Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 31-10-2023 Uruchomiony przez mcepu (administrator) DESKTOP-7S0R95C (Micro-Star International Co., Ltd. CX61 0OC/CX61 0OD) (02-11-2023 09:59:54) Uruchomiony z C:\Users\mcepu\Downloads\FRST64.exe Załadowane profile: mcepu Platforma: Microsoft Windows 10 Home Wersja 22H2 19045.3570 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\SentryEye.exe (C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (C:\Users\mcepu\Downloads\adwcleaner.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <35> (explorer.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc. -> Malwarebytes) C:\Users\mcepu\Downloads\adwcleaner.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe (Reason Cybersecurity Inc. -> Reason Cybersecurity Ltd.) C:\Program Files\ReasonLabs\Common\Client\v1.2.0\rsAppUI.exe <9> (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe (services.exe ->) (Avira Operations GmbH -> Avira Operations GmbH) C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe (services.exe ->) (Malwarebytes Inc. -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\DNS\rsDNSClientSvc.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\DNS\rsDNSResolver.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\DNS\rsDNSSvc.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe (services.exe ->) (Reason Cybersecurity Inc. -> Reason Software Company Inc.) C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3375056 2021-10-05] (ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [WinZip UN] => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-19] (Corel Corporation -> Corel Corporation) HKLM\...\Run: [WinZip FAH] => C:\Program Files\WinZip\FAHConsole.exe [436704 2020-02-19] (Corel Corporation -> WinZip Computing, S.L.) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-05-22] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4513792 2014-05-22] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Ograniczenia <==== UWAGA HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Ograniczenia <==== UWAGA HKU\S-1-5-21-88238156-1443801359-3956281824-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [42727840 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) HKU\S-1-5-21-88238156-1443801359-3956281824-1001\...\Run: [InspigoCloudPrint] => C:\Program Files (x86)\Inspigo\InspigoCloudPrint\InspigoCloudPrint.exe [129024 2021-02-18] (Inspigo) [Brak podpisu cyfrowego] HKU\S-1-5-21-88238156-1443801359-3956281824-1001\...\Run: [Spotify] => C:\Users\mcepu\AppData\Roaming\Spotify\Spotify.exe [28937592 2023-10-11] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-88238156-1443801359-3956281824-1001\...\Run: [MicrosoftEdgeAutoLaunch_D4873C70BAC55CBCFF37C2C0F8864523] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [4187176 2023-10-27] (Microsoft Corporation -> Microsoft Corporation) HKLM\...\Print\Monitors\Advanced Language Monitor: C:\WINDOWS\system32\ldaNLM64.dll [488960 2016-08-08] (Euro Plus d.o.o. -> Euro Plus d.o.o.) HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [2152704 2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\118.0.5993.118\Installer\chrmstp.exe [2023-10-28] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\WinZip Preloader.lnk [2020-04-02] ShortcutTarget: WinZip Preloader.lnk -> C:\Program Files\WinZip\WzPreloader.exe (Corel Corporation -> WinZip Computing) GroupPolicy-Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {686090A0-FE38-4ABC-A63B-CD567CE0BF6F} - System32\Tasks\{31DDBD37-5DB7-4030-8064-10B0CAA806C3} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe --cistrayUI (Brak pliku) Task: {F74DA06C-D98B-41AD-9EE2-5F18F099BFB6} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.) Task: {71F32EC9-FA1A-4A25-A0B4-BEB54065313B} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-m.cepuchowicz@outlook.com => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [472992 2013-03-21] (Adobe Systems Incorporated -> Adobe Systems Incorporated) Task: {A5A8EE2A-A0AE-421C-A62A-20935EE51AC0} - System32\Tasks\Avira_FallbackUpdater => C:\WINDOWS\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start AviraFallbackUpdater Delayed=false Task: {DC475E92-23A5-479D-A99D-31F232EB8F9D} - System32\Tasks\Avira_Security_Maintenance => Command(1): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> FallbackTelemetry Task: {DC475E92-23A5-479D-A99D-31F232EB8F9D} - System32\Tasks\Avira_Security_Maintenance => Command(2): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> ServiceWatchdog Task: {DC475E92-23A5-479D-A99D-31F232EB8F9D} - System32\Tasks\Avira_Security_Maintenance => Command(3): C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe -> CrashCollector Task: {F898CF98-3B49-4251-AFD6-8347C169231E} - System32\Tasks\Avira_Security_Service_SCM_Watchdog => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.Worker.exe [262024 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) Task: {6CA2A06F-4F9A-4A19-8EA2-B0B158F3EF2B} - System32\Tasks\Avira_Security_Systray => C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Systray.Application.exe [1814672 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) Task: {9508E364-B7BA-4528-ACC1-3E98419EDFA8} - System32\Tasks\Avira_Security_Update => C:\WINDOWS\system32\net.exe [59904 2019-12-07] (Microsoft Windows -> Microsoft Corporation) Task: {A172F361-8408-47A5-B91F-26680CC3148E} - System32\Tasks\AviraSystemSpeedupVerify => C:\Program Files (x86)\Avira\System Speedup\setup\avira_speedup_setup.exe [37168176 2023-09-26] (Avira Operations GmbH -> Avira Operations GmbH) Task: {45F4D41F-A3CF-4065-8BF8-E829BC73B8A2} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {8DC5CC89-A426-49A2-A4BC-29C7F08856F7} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "e794a487-51d5-416b-810b-5859df79c670" --version "6.17.10746" --silent Task: {A580FAF0-0A85-4D25-BE25-83FB0454A284} - System32\Tasks\CCleanerSkipUAC - mcepu => C:\Program Files\CCleaner\CCleaner.exe [35664800 2023-10-10] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) Task: {B50C52E3-825F-46BA-96CA-78A48DFE584F} - System32\Tasks\e-pity2022_kwiecien => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [35328 2023-03-17] (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {A64E965A-47BA-41C9-B3F5-F565B5510D8A} - System32\Tasks\e-pity2022_styczen => C:\Program Files (x86)\e-file\e-pity\Assets\signxml.exe [35328 2023-03-17] (e-file sp. z o.o. sp. k.) [Brak podpisu cyfrowego] Task: {4C1E5682-E53E-4BC5-B8B9-B45A11574F7F} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem120.0.6077.0{65E31449-5B50-4E17-99A3-6A29D382E49F} => C:\Program Files (x86)\Google\GoogleUpdater\120.0.6077.0\updater.exe [4580640 2023-10-19] (Google LLC -> Google LLC) <==== UWAGA Task: {47B2F30A-455D-42AC-AFEF-6553E2BCA1F0} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [676768 2023-10-12] (Mozilla Corporation -> Mozilla Corporation) -> --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate Task: {63BFE0B6-EBB3-4E0F-BCD8-8E0720600C42} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [718240 2023-10-12] (Mozilla Corporation -> Mozilla Foundation) Task: {833389EE-AC40-48B1-A12B-B8DB4992E884} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {2624A617-8F30-4711-B53D-BA849F866D15} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {D79E1549-C575-4B99-A9E9-9ED423CE2287} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D2467001-E21A-450E-A425-C936747624D3} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {9357D76F-0559-4409-9C02-176BBCAC08CB} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BE2790D0-32F5-47E6-A352-A565F6165B37} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {4F86999C-C134-457D-A37A-6AE19A3EA9A0} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {A7EAFF87-295F-466A-A23F-926ED8080EB2} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {36128ECB-54B5-4CDF-97BE-84F0470FFBDD} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {EC6D98F2-E9BE-493A-89BA-12AA30FAEEC5} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {148CD289-6EC2-4D4F-88F0-19EF5ECF157E} - System32\Tasks\Odkurzacz => C:\Program Files (x86)\Odkurzacz\odkurzacz.exe [1069056 2020-03-15] (FranmoSoftware) [Brak podpisu cyfrowego] Task: {146562BE-12ED-4B46-8E88-934D801B560C} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-88238156-1443801359-3956281824-1001 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (Brak pliku) Task: {C4F69BA6-4D69-49C8-A64D-19EEEA278617} - System32\Tasks\Opera scheduled Autoupdate 1648466130 => C:\Users\mcepu\AppData\Local\Programs\Opera\launcher.exe [2820000 2023-10-24] (Opera Norway AS -> Opera Software) Task: {D20186A8-AE74-4C15-B99C-4CDD6CE88BDB} - System32\Tasks\ViGEmBusUpdater => C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBusUpdater.exe [888344 2019-12-28] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) Task: {34F48BCB-4A11-4684-8A0E-327BDA4DF1DB} - System32\Tasks\WinZip Update Notifier 1 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-19] (Corel Corporation -> Corel Corporation) Task: {E89FFF69-D123-498B-871F-4F349590CD96} - System32\Tasks\WinZip Update Notifier 2 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-19] (Corel Corporation -> Corel Corporation) Task: {BC70BF19-5AEB-4FD1-9DB9-014258F96EE1} - System32\Tasks\WinZip Update Notifier 3 => C:\Program Files\WinZip\WZUpdateNotifier.exe [2814096 2020-02-19] (Corel Corporation -> Corel Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{3631c911-8f34-4d07-ad19-02c6685a4f3d}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{8ce7bc4a-0568-4b5d-bbf3-4b9390267f48}: [DhcpNameServer] 192.168.100.1 Tcpip\..\Interfaces\{fae8caa6-8bab-4d02-85c7-ff7c14e5699d}: [DhcpNameServer] 192.168.100.1 Edge: ======= Edge Extension: (Brak nazwy) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [nie znaleziono] Edge Extension: (Brak nazwy) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [nie znaleziono] Edge Extension: (Brak nazwy) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [nie znaleziono] Edge Extension: (Brak nazwy) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [nie znaleziono] Edge DefaultProfile: Default Edge Profile: C:\Users\mcepu\AppData\Local\Microsoft\Edge\User Data\Default [2023-11-02] Edge Extension: (Dokumenty Google offline) - C:\Users\mcepu\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-04] Edge Extension: (Edge relevant text changes) - C:\Users\mcepu\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2023-10-04] Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip] Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle] FireFox: ======== FF DefaultProfile: agir5si7.default FF ProfilePath: C:\Users\mcepu\AppData\Roaming\Mozilla\Firefox\Profiles\agir5si7.default [2023-04-25] FF ProfilePath: C:\Users\mcepu\AppData\Roaming\Mozilla\Firefox\Profiles\knch7vsx.default-release [2023-10-25] FF Plugin: @java.com/DTPlugin,version=11.371.2 -> C:\Program Files\Java\jre-1.8\bin\dtplugin\npDeployJava1.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.371.2 -> C:\Program Files\Java\jre-1.8\bin\plugin2\npjp2.dll [2023-03-17] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2013-03-21] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2023-07-03] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2013-03-21] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-88238156-1443801359-3956281824-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-88238156-1443801359-3956281824-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-88238156-1443801359-3956281824-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2020-08-12] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default [2023-11-02] CHR Notifications: Default -> hxxps://kfc.pl; hxxps://sport.radiozet.pl; hxxps://www.pudelek.pl; hxxps://www.pyszne.pl CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxps://allegro.pl/" CHR Extension: (FUTBIN) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\adicaaffkmhgnfheifkjhopmambgfihl [2022-04-02] CHR Extension: (Always on Top) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\amclpcgcmdkdaichklckjepcjjdcmcii [2022-06-11] CHR Extension: (Keyword Surfer) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\bafijghppfhdpldihckdcadbcobikaca [2023-10-07] CHR Extension: (FUTBIN Updater) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\beejegoimbgpafoobegjmhjnehlmnbcn [2022-04-02] CHR Extension: (Panel Pro dla Allegro Ads) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgkpehhnbobnalcmakjmllahilkcfelp [2023-10-28] CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-09-27] CHR Extension: (Avira Browser Safety) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2022-10-27] CHR Extension: (Dokumenty Google offline) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-10-18] CHR Extension: (Szafir SDK Web) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gjalhnomhafafofonpdihihjnbafkipc [2023-06-30] CHR Extension: ([DEPRECATED] Tag Assistant Legacy) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\kejbdjndbnbjgmefkgdddjlbokphdefk [2023-10-14] CHR Extension: (Online Security) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2023-10-31] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-06] CHR Extension: (e-pity - dodatek) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2022-04-02] CHR Extension: (Transcribe: transcribe audio/interviews fast!) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ogokenmicnjdfhmhocanoemnddmpcjjm [2020-04-01] CHR Profile: C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1 [2023-08-07] CHR Extension: (Avira Password Manager) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2023-07-29] CHR Extension: (Avira Safe Shopping) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2023-07-29] CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-06-08] CHR Extension: (Avira Browser Safety) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2023-06-08] CHR Extension: (Online Security) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2023-06-08] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-07-29] CHR Extension: (e-pity - dodatek) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2023-06-08] CHR Profile: C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2 [2023-10-15] CHR Extension: (Avira Password Manager) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\caljgklbbfbcjjanaijlacgncafpegll [2023-09-27] CHR Extension: (Avira Safe Shopping) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ccbpbkebodcjkknkfkpmfeciinhidaeh [2023-09-27] CHR Extension: (Adobe Acrobat: edycja plików PDF, konwertowanie, narzędzia podpisywania) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2023-09-27] CHR Extension: (Avira Browser Safety) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2023-09-27] CHR Extension: (Dokumenty Google offline) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-09-27] CHR Extension: (Online Security) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\llbcnfanfmjhpedaedhbcnpgeepdnnok [2023-09-27] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-09-27] CHR Extension: (e-pity - dodatek) - C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2023-09-27] CHR Profile: C:\Users\mcepu\AppData\Local\Google\Chrome\User Data\System Profile [2023-11-02] CHR HKLM\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKU\S-1-5-21-88238156-1443801359-3956281824-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll] CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] CHR HKLM-x32\...\Chrome\Extension: [llbcnfanfmjhpedaedhbcnpgeepdnnok] CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] Opera: ======= OPR DefaultProfile: Opera Stable OPR Profile: C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable [2023-11-02] OPR Notifications: Opera Stable -> hxxps://meet.google.com; hxxps://zoom.us OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={searchTerms}&sourceid=opera&ie={inputEncoding}&oe={outputEncoding} OPR DefaultSearchKeyword: Opera Stable -> g OPR Extension: (Rich Hints Agent) - C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-10-19] OPR Extension: (Opera Wallet) - C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-09-28] OPR Extension: (Aria) - C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-10-19] OPR Extension: (Amazon Assistant Promotion) - C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2022-03-28] OPR Extension: (Cashback Assistant) - C:\Users\mcepu\AppData\Roaming\Opera Software\Opera Stable\Extensions\ompjkhnkeoicimmaehlcmgmpghobbjoj [2023-10-27] OPR Extension: (opera-intro) - C:\Users\mcepu\AppData\Local\Programs\Opera\103.0.4928.34\resources\opera_intro_extension [2023-10-19] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.) S2 AviraFallbackUpdater; C:\Program Files (x86)\Avira\Fallback Updater\Avira.Spotlight.FallbackUpdater.exe [6576104 2023-10-12] (Avira Operations GmbH -> Avira Operations GmbH) R2 AviraOptimizerHost; C:\Program Files (x86)\Avira\Optimizer Host\Avira.OptimizerHost.exe [3004688 2022-07-22] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) R2 AviraPhantomVPN; C:\Program Files (x86)\Avira\VPN\Avira.VpnService.exe [389096 2023-09-06] (Avira Operations GmbH -> Avira Operations GmbH & Co. KG) R2 AviraSecurity; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Service.exe [266936 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) S2 AviraSecurityUpdater; C:\Program