Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-02-2021 Uruchomiony przez reszka (administrator) RESZKA-PC (Packard Bell imedia S3710) (02-03-2021 17:39:48) Uruchomiony z C:\Users\reszka\Desktop Załadowane profile: reszka Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Duński (Dania) -> Polski (Polska) Domyślna przeglądarka: Opera Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe (Acer Incorporated -> Acer Incorporated) C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atiesrxx.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (cFos Software GmbH -> cFos Software GmbH) C:\Program Files\cFosSpeed\spd.exe (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MpCmdRun.exe (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler.exe (Piriform Software Ltd -> Piriform Software) C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\CCleanerBrowserCrashHandler64.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (SoftEther Corporation -> SoftEther VPN Project at University of Tsukuba, Japan.) C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe (TEFINCOM S.A. -> ) C:\Program Files (x86)\NordVPN\nordvpn-service.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13667032 2014-03-13] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\Run: [AMDDVR] => C:\Program Files\AMD\CNext\CNext\amddvr.exe [1384328 2017-04-24] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32721976 2021-02-16] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\MountPoints2: {05477e17-cfd7-11e9-a094-00ac1d9639f4} - L:\HiSuiteDownLoader.exe HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\MountPoints2: {14fb8be0-2d67-11e7-81c5-00ac1d9639f4} - M:\autorun.exe HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\MountPoints2: {f2b96b5c-4b7e-11e8-a0b0-00ac1d9639f4} - L:\HiSuiteDownLoader.exe HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\MountPoints2: {fc0686ee-c179-11e9-afba-00ac1d9639f4} - L:\HiSuiteDownLoader.exe HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2014-04-24] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Windows x64\Print Processors\hpzppWN7: C:\Windows\System32\spool\prtprocs\x64\hpzppwn7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation) HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [218112 2016-03-07] (Bullzip) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> C:\Program Files (x86)\CCleaner Browser\Application\88.2.8247.195\Installer\chrmstp.exe [2021-03-02] (Piriform Software Ltd -> Piriform Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.190\Installer\chrmstp.exe [2021-02-25] (Google LLC -> Google LLC) HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{052EB454-9F19-CB42-7875-807F79F311C4}] -> "C:\Program Files (x86)\CCleaner Browser\Application\88.0.7979.153\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2021-02-15] (Adobe Inc. -> Adobe Systems, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk [2016-12-03] ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe () [Brak podpisu cyfrowego] BootExecute: autocheck autochk * bootdelete GroupPolicy: Ograniczenia - Chrome <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {06DAE638-3B64-42D9-9E23-D0D23A8B1CE6} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe) Task: {1171072D-CA2D-45A5-AF50-39851C1B5973} - System32\Tasks\{B8550103-F7A2-4C12-82CA-FBA63D46426F} => C:\Windows\system32\pcalua.exe -a C:\Windows\IsUninst.exe -c -f"e:\Uninst.isu" Task: {17AF917C-DA6E-45CC-8D7F-CB02594D5334} - System32\Tasks\CCleaner Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2212528 2021-02-23] (Piriform Software Ltd -> Piriform Software) Task: {1AB50D1C-1763-46F1-A9A0-2CAA2D0179B7} - System32\Tasks\{D4F2ACD5-B8EE-45A2-81E0-5043CD98495D} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\AppData\Local\Temp\jre-8u91-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau-m FAMILYUPGRADE=1 <==== UWAGA Task: {222C9ACC-9FED-4CC4-8AD4-154C73A49BE9} - System32\Tasks\{B365A646-FAEB-4058-A13E-0D3D4DD9CDB7} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\AppData\Local\Temp\jre-8u171-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== UWAGA