd) HKU\S-1-5-21-3906805819-1324049368-2853143880-1000\...\MountPoints2: {04cf5b23-dc36-11e4-a0f4-001bb1d3a066} - F:\AutoRun.exe HKU\S-1-5-21-3906805819-1324049368-2853143880-1000\...\MountPoints2: {04cf5b30-dc36-11e4-a0f4-001bb1d3a066} - F:\AutoRun.exe HKU\S-1-5-18\...\Run: [] => [X] HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{30C521FB-255B-46C8-9F0D-EE5AE371C9AA}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\81.0.4053.113\Installer\chrmstp.exe [2020-05-11] (Avast Software s.r.o. -> AVAST Software) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\81.0.4044.138\Installer\chrmstp.exe [2020-05-07] (Google LLC -> Google LLC) HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2010-07-21] (Broadcom Corporation -> Broadcom Corporation.) HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-09-05] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0C57FDF8-B37E-47D2-B318-E383C56AE284} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-25] (AVAST Software s.r.o. -> AVAST Software) Task: {0CE9AF24-1185-4B79-A791-79F113D1A2DC} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-10] (Piriform Ltd -> Piriform Ltd) Task: {10BBDC00-3A35-4CF9-A39B-F8A305339945} - System32\Tasks\e-pity2019_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [2255640 2020-02-22] (e-file sp. z o.o. -> e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {133C291B-B342-489B-91C2-DCE0AF3BC17F} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [862064 2010-08-09] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {26C8FEFE-30F2-489B-9D92-D36D94CD7D61} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1660520 2020-02-27] (Avast Software s.r.o. -> Avast Software) Task: {28846840-3F37-4E2C-B62D-CAD121FE4F9F} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe Task: {2FA73110-9049-40B9-9846-56D87D627B46} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1853360 2020-04-19] (Avast Software s.r.o. -> AVAST Software) Task: {335B8F5E-3071-4D47-9783-78D344C0F87A} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe [3398736 2011-09-04] (Samsung Electronics CO., LTD. -> SAMSUNG Electronics) Task: {343B27BA-90BC-48A9-8C52-717850D2BD38} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [3325032 2020-04-20] (Avast Software s.r.o. -> AVAST Software) Task: {3EF1FDB9-76C9-4D02-AB38-BB266AA93BD1} - System32\Tasks\EasySpeedUpManager => Command(1): "%programfiles(x86)%\Samsung\EasySpeedUpManager\EasySpeedUpManager2.exe" -> /s Task: {3EF1FDB9-76C9-4D02-AB38-BB266AA93BD1} - System32\Tasks\EasySpeedUpManager => Command(2): C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [719360 [719360 2010-02-10]] (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] Task: {3FEB1E79-42A0-4C0E-8B1E-84665CE0DD40} - System32\Tasks\{8F5FE53B-E50F-45FA-B0D2-041D7397D85F} Task: {4BD17065-16BE-4F46-9D1D-7D89BAD406CE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [538952 2018-09-10] (Piriform Ltd -> Piriform Ltd) Task: {7732E9E4-CABE-4055-9C2A-EBF3182084E5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1165920 2017-07-19] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {9606D388-FCA5-4B39-BDE2-4FD69D18EAA7} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [1853360 2020-04-19] (Avast Software s.r.o. -> AVAST Software) Task: {A7C28167-CCB5-4588-AAE8-1A03457397E8} - System32\Tasks\e-pity2019a_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [2255640 2020-02-22] (e-file sp. z o.o. -> e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {AF5E8E13-C82B-415A-BE3B-E0E6658135DF} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.) Task: {BEE84AE5-DC40-41E5-B630-342D4F4A8D9E} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-25] (AVAST Software s.r.o. -> AVAST Software) Task: {D9EA8854-503E-45EC-B5E6-5EF14293F95D} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {E915A32B-DE0A-45DF-9B8E-8F9A2B8551B0} - System32\Tasks\advSRS5 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 5\WCScheduler.exe [4382312 2010-07-27] (Samsung Electronics CO., LTD. -> SEC) [Brak podpisu cyfrowego] Task: {E93F2BE1-108F-4F38-BD0D-81DFAC7A68BE} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [362352 2010-07-20] (Samsung Electronics CO., LTD. -> SAMSUNG Electronics co., LTD.) Task: {F8EF92EA-1528-4E86-9031-6B62C0012A95} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-08-30] (Google Inc -> Google Inc.) Task: {FD5BCDF0-1467-4E84-9C0C-3736C9B3E565} - System32\Tasks\SUPBackground => C:\Program Files (x86)\Samsung\Samsung Update Plus\SUPBackground.exe [2783312 2011-12-20] (Samsung Electronics CO., LTD. -> Samsung Electronics) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 06 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 07 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145280 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 06 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 07 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [170880 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 192.168.0.1 Tcpip\..\Interfaces\{7310F807-630D-413B-93F9-7682DBE741AE}: [DhcpNameServer] 192.168.0.1 192.168.0.1 Tcpip\..\Interfaces\{C2296635-75A1-4E8A-A127-09CD4B7181B7}: [DhcpNameServer] 192.168.0.1 192.168.0.1 HKLM\System\...\Parameters\PersistentRoutes: [169.254.0.0,255.255.0.0,192.168.0.100,1] Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-3906805819-1324049368-2853143880-1000 -> DefaultScope {006ee092-9658-4fd6-bd8e-a21a348e59f5} URL = BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-02-19] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-02-19] (Oracle America, Inc. -> Oracle Corporation) Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Toolbar: HKU\S-1-5-21-3906805819-1324049368-2853143880-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.) Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2011-03-07] (Microsoft Windows -> Microsoft Corporation) Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2011-03-07] (Microsoft Windows -> Microsoft Corporation) Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\system32\urlmon.dll [2011-03-07] (Microsoft Windows -> Microsoft Corporation) Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2011-03-07] (Microsoft Windows -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: 2uo2l4mn.default-1437509515628 FF ProfilePath: C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628 [2020-05-14] FF Homepage: Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628 -> hxxps://facebook.com/ FF Notifications: Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628 -> hxxps://www.facebook.com FF Extension: (Disconnect) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628\Extensions\2.0@disconnect.me.xpi [2017-04-04] FF Extension: (HTTPS Everywhere) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628\Extensions\https-everywhere@eff.org.xpi [2020-03-27] FF Extension: (Avast Online Security) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628\Extensions\wrc@avast.com.xpi [2020-04-21] [UpdateUrl:hxxps://firefoxext.avcdn.net/firefoxext/avast/aos/update.json] FF Extension: (Speed Dial) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628\Extensions\{64161300-e22b-11db-8314-0800200c9a66}.xpi [2015-09-15] [Przestarzałe] FF Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\2uo2l4mn.default-1437509515628\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2020-04-01] FF ProfilePath: C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\pb7jqaae.default-1437502245108 [2020-04-21] FF Extension: (Avast SafePrice | Porównania, promocje, kupony) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\pb7jqaae.default-1437502245108\Extensions\sp@avast.com.xpi [2019-02-19] FF Extension: (Avast Online Security) - C:\Users\Ania\AppData\Roaming\Mozilla\Firefox\Profiles\pb7jqaae.default-1437502245108\Extensions\wrc@avast.com.xpi [2018-07-17] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-19] (Adobe Systems Incorporated -> ) [Brak podpisu cyfrowego] FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-19] (Adobe Systems Incorporated -> ) [Brak podpisu cyfrowego] FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.) [Brak