FRST.txt

Jak usunąć z komputera dll-propagation i dll-services? Logi z FRST.

Cześć, od niedawna jak włączam komputer process dll-propagation daje o sobie znać, co czyni że mój procesor jest skoncentrowany na nim. Po paru minutach (10) wszystko wraca do normy. Mój komputer do najnowszych nie należy, więc chciałbym rozwiązać ten problem najszybciej. Mam już FRST, potrzebuje tylko fix listy. Mam problem również z dll-services.


Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 11-12-2021
Uruchomiony przez Tomek (administrator) DESKTOP-BS0ISB8 (MSI MS-7816) (24-12-2021 14:41:53)
Uruchomiony z C:\Users\Tomek\AppData\Local\Temp\scoped_dir13352_1127784320
Załadowane profile: Tomek
Platform: Microsoft Windows 10 Home Wersja 20H2 19042.1415 (X64) Język: Polski (Polska)
Domyślna przeglądarka: Opera
Tryb startu: Normal

==================== Procesy (filtrowane) =================

(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)

(Electronic Arts, Inc. - & gt; Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(Even Balance, Inc. - & gt; ) C:\Windows\System32\PnkBstrA.exe
(Google LLC - & gt; Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler.exe
(Google LLC - & gt; Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.112\GoogleCrashHandler64.exe
(Logitech Inc - & gt; Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe & lt; 4 & gt;
(Logitech Inc - & gt; Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc - & gt; Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Logitech Inc - & gt; Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe & lt; 2 & gt;
(LogMeIn, Inc. - & gt; LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(LogMeIn, Inc. - & gt; LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Users\Tomek\AppData\Roaming\.dllbackups\dllruntime.exe
(Microsoft Corporation) [Brak podpisu cyfrowego] C:\Users\Tomek\AppData\Local\Temp\1y6QaG1dVqmqkzRvawVNVxn3bhE\dllservices.exe & lt; 4 & gt;
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.60.12001.0_x64__8wekyb3d8bbwe\gamingservices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.60.12001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\dllhost.exe & lt; 2 & gt;
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows - & gt; Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(NortonLifeLock Inc. - & gt; Broadcom) C:\Program Files\Norton Security\Engine\22.21.11.46\NortonSecurity.exe & lt; 2 & gt;
(NortonLifeLock Inc. - & gt; NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.21.11.46\nsWscSvc.exe
(Nvidia Corporation - & gt; Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation - & gt; NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe & lt; 3 & gt;
(Nvidia Corporation - & gt; NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe & lt; 3 & gt;
(Nvidia Corporation - & gt; NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Nvidia Corporation - & gt; NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe & lt; 2 & gt;
(Opera Software AS - & gt; Opera Software) C:\Users\Tomek\AppData\Local\Programs\Opera GX\82.0.4227.50\opera_crashreporter.exe
(Opera Software AS - & gt; Opera Software) C:\Users\Tomek\AppData\Local\Programs\Opera GX\opera.exe & lt; 36 & gt;