Files (x86)\Avira\Security\Avira.Spotlight.Common.Updater.exe [297392 2023-10-17] (Avira Operations GmbH -> Avira Operations GmbH) S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] S2 EndpointProtectionService; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [11214240 2023-10-27] (Avira Operations GmbH -> Avira Operations GmbH) R3 EndpointProtectionService2; C:\Program Files\Avira\Endpoint Protection SDK\endpointprotection.exe [11214240 2023-10-27] (Avira Operations GmbH -> Avira Operations GmbH) S2 GoogleUpdaterInternalService120.0.6077.0; C:\Program Files (x86)\Google\GoogleUpdater\120.0.6077.0\updater.exe [4580640 2023-10-19] (Google LLC -> Google LLC) S2 GoogleUpdaterService120.0.6077.0; C:\Program Files (x86)\Google\GoogleUpdater\120.0.6077.0\updater.exe [4580640 2023-10-19] (Google LLC -> Google LLC) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [9287968 2023-09-22] (Malwarebytes Inc. -> Malwarebytes) R2 rsDNSClientSvc; C:\Program Files\ReasonLabs\DNS\rsDNSClientSvc.exe [638808 2023-06-22] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 rsDNSResolver; C:\Program Files\ReasonLabs\DNS\rsDNSResolver.exe [11329880 2023-06-22] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 rsDNSSvc; C:\Program Files\ReasonLabs\DNS\rsDNSSvc.exe [216920 2023-06-22] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 rsVPNClientSvc; C:\Program Files\ReasonLabs\VPN\rsVPNClientSvc.exe [638808 2023-06-13] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) R2 rsVPNSvc; C:\Program Files\ReasonLabs\VPN\rsVPNSvc.exe [217944 2023-06-13] (Reason Cybersecurity Inc. -> Reason Software Company Inc.) S4 ss_conn_service; C:\Program Files (x86)\Samsung\USB Drivers\27_ssconn\conn\ss_conn_service.exe [752224 2020-11-26] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.) S4 ss_conn_service2; C:\Program Files (x86)\Samsung\USB Drivers\28_ssconn2\conn\ss_conn_service2.exe [919992 2020-11-26] (Samsung Electronics Co., Ltd. -> DEVGURU Co., LTD.) S4 ViGEmBusUpdater; C:\Program Files\Nefarius Software Solutions\ViGEm Bus Driver\ViGEmBusUpdater.exe [888344 2019-12-28] (Nefarius Software Solutions e.U. -> Nefarius Software Solutions e.U.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\NisSrv.exe [3121008 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23080.2006-0\MsMpEng.exe [133688 2023-10-04] (Microsoft Windows Publisher -> Microsoft Corporation) S3 BrotherWirelessSetupService; F:\install\wlan_wiz\wlan_assistant\waw.exe -s [X] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 ACR39U; C:\WINDOWS\system32\DRIVERS\acr39u.sys [80288 2019-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Card Systems Ltd.) R0 BdNet; C:\WINDOWS\System32\DRIVERS\BdNet.sys [190712 2023-03-17] (Avira Operations GmbH -> Avira Operations GmbH) R1 BdSentry; C:\WINDOWS\System32\DRIVERS\BdSentry.sys [233560 2023-05-25] (Avira Operations GmbH -> Avira Operations GmbH) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [222272 2023-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [21480 2023-04-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [239544 2023-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes) R1 netprotection_network_filter; C:\WINDOWS\System32\drivers\netprotection_network_filter.sys [100128 2022-06-15] (Avira Operations GmbH & Co. KG -> Avira Operations GmbH & Co. KG) R3 rsDwf; C:\WINDOWS\system32\DRIVERS\rsDwf.sys [54144 2023-06-22] (Reason CyberSecurity Inc. -> Reason CyberSecurity Inc.) S0 rtp_elam; C:\WINDOWS\System32\DRIVERS\rtp_elam.sys [28616 2023-07-11] (Microsoft Windows Early Launch Anti-malware Publisher -> Avira Operations GmbH) R1 rtp_filter; C:\WINDOWS\System32\DRIVERS\rtp_filter.sys [359560 2023-10-19] (Avira Operations GmbH -> Avira Operations GmbH) R1 rtp_traverse; C:\WINDOWS\system32\DRIVERS\rtp_traverse.sys [41776 2023-07-11] (Avira Operations GmbH -> Avira Operations GmbH) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) R3 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [55872 2023-10-04] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [574872 2023-10-04] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105864 2023-10-04] (Microsoft Windows -> Microsoft Corporation) S3 netprotection_network_filter2; System32\drivers\netprotection_network_filter2.