REKLAMA

FRST.txt

Analiza logów FRST w kontekście ciągłej zmiany hasła na Gmailu

od kilku dni muszę na gmail a ciągle zmieniać hasło. https://obrazki.elektroda.pl/1345160900_1614766901_thumb.jpg i chciał bym żeby ktoś sprawdził logi


Pobierz plik - link do postu

Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28-02-2021
Uruchomiony przez matik (administrator) DESKTOP-VE6ST1H (ASUSTeK COMPUTER INC. GL502VMZ) (03-03-2021 11:20:08)
Uruchomiony z C:\Users\matik\Downloads
Załadowane profile: matik & OVRLibraryService
Platform: Windows 10 Home Wersja 20H2 19042.804 (X64) Język: Polski (Polska)
Domyślna przeglądarka: " C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe " --single-argument %1
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe
(ASUSTek Computer Inc. - & gt; ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\CryptoTabCrashHandler.exe
(CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU) C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\CryptoTabCrashHandler64.exe
(CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU) C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe
(CRYPTOCOMPANY OÜ - & gt; The Chromium and CryptoTab Browser Authors) C:\Program Files (x86)\CryptoTab Browser\Application\browser.exe & lt; 17 & gt;
(Discord Inc. - & gt; Discord Inc.) C:\Users\matik\AppData\Local\Discord\app-0.0.309\Discord.exe & lt; 6 & gt;
(Google LLC - & gt; Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe & lt; 18 & gt;
(Intel(R) Software - & gt; Intel Corporation) C:\Windows\SysWOW64\esif_uf.exe
(Intel(R) Software - & gt; Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe
(LogMeIn, Inc. - & gt; LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(LogMeIn, Inc. - & gt; LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Malwarebytes Inc - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Malwarebytes Inc - & gt; Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation - & gt; Microsoft Corporation) C:\Users\matik\AppData\Local\Microsoft\Teams\current\Teams.exe & lt; 10 & gt;
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe & lt; 2 & gt;
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.SecHealthUI_cw5n1h2txyewy\SecHealthUI.exe
(Notepad++ - & gt; Don HO don.h@free.fr) C:\notepad ++\notepad++.exe
(NVIDIA Corporation - & gt; NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe & lt; 3 & gt;
(NVIDIA Corporation - & gt; NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe & lt; 2 & gt;
(Oculus VR, LLC - & gt; Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe
(Oculus VR, LLC - & gt; Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe
(Qualcomm Atheros - & gt; Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Shanghai Microvirt Software Technology Co., Ltd. - & gt; ) C:\Program Files (x86)\Microvirt\MEmu\MemuService.exe
(TeamViewer Germany GmbH - & gt; TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Windscribe Limited - & gt; Windscribe Limited) C:\Program Files (x86)\Windscribe\WindscribeService.exe

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM-x32\...\Run: [LogMeIn Hamachi Ui] = & gt; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. - & gt; LogMeIn Inc.)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [Steam] = & gt; C:\Program Files (x86)\Steam\steam.exe [3412696 2021-02-13] (Valve - & gt; Valve Corporation)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [Discord] = & gt; C:\Users\matik\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. - & gt; GitHub)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [uTorrent] = & gt; C:\Users\matik\AppData\Roaming\uTorrent\uTorrent.exe [2142936 2020-12-30] (BitTorrent Inc - & gt; BitTorrent Inc.)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [com.squirrel.Teams.Teams] = & gt; C:\Users\matik\AppData\Local\Microsoft\Teams\Update.exe [2453720 2021-02-24] (Microsoft 3rd Party Application Component - & gt; Microsoft Corporation)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [Free Download Manager] = & gt; " C:\Users\matik\AppData\Local\Softdeluxe\Free Download Manager\fdm.exe " --hidden
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [Windscribe] = & gt; C:\Program Files (x86)\Windscribe\Windscribe.exe [10106544 2019-01-19] (Windscribe Limited - & gt; Windscribe Limited)
HKU\S-1-5-21-3055275630-292857815-3045129134-1001\...\Run: [GoogleChromeAutoLaunch_60415828B2516FB8419E1B81170C14A9] = & gt; " C:\Program Files (x86)\Google\Chrome\Application\chrome.exe " --no-startup-window /prefetch:5
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] - & gt; C:\Program Files (x86)\Google\Chrome\Application\84.0.4147.135\Installer\chrmstp.exe [2020-08-21] (Google LLC - & gt; Google LLC)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2021-01-21]
ShortcutTarget: SteelSeries Engine 3.lnk - & gt; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS - & gt; SteelSeries ApS)
Startup: C:\Users\matik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\MEGAsync.lnk [2020-07-05]
ShortcutTarget: MEGAsync.lnk - & gt; C:\Users\matik\AppData\Local\MEGAsync\MEGAsync.exe (Mega Limited - & gt; Mega Limited)
Policies: C:\ProgramData\NTUSER.pol: Ograniczenia & lt; ==== UWAGA