podpisu cyfrowego] FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2011-04-14] (Google Inc. -> Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-02-19] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-02-19] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2010-11-10] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) [Brak podpisu cyfrowego] Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default [2020-05-14] CHR HomePage: Default -> hxxp://abphotography.flog.pl/ CHR StartupUrls: Default -> "hxxp://www.istartsurf.com/?type=hp&ts=1436460352&z=113ab5347768eb7a88a1f51g6z1caqcz9qde3cfcag&from=cor&uid=SAMSUNGXHM321HI_S2HZJ9AZA15556" CHR Extension: (Dokumenty) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-01-30] CHR Extension: (Dysk Google) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-14] CHR Extension: (YouTube) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-14] CHR Extension: (Google Search) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-14] CHR Extension: (Adobe Acrobat) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-05-08] CHR Extension: (Avast SafePrice) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-01-30] CHR Extension: (Dokumenty Google offline) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-17] CHR Extension: (Avast Online Security) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-01-30] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-19] CHR Extension: (Google Publisher Toolbar) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\omioeahgfecgfpfldejlnideemfidnkc [2017-03-08] CHR Extension: (Gmail) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-18] CHR Extension: (Chrome Media Router) - C:\Users\Ania\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-25] CHR Profile: C:\Users\Ania\AppData\Local\Google\Chrome\User Data\System Profile [2020-05-14] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [5504928 2020-04-20] (Avast Software s.r.o. -> AVAST Software) S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-25] (AVAST Software s.r.o. -> AVAST Software) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [345384 2020-04-20] (Avast Software s.r.o. -> AVAST Software) S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [164984 2018-03-25] (AVAST Software s.r.o. -> AVAST Software) S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\81.0.4053.113\elevation_service.exe [954600 2020-04-19] (Avast Software s.r.o. -> AVAST Software) R2 hasplms; C:\Windows\system32\hasplms.exe [4502024 2018-03-29] (SafeNet Canada, Inc. -> SafeNet, Inc.) R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] (Canon Inc. -> ) R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [297240 2018-04-09] (Reason Software Company Inc. -> Reason Software Company Inc.) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2009-07-14] (Microsoft Windows -> Microsoft Corporation) R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2286976 2010-09-21] (Microsoft Corporation -> Microsoft Corp.) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AsusVBus; C:\Windows\System32\DRIVERS\AsusVBus.sys [39704 2017-01-09] (ASUSTeK Computer Inc. -> Windows (R) Win 7 DDK provider) R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37856 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [206120 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [234776 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [178968 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [60696 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42984 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [175920 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [500960 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R3 aswNetNd6; C:\Windows\System32\DRIVERS\aswNetNd6.sys [38152 2020-04-20] (AVAST Software s.r.o. -> AVAST Software) R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [109480 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [85056 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [851808 