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-11-02 10:07 - 2023-11-02 10:07 - 000602112 _____ (OldTimer Tools) C:\Users\mcepu\Downloads\OTL.exe 2023-11-02 09:59 - 2023-11-02 10:02 - 000036395 _____ C:\Users\mcepu\Downloads\FRST.txt 2023-11-02 09:58 - 2023-11-02 10:01 - 000000000 ____D C:\FRST 2023-11-02 09:58 - 2023-11-02 09:58 - 000000000 ____D C:\Users\mcepu\Downloads\FRST-OlderVersion 2023-11-02 09:57 - 2023-11-02 09:58 - 002383872 _____ (Farbar) C:\Users\mcepu\Downloads\FRST64.exe 2023-11-02 09:50 - 2023-11-02 09:51 - 000000000 ____D C:\AdwCleaner 2023-11-02 09:50 - 2023-11-02 09:50 - 008791352 _____ (Malwarebytes) C:\Users\mcepu\Downloads\adwcleaner.exe 2023-11-02 09:50 - 2023-11-02 09:50 - 008551608 _____ (Malwarebytes) C:\Users\mcepu\Downloads\adwcleaner8.3.2.exe 2023-11-01 15:52 - 2023-11-01 15:52 - 015411355 _____ C:\Users\mcepu\Downloads\2019-mazda-cx-5-44.pdf 2023-11-01 15:40 - 2023-11-02 10:07 - 000000000 ____D C:\Program Files\Mozilla Firefox 2023-10-31 17:57 - 2023-10-31 17:57 - 000547033 _____ C:\Users\mcepu\Downloads\Reklamacja.pdf 2023-10-27 12:05 - 2023-10-27 12:05 - 000036103 _____ C:\Users\mcepu\Downloads\etykieta_2023-10-27_13-05-12_73.pdf 2023-10-23 11:54 - 2023-10-23 11:54 - 000000108 ____H C:\Users\mcepu\Downloads\.~lock.BL__Produkty__uproszczony_CSV__2023-10-23_12_53.csv# 2023-10-23 11:53 - 2023-10-23 11:53 - 000014477 _____ C:\Users\mcepu\Downloads\BL__Produkty__uproszczony_CSV__2023-10-23_12_53.csv 2023-10-23 11:32 - 2023-10-23 11:32 - 000000307 _____ C:\Users\mcepu\Downloads\UDP.zip 2023-10-23 11:32 - 2023-10-23 11:32 - 000000294 _____ C:\Users\mcepu\Downloads\RDG.zip 2023-10-23 11:32 - 2023-10-23 11:32 - 000000294 _____ C:\Users\mcepu\Downloads\RDG (1).zip 2023-10-20 12:58 - 2023-10-20 12:58 - 000003888 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Maintenance 2023-10-20 12:58 - 2023-10-20 12:58 - 000003428 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Service_SCM_Watchdog 2023-10-20 12:58 - 2023-10-20 12:58 - 000002818 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Systray 2023-10-20 12:32 - 2023-10-20 12:32 - 000204807 _____ C:\Users\mcepu\Downloads\nip-2-zgloszenie-identyfikacyjne-aktualizacyjne-osoby-prawnej (1).pdf 2023-10-20 12:31 - 2023-10-20 12:31 - 004142036 _____ C:\Users\mcepu\Downloads\nip-2-zgloszenie-identyfikacyjne-aktualizacyjne-osoby-prawnej.gofin 2023-10-20 12:31 - 2023-10-20 12:31 - 000204807 _____ C:\Users\mcepu\Downloads\nip-2-zgloszenie-identyfikacyjne-aktualizacyjne-osoby-prawnej.pdf 2023-10-20 09:32 - 2023-10-20 09:32 - 000022634 _____ C:\Users\mcepu\Downloads\etykieta_2023-10-20_10-32-18_3267.pdf 2023-10-20 09:10 - 2023-10-20 09:10 - 000530719 _____ C:\Users\mcepu\Downloads\protokol-przyjecia-zwrotu-towaruuznanej-reklamacji-towaruuslu (1).pdf 2023-10-20 09:09 - 2023-10-20 09:09 - 000132869 _____ C:\Users\mcepu\Downloads\protokol-przyjecia-zwrotu-towaruuznanej-reklamacji-towaruuslu (1).gofin 2023-10-20 08:09 - 2023-10-20 08:09 - 000014325 _____ C:\Users\mcepu\Downloads\BL__Produkty__uproszczony_CSV__2023-10-20_09_09.csv 2023-10-20 08:08 - 2023-10-20 08:08 - 000463717 _____ C:\Users\mcepu\Downloads\BL__Produkty__domylny_CSV_2023-10-20_09_08.csv 2023-10-20 08:07 - 2023-10-20 08:08 - 000001536 _____ C:\Users\mcepu\Downloads\inwent_2023-10-20_09_07.csv 2023-10-19 12:45 - 2023-10-19 12:45 - 001465706 _____ C:\Users\mcepu\Downloads\E_TM_2325333_23 (1).pdf 2023-10-19 12:43 - 2023-10-19 12:43 - 000925731 _____ C:\Users\mcepu\Downloads\E_TM_2510314_23 (1).pdf 2023-10-19 10:24 - 2023-10-19 10:24 - 001950230 _____ C:\Users\mcepu\Downloads\statystyki_oferty_18-07-2023_18-10-2023.xlsx 2023-10-19 10:24 - 2023-10-19 10:24 - 000036102 _____ C:\Users\mcepu\Downloads\allespark-wtyczka-production.zip 2023-10-17 09:16 - 2023-10-17 09:16 - 000066871 _____ C:\Users\mcepu\Downloads\statystyki_oferty_16-09-2023_16-10-2023.xlsx 2023-10-16 08:55 - 2023-10-16 08:55 - 000000000 ____D C:\Users\mcepu\AppData\Local\Backup 2023-10-14 13:08 - 2023-10-14 13:08 - 000095189 _____ C:\Users\mcepu\Downloads\Faktura 424_10_2023.pdf 2023-10-12 13:02 - 2023-10-12 13:02 - 000016059 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json 2023-10-12 11:43 - 2023-10-12 11:43 - 000000000 ___HD C:\$WinREAgent 2023-10-11 09:59 - 2023-10-11 09:59 - 000022129 _____ C:\Users\mcepu\Downloads\etykieta_2023-10-11_10-59-34_6085.pdf 2023-10-09 11:23 - 2023-10-09 11:23 - 000069942 _____ C:\Users\mcepu\Downloads\allegrokurier_09_10-2023_12_23.pdf 