Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja: 21-10-2019 Uruchomiony przez User (administrator) USER-KOMPUTER (Packard Bell DOT SE) (22-10-2019 17:45:47) Uruchomiony z C:\Users\User\Downloads Załadowane profile: User (Dostępne profile: User) Platform: Microsoft Windows 7 Starter Service Pack 1 (X86) Język: Polski (Polska) Internet Explorer Wersja 10 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Acer Incorporated -> Acer Group) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe (Dritek System Inc. -> Dritek System Inc.) C:\Program Files\Launch Manager\dsiwmis.exe (Dritek System Inc. -> Dritek System Inc.) C:\Program Files\Launch Manager\LManager.exe (Dritek System Inc. -> Dritek System Inc.) C:\Program Files\Launch Manager\LMworker.exe (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrl.exe (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe (Intel Corporation - Mobile Wireless Group -> Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxtray.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Panda Security S.L -> Panda Security, S.L.) C:\Program Files\Panda Security\Panda Devices Agent\AgentSvc.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSANHost.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSUAMain.exe (Panda Security S.L. -> Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSUAService.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [LManager] => C:\Program Files\Launch Manager\LManager.exe [975952 2010-08-10] (Dritek System Inc. -> Dritek System Inc.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284696 2010-06-08] (Intel Corporation -> Intel Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [9398888 2010-08-03] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [ETDWare] => C:\Program Files\Elantech\ETDCtrl.exe [548744 2010-04-13] (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.) HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1210640 2012-01-04] (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) HKLM\...\Run: [PSUAMain] => C:\Program Files\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) HKU\S-1-5-21-3950837632-860733910-362576068-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-3950837632-860733910-362576068-1000\...\MountPoints2: {40ebeb82-904c-11e9-90b6-1c750827631e} - D:\HiSuiteDownLoader.exe HKU\S-1-5-21-3950837632-860733910-362576068-1000\...\MountPoints2: {40ebeb8a-904c-11e9-90b6-1c750827631e} - D:\HiSuiteDownLoader.exe HKU\S-1-5-21-3950837632-860733910-362576068-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\System32\Packard Bell.scr GroupPolicyScripts: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {5C0E4561-2206-470A-87C6-E1E3A52155EB} - System32\Tasks\{A4A23EE8-3D9F-4F61-A9C5-135AB0C02FCC} => C:\Windows\system32\pcalua.exe -a C:\Users\User\Desktop\EFRCSetup.exe -d C:\Users\User\Desktop Task: {6C84890A-C7BC-49C6-853B-FAA37D152E7D} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy Task: {87921EA9-160B-4236-966D-A08B973970E5} - System32\Tasks\{1DBDC224-0026-4386-826E-183D32B39261} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\WinMover\unins000.exe" Task: {88156790-F729-4AF4-9774-AD64AA6A6D0D} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {94982D95-A95D-4B63-8889-A12030E75FBD} - System32\Tasks\{80D07511-EFE5-4BA2-B43B-1863B04B1CD8} => C:\Windows\system32\pcalua.exe -a C:\Users\User\Downloads\FacebookGameroom.exe -d C:\Users\User\Downloads Task: {9E0DFAAA-48F2-4092-B916-2B13CD1DC514} - System32\Tasks\{A9DEBCEA-87C1-4580-9CB2-CF170B14BB93} => C:\Windows\system32\pcalua.exe -a "C:\Program Files\StarterBackgroundChanger\Uninstall.exe" -d "C:\Program Files\StarterBackgroundChanger" Task: {A971057C-BB83-44E9-9949-BBD5E4F65AEF} - System32\Tasks\{4E9E6EFC-8D5A-4AE0-AEC9-55EBB9DCCB3E} => C:\Program Files\Skype\\Phone\Skype.exe [21652064 2014-07-24] (Skype Software Sarl -> Skype Technologies S.A.) Task: {C3497689-8ACD-4822-8030-7EAF74C63D1E} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd) Task: {D2CF706C-7F1E-41C1-B83D-21D2C18389FC} - System32\Tasks\{241EEA3D-2574-429C-A392-1499C7E81AA7} => C:\Windows\system32\pcalua.exe -a C:\Users\User\Downloads\FacebookGameroom.exe -d C:\Users\User\Downloads Task: {E697E8D6-B622-4DAD-AB05-3587515328B7} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{42EF621A-D065-4B27-A85E-9C56A61625E0}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{8E3AA95B-B831-445B-9FEB-18203E444BD6}: [NameServer] 87.118.111.215,209.244.0.3 Tcpip\..\Interfaces\{8E3AA95B-B831-445B-9FEB-18203E444BD6}: [DhcpNameServer] 10.0.31.237 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = SearchScopes: HKU\S-1-5-21-3950837632-860733910-362576068-1000 -> {2E0F5A3A-DA4D-4B4A-A4BE-20E409378DE6} URL = hxxp://www.google.com/search?hl=pl&q={searchTerms} BHO: Pomocnik rejestracji usługi Windows Live -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2009-01-22] (Microsoft Corporation -> Microsoft Corporation) DPF: {4B54A9DE-EF1C-4EBE-A328-7C28EA3B433A} hxxp://quickscan.bitdefender.com/qsax/qsax.cab DPF: {BB21F850-63F4-4EC9-BF9D-565BD30C9AE9} hxxp://ax.emsisoft.com/emsisoft_webscan.cab Handler: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation) Handler: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\Windows Live\Messenger\msgrapp.14.0.8117.0416.