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [459408 2020-04-20] (Avast Software s.r.o. -> AVAST Software) S2 aswStm; C:\Windows\System32\drivers\aswStm.sys [235696 2020-04-20] (Avast Software s.r.o. -> AVAST Software) R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [317280 2020-04-20] (Avast Software s.r.o. -> AVAST Software) S3 ATP; C:\Windows\System32\DRIVERS\AsusTP.sys [75584 2017-01-09] (ASUSTeK Computer Inc. -> ASUS Corporation) R0 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [23944 2010-04-06] (IVT SOFTWARE TECHNOLOGY Inc. -> IVT Corporation.) S3 btnetBUs; C:\Windows\System32\Drivers\btnetBus.sys [30088 2010-04-06] (IVT SOFTWARE TECHNOLOGY Inc. -> ) R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [111616 2010-08-10] (Microsoft Windows Hardware Compatibility Publisher -> ELAN Microelectronics Corp.) R2 hardlock; C:\Windows\system32\drivers\hardlock.sys [1304816 2018-03-29] (SafeNet, Inc. -> SafeNet, Inc.) S3 IvtBtBUs; C:\Windows\System32\Drivers\IvtBtBus.sys [27016 2010-04-06] (IVT SOFTWARE TECHNOLOGY Inc. -> IVT Corporation.) R3 LgBttPort; C:\Windows\System32\DRIVERS\lgbtpt64.sys [16384 2009-05-25] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.) R3 lgbusenum; C:\Windows\System32\DRIVERS\lgbtbs64.sys [14848 2009-05-25] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.) S3 lgmdbus; C:\Windows\System32\DRIVERS\lgmdbus.sys [115200 2008-07-08] (MCCI Corporation -> MCCI Corporation) S3 lgmdmdfl; C:\Windows\System32\DRIVERS\lgmdmdfl.sys [18944 2008-07-08] (MCCI Corporation -> MCCI Corporation) S3 lgmdmdm; C:\Windows\System32\DRIVERS\lgmdmdm.sys [158720 2008-07-08] (MCCI Corporation -> MCCI Corporation) S3 lgmdmgmt; C:\Windows\System32\DRIVERS\lgmdmgmt.sys [137216 2008-07-08] (MCCI Corporation -> MCCI Corporation) S3 lgmdobex; C:\Windows\System32\DRIVERS\lgmdobex.sys [136704 2008-07-08] (MCCI Corporation -> MCCI Corporation) R3 LGVMODEM; C:\Windows\System32\DRIVERS\lgvmdm64.sys [17408 2009-05-25] (Microsoft Windows Hardware Compatibility Publisher -> LG Electronics Inc.) S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfdx64.sys [25600 2008-08-28] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [19152 2013-09-30] (MiniTool Solution Ltd -> ) [Brak podpisu cyfrowego] S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2013-09-30] (MiniTool Solution Ltd -> ) [Brak podpisu cyfrowego] S3 RTL8167; C:\Windows\System32\DRIVERS\Rt64win7.sys [187392 2009-06-10] (Microsoft Windows -> Realtek Corporation ) S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2010-11-24] (Realtek Semiconductor Corp -> Windows (R) 2003 DDK 3790 provider) R1 SABI; C:\Windows\system32\Drivers\SABI.sys [13824 2009-05-28] (Microsoft Windows Hardware Compatibility Publisher -> SAMSUNG ELECTRONICS) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [564824 2013-02-26] (Duplex Secure Ltd -> Duplex Secure Ltd.) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] (Empty Loop -> ) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [401696 2010-07-08] (Marvell Semiconductor -> Marvell) S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 hwusb_cdcacm; system32\DRIVERS\ew_cdcacm.sys [X] S3 hwusb_wwanecm; system32\DRIVERS\ew_wwanecm.sys [X] S0 MBAMSwissArmy; system32\drivers\MBAMSwissArmy.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-14 11:50 - 2020-05-14 12:03 - 000031588 _____ C:\Users\Ania\Downloads\FRST.txt 2020-05-14 11:47 - 2020-05-14 12:02 - 000000000 ____D C:\FRST 2020-05-14 11:46 - 2020-05-14 11:46 - 002286080 _____ (Farbar) C:\Users\Ania\Downloads\FRST64.exe 2020-05-13 21:33 - 2019-02-16 07:32 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2020-05-13 21:33 - 2019-02-16 07:30 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2020-05-13 17:06 - 2014-05-14 18:23 - 002477536 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2020-05-13 17:06 - 2014-05-14 18:23 - 000700384 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2020-05-13 17:06 - 2014-05-14 18:23 - 000581600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2020-05-13 17:06 - 2014-05-14 18:23 - 000058336 