2023-10-07 14:32 - 2023-10-07 14:32 - 000094908 _____ C:\Users\mcepu\Downloads\119-10-2023.pdf 2023-10-05 09:36 - 2023-10-05 09:36 - 000012817 _____ C:\Users\mcepu\Downloads\Confirmation_202327864001196861.pdf 2023-10-05 09:27 - 2023-10-05 09:27 - 000107213 _____ C:\Users\mcepu\Downloads\FA_527_09_2023_GRZ_FA_VAT_kod_towaru_i_EAN.PDF 2023-10-04 17:02 - 2023-10-04 17:02 - 000048321 _____ C:\Users\mcepu\Downloads\Allegro zapis rozmowy 2023-10-04 18.02.20.pdf 2023-10-04 10:34 - 2023-10-04 10:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Comarch ERP Optima SaaS 2023-10-04 10:33 - 2023-10-04 10:34 - 000000000 __HDC C:\ProgramData\{C9E02AEF-57C4-438E-8122-234B31322BFF} 2023-10-04 10:04 - 2023-10-04 10:04 - 000064727 _____ C:\Users\mcepu\Downloads\00071490_PL_N_PLN_2023_08.pdf 2023-10-04 10:03 - 2023-10-04 10:03 - 000925731 _____ C:\Users\mcepu\Downloads\E_TM_2510314_23.pdf 2023-10-03 10:38 - 2023-10-03 10:38 - 000191380 _____ C:\Users\mcepu\Downloads\25279_Upow_do_dokumentacji_medycznej-wersja_do_druku-skonwertowany.pdf ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2023-11-02 10:07 - 2023-04-25 10:30 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2023-11-02 10:07 - 2023-04-25 10:30 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2023-11-02 09:59 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2023-11-02 09:49 - 2022-06-30 08:43 - 000000000 ____D C:\Users\mcepu\AppData\Roaming\Spotify 2023-11-02 09:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2023-11-02 08:48 - 2022-06-30 08:43 - 000000000 ____D C:\Users\mcepu\AppData\Local\Spotify 2023-11-02 08:48 - 2020-03-14 16:23 - 000000000 ____D C:\ProgramData\NVIDIA 2023-11-02 08:47 - 2023-04-27 18:52 - 000000000 ____D C:\Users\mcepu\AppData\Local\Malwarebytes 2023-11-02 08:46 - 2021-09-11 13:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2023-11-01 15:16 - 2021-09-11 14:28 - 000004222 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{968323AE-772A-438F-880C-03A94D3BBE3A} 2023-11-01 15:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2023-10-31 12:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2023-10-31 09:32 - 2021-09-11 14:16 - 001767980 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2023-10-31 09:32 - 2019-12-07 16:08 - 000785420 _____ C:\WINDOWS\system32\perfh015.dat 2023-10-31 09:32 - 2019-12-07 16:08 - 000152280 _____ C:\WINDOWS\system32\perfc015.dat 2023-10-31 09:32 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2023-10-30 22:36 - 2021-09-11 14:28 - 000003564 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2023-10-30 22:36 - 2021-09-11 14:28 - 000003440 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2023-10-29 11:11 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2023-10-29 09:49 - 2020-06-24 17:27 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2023-10-28 09:43 - 2022-01-03 15:05 - 000000000 ____D C:\WINDOWS\SystemTemp 2023-10-28 09:43 - 2020-03-14 16:29 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2023-10-27 08:30 - 2023-06-30 08:04 - 000001405 _____ C:\Users\mcepu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2023-10-27 08:30 - 2022-03-28 12:15 - 000004248 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1648466130 2023-10-26 12:02 - 2020-03-14 16:23 - 000000000 ____D C:\Users\mcepu\AppData\Local\Packages 2023-10-26 11:36 - 2022-06-11 10:20 - 000000000 ____D C:\Users\mcepu\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome 2023-10-26 09:54 - 2019-12-07 16:10 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2023-10-25 16:33 - 2020-03-20 18:04 - 000000132 _____ C:\Users\mcepu\AppData\Roaming\Preferencje CC formatu PNG firmy Adobe 2023-10-25 08:19 - 2021-01-14 15:13 - 000000000 ____D C:\Program Files\CCleaner 2023-10-25 08:19 - 2020-07-04 17:51 - 000000000 ____D C:\Users\mcepu\AppData\Local\CrashDumps 2023-10-25 08:17 - 2022-10-03 08:05 - 000003472 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting 2023-10-25 08:17 - 2022-10-03 08:05 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job 2023-10-25 08:17 - 2021-09-11 14:28 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update 2023-10-23 11:34 - 2021-09-11 14:28 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2023-10-23 11:34 - 2021-09-11 13:55 - 000008192 ___SH C:\DumpStack.log.tmp 2023-10-23 11:33 - 2023-02-15 15:24 - 000363752 _____ C:\WINDOWS\system32\rtp.db 2023-10-23 11:33 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2023-10-20 13:04 - 2022-02-19 12:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2023-10-20 12:58 - 2022-02-19 12:38 - 000003478 _____ C:\WINDOWS\system32\Tasks\Avira_Security_Update 2023-10-20 08:02 - 2020-03-17 15:08 - 000000000 ____D C:\Users\mcepu\AppData\Local\D3DSCache 2023-10-19 18:41 - 2023-04-24 09:58 - 000359560 _____ (Avira Operations GmbH) C:\WINDOWS\system32\Drivers\rtp_filter.sys 2023-10-15 12:09 - 2020-03-14 16:40 - 000000000 ____D C:\ProgramData\Packages 2023-10-15 12:09 - 2020-03-14 16:27 - 000000000 ____D C:\Users\mcepu\AppData\Local\PlaceholderTileLogoFolder 2023-10-15 10:21 - 2021-06-12 13:42 - 000000000 ____D C:\found.000 2023-10-13 08:14 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2023-10-12 14:50 - 2021-09-11 13:56 - 005274064 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2023-10-12 14:39 - 2019-12-07 16:08 - 000000000 ____D C:\WINDOWS\SysWOW64\pl 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2023-10-12 14:39 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2023-10-12 14:37 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2023-10-12 14:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2023-10-12 14:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2023-10-12 14:37 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2023-10-12 14:36 - 2019-12-07 16:08 - 000000000 ____D C:\WINDOWS\system32\pl 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser 2023-10-12 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2023-10-12 14:33 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2023-10-12 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2023-10-12 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2023-10-12 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2023-10-12 14:33 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2023-10-12 14:33 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2023-10-12 14:32 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2023-10-12 14:32 - 2019-12-07 16:11 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2023-10-12 14:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2023-10-12 14:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2023-10-12 14:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2023-10-12 14:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System 2023-10-12 14:32 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2023-10-12 13:52 - 2019-12-07 16:11 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2023-10-12 13:52 - 2019-12-07 10:15 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2023-10-12 13:52 - 2019-12-07 10:14 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2023-10-12 13:00 - 2021-09-11 14:00 - 003014144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2023-10-12 09:31 - 2022-12-17 10:42 - 000003702 _____ C:\WINDOWS\system32\Tasks\Avira_FallbackUpdater 2023-10-12 09:31 - 2020-03-14 16:34 - 000000000 ____D C:\WINDOWS\system32\MRT 2023-10-11 12:10 - 2020-03-14 16:33 - 181553176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2023-10-04 10:41 - 2023-03-06 10:14 - 000000000 ____D C:\Program Files\Comarch ERP Optima SaaS 2023-10-04 10:23 - 2020-03-14 15:28 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2023-10-04 09:57 - 2023-05-18 10:11 - 000000000 ____D C:\Program Files\RUXIM ==================== Pliki w katalogu głównym wybranych folderów ======== 2023-09-14 09:56 - 2023-09-14 09:56 - 000000000 ____D () C:\ProgramData\WZUpdateNotifier.exe 2020-03-20 18:04 - 2023-10-25 16:33 - 000000132 _____ () C:\Users\mcepu\AppData\Roaming\Preferencje CC formatu PNG firmy Adobe 2022-10-28 12:04 - 2022-10-28 12:04 - 000000112 _____ () C:\Users\mcepu\AppData\Roaming\Preferencje wtyczki JP2K CS6 2022-05-23 09:18 - 2022-05-23 09:18 - 341513725 _____ () C:\Users\mcepu\AppData\Local\ACCCx4_9_0_515.zip.aamdownload 2022-05-23 09:18 - 2022-05-23 09:18 - 000003777 _____ () C:\Users\mcepu\AppData\Local\ACCCx4_9_0_515.zip.aamdownload.aamd 2020-04-03 07:34 - 2021-09-11 12:14 - 000001496 _____ () C:\Users\mcepu\AppData\Local\Adobe Zapisz dla Internetu 13.0 Prefs 2023-09-27 12:37 - 2023-09-27 12:37 - 000003870 _____ () C:\Users\mcepu\AppData\Local\recently-used.xbel ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================