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF DefaultProfile: p6zt2a4t.default-1386691154085-1571238430473 FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\p6zt2a4t.default-1386691154085-1571238430473 [2019-10-22] FF Homepage: Mozilla\Firefox\Profiles\p6zt2a4t.default-1386691154085-1571238430473 -> hxxps://www.google.com/ FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2014-01-06] (Google Inc -> Google, Inc.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @microsoft.com/WLPG,version=14.0.8117.0416 -> C:\Program Files\Windows Live\Photo Gallery\NPWLPG.dll [2010-04-16] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @real.com/nppl3260;version=6.0.12.69 -> C:\Program Files\Real Alternative\browser\plugins\nppl3260.dll [2008-09-10] (RealNetworks, Inc. -> RealNetworks, Inc.) FF Plugin: @real.com/nprpjplug;version=6.0.12.69 -> C:\Program Files\Real Alternative\browser\plugins\nprpjplug.dll [2008-09-10] (RealNetworks, Inc.) [Brak podpisu cyfrowego] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeActiveFileMonitor8.0; c:\Program Files\Adobe\Elements Organizer 8.0\PhotoshopElementsFileAgent.exe [169312 2009-10-09] (Adobe Systems Incorporated -> Adobe Systems Incorporated) R2 AMPPALR3; C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe [510464 2011-12-12] (Intel Corporation - Mobile Wireless Group -> Intel Corporation) R2 BTHSSecurityMgr; C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe [104208 2012-01-13] (Intel Corporation - Mobile Wireless Group -> Intel(R) Corporation) R2 HuaweiHiSuiteService.exe; C:\Program Files\HiSuite\HandSetService\HuaweiHiSuiteService.exe [154432 2018-10-22] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [227600 2012-01-04] (Intel Corporation - Mobile Wireless Group -> ) R2 NanoServiceMain; C:\Program Files\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) S3 Panda VPN Service; C:\Program Files\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] (AnchorFree Inc -> ) R2 PandaAgent; C:\Program Files\Panda Security\Panda Devices Agent\AgentSvc.exe [86104 2016-07-19] (Panda Security S.L -> Panda Security, S.L.) R2 PSUAService; C:\Program Files\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security S.L. -> Panda Security, S.L.) R2 Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [243232 2010-01-29] (Acer Incorporated -> Acer Group) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [680960 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aftap0901; C:\Windows\System32\DRIVERS\aftap0901.sys [45528 2017-11-16] (AnchorFree Inc -> The OpenVPN Project) R3 AMPPAL; C:\Windows\System32\DRIVERS\AMPPAL.sys [140288 2011-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 AMPPALP; C:\Windows\System32\DRIVERS\amppal.sys [140288 2011-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [109960 2010-04-13] (ELAN Microelectronics Corporation -> ELAN Microelectronic Corp.) S3 EUCR; C:\Windows\System32\DRIVERS\EUCR6SK.SYS [82768 2010-06-17] (ENE Technology Inc. -> ENE Technology Inc.) S3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36608 2010-06-14] () [Brak podpisu cyfrowego] U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [102272 2018-10-22] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) R3 NETwNs32; C:\Windows\System32\DRIVERS\NETwNs32.sys [7522816 2011-12-12] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [108880 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [222424 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [132296 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [147112 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [83040 2017-09-18] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [128816 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [84664 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [140664 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [329032 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [226256 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [127664 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [275984 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [123416 2017-11-03] (Panda Security S.L. -> Panda Security, S.L.) S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfd.sys [19072 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [162392 2017-11-08] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [131160 2018-01-23] (Panda Security S.L. -> Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [177240 2018-01-30] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [133544 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [144856 2017-11-07] (Panda Security S.L. -> Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [119136 2017-11-06] (Panda Security S.L. -> Panda Security, S.L.) R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [60592 2017-05-22] (Panda Security S.L. -> Panda Security, S.L.) R1 StarOpen; C:\Windows\System32\Drivers\StarOpen.sys [5632 2006-07-24] () [Brak podpisu cyfrowego] U5 usbser; C:\Windows\System32\Drivers\usbser.sys [28160 2018-10-22] (Microsoft Windows -> Microsoft Corporation) S3 AndNetDiag; system32\DRIVERS\lgandnetdiag.sys [X] S3 ANDNetModem; system32\DRIVERS\lgandnetmodem.