Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-09-2023 Uruchomiony przez apiec (administrator) DESKTOP-FFUIE0P (SAMSUNG ELECTRONICS CO., LTD. 300V3A/300V4A/300V5A/200A4B/200A5B) (12-09-2023 04:29:40) Uruchomiony z C:\Users\apiec\Downloads\frst\FRST64.exe Załadowane profile: apiec Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.3324 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (C:\Program Files\Elantech\ETDCtrl.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (C:\Program Files\Elantech\ETDService.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (explorer.exe ->) () [Brak podpisu cyfrowego] C:\Program Files (x86)\PLAY ONLINE\PLAY ONLINE.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe (explorer.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe (explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe (explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Huawei Technologies Co., Ltd. -> ) C:\ProgramData\PLAY ONLINE\OnlineUpdate\ouc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5> (services.exe ->) (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [14040296 2015-08-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3242200 2016-11-11] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2607648 2023-09-09] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\Run: [MicrosoftEdgeAutoLaunch_160089A1A224CB711EB4F1AC9F0AD24C] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4108344 2023-09-07] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {30d7fa47-e7d9-11ec-9de9-b80305066584} - "F:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {30d7faec-e7d9-11ec-9de9-b80305066584} - "F:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {894edf30-3505-11ed-9df1-e8039a22a11f} - "E:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\...\MountPoints2: {894edfd0-3505-11ed-9df1-e8039a22a11f} - "F:\AutoRun.exe" HKU\S-1-5-21-3316565980-1593576605-2437453199-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\PhotoScreensaver.scr [581120 2022-09-09] (Microsoft Windows -> Microsoft Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\System32\Rundll32.exe C:\Windows\System32\mscories.dll,Install HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {5396F558-5851-497D-8FC2-BD3709B8AA5E} - System32\Tasks\Microsoft\VisualStudio\Updates\BackgroundDownload => C:\Program Files (x86)\Microsoft Visual Studio\Installer\resources\app\ServiceHub\Services\Microsoft.VisualStudio.Setup.Service\BackgroundDownload.exe [73184 2023-02-23] (Microsoft Corporation -> Microsoft) Task: {D23E5D53-1A12-4973-B488-C0C852BDE1EB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {D40BEA26-FF80-4463-A0FA-A21FDB360170} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {AF088F84-6788-4B17-BEFF-580E6226F287} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {61F05B7F-C03E-4566-AC5C-CF08D7DBD181} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MpCmdRun.exe [1596304 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {BBE861D4-08F1-4726-9B2F-4A50D194D909} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [675232 2023-08-31] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {6D010AAE-8027-471D-8D1B-DBA54DF82C5A} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [722336 2023-08-31] (Mozilla Corporation -> Mozilla Foundation) Task: {E0D1BB08-13C5-4194-B64D-465EF54A7DEF} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130320 2023-09-09] (Microsoft Corporation -> Microsoft Corporation) Task: {55D47B2E-B586-4E2B-8C4D-911BFC80D938} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3316565980-1593576605-2437453199-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130320 2023-09-09] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\..\Interfaces\{2ce123f7-ed6a-4845-9425-18476009a221}: [NameServer] 194.204.159.1 194.204.152.34 Tcpip\..\Interfaces\{45f73f01-4f1a-4466-8e7d-6f3c1e5633da}: [DhcpNameServer] 192.168.43.