Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 27-01-2021 Uruchomiony przez dorot (administrator) LAPTOP-VR0T1V9B (LENOVO 81SX) (30-01-2021 13:57:23) Uruchomiony z C:\Users\dorot\Downloads Załadowane profile: dorot Platform: Windows 10 Home Wersja 1909 18363.1316 (X64) Język: Polski (Polska) Domyślna przeglądarka: Opera Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Dolby Laboratories, Inc. -> ) C:\Program Files\Common Files\Dolby\DAX3\RADARHOST\DSRHost.exe (Dolby Laboratories, Inc. -> ) C:\Windows\System32\dolbyaposvc\DAX3API.exe <2> (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe (EnigmaSoft Limited -> EnigmaSoft Limited) C:\Program Files\EnigmaSoft\SpyHunter\SpyHunter5.exe (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2> (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe (Globalhop Ltd TOO -> ) C:\Users\dorot\AppData\Local\Programs\Taskbar system\TaskbarSystem.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <27> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_9196e89091d8bdbb\esif_uf.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_d52c63e0e1c02c96\jhi_service.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_120314e52c04567c\RstMwService.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Safe Kids 1.0.5\safekidsui.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\avp.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\avpui.exe (Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\plugins_nms.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm_service.exe (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Safe Kids 1.0.5\safekids.exe (KAY ENTERPRICES LIMITED -> BigStartrail Geeks) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\BridleBuddles\BridleBuddlesService.exe (KAY ENTERPRICES LIMITED -> BigStartrail Geeks) [Brak podpisu cyfrowego] C:\Program Files (x86)\BridleBuddles\BridleBuddlesClient.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.CompanionApp.exe (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\PluginHost86\Lenovo.Modern.ImController.PluginHost.Device.exe <2> (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (LENOVO INC) C:\Program Files\WindowsApps\E0469640.LenovoUtility_3.2.1.0_x64__5grkq8ppsgwt4\VFS\ProgramFilesX64\Lenovo\LenovoUtility\utility.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_10.20122.11121.0_x64__8wekyb3d8bbwe\Music.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_c8af195ee1543133\Display.NvContainer\NVDisplay.Container.exe <2> (Opera Software AS -> Opera Software) C:\Users\dorot\AppData\Local\Programs\Opera GX\72.0.3815.487\opera.exe <15> (Opera Software AS -> Opera Software) C:\Users\dorot\AppData\Local\Programs\Opera GX\72.0.3815.487\opera_crashreporter.exe (Opera Software AS -> Opera Software) C:\Users\dorot\AppData\Local\Programs\Opera\73.0.3856.344\opera.exe <14> (Opera Software AS -> Opera Software) C:\Users\dorot\AppData\Local\Programs\Opera\73.0.3856.344\opera_crashreporter.exe (Opera Software AS -> Opera Software) C:\Users\dorot\AppData\Local\Programs\Opera\assistant\browser_assistant.exe <2> (Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (SteelSeries ApS -> SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1076728 2020-03-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2017-09-12] (Wondershare Technology Co.,Ltd -> Wondershare) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3411232 2020-12-21] (Valve -> Valve Corporation) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32883768 2021-01-27] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [kpm.exe] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm.exe [659976 2020-08-24] (Kaspersky Lab -> AO Kaspersky Lab) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [Taskbar system] => C:\Users\dorot\AppData\Local\Programs\Taskbar system\TaskbarSystem.exe [918040 2021-01-13] (Globalhop Ltd TOO -> ) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32440376 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) HKU\S-1-5-21-2338923807-570931521-1789288539-1001\...\Run: [Opera Browser Assistant] => C:\Users\dorot\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3366040 2021-01-14] (Opera Software AS -> Opera Software) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.104\Installer\chrmstp.exe [2021-01-27] (Google LLC -> Google LLC) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2021-01-21] ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS -> SteelSeries ApS) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {032F9147-08BD-49F1-BDDB-C2DBEC03A5B7} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-03] (Google LLC -> Google LLC) Task: {1372D739-0D98-4FC3-AD7F-40109F79C920} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [61872 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {16EBB805-A335-42B7-8F80-66460DBB5EA0} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => "%windir%\system32\sc.exe" START