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2020-05-13 17:06 - 2014-05-14 18:23 - 000044512 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll 2020-05-13 17:06 - 2014-05-14 18:23 - 000038880 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll 2020-05-13 17:06 - 2014-05-14 18:23 - 000036320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll 2020-05-13 17:06 - 2014-05-14 18:21 - 002620928 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2020-05-13 17:06 - 2014-05-14 18:20 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2020-05-13 17:06 - 2014-05-14 18:17 - 000092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2020-05-13 17:05 - 2014-05-14 09:23 - 000198600 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2020-05-13 17:05 - 2014-05-14 09:23 - 000179656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2020-05-13 17:05 - 2014-05-14 09:20 - 000036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2020-05-13 17:05 - 2014-05-14 09:17 - 000033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2020-05-13 16:57 - 2020-05-13 16:57 - 000002158 _____ C:\Users\Public\Desktop\Style Builder 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000002158 _____ C:\ProgramData\Desktop\Style Builder 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000002072 _____ C:\Users\Public\Desktop\LayOut 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000002072 _____ C:\ProgramData\Desktop\LayOut 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000001987 _____ C:\Users\Public\Desktop\SketchUp 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000001987 _____ C:\ProgramData\Desktop\SketchUp 2017.lnk 2020-05-13 16:57 - 2020-05-13 16:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SketchUp 2017 2020-05-13 16:50 - 2020-05-13 16:50 - 000000000 ____D C:\ProgramData\SketchUp 2020-05-13 16:45 - 2020-05-13 16:45 - 000000000 ____D C:\Users\Ania\AppData\Roaming\Trimble Navigation Limited 2020-05-13 16:45 - 2020-05-13 16:45 - 000000000 ____D C:\Users\Ania\AppData\Roaming\SketchUp 2020-05-13 16:45 - 2020-05-13 16:45 - 000000000 ____D C:\Program Files\SketchUp 2020-05-13 16:42 - 2020-05-13 16:42 - 000000000 ____D C:\Users\Ania\AppData\Local\SafeNet Sentinel 2020-05-13 16:40 - 2020-05-13 16:40 - 000002315 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pCon.planner PRO.lnk 2020-05-13 16:40 - 2020-05-13 16:40 - 000002305 _____ C:\Users\Public\Desktop\pCon.planner PRO.lnk 2020-05-13 16:40 - 2020-05-13 16:40 - 000002305 _____ C:\ProgramData\Desktop\pCon.planner PRO.lnk 2020-05-13 16:39 - 2020-05-13 16:39 - 000000000 ____D C:\Program Files\EasternGraphics 2020-05-13 16:38 - 2020-05-13 16:42 - 161521269 _____ (Trimble Navigation Limited) C:\Users\Ania\Downloads\SketchUpMake-pl-x64.exe 2020-05-13 16:35 - 2020-05-13 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\pCon Tools 2020-05-13 16:34 - 2020-05-13 16:34 - 000000000 ____D C:\ProgramData\SafeNet Sentinel 2020-05-13 16:34 - 2018-03-29 10:32 - 004502024 _____ (SafeNet, Inc.) C:\Windows\system32\hasplms.exe 2020-05-13 16:34 - 2018-03-29 10:32 - 004502024 _____ (SafeNet, Inc.) C:\Windows\system32\aksllmtp.exe 2020-05-13 16:34 - 2018-03-29 10:32 - 002196488 _____ (SafeNet, Inc.) C:\Windows\system32\hasplmv.exe 2020-05-13 16:34 - 2018-03-29 10:32 - 000399128 _____ (SafeNet, Inc.) C:\Windows\system32\Drivers\aksdf.sys 2020-05-13 16:33 - 2018-03-29 10:32 - 001304816 _____ (SafeNet, Inc.) C:\Windows\system32\Drivers\hardlock.sys 2020-05-13 16:33 - 2018-03-29 10:32 - 000534008 _____ (SafeNet, Inc.) C:\Windows\system32\Drivers\aksfridge.sys 2020-05-13 16:32 - 2018-03-29 10:32 - 000206800 _____ (Aladdin Knowledge Systems Ltd.) C:\Windows\SysWOW64\hlvdd.dll 2020-05-13 16:17 - 2020-05-13 16:22 - 216741944 _____ C:\Users\Ania\Downloads\pCon.planner_7.7_PRO_x64_setup.exe 2020-05-13 16:11 - 2020-05-13 16:12 - 013767776 _____ (Microsoft Corporation) C:\Users\Ania\Downloads\vc_redist.x86.exe 2020-05-13 16:11 - 2020-05-13 16:11 - 014572000 _____ (Microsoft Corporation) C:\Users\Ania\Downloads\vc_redist.x64.exe 2020-05-13 16:02 - 