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default [2023-09-12] Edge HomePage: Default -> hxxp://bing.com/ Edge StartupUrls: Default -> "hxxp://bing.com/" Edge Extension: (Dokumenty Google offline) - C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-12] Edge Extension: (Edge relevant text changes) - C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-09-12] Edge Extension: (Microsoft Edge DevTools Enhancements) - C:\Users\apiec\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kfbdpdaobnofkbopebjglnaadopfikhh [2023-09-12] FireFox: ======== FF ProfilePath: C:\Users\apiec\AppData\Roaming\Mozilla\Firefox\Profiles\rvx86qx3.Domyślny użytkownik [2023-09-12] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.180.0828.0001\FileSyncHelper.exe [3518480 2023-09-09] (Microsoft Corporation -> Microsoft Corporation) S2 HWDeviceService64.exe; C:\ProgramData\DatacardService\HWDeviceService64.exe [351824 2014-01-15] (Huawei Technologies Co., Ltd. -> ) S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.180.0828.0001\OneDriveUpdaterService.exe [3855376 2023-09-09] (Microsoft Corporation -> Microsoft Corporation) S2 PLAY ONLINE. RunOuc; C:\Program Files (x86)\PLAY ONLINE\UpdateDog\ouc.exe [651856 2013-10-26] (Huawei Technologies Co., Ltd. -> ) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [142304 2022-06-01] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-09-06] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) S3 ew_hwusbdev; C:\Windows\system32\DRIVERS\ew_hwusbdev.sys [109568 2013-01-25] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 ew_usbenumfilter; C:\Windows\System32\drivers\ew_usbenumfilter.sys [14976 2012-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 huawei_enumerator; C:\Windows\System32\drivers\ew_jubusenum.sys [91648 2013-11-30] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 hwusb_cdcacm; C:\Windows\system32\DRIVERS\ew_cdcacm.sys [124672 2014-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 hwusb_wwanecm; C:\Windows\System32\drivers\ew_wwanecm.sys [379392 2014-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [55872 2023-09-06] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [574872 2023-09-06] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2023-09-06] (Microsoft Windows -> Microsoft Corporation) S3 rsDwf; \SystemRoot\system32\DRIVERS\rsDwf.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-09-12 04:29 - 2023-09-12 04:29 - 000000000 ____D C:\FRST 2023-09-12 04:28 - 2023-09-12 04:29 - 000000000 ____D C:\Users\apiec\Downloads\frst 2023-09-12 01:43 - 2023-09-12 01:43 - 098828288 _____ C:\Windows\system32\config\SOFTWARE 2023-09-12 01:16 - 2023-09-12 01:16 - 000041920 _____ C:\Windows\system32\Drivers\truesight.sys 2023-09-12 00:30 - 2023-09-12 00:30 - 000000008 _____ C:\ProgramData\ntuser.pol 2023-09-03 02:12 - 2023-09-03 02:13 - 000000000 ____D C:\Users\apiec\Documents\js 2023-08-31 18:18 - 2023-09-11 18:23 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-08-30 00:57 - 2023-08-30 00:57 - 000002154 _____ C:\Users\apiec\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2023-08-30 00:56 - 2023-08-30 18:39 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Microsoft\Teams 2023-08-30 00:56 - 2023-08-30 00:57 - 000000000 ____D C:\Users\apiec\AppData\Local\SquirrelTemp 2023-08-30 00:56 - 2023-08-30 00:56 - 000000000 ____D C:\ProgramData\apiec 2023-08-24 05:28 - 2023-08-24 05:28 - 000000000 ____D C:\ProgramData\Emsisoft 2023-08-17 13:56 - 2023-08-24 05:39 - 000000000 ____D C:\Program Files (x86)\System Ninja 2023-08-17 13:55 - 2023-08-17 13:55 - 004070014 _____ (SingularLabs ) C:\Users\apiec\Downloads\ninja-setup-4.0.exe 2023-08-17 06:06 - 2023-08-17 06:06 - 000000000 ____D C:\Users\apiec\AppData\Local\fontconfig 2023-08-17 06:05 - 2023-08-17 06:05 - 000000000 ____D C:\Users\apiec\AppData\Roaming\BleachBit 2023-08-17 06:05 - 2023-08-17 06:05 - 000000000 ____D C:\Users\apiec\.dbus-keyrings 2023-08-14 15:29 - 2023-08-14 15:29 - 000000000 ___HD C:\$WinREAgent ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-09-12 04:29 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-09-12 04:06 - 2022-06-09 11:10 - 000000000 ___RD C:\Users\apiec\OneDrive 2023-09-12 01:43 - 2023-07-02 17:59 - 000000000 ____D C:\Windows\Microsoft Antimalware 2023-09-12 01:21 - 2022-06-14 19:04 