ImControllerService Task: {19E5A2F5-80BD-417F-83BB-9332B3DA8105} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {2822BB14-04BB-4B5A-86CE-7E9512CED769} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {38380771-A995-4553-9114-0FD3B1B26B68} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => %systemroot%\system32\sc.exe start LenovoVantageService Task: {388EE104-B691-4EA8-9907-FCB7278ED601} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-07-03] (Google LLC -> Google LLC) Task: {43113E35-1A88-4D3D-899C-29EC6A679C01} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {493466BC-8062-410F-AE5B-7364F2ECC3A1} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\0bbf4cb1-6db8-4d65-8ec6-c9b3f3188f33 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {5CA1EA64-0009-4589-9EA9-E8C96CDBD526} - System32\Tasks\Opera scheduled Autoupdate 1611950657 => C:\Users\dorot\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software) Task: {626F9717-7565-4DC6-9ED2-1AF9A3A60452} - System32\Tasks\Opera GX scheduled Autoupdate 1603135955 => C:\Users\dorot\AppData\Local\Programs\Opera GX\launcher.exe [1664664 2021-01-26] (Opera Software AS -> Opera Software) Task: {69D4A963-5C80-4679-9F63-C32E1D7A92AA} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {6B0DD4CC-7DC4-4B77-8775-94F982B36AFB} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7D001FE1-1A83-4BC4-A38F-410D6C98EF09} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\f97610c0-f692-4752-93d8-f3cadd11e637 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {803F4F88-9FB5-4C76-A59B-D048722BBD47} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\851b54b3-4b81-4111-92c3-2a178407a52f => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {8CA327B5-6658-48E6-AB44-BE21F848171B} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {90564DBC-ACB1-400D-B8BE-31CF1F5EA9CF} - System32\Tasks\LenovoUtility Startup => C:\Windows\explorer.exe lenovo-utility:// Task: {A44C3ABC-3736-4EB9-AE70-76545CBAA577} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => %windir%\System32\reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {B13932C9-9976-406E-9619-B974EC8E0842} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\c951ea16-3ee6-4a62-bac7-a449311ced60 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) Task: {B735323C-075A-4BFB-97B0-8D605E216A69} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301176 2020-10-20] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BBE05605-5391-4E20-BF92-2EC6E00ACEC4} - System32\Tasks\Opera scheduled assistant Autoupdate 1611950660 => C:\Users\dorot\AppData\Local\Programs\Opera\launcher.exe [1776280 2021-01-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\dorot\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {BBF5595B-22A9-46AC-BF40-3C0B25950185} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C2AD9ED4-6045-41EC-A19E-C158BCB9B8D4} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1128424 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CA70319D-1D9F-45C8-8D26-3DC9208CE7BE} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646456 2020-10-19] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D31A96C7-BFC5-4FFC-9461-B13BCBC0BD9A} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe [144280 2020-12-29] (Lenovo -> Lenovo Group Ltd.) Task: {ECBDC329-A3E4-4425-93D9-2D4B8B4F43A8} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {F0B8CC1F-B4A6-477C-9DD5-EE9E3B0E9699} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-17] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) Task: C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job => C:\Windows\explorer.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0 Tcpip\..\Interfaces\{26998060-ec00-4f5b-b2d8-f6699296c7f5}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{808009da-34dc-4596-bf05-a471221282a0}: [DhcpNameServer] 150.207.1.3 Tcpip\..\Interfaces\{a8ef8d94-b57e-4bc3-880a-8612f0dc3043}: [DhcpNameServer] 192.168.0.1 0.0.0.0 Edge: ======= Edge DefaultProfile: Profile 1 Edge Profile: C:\Users\dorot\AppData\Local\Microsoft\Edge\User Data\Guest Profile [2021-01-29] Edge Profile: C:\Users\dorot\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2021-01-29] Edge Extension: (Kaspersky Protection) - C:\Users\dorot\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2020-12-20] Edge HKU\S-1-5-21-2338923807-570931521-1789288539-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee] FireFox: ======== FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\FFExt\light_plugin_firefox\addon.xpi => nie znaleziono FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => nie znaleziono FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\FFExt\light_plugin_firefox\addon.xpi => nie znaleziono Chrome: ======= CHR DefaultProfile: Profile 1 CHR Profile: C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-01-30] CHR Notifications: Profile 1 -> hxxps://meet.google.com; hxxps://poczta.interia.pl; hxxps://sprzedajemy.pl; hxxps://www.decathlon.pl; hxxps://www.rmfmaxxx.pl CHR Extension: (Prezentacje) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-07-24] CHR Extension: (Safe Torrent Scanner) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2021-01-29] CHR Extension: (Kaspersky Protection) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2020-12-16] CHR Extension: (Dokumenty) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2020-07-24] CHR Extension: (Dysk Google) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24] CHR Extension: (YouTube) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-07-24] CHR Extension: (Arkusze) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-07-24] CHR Extension: (McAfee® WebAdvisor) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2021-01-29] CHR Extension: (Dokumenty Google offline) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-11] CHR Extension: (Malwarebytes Browser Guard) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2021-01-29] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29] CHR Extension: (Gmail) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\dorot\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-28] CHR Profile: C:\Users\dorot\AppData\Local\Google\Chrome\User Data\System Profile [2021-01-29] CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb] CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/ahkjpbeeocnddjkakilopmfdlnjdpcdm CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee] Opera: ======= OPR Profile: C:\Users\dorot\AppData\Roaming\Opera Software\Opera Stable [2021-01-30] OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=opera&q={searchTerms}&ie={inputEncoding}&oe={outputEncoding} OPR Extension: (Rich Hints Agent) - C:\Users\dorot\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2021-01-30] StartMenuInternet: (HKU\S-1-5-21-2338923807-570931521-1789288539-1001) Opera GXStable - "C:\Users\dorot\AppData\Local\Programs\Opera GX\Launcher.exe" ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) "BridleBuddlesService" => serwis został odblokowany. <==== UWAGA R2 AVP21.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\avp.exe [381968 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8736880 2020-10-21] (BattlEye Innovations e.K. -> ) R2 BridleBuddlesService; C:\Program Files (x86)\BridleBuddles\BridleBuddlesService.exe [8322024 2021-01-28] (KAY ENTERPRICES LIMITED -> BigStartrail Geeks) [Brak podpisu cyfrowego] [Plik w użyciu] R2 DolbyDAXAPI; C:\Windows\system32\dolbyaposvc\DAX3API.exe [1926600 2019-09-01] (Dolby Laboratories, Inc. -> ) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-07-03] (EasyAntiCheat Oy -> Epic Games, Inc) R2 EsgShKernel; C:\Program Files\EnigmaSoft\SpyHunter\ShKernel.exe [12887096 2021-01-29] (EnigmaSoft Limited -> EnigmaSoft Limited) R2 FMAPOService; C:\Windows\System32\FMService64.exe [359808 2019-08-15] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [287720 2020-10-19] (NVIDIA Corporation -> NVIDIA) R2 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [81840 2021-01-11] (Lenovo -> Lenovo Group Ltd.) S3 klvssbridge64_21.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.1\x64\vssbridge64.exe [436168 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 kpm_launch_service; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 9.0.2\kpm_service.exe [351424 2021-01-27] (Kaspersky Lab JSC -> AO Kaspersky Lab) S3 KSDE5.1; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 5.1\ksde.exe [644312 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\3.3.115.0\LenovoVantageService.exe [18360 2020-07-09] (Lenovo -> Lenovo Group Ltd.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-01-30] (Malwarebytes Inc -> Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [958216 2021-01-29] (McAfee, LLC -> McAfee, LLC) S3 McSecDashboardService; C:\Program Files\McAfeeDashboard\McSecDashboardService.exe [1360496 2020-03-18] (McAfee, LLC. -> McAfee, Inc.) R2 SafeKids1.0.5; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Safe Kids 1.0.5\safekids.exe [596616 2020-09-11] (Kaspersky Lab JSC -> AO Kaspersky Lab) R2 ShMonitor; C:\Program Files\EnigmaSoft\SpyHunter\ShMonitor.exe [526904 2021-01-29] (EnigmaSoft Limited -> EnigmaSoft Limited) S3 ss_conn_launcher_service; C:\Windows\System32\Samsung\EasySetup\ss_conn_launcher.exe [182328 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesUpdateService.exe [32648 2021-01-20] (SteelSeries ApS -> ) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2021-01-29] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2021-01-29] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_c8af195ee1543133\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvlt.inf_amd64_c8af195ee1543133\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35560 2018-05-10] (WDKTestCert build,131474841775766162 -> Apple Inc.) S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [231936 