2020-05-13 16:44 - 000000000 ____D C:\Users\Ania\AppData\Roaming\EasternGraphics 2020-05-13 15:56 - 2020-05-13 16:44 - 000000000 ____D C:\Users\Ania\EasternGraphics 2020-05-13 15:56 - 2020-05-13 16:44 - 000000000 ____D C:\ProgramData\EasternGraphics 2020-05-13 15:56 - 2020-05-13 16:35 - 000000000 ____D C:\Program Files (x86)\EasternGraphics 2020-05-13 15:56 - 2020-05-13 15:56 - 000000000 ___HD C:\ProgramData\{234AAFE9-30FD-43EF-AD04-3830377895E2} 2020-05-13 15:56 - 2020-05-13 15:56 - 000000000 ____D C:\Users\Ania\AppData\Local\III 2020-05-13 15:49 - 2020-05-13 15:54 - 132118552 _____ C:\Users\Ania\Downloads\pCon.planner_8.0_setup.exe 2020-05-12 11:54 - 2020-05-12 11:54 - 000006300 _____ C:\Users\Ania\AppData\Local\recently-used.xbel 2020-05-12 08:59 - 2020-05-13 10:59 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2020-05-10 15:43 - 2020-05-10 15:43 - 000000000 ____D C:\Users\Ania\Desktop\2020-05-10 2020-05-10 15:39 - 2020-05-10 15:39 - 000031734 _____ C:\Users\Ania\Downloads\Potwierdzenie_transakcji_nr_0073897932_060520.pdf 2020-05-10 14:15 - 2020-05-10 15:22 - 001500809 _____ C:\Users\Ania\Desktop\Bez nazwy.xcf 2020-05-08 11:02 - 2020-05-08 11:02 - 000691504 _____ C:\Users\Ania\Downloads\SB_46161_05_20_Anna Bieńkowska_Plak_05.05.2020_ 10_ 43.pdf 2020-04-30 12:50 - 2020-04-30 12:50 - 000701480 _____ C:\Users\Ania\Downloads\blog-04-30-2020.xml 2020-04-27 18:08 - 2020-04-27 18:09 - 000000000 ____D C:\Users\Ania\AppData\Local\{2ABE8C69-595A-46F2-B99B-A3E8D8E5C281} 2020-04-27 17:37 - 2020-04-27 17:37 - 000095731 _____ C:\Users\Ania\Downloads\2020-04-27_16_20_DPD_sSAz1e.1587997216.pdf 2020-04-24 17:30 - 2020-04-24 17:42 - 000000000 ____D C:\Users\Ania\Desktop\2020-04-24 2020-04-21 11:00 - 2020-04-21 11:00 - 000127974 _____ C:\Users\Ania\Downloads\document.pdf 2020-04-20 19:05 - 2020-04-20 19:10 - 000500960 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys 2020-04-20 19:05 - 2020-04-20 19:04 - 000337048 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2020-04-20 19:05 - 2020-04-20 19:04 - 000235696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2020-04-20 19:05 - 2020-04-20 19:04 - 000175920 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2020-04-20 19:04 - 2020-04-20 19:04 - 000038152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetNd6.sys 2020-04-14 19:37 - 2020-04-14 19:17 - 630236510 ____N C:\Users\Ania\Desktop\365 dni 365 dni.avi ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-05-14 12:00 - 2016-11-15 21:12 - 000000000 ____D C:\Users\Ania\AppData\LocalLow\Mozilla 2020-05-14 11:57 - 2012-08-05 18:12 - 007922688 ___SH C:\Users\Ania\Downloads\Thumbs.db 2020-05-14 11:46 - 2010-08-28 03:44 - 000000000 ____D C:\Program Files (x86)\Samsung 2020-05-14 11:46 - 2010-08-28 03:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung 2020-05-14 11:42 - 2013-03-14 16:18 - 000000000 ____D C:\Users\Ania\AppData\Roaming\PhotoScape 2020-05-14 11:41 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2020-05-14 11:19 - 2013-05-02 14:32 - 000000000 ____D C:\Program Files\CCleaner 2020-05-14 11:15 - 2011-02-21 16:54 - 000000000 ____D C:\Users\Ania\AppData\Local\CrashDumps 2020-05-14 09:00 - 2009-07-14 06:45 - 000014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2020-05-14 09:00 - 2009-07-14 06:45 - 000014144 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2020-05-14 08:53 - 2017-02-25 12:48 - 000004168 _____ C:\Windows\system32\Tasks\Avast Emergency Update 2020-05-14 08:46 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2020-05-13 16:34 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\Setup 2020-05-13 16:29 - 2017-09-02 13:28 - 000000000 ____D C:\ProgramData\Package Cache 2020-05-13 15:56 - 2011-02-15 17:02 - 000000000 ____D C:\Users\Ania 2020-05-13 14:37 - 2020-02-24 15:42 - 000003978 _____ C:\Windows\system32\Tasks\e-pity2019a_kwiecien 2020-05-13 14:37 - 2020-02-24 15:42 - 000003978 _____ C:\Windows\system32\Tasks\e-pity2019_styczen 2020-05-13 14:37 - 2018-04-28 16:27 - 000002798 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2020-05-13 14:37 - 2015-07-30 18:28 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software 2020-05-13 14:37 - 2014-02-14 18:51 - 000003356 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2020-05-13 14:37 - 2013-04-10 11:59 - 000003484 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2020-05-13 10:59 - 2012-11-13 21:47 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2020-05-12 11:54 - 2014-10-18 19:25 - 000000000 ____D C:\Users\Ania\.gimp-2.8 2020-05-11 19:21 - 2011-04-14 20:00 - 000000000 ____D C:\ProgramData\AVAST Software 2020-05-11 19:18 - 2019-04-17 17:03 - 000003732 _____ C:\Windows\system32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) 2020-05-11 19:18 - 2019-04-17 17:03 - 000003150 _____ C:\Windows\system32\Tasks\Avast Secure Browser Heartbeat Task (Logon) 2020-05-11 19:18 - 2018-03-25 18:42 - 000002395 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk 2020-05-11 19:18 - 2018-03-25 18:42 - 000002352 _____ C:\Users\Public\Desktop\Avast Secure Browser.lnk 2020-05-11 19:18 - 2018-03-25 18:42 - 000002352 _____ C:\ProgramData\Desktop\Avast Secure Browser.lnk 2020-05-10 15:25 - 2018-04-28 16:02 - 005000192 ___SH C:\Users\Ania\Desktop\Thumbs.db 2020-05-10 15:24 - 2014-10-18 19:41 - 000000000 ____D C:\Users\Ania\AppData\Local\gtk-2.0 2020-05-07 12:09 - 2013-04-10 12:03 - 000002190 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-05-02 18:28 - 2019-05-23 13:00 - 000000000 ____D C:\ProgramData\CanonIJPLM 2020-04-27 18:09 - 2020-01-16 14:19 - 000000000 ____D C:\Users\Ania\Desktop\101CANON 2020-04-23 13:34 - 2018-04-28 16:03 - 000000000 ____D C:\Users\Ania\Desktop\blog 2020-04-23 13:33 - 2010-08-28 20:13 - 021365612 _____ C:\Windows\system32\perfh015.dat 2020-04-23 13:33 - 2010-08-28 20:13 - 007490584 _____ C:\Windows\system32\perfc015.dat 2020-04-23 13:33 - 2009-07-14 07:13 - 000006712 _____ C:\Windows\system32\PerfStringBackup.INI 2020-04-20 19:10 - 2017-02-25 12:48 - 000459408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2020-04-20 19:04 - 2019-01-16 18:29 - 000037856 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArDisk.sys 2020-04-20 19:04 - 2018-10-23 16:38 - 000042984 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2020-04-20 19:04 - 2017-11-18 16:21 - 000206120 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys 2020-04-20 19:04 - 2017-02-25 12:48 - 000851808 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2020-04-20 19:04 - 2017-02-25 12:48 - 000317280 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2020-04-20 19:04 - 2017-02-25 12:48 - 000109480 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2020-04-20 19:04 - 2017-02-25 12:48 - 000085056 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2020-04-20 19:03 - 2019-01-16 22:00 - 000234776 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys 2020-04-20 19:03 - 2019-01-16 18:29 - 000178968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys 2020-04-20 19:03 - 2019-01-16 18:29 - 000060696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys ==================== Pliki w katalogu głównym wybranych folderów ======== 2012-08-18 16:33 - 2013-12-01 14:59 - 000007680 _____ () C:\Users\Ania\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2019-12-13 18:20 - 2019-12-14 13:16 - 000003489 _____ () C:\Users\Ania\AppData\Local\kdenliverc 2020-05-12 11:54 - 2020-05-12 11:54 - 000006300 _____ () C:\Users\Ania\AppData\Local\recently-used.xbel 2018-12-26 14:25 - 2018-12-26 14:27 - 000007601 _____ () C:\Users\Ania\AppData\Local\resmon.resmoncfg 2011-11-13 14:21 - 2011-11-13 14:22 - 000000184 _____ () C:\Users\Ania\AppData\Local\setup.log 2019-12-14 12:49 - 2019-12-14 12:49 - 000002678 _____ () C:\Users\Ania\AppData\Local\user-places.xbel 2019-12-14 12:49 - 2019-12-13 18:20 - 000000533 _____ () C:\Users\Ania\AppData\Local\user-places.xbel.bak 2019-12-14 12:49 - 2019-12-14 12:49 - 000000000 _____ () C:\Users\Ania\AppData\Local\user-places.xbel.tbcache ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2020-05-07 17:28 ==================== Koniec FRST.txt ========================