==================== Rejestr (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] = & gt; C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated - & gt; Adobe Systems Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] = & gt; C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. - & gt; Oracle Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] = & gt; C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-28] (Adobe Inc. - & gt; )
HKLM-x32\...\Run: [Acrobat Assistant 8.0] = & gt; C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Acrotray.exe [5296864 2021-06-27] (Adobe Inc. - & gt; Adobe Systems Inc.) [Brak podpisu cyfrowego]
HKLM-x32\...\Run: [] = & gt; [X]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] = & gt; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. - & gt; LogMeIn Inc.)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia & lt; ==== UWAGA
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [Steam] = & gt; C:\Program Files (x86)\Steam\steam.exe [4267432 2021-11-22] (Valve Corp. - & gt; Valve Corporation)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [Discord] = & gt; C:\Users\Tomek\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. - & gt; GitHub)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [LGHUB] = & gt; C:\Program Files\LGHUB\lghub.exe [136443968 2021-12-10] (Logitech Inc - & gt; Logitech, Inc.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [Chromium] = & gt; " c:\users\tomek\appdata\local\chromium\application\chrome.exe " --auto-launch-at-startup --profile-directory= " Default " --restore-last-session
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [EpicGamesLauncher] = & gt; D:\Epic\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33618400 2021-12-15] (Epic Games Inc. - & gt; Epic Games, Inc.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [FACEIT] = & gt; C:\Users\Tomek\AppData\Local\FACEITApp\update.exe [2204608 2020-12-09] (FACE IT LIMITED - & gt; )
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [Overwolf] = & gt; C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1802072 2021-12-15] (Overwolf Ltd - & gt; Overwolf Ltd.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [Opera GX Browser Assistant] = & gt; C:\Users\Tomek\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS - & gt; Opera Software)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [HP Deskjet 3540 series (NET)] = & gt; C:\Program Files\HP\HP Deskjet 3540 series\Bin\ScanToPCActivationApp.exe [3487240 2014-03-06] (Hewlett Packard - & gt; Hewlett-Packard Co.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [uTorrent] = & gt; C:\Users\Tomek\AppData\Roaming\uTorrent\uTorrent.exe [2091560 2021-09-26] (BitTorrent Inc - & gt; BitTorrent Inc.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [com.squirrel.Teams.Teams] = & gt; C:\Users\Tomek\AppData\Local\Microsoft\Teams\Update.exe [2459344 2021-12-06] (Microsoft 3rd Party Application Component - & gt; Microsoft Corporation)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [GG] = & gt; C:\Users\Tomek\AppData\Local\GG\Application\gghub.exe [4078144 2021-03-16] (GG Network S.A. - & gt; GG Network S.A.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [ut] = & gt; C:\Users\Tomek\AppData\Roaming\uTorrent\uTorrent.exe [2091560 2021-09-26] (BitTorrent Inc - & gt; BitTorrent Inc.)
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\Run: [electron.app.dllservices] = & gt; C:\Users\Tomek\AppData\Roaming\.dllbackups\dllruntime.exe [63924677 2021-09-14] (Microsoft Corporation) [Brak podpisu cyfrowego] [Plik w użyciu]
HKU\S-1-5-21-4168713232-2136251825-2858130799-1001\...\MountPoints2: {30073433-1ff1-11ec-8193-d8cb8a19723c} - " F:\HiSuiteDownLoader.exe "
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [65160 2021-06-27] (Adobe Inc. - & gt; Adobe Systems Inc)
HKLM\...\Print\Monitors\HP C711 Status Monitor: C:\Windows\system32\hpinkstsC711LM.dll [333496 2012-12-16] (Hewlett Packard - & gt; Hewlett-Packard Co.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP Deskjet 3540 series): C:\Windows\system32\HPDiscoPMC711.dll [763912 2014-03-06] (Hewlett Packard - & gt; Hewlett-Packard Co.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] - & gt; C:\Program Files\Google\Chrome\Application\96.0.4664.110\Installer\chrmstp.exe [2021-12-16] (Google LLC - & gt; Google LLC)

==================== Zaplanowane zadania (filtrowane) ============

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

Task: {02296E26-FDE3-4B50-91DF-4867D8405C82} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3341312 2021-12-09] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {0B791507-B02B-417B-BB8C-C574138EB7C7} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {0D006A54-077B-41C6-A361-0EECC1827BB7} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {1C37C614-A22F-4208-9114-CA3F993B4DDC} - System32\Tasks\Norton WSC Integration = & gt; C:\Program Files\Norton Security\Engine\22.21.11.46\WSCStub.exe [646520 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc.)
Task: {2253E0E7-A7B0-4725-86E5-4C839C6DBECC} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [903024 2021-11-16] (NVIDIA Corporation - & gt; NVIDIA Corporation) - & gt; -d " C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck " -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {238C87D5-94A5-4EF0-BD8C-EBEB83676DB2} - System32\Tasks\Adobe Acrobat Update Task = & gt; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (Brak pliku)
Task: {2DFB65B3-90B7-48A8-9571-6262FA37BD59} - System32\Tasks\Norton 360\Norton 360 Error Analyzer = & gt; C:\Program Files\Norton Security\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc)
Task: {402BA930-5FAA-44A9-9C68-2542C1DEC11D} - System32\Tasks\Overwolf Updater Task = & gt; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2484056 2021-12-15] (Overwolf Ltd - & gt; Overwolf LTD)
Task: {47EFE09B-5330-41A0-99C8-9C767C3BF06A} - System32\Tasks\Norton 360\Norton 360 Autofix = & gt; C:\Program Files\Norton Security\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc)
Task: {59396608-1323-42F4-AE61-0D3469E2A91F} - System32\Tasks\Remediation\AntimalwareMigrationTask = & gt; C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2353000 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc.)
Task: {77E0FBE8-B808-4B75-A364-1D36CCC01D2C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {77F4D39B-212A-4A7D-A768-08882D996C0B} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649216 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {78383E1C-EFD2-4262-A042-90E96B2946BE} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {78580240-D382-42F0-87A7-AB3C9AB4E0D2} - System32\Tasks\Opera GX scheduled Autoupdate 1606934998 = & gt; C:\Users\Tomek\AppData\Local\Programs\Opera GX\launcher.exe [2192592 2021-12-22] (Opera Software AS - & gt; Opera Software)
Task: {C0743CF8-5CD0-4C44-9FE8-98DEF8617C95} - System32\Tasks\GoogleUpdateTaskMachineCore = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-04-06] (Google LLC - & gt; Google LLC)
Task: {C4544827-86F8-4EB8-AAC9-EBA19B58E0AF} - System32\Tasks\RunAsStdUser Task = & gt; D:\recorder\AudioRecorder 1.46\VoiceRecorder.exe [2987008 2018-01-29] (Moo0) [Brak podpisu cyfrowego]
Task: {C4D66ECF-106C-4F8B-B371-26E6884F49D7} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)
Task: {CD42B463-2C19-4B13-AEFE-DCA79B1E6024} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1615549919 = & gt; C:\Users\Tomek\AppData\Local\Programs\Opera GX\launcher.exe [2192592 2021-12-22] (Opera Software AS - & gt; Opera Software) - & gt; --scheduledautoupdate --component-name=assistant --component-path= " C:\Users\Tomek\AppData\Local\Programs\Opera GX\assistant " $(Arg0)
Task: {DEFE2421-4592-47CA-ACC0-26819C919DFB} - System32\Tasks\GoogleUpdateTaskMachineUA = & gt; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2021-04-06] (Google LLC - & gt; Google LLC)
Task: {E36E639A-3D8F-46D9-B1CD-D03DA43A0DE3} - System32\Tasks\Norton 360\Norton 360 Error Processor = & gt; C:\Program Files\Norton Security\Engine\22.21.11.46\SymErr.exe [108752 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc)
Task: {FCE37CD0-8612-4AE0-8D31-B3528BBA1894} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} = & gt; C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1650384 2021-12-08] (Nvidia Corporation - & gt; NVIDIA Corporation)

(Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)


==================== Internet (filtrowane) ====================

(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)

Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{98716555-e779-4576-915a-6fad21c5a246}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{badf1e22-af22-475f-8c6c-3fb08ecea60f}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge Profile: C:\Users\Tomek\AppData\Local\Microsoft\Edge\User Data\Default [2021-12-13]
Edge Extension: (Wappalyzer) - C:\Users\Tomek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mnbndgmknlpdjdnjfmfcdjoegcckoikn [2021-11-12]

FireFox:
========
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-06-26]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @java.com/DTPlugin,version=11.291.2 - & gt; C:\Program Files\Java\jre1.8.0_291\bin\dtplugin\npDeployJava1.dll [2021-04-22] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.291.2 - & gt; C:\Program Files\Java\jre1.8.0_291\bin\plugin2\npjp2.dll [2021-04-22] (Oracle America, Inc. - & gt; Oracle Corporation)
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 - & gt; C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (Electronic Sports Network i Sverige AB - & gt; ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 - & gt; C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB) [Brak podpisu cyfrowego]
FF Plugin-x32: Adobe Acrobat - & gt; C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2021-06-27] (Adobe Inc. - & gt; Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default [2021-12-15]
CHR Extension: (Prezentacje) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-04-06]
CHR Extension: (Safe Torrent Scanner) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aegnopegbbhjeeiganiajffnalhlkkjb [2021-08-22]
CHR Extension: (Dokumenty) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-04-06]
CHR Extension: (Dysk Google) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-04-06]
CHR Extension: (Email finder) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhbcbkonalnjkflmdkdodieehnmmeknp [2021-12-13]
CHR Extension: (YouTube) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-04-06]
CHR Extension: (Arkusze) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-04-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-08]
CHR Extension: (WAVE Evaluation Tool) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\jbbplnpkjmmeebjpijfedlgcdilocofh [2021-10-28]
CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-04-06]
CHR Extension: (Gmail) - C:\Users\Tomek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-04-06]
CHR HKLM-x32\...\Chrome\Extension: [aegnopegbbhjeeiganiajffnalhlkkjb]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-4168713232-2136251825-2858130799-1001) Opera GXStable - " C:\Users\Tomek\AppData\Local\Programs\Opera GX\Launcher.exe "