2019-10-07] (Microsoft Corporation) [Brak podpisu cyfrowego] R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [248504 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S3 EasyAntiCheatSys; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.sys [1991512 2021-01-20] (EasyAntiCheat Oy -> EasyAntiCheat Oy) R3 EnigmaFileMonDriver; C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys [76744 2021-01-30] (EnigmaSoft Limited -> EnigmaSoft Limited) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [153312 2021-01-30] (Malwarebytes Corporation -> Malwarebytes) S3 FBNetFilter; C:\Windows\System32\drivers\FBNetFlt.sys [43896 2019-07-22] (Microsoft Windows Hardware Compatibility Publisher -> Lenovo Group Ltd.) S3 HipShieldK; C:\Windows\System32\drivers\HipShieldK.sys [218960 2020-05-25] (McAfee, LLC -> McAfee, Inc.) R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [104712 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [205048 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [121088 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [37496 2020-06-29] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab) R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [509184 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klfltks; C:\Windows\system32\DRIVERS\klfltks.sys [500688 2020-07-04] (Kaspersky Lab -> AO Kaspersky Lab) R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [659768 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [1341232 2020-12-25] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.1\Bases\klids.sys [244784 2021-01-28] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [984320 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klifks; C:\Windows\System32\DRIVERS\klifks.sys [1148880 2020-07-04] (Kaspersky Lab -> AO Kaspersky Lab) R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [87808 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [106768 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [106752 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [79104 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [90368 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R3 kltap; C:\Windows\System32\drivers\kltap.sys [55592 2020-06-29] (AnchorFree Inc -> The OpenVPN Project) R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [257208 2020-10-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klupd_klif_kimul; C:\Windows\System32\Drivers\klupd_klif_kimul.sys [99152 2020-09-03] (Kaspersky Lab -> AO Kaspersky Lab) R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [310232 2021-01-20] (Kaspersky Lab JSC -> AO Kaspersky Lab) R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [116888 2021-01-20] (Kaspersky Lab JSC -> AO Kaspersky Lab) R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [207352 2020-10-19] (Kaspersky Lab JSC -> AO Kaspersky Lab) R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [133888 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [242944 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R1 klwtpks; C:\Windows\system32\DRIVERS\klwtpks.sys [230864 2020-07-04] (Kaspersky Lab -> AO Kaspersky Lab) R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [279824 2020-06-29] (Kaspersky Lab -> AO Kaspersky Lab) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220600 2021-01-30] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-01-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [198248 2021-01-30] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [77496 2021-01-30] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-01-30] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [142440 2021-01-30] (Malwarebytes Inc -> Malwarebytes) S3 mfencbdc; C:\Windows\system32\DRIVERS\mfencbdc.sys [595592 2020-05-01] (McAfee, Inc. -> McAfee LLC.) S3 mfencrk; C:\Windows\system32\DRIVERS\mfencrk.sys [108168 2020-05-01] (McAfee, Inc. -> McAfee LLC.) R3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [48848 2020-09-25] (SteelSeries ApS -> SteelSeries ApS) R3 sshid; C:\Windows\system32\DRIVERS\sshid.sys [57440 2020-11-02] (SteelSeries ApS -> SteelSeries ApS) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [43368 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [48536 2021-01-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [429296 2021-01-29] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2021-01-29] (Microsoft Windows -> Microsoft Corporation) U3 aswbdisk; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-30 13:57 - 2021-01-30 13:57 - 000032011 _____ C:\Users\dorot\Downloads\FRST.txt 2021-01-30 13:56 - 2021-01-30 13:57 - 000000000 ____D C:\FRST 2021-01-30 13:56 - 2021-01-30 13:56 - 000000000 ____D C:\Users\dorot\Downloads\FRST-OlderVersion 2021-01-30 13:52 - 2021-01-30 13:56 - 002297856 _____ (Farbar) C:\Users\dorot\Downloads\FRST64 (1).exe 2021-01-30 13:35 - 2021-01-30 13:35 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-01-30 13:35 - 2021-01-30 13:35 - 000220600 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-01-30 13:35 - 2021-01-30 13:35 - 000198248 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2021-01-30 13:35 - 2021-01-30 13:35 - 000142440 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2021-01-30 13:35 - 2021-01-30 13:35 - 000077496 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2021-01-30 13:35 - 2021-01-30 13:35 - 000002004 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-01-30 13:35 - 2021-01-30 13:35 - 000001992 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-01-30 13:34 - 2021-01-30 13:34 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-01-30 13:34 - 2021-01-30 13:34 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-01-30 13:34 - 2021-01-30 13:34 - 000000000 ____D C:\Program Files\Malwarebytes 2021-01-30 13:26 - 2021-01-30 13:26 - 002086424 _____ (Malwarebytes) C:\Users\dorot\Downloads\MBSetup.exe 2021-01-30 12:42 - 2021-01-30 12:42 - 000076744 _____ (EnigmaSoft Limited) C:\Windows\system32\Drivers\EnigmaFileMonDriver.sys 2021-01-30 12:42 - 2021-01-30 12:42 - 000000020 ___SH C:\Users\defaultuser100000\ntuser.ini 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\Ustawienia lokalne 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\Szablony 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\Moje dokumenty 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\Menu Start 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\Dane aplikacji 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Tymczasowe pliki internetowe 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Historia 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 _SHDL C:\Users\defaultuser100000\AppData\Local\Dane aplikacji 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\VirtualStore 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\NVIDIA 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\ConnectedDevicesPlatform 2021-01-30 12:42 - 2021-01-30 12:42 - 000000000 ____D C:\Users\defaultuser100000 2021-01-30 12:42 - 2020-07-04 18:28 - 000000000 ____D C:\Users\defaultuser100000\AppData\Local\Kaspersky Lab 2021-01-30 12:42 - 2019-03-19 05:46 - 000001105 _____ C:\Users\defaultuser100000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-01-29 21:22 - 2021-01-29 21:22 - 000001026 _____ C:\Users\Public\Desktop\SpyHunter5.lnk 2021-01-29 21:22 - 2021-01-29 21:22 - 000000000 ____D C:\sh5ldr 2021-01-29 21:22 - 2021-01-29 21:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EnigmaSoft 2021-01-29 21:22 - 2021-01-29 21:22 - 000000000 ____D C:\ProgramData\EnigmaSoft Limited 2021-01-29 21:22 - 2021-01-29 21:22 - 000000000 ____D C:\Program Files\EnigmaSoft 2021-01-29 21:20 - 2021-01-29 21:20 - 006565432 _____ (EnigmaSoft Limited) C:\Users\dorot\Downloads\SpyHunter-Installer.exe 2021-01-29 21:04 - 2021-01-29 21:04 - 000004464 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1611950660 2021-01-29 21:04 - 2021-01-29 21:04 - 000004252 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1611950657 2021-01-29 21:04 - 2021-01-29 21:04 - 000001410 _____ C:\Users\dorot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2021-01-29 21:03 - 2021-01-29 21:20 - 000000000 ____D C:\Users\dorot\AppData\Roaming\uTorrent 2021-01-29 21:03 - 2021-01-29 21:04 - 000000000 ____D C:\Users\dorot\AppData\LocalLow\uTorrent 2021-01-29 21:03 - 2021-01-29 21:03 - 000000887 _____ C:\Users\dorot\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk 2021-01-29 20:55 - 2021-01-29 20:55 - 000000000 ____D C:\AdwCleaner 2021-01-29 20:20 - 2021-01-29 20:20 - 000000000 ____D C:\ProgramData\IdleBuddy 2021-01-29 20:11 - 2021-01-29 20:16 - 000368890 _____ C:\Windows\ntbtlog.txt 2021-01-29 20:11 - 2021-01-29 20:11 - 000000214 _____ C:\Windows\Tasks\CreateExplorerShellUnelevatedTask.job 2021-01-29 19:10 - 2021-01-29 19:10 - 000000000 ____D C:\Users\dorot\AppData\Local\mbam 2021-01-29 19:09 - 2021-01-29 19:09 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-29 19:00 - 2021-01-29 19:00 - 000186398 _____ C:\cc_20210129_190022.reg 2021-01-29 18:51 - 2021-01-30 12:47 - 000000000 ____D C:\Program Files\CCleaner 2021-01-29 18:51 - 2021-01-29 18:51 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-01-29 18:51 - 2021-01-29 18:51 - 000002888 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-01-29 18:51 - 2021-01-29 18:51 - 000000834 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-01-29 18:51 - 2021-01-29 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2021-01-29 08:19 - 2021-01-29 08:19 - 000059890 _____ C:\Windows\SysWOW64\stub.json 2021-01-28 20:00 - 2021-01-28 20:00 - 000000000 ____D C:\Users\dorot\OneDrive\Dokumenty\Kaspersky Password Manager 2021-01-28 18:42 - 2021-01-28 18:42 - 000000000 ____D C:\Users\dorot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Taskbar system 2021-01-28 18:42 - 2021-01-28 18:42 - 000000000 ____D C:\Users\dorot\AppData\Local\TaskbarSystem 2021-01-28 18:41 - 2021-01-28 18:41 - 000000000 ____D C:\Program Files (x86)\BridleBuddles 2021-01-28 18:39 - 2021-01-28 19:58 - 000000000 ____D C:\ProgramData\Avast Software 2021-01-28 18:39 - 2021-01-28 18:39 - 000016438 _____ C:\Users\dorot\AppData\Local\partner.bmp 2021-01-28 18:35 - 2021-01-28 18:35 - 000000000 ____D C:\Program Files (x86)\SaserPurviewvuvInstall 2021-01-28 18:05 - 2021-01-28 18:06 - 049524775 _____ C:\Users\dorot\Downloads\Cinematic v14.mp4 2021-01-28 18:05 - 2021-01-28 18:06 - 049524775 _____ C:\Users\dorot\Downloads\Cinematic v14 (1).mp4 2021-01-28 18:04 - 2021-01-28 18:04 - 031940283 _____ C:\Users\dorot\Downloads\Cinematic v5.MOV 2021-01-28 17:51 - 2021-01-28 17:51 - 004069407 _____ C:\Users\dorot\Downloads\“Play” Effect Overlay.mp4 2021-01-28 17:51 - 2021-01-28 17:51 - 001033619 _____ C:\Users\dorot\Downloads\Glow Scale v1 Preset.mov 2021-01-28 17:51 - 2021-01-28 17:51 - 000999461 _____ C:\Users\dorot\Downloads\Screen Split Effect Overlay (Made Completely By Me).MOV 2021-01-28 17:51 - 2021-01-28 17:51 - 000274753 _____ C:\Users\dorot\Downloads\Sack Lightning Effect Overlay(Made Completely By Me).mov 2021-01-28 17:50 - 2021-01-28 17:50 - 000040163 _____ C:\Users\dorot\Downloads\Dimbo(Contains Both Files).zip 2021-01-28 17:50 - 2021-01-28 17:50 - 000015687 _____ C:\Users\dorot\Downloads\Retroica (Better Suited For “Edited By” Intros).zip 2021-01-27 13:12 - 2021-01-27 13:12 - 002715792 _____ (SafeIP, LLC. ) C:\Users\dorot\Downloads\SafeIP.exe 2021-01-27 13:12 - 2015-08-03 08:54 - 000547328 _____ (SafeIP) C:\Windows\system32\SafeIPs64.dll 2021-01-27 13:12 - 2015-08-03 08:53 - 000384000 _____ (SafeIP) C:\Windows\SysWOW64\SafeIPs.dll 2021-01-25 01:20 - 2021-01-25 01:20 - 000040163 _____ C:\Users\dorot\Downloads\dimbo.zip 2021-01-25 01:13 - 2021-01-25 01:13 - 020564521 _____ C:\Users\dorot\Downloads\3.mp4 2021-01-25 01:13 - 2021-01-25 01:13 - 002664528 _____ C:\Users\dorot\Downloads\15.mp4 2021-01-23 21:20 - 2021-01-23 21:20 - 000000000 ____D C:\Users\dorot\AppData\Local\Meltytech 2021-01-23 21:20 - 2021-01-23 21:20 - 000000000 ____D C:\Users\dorot\AppData\Local\cache 2021-01-23 21:12 - 2021-01-23 21:12 - 000001903 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Shotcut.lnk 2021-01-23 21:12 - 2021-01-23 21:12 - 000000000 ____D C:\Program Files\Shotcut 2021-01-23 18:31 - 2021-01-23 18:32 - 082209264 _____ C:\Users\dorot\Downloads\shotcut-win64-201128.exe 2021-01-21 21:17 - 2021-01-21 21:17 - 000568320 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr 2021-01-21 21:17 - 2021-01-21 21:17 - 000500224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr 2021-01-21 21:17 - 2021-01-21 21:17 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax 2021-01-21 21:17 - 2021-01-21 21:17 - 000094720 _____ C:\Windows\system32\VirtualMonitorManager.dll 2021-01-21 21:17 - 2021-01-21 21:17 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 001101312 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll 2021-01-21 21:16 - 2021-01-21 21:16 - 000696832 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx 2021-01-21 21:16 - 2021-01-21 21:16 - 000576512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx 2021-01-21 21:16 - 2021-01-21 21:16 - 000555008 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000458240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000455680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv 2021-01-21 21:16 - 2021-01-21 21:16 - 000331264 _____ C:\Windows\SysWOW64\ssdm.dll 2021-01-21 21:16 - 2021-01-21 21:16 - 000294912 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax 2021-01-21 21:16 - 2021-01-21 21:16 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax 2021-01-21 21:16 - 2021-01-21 21:16 - 000208384 _____ C:\Windows\SysWOW64\HeatCore.dll 2021-01-21 21:16 - 2021-01-21 21:16 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax 2021-01-21 21:16 - 2021-01-21 21:16 - 000167424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2021-01-21 21:16 - 2021-01-21 21:16 - 000083968 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl 2021-01-21 21:16 - 2021-01-21 21:16 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2021-01-21 21:16 - 2021-01-21 21:16 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll 2021-01-21 21:16 - 2021-01-21 21:16 - 000053248 _____ C:\Windows\SysWOW64\BWContextHandler.dll 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth9.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth8.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth7.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth6.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth5.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth4.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth3.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth2.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth18.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth17.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth16.