Task: {22530E1A-8A6C-4FFD-9CF6-F881E08EA8C3} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-25] (Google Inc -> Google Inc.) Task: {274B3E4F-8B2F-4AE6-9344-AC41F8BF23C4} - System32\Tasks\{3049F041-561D-405B-B722-8514991663FC} => C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe Task: {2BA67ED2-A827-472D-944E-CC657C00CF86} - System32\Tasks\{1426DB3D-E94C-42C9-BF2F-854158E58804} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\Downloads\slow.exe -d C:\Users\reszka\Downloads Task: {2E736466-52F1-4510-94E5-C099D5A4BE34} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-02-16] (Piriform Software Ltd -> Piriform) Task: {34319158-E4DB-4CCF-A7D9-49A24D503DB6} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-06-25] (Google Inc -> Google Inc.) Task: {372D204C-B86C-45A9-BBE5-C30F01B868A8} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.) Task: {3DB9BF6E-64B1-42B4-A7B7-E74C66A0ACAC} - System32\Tasks\{3546A6E6-F684-442F-8E26-3C7B1D7E5762} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\Desktop\lgs510.exe -d C:\Users\reszka\Desktop Task: {48097FEA-88ED-4965-AB9A-2494EE917DB6} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_465_pepper.exe [1499704 2020-12-09] (Adobe Inc. -> Adobe) Task: {4B8EB068-C409-4EBF-9ACE-14E36F50BB94} - System32\Tasks\{6CEBC3B1-A3CA-4A5A-8568-D0D49C31F5D2} => C:\Windows\system32\pcalua.exe -a N:\directx\dxsetup.exe -d N:\directx Task: {5C3CF670-2047-424C-9913-B14C97995F15} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [27165752 2021-02-16] (Piriform Software Ltd -> Piriform Software Ltd) Task: {5F211C03-8FCC-4C6C-A1CE-33CCD2D6BC9A} - System32\Tasks\WinSTAT => C:\ProgramData\WinSTAT\WinSTAT.exe <==== UWAGA Task: {5FC78A5A-FA93-4B7B-BE49-2A20DFF32BC9} - System32\Tasks\{12EADACE-154C-41AF-977E-AFE15F27A7D8} => C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe Task: {6290D83E-6081-47F3-AFDA-F1BAE3C93C02} - \Binkiland -> Brak pliku <==== UWAGA Task: {6DAB3ADA-6D48-4469-8AB3-7A4E9E266E87} - System32\Tasks\CCleanerUpdateTaskMachineUA => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2020-09-03] (Piriform Software Ltd -> Piriform Software) Task: {7145CC89-41C2-4A82-A858-749731419727} - System32\Tasks\{869DF296-C741-4049-B034-12AC746B703B} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\Downloads\ULi_Integrated220\IntegratedDriver2.20.exe -d C:\Users\reszka\Downloads\ULi_Integrated220 Task: {7A2A680A-11CF-4A8B-B273-B97F254AAEF9} - System32\Tasks\Opera scheduled Autoupdate 1512562768 => C:\Program Files (x86)\Opera\launcher.exe [1234520 2018-12-19] (Opera Software AS -> Opera Software) Task: {7F1FFDFF-4A65-4B17-89DC-37C9BF78F1F6} - System32\Tasks\AppSafe => C:\Program Files (x86)\AppSafe\AppSafe.exe <==== UWAGA Task: {85C18CFE-E2AA-4B53-B94E-894C60DEE019} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [25944 2015-05-21] (Garmin International, Inc. -> ) Task: {88710247-3EE7-4043-8941-19A14937D408} - System32\Tasks\CCleaner Browser Heartbeat Task (Logon) => C:\Program Files (x86)\CCleaner Browser\Application\CCleanerBrowser.exe [2212528 2021-02-23] (Piriform Software Ltd -> Piriform Software) Task: {8A7AF576-B6B4-48AE-BECC-750878EB2259} - System32\Tasks\CCleanerUpdateTaskMachineCore => C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2020-09-03] (Piriform Software Ltd -> Piriform Software) Task: {AC8CAA05-BE2C-487C-BD53-9FFE2C44A047} - System32\Tasks\{A9A5EAAE-F5F5-43B2-8DED-4DBFE5E447B3} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\AppData\Local\Temp\jre-8u101-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== UWAGA Task: {B684D2B9-9773-42DE-8B40-79298E8C4505} - System32\Tasks\{CD73057F-32B7-4D66-AE53-F2A7A9924760} => C:\Program Files (x86)\EA GAMES\Battlefield 2\BF2.exe Task: {C2335B1E-B03A-4961-8E5E-67D8A7306874} - System32\Tasks\cFosSpeedTR => C:\Program Files\cFosSpeed\CFSTR.exe [307784 2013-02-03] (BB) [Brak podpisu cyfrowego] Task: {EC7D4B80-ABBD-4A81-9268-EF38A821ADC2} - System32\Tasks\{B3962BEB-A33D-4700-A19F-04172C5F8F9E} => C:\Windows\system32\pcalua.exe -a M:\vcredist_x64.exe -d M:\ -c /q Task: {EE2E583D-D866-4256-B60E-0F27B259116F} - System32\Tasks\{7B5F68CF-75C1-4BBA-A067-6A2A81101EA0} => O:\setup.exe Task: {F536820C-F870-4A70-8FC6-D9252ECE8B2E} - System32\Tasks\{98BF03E9-4B96-4CE1-A6A7-D2FF5FC3E8CD} => C:\Windows\system32\pcalua.exe -a C:\Users\reszka\Desktop\irfanview_plugins_438_setup_(www.programki.pl).exe -d C:\Users\reszka\Desktop (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\AppSafe.job => C:\Program Files (x86)\AppSafe\AppSafe.exe <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) ProxyEnable: [.DEFAULT] => Proxy [funkcja włączona] ProxyServer: [.DEFAULT] => http=127.0.0.1:55832;https=127.0.0.1:55832 ProxyServer: [S-1-5-21-623783590-927091288-1908669224-1000] => 192.168.1.184:8080 Winsock: Catalog9 01 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9 02 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9 03 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9 04 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9 15 C:\Windows\SysWOW64\LavasoftTcpService.dll [345360 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9-x64 01 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9-x64 02 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9-x64 03 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9-x64 04 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Winsock: Catalog9-x64 15 C:\Windows\system32\LavasoftTcpService64.dll [425744 2015-10-11] (Lavasoft Limited -> Lavasoft Limited) [Brak podpisu cyfrowego] Tcpip\Parameters: [DhcpNameServer] 194.255.56.78 194.255.56.79 Tcpip\..\Interfaces\{15DA5E25-3720-4734-BE01-29AE72C97822}: [DhcpNameServer] 194.255.56.78 194.255.56.79 Tcpip\..\Interfaces\{99F73E47-F494-46CD-BA65-739FCCA3DA96}: [DhcpNameServer] 192.168.1.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\reszka\AppData\Local\Microsoft\Edge\User Data\Default [2021-02-27] FireFox: ======== FF ProfilePath: C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\t47mmkh3.default-1480887140195 [2021-03-02] FF Extension: (Yahoo! Toolbar) - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\t47mmkh3.default-1480887140195\Extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1} [2016-12-04] [Przestarzałe] [Brak podpisu cyfrowego] FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [fftoolbar2014@etech.com] - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\dylchjm3.default\extensions\fftoolbar2014@etech.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [quick_searchff@gmail.com] - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\dylchjm3.default\extensions\quick_searchff@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [sweetsearch@gmail.com] - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\dylchjm3.default\extensions\sweetsearch@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\dylchjm3.default\extensions\defsearchp@gmail.com => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\reszka\AppData\Roaming\Mozilla\Firefox\Profiles\dylchjm3.default\extensions\deskCutv2@gmail.com => nie znaleziono FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => nie znaleziono FF HKU\S-1-5-21-623783590-927091288-1908669224-1000\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\reszka\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi FF Extension: (Ace Script) - C:\Users\reszka\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2018-11-26] FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB -> ESN Social Software AB) FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Brak podpisu cyfrowego] FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=3 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2020-09-03] (Piriform Software Ltd -> Piriform Software) FF Plugin-x32: @update.ccleanerbrowser.com/CCleaner Browser;version=9 -> C:\Program Files (x86)\CCleaner Browser\Update\1.8.1067.0\npCCleanerBrowserUpdate3.dll [2020-09-03] (Piriform Software