==================== Zaplanowane zadania (filtrowane) ============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {1B52D145-F415-4AD1-BB45-49C67BA6D651} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {1E1FED12-3D1D-461E-B9B2-50A0B6DEF32F} - System32\Tasks\MEGA\MEGAsync Update Task S-1-5-21-3055275630-292857815-3045129134-1001 = & gt; C:\Users\matik\AppData\Local\MEGAsync\MEGAupdater.exe [1818360 2020-12-04] (Mega Limited - & gt; Mega Limited)
Task: {1FEF5301-D25D-49F0-8D5A-431CBB972570} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation - & gt; NVIDIA Corporation) - & gt; -d " C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck " -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {26E8CD71-D8C6-4174-8A40-944BFC09F4A2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2021-01-11] (NVIDIA Corporation - & gt; NVIDIA Corporation) - & gt; -d " C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck " -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {34120908-447C-4A5D-A969-106EFF901A85} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {433B9CAC-1707-42B3-B15E-6087E76D127B} - System32\Tasks\RTKCPL = & gt; C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9226752 2017-04-21] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor)
Task: {45996BFA-B2CD-4ACE-BCA4-92D1897FF8ED} - System32\Tasks\XinGuanDianT3-GmTaskPlan = & gt; C:\Program Files\Genesis GX57\GenesisGX57.exe [885760 2014-11-11] () [Brak podpisu cyfrowego]
Task: {579AF6AF-1619-401D-9CF7-65C050FFE6AB} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {59CC4236-60BA-4D41-82A1-29412316838E} - System32\Tasks\ATK Package A22126881260 = & gt; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-23] (ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.)
Task: {59FF0A1F-4E9C-46E5-895D-9D0B05473D3D} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302128 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {8B348D7C-4450-4B91-84EE-89CC515C2C22} - System32\Tasks\RtHDVBg_ListenToDevice = & gt; C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1485312 2017-04-21] (Realtek Semiconductor Corp. - & gt; Realtek Semiconductor)
Task: {B3A73177-855A-4541-B3CE-AD65CB98397B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646896 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {BFD05533-C65F-48E6-99E0-2645E2709D09} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906480 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {C090743A-7390-4E12-AD70-0F9BF7AFE3EC} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)
Task: {EAD04BF3-3C66-45C8-AF51-6DC0DB1C00B1} - System32\Tasks\ATK Package 36D18D69AFC3 = & gt; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\SimAppExec.exe [124304 2017-11-23] (ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.)
Task: {FDF6E4BD-7A86-41D0-BF6D-25BFB09D0EBD} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1127664 2021-01-27] (NVIDIA Corporation - & gt; NVIDIA Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Tcpip\..\Interfaces\{687abadd-9cfa-44f8-88b7-c7d156954e3f}: [DhcpNameServer] 192.168.2.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\matik\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-01]
Edge HomePage: Default - & gt; hxxp://www.google.com/
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin-x32: @java.com/DTPlugin,version=11.261.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_261\bin\dtplugin\npDeployJava1.dll [2020-09-24] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.261.2 - & gt; C:\Program Files (x86)\Java\jre1.8.0_261\bin\plugin2\npjp2.dll [2020-09-24] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin-x32: @tools.CryptoTab.com/CryptoTab Update;version=3 - & gt; C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\npCryptoTabUpdate3.dll [2020-08-20] (CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU)
FF Plugin-x32: @tools.CryptoTab.com/CryptoTab Update;version=9 - & gt; C:\Program Files (x86)\CryptoCompany\Update\1.3.99.31\npCryptoTabUpdate3.dll [2020-08-20] (CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU)
FF Plugin HKU\S-1-5-21-3055275630-292857815-3045129134-1001: @unity3d.com/UnityPlayer,version=1.0 - & gt; C:\Users\matik\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [Brak pliku]