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth15.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth12.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth11.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth10.bin 2021-01-21 21:16 - 2021-01-21 21:16 - 000000315 _____ C:\Windows\system32\DrtmAuth1.bin 2021-01-21 21:15 - 2021-01-21 21:15 - 002590720 _____ C:\Windows\system32\dwmscene.dll 2021-01-21 21:15 - 2021-01-21 21:15 - 001841152 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2021-01-21 21:15 - 2021-01-21 21:15 - 000549888 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl 2021-01-21 21:15 - 2021-01-21 21:15 - 000540672 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv 2021-01-21 21:15 - 2021-01-21 21:15 - 000453632 _____ C:\Windows\system32\ssdm.dll 2021-01-21 21:15 - 2021-01-21 21:15 - 000266752 _____ C:\Windows\system32\HeatCore.dll 2021-01-21 21:15 - 2021-01-21 21:15 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl 2021-01-21 21:15 - 2021-01-21 21:15 - 000208896 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl 2021-01-21 21:15 - 2021-01-21 21:15 - 000186368 _____ C:\Windows\system32\BthpanContextHandler.dll 2021-01-21 21:15 - 2021-01-21 21:15 - 000164864 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2021-01-21 21:15 - 2021-01-21 21:15 - 000061440 _____ C:\Windows\system32\rdsxvmaudio.dll 2021-01-21 18:12 - 2021-01-21 18:21 - 000000022 _____ C:\Users\dorot\Downloads\DaVinci_Resolve_17.0b7_Windows.zip 2021-01-20 17:03 - 2021-01-20 17:03 - 000022832 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_17448409656410.dll 2021-01-20 15:28 - 2021-01-20 15:28 - 000000000 ____D C:\Program Files\Epic Games 2021-01-20 15:04 - 2021-01-20 15:04 - 000310232 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys 2021-01-20 15:02 - 2021-01-20 15:02 - 000116888 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys 2020-12-18 08:58 - 2020-12-18 08:57 - 000268088 _____ (Leppsoft) C:\Windows\system32\UniteFx.dll 2020-12-17 12:13 - 2020-12-17 12:13 - 000022832 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_5608293779268.dll 2020-12-17 08:18 - 2020-12-17 08:18 - 000022832 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_7447800523298.dll 2020-12-09 22:53 - 2020-12-09 22:53 - 002045952 _____ C:\Windows\system32\rdpnano.dll 2020-12-09 22:53 - 2020-12-09 22:53 - 001756600 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2020-12-09 22:53 - 2020-12-09 22:53 - 001366144 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2020-12-09 22:53 - 2020-12-09 22:53 - 000171008 _____ C:\Windows\system32\FsNVSDeviceSource.dll 2020-12-09 22:53 - 2020-12-09 22:53 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl 2020-12-09 22:53 - 2020-12-09 22:53 - 000059392 _____ C:\Windows\system32\runexehelper.exe 2020-12-09 22:53 - 2020-12-09 22:53 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt 2020-12-09 22:53 - 2020-12-09 22:53 - 000000357 _____ C:\Windows\system32\DrtmAuth14.bin 2020-12-09 22:53 - 2020-12-09 22:53 - 000000357 _____ C:\Windows\system32\DrtmAuth13.bin 2020-12-03 15:42 - 2020-12-03 15:42 - 000022832 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_742914090255.dll 2020-11-11 15:06 - 2020-11-11 15:06 - 000200704 _____ C:\Windows\system32\IHDS.dll 2020-11-02 20:46 - 2020-11-02 20:46 - 000313368 _____ (SteelSeries) C:\Windows\system32\engineco.dll ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-30 13:40 - 2020-07-20 18:35 - 000002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-30 13:40 - 2020-07-20 18:35 - 000002297 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-01-30 13:35 - 2019-03-19 05:52 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-01-30 13:14 - 2019-10-17 05:06 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-01-30 12:50 - 2020-03-14 09:17 - 000750610 _____ C:\Windows\system32\perfh015.dat 2021-01-30 12:50 - 2020-03-14 09:17 - 000145206 _____ C:\Windows\system32\perfc015.dat 2021-01-30 12:50 - 2020-03-14 00:34 - 001678738 _____ C:\Windows\system32\PerfStringBackup.INI 2021-01-30 12:50 - 2019-03-19 05:50 - 000000000 ____D C:\Windows\INF 2021-01-30 12:47 - 2020-12-10 21:50 - 000004224 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{F554D5B3-BF05-4997-B170-3A6DF8138AAF} 2021-01-30 12:47 - 2020-03-14 00:34 - 000000000 ____D C:\ProgramData\NVIDIA 2021-01-30 12:44 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-30 12:43 - 2020-08-11 22:11 - 000000000 ____D C:\Program Files (x86)\Steam 2021-01-30 12:42 - 2020-03-14 00:33 - 000012140 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1 2021-01-30 12:42 - 2020-03-14 00:33 - 000000134 _____ C:\Windows\system32\regtest.txt 2021-01-30 12:42 - 2019-10-17 05:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-01-29 21:38 - 2020-03-14 00:33 - 000017539 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1 2021-01-29 21:38 - 2020-03-14 00:33 - 000017032 