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-10-22 17:45 - 2019-10-22 17:50 - 000016973 _____ C:\Users\User\Downloads\FRST.txt 2019-10-22 17:42 - 2019-10-22 17:46 - 000000000 ____D C:\FRST 2019-10-22 17:40 - 2019-10-22 17:41 - 001452544 _____ (Farbar) C:\Users\User\Downloads\FRST.exe 2019-10-22 15:07 - 2019-10-22 17:06 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-10-22 00:43 - 2019-10-22 01:57 - 000000000 ____D C:\ProgramData\RogueKiller 2019-10-22 00:39 - 2019-10-22 00:42 - 028399160 _____ C:\Users\User\Downloads\RogueKiller.exe 2019-10-21 19:34 - 2019-10-21 19:34 - 000000000 ____D C:\Users\User\AppData\Local\mbam 2019-10-21 19:33 - 2019-10-21 19:33 - 000000000 ____D C:\Users\User\AppData\Local\mbamtray 2019-10-16 17:05 - 2019-10-22 17:06 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service 2019-10-16 17:05 - 2019-10-16 17:06 - 000000000 ____D C:\ProgramData\Mozilla 2019-10-16 17:05 - 2019-10-16 17:05 - 000001089 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-10-16 17:05 - 2019-10-16 17:05 - 000001077 _____ C:\Users\Public\Desktop\Firefox.lnk 2019-10-16 17:05 - 2019-10-16 17:05 - 000001077 _____ C:\ProgramData\Desktop\Firefox.lnk 2019-10-16 01:17 - 2017-05-22 12:29 - 000060592 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2019-10-08 18:05 - 2019-10-08 18:06 - 000001082 _____ C:\Windows\system32\68747470733a2f2f73332e616d617a6f6e6177732e636f6d2f776174747061642d6d656469612d736572766963652f53746f7279496d6167652f4c32556e5848654a7656676656513d3d2d3436303530373634332e3134646465343835616235656639643.lnk 2019-09-24 17:25 - 2019-09-24 17:25 - 000003122 _____ C:\Windows\system32\Tasks\{A4A23EE8-3D9F-4F61-A9C5-135AB0C02FCC} 2019-09-24 17:19 - 2019-09-24 17:19 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Free Registry Cleaner 2019-09-24 17:19 - 2019-09-24 17:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Registry Cleaner ==================== Jeden miesiąc (zmodyfikowane) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-10-22 17:45 - 2016-12-03 21:18 - 000000000 ____D C:\Users\User\AppData\LocalLow\Mozilla 2019-10-22 17:45 - 2009-07-14 06:34 - 000016480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2019-10-22 17:45 - 2009-07-14 06:34 - 000016480 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2019-10-22 17:06 - 2009-07-14 06:53 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-10-21 22:26 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\system32\NDF 2019-10-21 21:46 - 2009-07-14 04:37 - 000000000 ____D C:\Windows\inf 2019-10-21 21:30 - 2017-04-12 22:04 - 000000000 ____D C:\Users\User\AppData\Roaming\Opera Software 2019-10-21 21:30 - 2017-04-12 22:04 - 000000000 ____D C:\Users\User\AppData\Local\Opera Software 2019-10-21 21:22 - 2017-11-15 13:46 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update 2019-10-21 20:05 - 2011-07-28 23:53 - 000000000 ____D C:\ProgramData\Malwarebytes 2019-10-21 19:55 - 2013-12-25 19:23 - 000000000 ____D C:\Users\User\AppData\Roaming\BlueSprig 2019-10-16 17:06 - 2013-03-01 01:54 - 000000000 ____D C:\Users\User\AppData\Roaming\Mozilla 2019-10-16 08:15 - 2010-10-27 19:40 - 000740688 _____ C:\Windows\system32\perfh015.dat 2019-10-16 08:15 - 2010-10-27 19:40 - 000156230 _____ C:\Windows\system32\perfc015.dat 2019-10-16 08:15 - 2010-08-30 08:10 - 001670590 _____ C:\Windows\system32\PerfStringBackup.INI 2019-10-16 08:08 - 2014-04-12 23:51 - 000000000 ____D C:\Program Files\CCleaner 2019-10-06 15:15 - 2009-07-14 06:53 - 000032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2019-10-01 17:11 - 2014-02-04 18:47 - 000000000 ____D C:\Users\User\AppData\Local\ElevatedDiagnostics 2019-09-24 17:26 - 2014-04-12 19:53 - 000000995 _____ C:\Users\User\Desktop\Eusing Free Registry Cleaner.lnk 2019-09-24 17:26 - 2014-04-12 19:51 - 000000000 ____D C:\Program Files\Eusing Free Registry Cleaner ==================== Pliki w katalogu głównym wybranych folderów ================ 2011-11-24 15:37 - 2011-11-24 15:37 - 000000022 ___SH () C:\Users\User\AppData\Roaming\Sys2662.Config.Repository.bin 2014-08-30 00:22 - 2014-08-30 00:27 - 000006144 _____ () C:\Users\User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2011-11-17 22:37 - 2013-07-01 03:17 - 000007633 _____ () C:\Users\User\AppData\Local\resmon.resmoncfg ==================== SigCheck =============================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2019-10-20 17:15 ==================== Koniec FRST.txt ============================