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2023-09-12 01:20 - 2022-06-14 19:04 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2023-09-12 01:14 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2023-09-12 00:51 - 2022-06-09 11:08 - 001768012 _____ C:\Windows\system32\PerfStringBackup.INI 2023-09-12 00:51 - 2019-12-07 17:08 - 000785600 _____ C:\Windows\system32\perfh015.dat 2023-09-12 00:51 - 2019-12-07 17:08 - 000152460 _____ C:\Windows\system32\perfc015.dat 2023-09-12 00:51 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2023-09-12 00:43 - 2022-06-09 11:00 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2023-09-12 00:43 - 2022-06-09 10:59 - 000008192 ___SH C:\DumpStack.log.tmp 2023-09-12 00:35 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI 2023-09-12 00:30 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2023-09-12 00:30 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2023-09-11 19:05 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2023-09-11 18:53 - 2022-06-09 10:59 - 000000000 ____D C:\Windows\system32\SleepStudy 2023-09-11 18:23 - 2022-06-21 15:16 - 000000000 ____D C:\Program Files\Microsoft OneDrive 2023-09-11 18:23 - 2022-06-14 19:04 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-09-11 16:36 - 2022-06-09 11:09 - 000000000 __RHD C:\Users\Public\AccountPictures 2023-09-10 15:20 - 2023-03-10 07:39 - 000000000 ____D C:\Users\apiec\AppData\Roaming\Notepad++ 2023-09-09 20:22 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-09-09 19:58 - 2023-03-10 07:43 - 000000000 ____D C:\Users\apiec\Documents\html 2023-09-09 15:48 - 2022-06-21 15:16 - 000003194 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task 2023-09-09 15:48 - 2022-06-21 15:16 - 000002176 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2023-09-09 15:48 - 2022-06-10 11:11 - 000003596 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3316565980-1593576605-2437453199-1001 2023-09-09 13:15 - 2022-06-09 11:00 - 000002408 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-09-09 13:15 - 2022-06-09 11:00 - 000002246 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2023-09-06 14:30 - 2022-06-09 11:00 - 000000000 ____D C:\Windows\system32\Drivers\wd 2023-09-02 07:42 - 2022-06-14 19:04 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-08-25 16:47 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2023-08-17 14:44 - 2022-10-27 16:05 - 000007599 _____ C:\Users\apiec\AppData\Local\Resmon.ResmonCfg 2023-08-17 14:04 - 2023-04-15 15:58 - 000000000 ____D C:\Program Files\TeamViewer 2023-08-17 08:37 - 2023-03-10 07:39 - 000000000 ____D C:\Program Files\Notepad++ 2023-08-17 06:23 - 2023-03-10 07:39 - 000000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk 2023-08-17 06:05 - 2022-06-09 11:06 - 000000000 ____D C:\Users\apiec 2023-08-15 14:19 - 2023-03-06 08:40 - 000000000 _____ C:\Users\apiec\Desktop\css.txt 2023-08-15 14:09 - 2022-06-09 11:09 - 000000000 ____D C:\Users\apiec\AppData\Local\Packages 2023-08-14 16:41 - 2022-06-10 14:06 - 000000000 ____D C:\Users\apiec\AppData\Local\PlaceholderTileLogoFolder 2023-08-14 15:49 - 2022-06-09 10:59 - 000443768 _____ C:\Windows\system32\FNTCACHE.DAT 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2023-08-14 15:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat 2023-08-14 15:40 - 2022-06-09 11:02 - 003015168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2023-08-14 15:28 - 2022-06-09 11:19 - 000000000 ____D C:\Windows\system32\MRT 2023-08-14 15:14 - 2022-06-09 12:05 - 000000000 ____D C:\ProgramData\Package Cache 2023-08-14 15:14 - 2022-06-09 11:19 - 175983240 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2023-08-14 15:12 - 2022-07-14 15:15 - 000000000 ____D C:\Users\Default\.dotnet ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-07-17 18:00 - 2022-07-17 18:00 - 000003584 _____ () C:\Users\apiec\Program.exe 2023-08-02 11:28 - 2023-08-02 11:28 - 000010673 _____ () C:\Users\apiec\AppData\Local\recently-used.xbel 2022-10-27 16:05 - 2023-08-17 14:44 - 000007599 _____ () C:\Users\apiec\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================