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1 2021-01-29 21:38 - 2019-03-19 05:37 - 000786432 _____ C:\Windows\system32\config\BBI 2021-01-29 21:21 - 2020-07-07 17:04 - 000001205 _____ C:\ProgramData\NvcDispCorePlugin.log_backup1 2021-01-29 21:04 - 2020-03-14 00:36 - 000000000 ____D C:\Program Files\McAfee 2021-01-29 21:03 - 2020-10-19 20:32 - 000000000 ____D C:\Users\dorot\AppData\Roaming\Opera Software 2021-01-29 21:03 - 2020-03-14 00:36 - 000000000 ____D C:\ProgramData\McAfee 2021-01-29 20:33 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\AppReadiness 2021-01-29 20:18 - 2019-10-17 05:07 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-01-29 18:59 - 2020-07-07 20:40 - 000000000 ____D C:\Users\dorot\AppData\Local\CrashDumps 2021-01-29 18:59 - 2020-07-03 04:46 - 000000000 ____D C:\Windows\minidump 2021-01-29 18:59 - 2019-10-17 06:03 - 000000000 ____D C:\Windows\panther 2021-01-29 18:15 - 2020-07-03 16:03 - 000000000 ____D C:\Users\dorot 2021-01-29 18:10 - 2020-11-30 10:08 - 000000000 ____D C:\ProgramData\Wondershare Filmora 2021-01-29 15:28 - 2020-07-07 12:28 - 000000000 ____D C:\Users\dorot\AppData\Roaming\obs-studio 2021-01-28 19:58 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-28 17:48 - 2020-10-19 20:32 - 000004260 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1603135955 2021-01-28 17:48 - 2020-10-19 20:32 - 000001445 _____ C:\Users\dorot\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk 2021-01-27 18:09 - 2020-07-03 16:23 - 000002318 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-01-27 18:09 - 2020-07-03 16:23 - 000002277 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-01-27 16:48 - 2019-03-19 05:37 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-01-24 22:57 - 2019-03-19 05:37 - 000000000 ____D C:\Windows\CbsTemp 2021-01-23 08:48 - 2020-07-03 16:09 - 000009962 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1 2021-01-23 08:48 - 2020-07-03 16:09 - 000000000 ___RD C:\Users\dorot\3D Objects 2021-01-23 08:48 - 2019-10-17 05:10 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-01-23 08:48 - 2019-10-17 05:06 - 000439400 _____ C:\Windows\system32\FNTCACHE.DAT 2021-01-23 02:22 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-01-23 02:22 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-01-23 02:22 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-01-23 02:22 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-01-23 02:21 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-23 02:21 - 2019-03-19 07:20 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\UNP 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\F12 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ___RD C:\Windows\PrintDialog 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\SystemResources 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\setup 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\oobe 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\migwiz 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Dism 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\Com 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellExperiences 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\ShellComponents 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\Provisioning 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\IME 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\bcastdvr 2021-01-23 02:21 - 2019-03-19 05:52 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-21 23:24 - 2020-12-10 18:31 - 000000000 ____D C:\Users\dorot\AppData\Roaming\steelseries-engine-3-client 2021-01-21 21:26 - 2019-03-19 05:52 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2021-01-21 21:18 - 2020-07-03 22:56 - 000000000 ____D C:\Windows\system32\MRT 2021-01-21 21:17 - 2020-07-03 22:56 - 135062968 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2021-01-21 21:15 - 2019-10-17 05:09 - 002877952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll 2021-01-20 15:06 - 2020-07-04 18:22 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2021-01-20 15:04 - 2020-07-20 18:34 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-20 15:04 - 2020-07-20 18:34 - 000003386 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-11 21:13 - 2020-03-14 00:23 - 000429952 _____ (Lenovo Group Limited) C:\Windows\system32\iMDriverHelper.dll 2021-01-11 21:13 - 2020-03-14 00:23 - 000107952 _____ (Lenovo Group Ltd.) C:\Windows\system32\WudfUpdate_02000.dll 2021-01-11 21:13 - 2020-03-14 00:23 - 000107952 _____ (Lenovo Group Ltd.) C:\Windows\system32\ImController.CoInstaller.dll 2021-01-11 21:13 - 2020-03-14 00:23 - 000061872 _____ (Lenovo Group Ltd.) C:\Windows\system32\ImController.InfInstaller.exe ==================== Pliki w katalogu głównym wybranych folderów ======== 2021-01-28 18:39 - 2021-01-28 18:39 - 000016438 _____ () C:\Users\dorot\AppData\Local\partner.bmp ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================