Chrome:
=======
CHR Profile: C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default [2021-03-03]
CHR Notifications: Default - & gt; hxxps://aternos.org
CHR HomePage: Default - & gt; hxxp://www.google.com/
CHR StartupUrls: Default - & gt; " hxxp://www.google.com/ "
CHR Extension: (Prezentacje) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-06-25]
CHR Extension: (Dokumenty) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-06-25]
CHR Extension: (Dysk Google) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (Pop up blocker for Chrome™ - Poper Blocker) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkkbcggnhapdmkeljlodobbkopceiche [2020-10-25]
CHR Extension: (YouTube) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-06-25]
CHR Extension: (uBlock Origin) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2021-02-08]
CHR Extension: (Adblock dla Youtube™) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2021-02-19]
CHR Extension: (Gamehag) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmjebfbomhjblideijmnebeannjbjfcb [2021-01-05]
CHR Extension: (Arkusze) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-06-25]
CHR Extension: (Dokumenty Google offline) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-10]
CHR Extension: (BTRoblox - Making Roblox Better) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\hbkpclpemjeibhioopcebchdmohaieln [2021-02-27]
CHR Extension: (CT Access) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\jedjajddobfbhgoaidfigmlkijbeaene [2021-02-19]
CHR Extension: (Little Alchemy) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\knkapnclbofjjgicpkfoagdjohlfjhpd [2020-06-25]
CHR Extension: (Buster: Captcha Solver for Humans) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\mpbjkejclgfgadiemmefgebjfooflfhl [2020-10-13]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR Extension: (Bass Booster - Bas wzmacniacz) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\oenbfjmilhdednmfffjoicdnijikcdpo [2020-11-30]
CHR Extension: (Gmail) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\matik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-07-23]
CHR Profile: C:\Users\matik\AppData\Local\Google\Chrome\User Data\System Profile [2020-06-25]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-3055275630-292857815-3045129134-1001) Opera GXStable - " C:\Users\matik\AppData\Local\Programs\Opera GX\Launcher.exe "