Ltd -> Piriform Software) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-02-25] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-623783590-927091288-1908669224-1000: @acestream.net/acestreamplugin,version=3.1.16.1 -> C:\Users\reszka\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-13] (Innovative Digital Technologies -> Innovative Digital Technologies) FF Plugin HKU\S-1-5-21-623783590-927091288-1908669224-1000: @hola.org/vlc,version=1.7.598 -> C:\Users\reszka\AppData\Local\Hola\firefox\app\vlc [2015-04-27] () Chrome: ======= CHR Profile: C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default [2021-03-02] CHR DefaultSearchURL: Default -> hxxps://srchbar.com/?q={searchTerms} CHR DefaultSuggestURL: Default -> hxxps://srch.bar/?s={searchTerms} CHR Extension: (Prezentacje) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-06-25] CHR Extension: (Dokumenty) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-06-25] CHR Extension: (Dysk Google) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-22] CHR Extension: (Search Manager) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\bahkljhhdeciiaodlkppoonappfnheoi [2020-03-14] CHR Extension: (YouTube) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-06-25] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2021-01-29] CHR Extension: (Arkusze) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-06-25] CHR Extension: (Dokumenty Google offline) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-02] CHR Extension: (Ace Script) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-12-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Search Manager) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pilplloabdedfmialnfchjomjmpjcoej [2020-06-08] CHR Extension: (Gmail) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\reszka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-29] CHR HKLM\...\Chrome\Extension: [kofkpgiaknijknhajbhnghkodiccblkg] CHR HKLM\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx CHR HKLM\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] CHR HKU\S-1-5-21-623783590-927091288-1908669224-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] CHR HKU\S-1-5-21-623783590-927091288-1908669224-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [kofkpgiaknijknhajbhnghkodiccblkg] CHR HKU\S-1-5-21-623783590-927091288-1908669224-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] CHR HKU\S-1-5-21-623783590-927091288-1908669224-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] CHR HKU\S-1-5-21-623783590-927091288-1908669224-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] CHR HKLM-x32\...\Chrome\Extension: [bahkljhhdeciiaodlkppoonappfnheoi] CHR HKLM-x32\...\Chrome\Extension: [kofkpgiaknijknhajbhnghkodiccblkg] CHR HKLM-x32\...\Chrome\Extension: [ljibkigjccbegnbeojkoafejpoiachej] CHR HKLM-x32\...\Chrome\Extension: [pilplloabdedfmialnfchjomjmpjcoej] Opera: ======= OPR Profile: C:\Users\reszka\AppData\Roaming\Opera Software\Opera Stable [2021-03-02] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.dk/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (HTTPS Everywhere) - C:\Users\reszka\AppData\Roaming\Opera Software\Opera Stable\Extensions\edaplhobcmdaneconioghljnnopmkhgm [2021-02-23] OPR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\reszka\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2021-02-02] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.) S3 AdobeFlashPlayerUpdateSvc; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-12-09] (Adobe Inc. -> Adobe) S2 ccleaner; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2020-09-03] (Piriform Software Ltd -> Piriform Software) S3 CCleanerBrowserElevationService; C:\Program Files (x86)\CCleaner Browser\Application\88.2.8247.195\elevation_service.exe [1456376 2021-02-23] (Piriform Software Ltd -> Piriform Software) S3 ccleanerm; C:\Program Files (x86)\CCleaner Browser\Update\CCleanerBrowserUpdate.exe [200928 2020-09-03] (Piriform Software Ltd -> Piriform Software) R2 