==================== Usługi (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-12-10] (BattlEye Innovations e.K. - & gt; )
S2 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [10008216 2021-12-09] (Electronic Arts, Inc. - & gt; Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2020-12-14] (EasyAntiCheat Oy - & gt; Epic Games, Inc)
S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [25595848 2021-06-15] (FACE IT LIMITED - & gt; )
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. - & gt; LogMeIn Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [11104832 2021-12-10] (Logitech Inc - & gt; Logitech, Inc.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. - & gt; LogMeIn, Inc.)
R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.21.11.46\NortonSecurity.exe [343336 2021-12-13] (NortonLifeLock Inc. - & gt; Broadcom)
R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.21.11.46\nsWscSvc.exe [1059176 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc.)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2559704 2021-12-02] (Electronic Arts, Inc. - & gt; Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3477728 2021-12-02] (Electronic Arts, Inc. - & gt; Electronic Arts)
S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [2484056 2021-12-15] (Overwolf Ltd - & gt; Overwolf LTD)
R2 PnkBstrA; C:\Windows\system32\PnkBstrA.exe [76152 2021-06-29] (Even Balance, Inc. - & gt; )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-04] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-04] (Microsoft Windows Publisher - & gt; Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_19c79fb6254e3b11\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Sterowniki (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)

R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.20.1.69\Definitions\BASHDefs\20211220.011\BHDrvx64.sys [2018784 2021-09-15] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego]
R1 ccSet_NGC; C:\Windows\System32\drivers\NGCx64\16150B0.02E\ccSetx64.sys [192256 2021-12-13] (Symantec Corporation - & gt; Symantec Corporation)
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [509904 2021-11-11] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [145376 2021-11-12] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [11318256 2021-06-15] (FACE IT LIMITED - & gt; )
S3 FairplayKD; C:\ProgramData\MTA San Andreas All\Common\temp\FairplayKD.sys [104512 2021-03-10] (Hans Roes - & gt; Multi Theft Auto)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [45680 2019-04-02] (Microsoft Windows Hardware Compatibility Publisher - & gt; LogMeIn Inc.)
R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.20.1.69\Definitions\IPSDefs\20211222.061\IDSvia64.sys [1480144 2021-10-02] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [37200 2021-03-18] (Logitech Inc - & gt; Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [25928 2021-03-18] (Logitech Inc - & gt; Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66896 2021-03-18] (Logitech Inc - & gt; Logitech)
S3 nsvst_NGC; C:\Windows\System32\drivers\NGCx64\16150B0.02E\nsvst.sys [56080 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc.)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher - & gt; NVIDIA Corporation)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. - & gt; )
R1 SRTSP; C:\Windows\System32\drivers\NGCx64\16150B0.02E\SRTSP64.SYS [892600 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R1 SRTSPX; C:\Windows\System32\drivers\NGCx64\16150B0.02E\SRTSPX64.SYS [48824 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R0 SymEFASI; C:\Windows\System32\drivers\NGCx64\16150B0.02E\SYMEFASI64.SYS [2030768 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
S0 SymELAM; C:\Windows\System32\drivers\NGCx64\16150B0.02E\SymELAM.sys [31984 2021-12-13] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Broadcom Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [93152 2021-07-26] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.20.1.69\SymPlatform\SymEvnt.sys [712432 2021-07-13] (Symantec Corporation - & gt; Symantec Corporation)
R1 SymIRON; C:\Windows\System32\drivers\NGCx64\16150B0.02E\Ironx64.SYS [319152 2021-12-13] (Microsoft Windows Hardware Compatibility Publisher - & gt; Broadcom)
R1 SymNetS; C:\Windows\System32\drivers\NGCx64\16150B0.02E\symnets.sys [575344 2021-12-13] (Symantec Corporation - & gt; Symantec Corporation)
S3 tap-tb-0901; C:\Windows\System32\drivers\tap-tb-0901.sys [38656 2020-09-23] (TunnelBear, Inc. - & gt; The OpenVPN Project)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [48536 2020-12-04] (Microsoft Windows Early Launch Anti-malware Publisher - & gt; Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [429296 2020-12-04] (Microsoft Windows - & gt; Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-04] (Microsoft Windows - & gt; Microsoft Corporation)
R1 wpCtrlDrv_NGC; C:\Windows\System32\drivers\NGCx64\16150B0.02E\wpCtrlDrv.sys [1015760 2021-12-13] (NortonLifeLock Inc. - & gt; NortonLifeLock Inc.)