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R2 AsHidService; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsHidSrv.exe [127864 2017-07-28] (ASUSTeK Computer Inc. - & gt; ASUSTek Computer Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8736880 2021-02-08] (BattlEye Innovations e.K. - & gt; )
S2 cryptobrowser; C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe [181288 2020-08-20] (CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU)
S3 cryptobrowserm; C:\Program Files (x86)\CryptoCompany\Update\CryptoTabUpdate.exe [181288 2020-08-20] (CRYPTOCOMPANY OÜ - & gt; CRYPTOCOMPANY OU)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818800 2020-12-13] (EasyAntiCheat Oy - & gt; Epic Games, Inc)
S3 FvSvc; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [410864 2021-01-25] (NVIDIA Corporation - & gt; NVIDIA)
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. - & gt; LogMeIn Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. - & gt; LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
R2 MEmuSVC; C:\Program Files (x86)\Microvirt\MEmu\MemuService.exe [85304 2019-09-12] (Shanghai Microvirt Software Technology Co., Ltd. - & gt; )
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [144592 2021-03-02] (Oculus VR, LLC - & gt; Facebook Technologies, LLC)
R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [511696 2021-03-02] (Oculus VR, LLC - & gt; Facebook Technologies, LLC)
S3 SteelSeriesUpdateService; C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesUpdateService.exe [32648 2021-01-20] (SteelSeries ApS - & gt; )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH - & gt; TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\NisSrv.exe [2462960 2021-02-12] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2101.9-0\MsMpEng.exe [128376 2021-02-12] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
R2 WindscribeService; C:\Program Files (x86)\Windscribe\WindscribeService.exe [493232 2019-01-19] (Windscribe Limited - & gt; Windscribe Limited)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_036f20146ac187ce\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R3 AsusPTPDrv; C:\WINDOWS\System32\drivers\AsusPTPFilter.sys [108504 2019-04-24] (ASUSTek Computer Inc. - & gt; ASUSTek COMPUTER INC.)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher - & gt; ASUSTek Computer Inc.)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2021-03-03] (Malwarebytes Corporation - & gt; Malwarebytes)
S3 FairplayKD; C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [70928 2021-01-09] (Hans Roes - & gt; Multi Theft Auto)
R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher - & gt; LogMeIn Inc.)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. - & gt; ASUS)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [220616 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2021-03-03] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [198248 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [77496 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248992 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [142416 2021-03-03] (Malwarebytes Inc - & gt; Malwarebytes)
S3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam - & gt; Visicom Media Inc.)
R1 MEmuDrv; C:\WINDOWS\system32\DRIVERS\MEmuDrv.sys [319192 2019-09-21] (Shanghai Microvirt Software Technology Co., Ltd. - & gt; Maiwei Corporation)
R3 oculusvad_oculusvad; C:\WINDOWS\System32\drivers\oculusvad.sys [72208 2020-09-06] (Microsoft Windows Hardware Compatibility Publisher - & gt; Windows (R) Win 7 DDK provider)
S3 OCULUSVRHEADSET; C:\WINDOWS\System32\drivers\OCULUS119B.sys [1887232 2019-12-24] (C-MEDIA ELECTRONICS INC. - & gt; OCULUS)
R3 Oculus_ViGEmBus; C:\WINDOWS\System32\drivers\Oculus_ViGEmBus.sys [32856 2019-12-24] (Oculus VR, LLC - & gt; Facebook Inc.)
S3 OCUSBVID; C:\WINDOWS\System32\drivers\ocusbvid111.sys [69176 2019-12-24] (Oculus VR, LLC - & gt; Oculus VR, LLC)
S3 RvNetMP60; C:\WINDOWS\System32\drivers\RvNetMP60.sys [69048 2020-05-27] (Famatech Corp. - & gt; Famatech Corp.)
R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [48848 2020-12-21] (SteelSeries ApS - & gt; SteelSeries ApS)
S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (Samsung Electronics Co., Ltd. - & gt; QUALCOMM Incorporated)
R3 tapwindscribe0901; C:\WINDOWS\System32\drivers\tapwindscribe0901.sys [54896 2018-07-06] (Windscribe Limited - & gt; The OpenVPN Project)
R3 vmulti; C:\WINDOWS\System32\drivers\vmulti.sys [9728 2016-12-19] (SunnysideSoft - & gt; )
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49552 2021-02-12] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [419040 2021-02-12] (Microsoft Windows - & gt; Microsoft Corporation)
S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO - & gt; MBB)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2021-02-12] (Microsoft Windows - & gt; Microsoft Corporation)
S3 MpKsl6f41a41c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{89F1FECB-D619-410A-8BA5-FC702804C177}\MpKslDrv.sys [X]
S2 WCMVCAM; \SystemRoot\System32\drivers\wcmvcam64.sys [X]

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)