cFosSpeedS; C:\Program Files\cFosSpeed\spd.exe [647520 2013-02-14] (cFos Software GmbH -> cFos Software GmbH) R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3606632 2018-06-20] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [717768 2015-05-21] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries) R2 HFGService; C:\Windows\System32\HFGService.dll [535552 2009-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc) R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-07-03] (Huawei Technologies Co., Ltd. -> ) [Brak podpisu cyfrowego] R2 Live Updater Service; C:\Program Files\Packard Bell\Packard Bell Updater\UpdaterService.exe [257440 2016-06-08] (Acer Incorporated -> Acer Incorporated) R2 nordvpn-service; C:\Program Files (x86)\NordVPN\nordvpn-service.exe [218576 2019-08-09] (TEFINCOM S.A. -> ) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [64512 2009-07-14] (Microsoft Windows -> Hewlett-Packard) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2014-05-31] (Even Balance, Inc. -> ) R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) R2 SEVPNCLIENT; C:\Program Files\SoftEther VPN Client\vpnclient_x64.exe [5438776 2019-09-10] (SoftEther Corporation -> SoftEther VPN Project at University of Tsukuba, Japan.) S2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [Brak podpisu cyfrowego] R2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 athur; C:\Windows\System32\DRIVERS\athurx.sys [1930240 2014-05-23] (Microsoft Windows Hardware Compatibility Publisher -> Atheros Communications, Inc.) S3 BthAudioHF; C:\Windows\System32\DRIVERS\BthAudioHF.sys [52224 2009-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc) S3 BthAvrcp; C:\Windows\System32\DRIVERS\BthAvrcp.sys [29184 2009-08-13] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc) R1 cFosSpeed; C:\Windows\System32\DRIVERS\cfosspeed6.sys [1807200 2013-02-14] (cFos Software GmbH -> cFos Software GmbH) S3 csr_a2dp; C:\Windows\System32\drivers\bthav.sys [78848 2009-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CSR, plc) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-04-30] (Disc Soft Ltd -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-04-30] (Disc Soft Ltd -> Disc Soft Ltd) S1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [190464 2021-01-25] (ESET, spol. s r.o. -> ESET) R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [70048 2021-01-25] (ESET, spol. s r.o. -> ESET) R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [56152 2021-01-25] (ESET, spol. s r.o. -> ESET) S3 ew_usbccgpfilter; C:\Windows\System32\DRIVERS\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [30424 2014-12-22] (Sony Mobile Communications AB -> Sony Mobile Communications) U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.) S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [39000 2020-10-10] (IObit CO., LTD -> IObit Information Technology) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (SHENZHEN YIBO DIGITAL SYSTEMS DEVELOPMENT CO. LTD. -> EZB Systems, Inc.) R3 Neo_VPN; C:\Windows\System32\DRIVERS\Neo_0081.sys [28768 2014-07-06] (SoftEther K.K. -> SoftEther Project at University of Tsukuba, Japan.) S3 pccsmcfd; C:\Windows\System32\DRIVERS\pccsmcfdx64.sys [26112 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia) S3 s0017bus; C:\Windows\System32\DRIVERS\s0017bus.sys [113704 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017mdfl; C:\Windows\System32\DRIVERS\s0017mdfl.sys [19496 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017mdm; C:\Windows\System32\DRIVERS\s0017mdm.sys [152616 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017mgmt; C:\Windows\System32\DRIVERS\s0017mgmt.sys [133160 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017nd5; C:\Windows\System32\DRIVERS\s0017nd5.sys [34856 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017obex; C:\Windows\System32\DRIVERS\s0017obex.sys [128552 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s0017unic; C:\Windows\System32\DRIVERS\s0017unic.sys [145960 2008-10-21] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039bus; C:\Windows\System32\DRIVERS\s1039bus.sys [127600 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039mdfl; C:\Windows\System32\DRIVERS\s1039mdfl.sys [19568 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039mdm; C:\Windows\System32\DRIVERS\s1039mdm.sys [161904 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039mgmt; C:\Windows\System32\DRIVERS\s1039mgmt.sys [141424 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039nd5; C:\Windows\System32\DRIVERS\s1039nd5.sys [34416 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039obex; C:\Windows\System32\DRIVERS\s1039obex.sys [137328 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 s1039unic; C:\Windows\System32\DRIVERS\s1039unic.sys [158320 2010-03-15] (Sony Ericsson Mobile Communications AB -> MCCI Corporation) S3 secdrv; C:\Windows\SysWow64\Drivers\secdrv.sys [29392 2018-08-19] () [Brak podpisu cyfrowego] R3 SEE; C:\Windows\System32\drivers\see.sys [52424 2019-09-10] (SoftEther Corporation -> SoftEther Corporation) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2016-03-29] (Disc Soft Ltd -> Duplex Secure Ltd.) R3 tapnordvpn; C:\Windows\System32\DRIVERS\tapnordvpn.sys [35592 2018-06-06] (TEFINCOM S.A. -> The OpenVPN Project) U3 a8til7xs; Brak ImagePath S3 dgderdrv; System32\drivers\dgderdrv.sys [X] S4 NVHDA; system32\drivers\nvhda64v.sys [X] S4 nvlddmkm; system32\DRIVERS\nvlddmkm.sys [X] S4 nvvad_WaveExtensible; system32\drivers\nvvad64v.sys [X] S3 Synth3dVsc; System32\drivers\synth3dvsc.sys [X] U2 TMAgent; Brak ImagePath S3 tsusbhub; system32\drivers\tsusbhub.sys [X] S3 VGPU; System32\drivers\rdvgkmd.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-03-02 17:39 - 2021-03-02 17:40 - 000032075 _____ C:\Users\reszka\Desktop\FRST.txt 2021-03-02 17:38 - 2021-03-02 17:40 - 000000000 ____D C:\FRST 2021-03-02 17:30 - 2021-03-02 17:39 - 002301440 _____ (Farbar) C:\Users\reszka\Desktop\FRST64.exe 2021-02-27 23:32 - 2021-02-27 23:32 - 000007606 _____ C:\Users\reszka\AppData\Local\Resmon.ResmonCfg 2021-02-27 23:21 - 2021-02-27 23:26 - 000001319 _____ C:\Users\Public\Desktop\Trend Micro Maximum Security Installer.lnk 2021-02-27 23:21 - 2021-02-27 23:26 - 000001319 _____ C:\ProgramData\Desktop\Trend Micro Maximum Security Installer.lnk 2021-02-27 23:09 - 2021-02-27 23:09 - 002530488 _____ (IObit ) C:\Users\reszka\Downloads\unlocker-setup (1).exe 2021-02-27 23:09 - 2021-02-27 23:09 - 000001180 _____ C:\Users\Public\Desktop\IObit Unlocker.lnk 2021-02-27 23:09 - 2021-02-27 23:09 - 000001180 _____ C:\ProgramData\Desktop\IObit Unlocker.lnk 2021-02-27 23:09 - 2021-02-27 23:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IObit Unlocker 2021-02-27 23:09 - 2021-02-27 23:09 - 000000000 ____D C:\ProgramData\IObit 2021-02-27 23:09 - 2021-02-27 23:09 - 000000000 ____D C:\Program Files (x86)\IObit 2021-02-27 23:08 - 2021-02-27 23:08 - 002525528 _____ (IObit ) C:\Users\reszka\Downloads\unlocker-setup.exe 2021-02-27 14:45 - 2021-02-27 23:26 - 000000000 ____D C:\ProgramData\Trend Micro 2021-02-27 14:45 - 2021-02-27 21:57 - 000000000 ____D C:\Users\reszka\AppData\Local\Trend Micro 2021-02-27 14:43 - 2021-02-27 22:30 - 000000000 ____D C:\ProgramData\Trend Micro Installer 2021-02-27 14:42 - 2021-02-27 14:43 - 461351848 _____ (Trend Micro Inc.) C:\Users\reszka\Downloads\TrendMicro_17.0_HE_Full.exe 2021-02-26 15:03 - 2021-02-26 15:03 - 000232958 _____ C:\Windows\system32\.crusader 2021-02-26 14:23 - 2021-02-26 15:04 - 000000000 ____D C:\ProgramData\HitmanPro 2021-02-26 14:23 - 2021-02-26 14:23 - 011431000 ____N (SurfRight B.V.) C:\Users\reszka\Downloads\HitmanPro_x64.exe ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-03-02 17:36 - 2016-05-15 20:23 - 000808394 _____ C:\Windows\system32\perfh015.dat 2021-03-02 17:36 - 2016-05-15 20:23 - 000188358 _____ C:\Windows\system32\perfc015.dat 2021-03-02 17:36 - 2014-07-06 13:13 - 000000000 ____D C:\Program Files\SoftEther VPN Client 2021-03-02 17:36 - 2009-07-14 08:34 - 000582230 _____ C:\Windows\system32\perfh006.dat 2021-03-02 17:36 - 2009-07-14 08:34 - 000127956 _____ C:\Windows\system32\perfc006.dat 2021-03-02 17:36 - 2009-07-14 06:13 - 002576572 _____ C:\Windows\system32\PerfStringBackup.INI 2021-03-02 17:36 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2021-03-02 17:33 - 2009-07-14 05:45 - 000025184 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-03-02 17:33 - 2009-07-14 05:45 - 000025184 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-03-02 15:49 - 2019-09-05 13:48 - 000003726 _____ C:\Windows\system32\Tasks\CCleaner Browser Heartbeat Task (Hourly) 2021-03-02 15:49 - 2019-09-05 13:48 - 000002328 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner Browser.lnk 2021-03-02 15:49 - 2019-09-05 13:48 - 000002285 _____ C:\Users\Public\Desktop\CCleaner Browser.lnk 2021-03-02 15:49 - 2019-09-05 13:48 - 000002285 _____ C:\ProgramData\Desktop\CCleaner Browser.lnk 2021-03-02 15:49 - 2019-09-05 13:47 - 000000000 ____D C:\Program Files (x86)\CCleaner Browser 2021-03-02 15:49 - 2014-06-14 21:36 - 000000000 ____D C:\Program Files\CCleaner 2021-03-02 15:43 - 2014-04-22 07:51 - 000003932 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{53540D12-08DC-4343-87BA-CFDE7E1C5EEF} 2021-03-02 15:41 - 2014-12-10 12:22 - 000000000 ____D C:\Program Files (x86)\Opera 2021-03-02 15:38 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\inetsrv 2021-03-02 15:36 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-03-01 21:36 - 2017-06-22 08:10 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2021-03-01 15:43 - 2014-06-14 21:31 - 000000000 ____D C:\Users\reszka\AppData\Local\CrashDumps 2021-02-27 21:15 - 2019-09-05 13:46 - 000004128 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-02-26 15:03 - 2017-08-21 16:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Counter-Strike Global Offensive 2021-02-26 15:03 - 2014-04-22 07:49 - 000000000 ____D C:\Users\reszka 2021-02-25 20:59 - 2018-06-25 16:26 - 000002230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-02-25 20:59 - 2018-06-25 16:26 - 000002189 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-02-25 20:59 - 2018-06-25 16:26 - 000002189 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2021-02-25 19:21 - 2016-01-04 10:50 - 000002059 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2021-02-11 16:40 - 2020-11-16 11:28 - 000000000 ____D C:\Users\reszka\Desktop\D O Mr 2021-02-10 23:04 - 2014-08-09 07:55 - 000000000 ____D C:\Windows\system32\MRT 2021-02-10 22:55 - 2014-08-09 07:55 - 130141752 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-02-09 15:47 - 2014-12-25 14:19 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2021-02-05 18:53 - 2018-06-25 16:24 - 000003366 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-05 18:53 - 2018-06-25 16:24 - 000003238 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-01 12:00 - 2014-06-14 21:32 - 000000254 _____ C:\Windows\Tasks\AppSafe.job ==================== Pliki w katalogu głównym wybranych folderów ======== 2015-10-11 14:55 - 2015-10-11 14:55 - 000000102 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2017-06-02 11:14 - 2017-06-02 11:15 - 306673592 ____N (NVIDIA Corporation) C:\Users\reszka\342.01-desktop-win8-win7-winvista-64bit-international.exe 2017-06-18 06:49 - 2017-06-18 06:49 - 001202184 _____ (Adobe Systems Incorporated) C:\Users\reszka\flashplayer26ppau_fa_install.exe 2014-04-29 14:39 - 2015-05-29 13:24 - 000000001 _____ () C:\Users\reszka\temp.dat 2014-06-15 07:31 - 2016-05-20 08:06 - 000000322 _____ () C:\Users\reszka\AppData\Roaming\WB.CFG 2015-02-16 21:18 - 2015-02-16 21:18 - 000000010 _____ () C:\Users\reszka\AppData\Local\DSI.DAT 2017-12-28 21:40 - 2017-12-28 21:47 - 000000600 _____ () C:\Users\reszka\AppData\Local\PUTTY.RND 2015-11-25 08:27 - 2015-11-25 08:27 - 000000218 _____ () C:\Users\reszka\AppData\Local\recently-used.xbel 2021-02-27 23:32 - 2021-02-27 23:32 - 000007606 _____ () C:\Users\reszka\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2021-02-21 09:47 ==================== Koniec FRST.txt ========================