==================== NetSvcs (filtrowane) ===================

(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)


==================== Jeden miesiąc (utworzone) (filtrowane) =========

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2021-12-24 14:41 - 2021-12-24 14:42 - 000000000 ____D C:\FRST
2021-12-24 14:40 - 2021-12-24 14:40 - 002311168 _____ (Farbar) C:\Users\Tomek\Downloads\FRST64.exe
2021-12-22 18:42 - 2021-12-22 18:42 - 000000332 _____ C:\Users\Tomek\Desktop\Fortnite.url
2021-12-22 17:55 - 2021-12-22 17:55 - 000000000 ____D C:\Windows\system32\Tasks\Remediation
2021-12-22 17:18 - 2021-12-22 17:18 - 000111225 _____ C:\Users\Tomek\Downloads\adobe-caslon-pro-bold_xbbH5.zip
2021-12-22 17:17 - 2021-12-22 17:17 - 000122892 _____ C:\Users\Tomek\Downloads\adobe-caslon-pro-italic_ADFIx.zip
2021-12-22 16:46 - 2021-12-22 16:46 - 000125319 _____ C:\Users\Tomek\Downloads\adobe-caslon-pro-semibold_HR0ls.zip
2021-12-22 16:46 - 2021-12-22 16:46 - 000122776 _____ C:\Users\Tomek\Downloads\adobe-caslon-pro-regular_SAbr0.zip
2021-12-22 16:45 - 2021-12-22 16:45 - 000163356 _____ C:\Users\Tomek\Downloads\minion-pro-italic_x2s4a.zip
2021-12-22 13:15 - 2021-12-22 13:15 - 000074908 _____ C:\Users\Tomek\Desktop\Kultura książki_Pierzchalski.pdf
2021-12-18 15:29 - 2021-12-18 15:29 - 000000000 ____D C:\Users\Tomek\AppData\Local\Norton
2021-12-18 15:14 - 2021-12-24 14:40 - 000000000 ____D C:\Windows\system32\Tasks\Norton 360
2021-12-18 15:14 - 2021-12-22 16:35 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security
2021-12-18 15:14 - 2021-12-18 15:14 - 000003378 _____ C:\Windows\system32\Tasks\Norton WSC Integration
2021-12-17 15:47 - 2021-12-17 15:47 - 000099599 _____ C:\Users\Tomek\Downloads\fm22-real-names-fix-v211108.zip
2021-12-17 15:16 - 2021-12-17 15:23 - 147218340 _____ C:\Users\Tomek\Downloads\Andromeda FM22 Skin V2.3.rar
2021-12-17 14:03 - 2021-12-17 14:43 - 000000341 _____ C:\Users\Tomek\Desktop\angielski zadania ipot.txt
2021-12-17 01:06 - 2021-12-17 01:06 - 000000000 ____D C:\Windows\SystemTemp
2021-12-16 21:23 - 2021-12-16 21:23 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe
2021-12-16 21:23 - 2021-12-16 21:23 - 000011979 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-12-16 21:22 - 2021-12-16 21:22 - 000272384 _____ C:\Windows\system32\TpmTool.exe
2021-12-16 21:22 - 2021-12-16 21:22 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-12-16 21:13 - 2021-12-16 21:13 - 000000000 ___HD C:\$WinREAgent
2021-12-15 16:56 - 2021-12-15 16:56 - 000064394 _____ C:\Users\Tomek\Downloads\myriad-pro-semibold_ypRRR.zip
2021-12-15 16:46 - 2021-12-15 16:46 - 001580577 _____ C:\Users\Tomek\Downloads\Logowanie do Adobe - zasoby sieciowe UMK.pdf
2021-12-15 16:36 - 2021-12-15 16:36 - 000001182 _____ C:\Users\Tomek\Desktop\InDesign -- skrót .lnk
2021-12-15 12:17 - 2021-12-22 13:15 - 000028325 _____ C:\Users\Tomek\Desktop\Kultura książki_Pierzchalski.odt
2021-12-14 12:23 - 2021-12-14 12:23 - 000005222 _____ C:\Users\Tomek\AppData\Local\2636042875
2021-12-14 01:10 - 2021-12-14 01:10 - 000000000 ____D C:\Users\Public\Documents\Team17
2021-12-13 15:43 - 2016-07-20 09:20 - 000118940 ____N C:\Users\Tomek\Downloads\AGaramondPro-Regular.otf
2021-12-13 15:43 - 2016-07-20 09:20 - 000089580 ____N C:\Users\Tomek\Downloads\AGaramondPro-Italic.otf
2021-12-13 15:43 - 2016-07-20 09:20 - 000074960 ____N C:\Users\Tomek\Downloads\AGaramondPro-BoldItalic.otf
2021-12-13 15:43 - 2016-07-20 09:20 - 000073380 ____N C:\Users\Tomek\Downloads\AGaramondPro-Bold.otf
2021-12-13 15:43 - 2016-07-09 17:02 - 000000044 ____N C:\Users\Tomek\Downloads\sharefonts.net.txt
2021-12-13 15:42 - 2021-12-13 15:42 - 000248136 _____ C:\Users\Tomek\Downloads\adobe-garamond-pro.zip
2021-12-13 14:24 - 2021-12-13 14:24 - 001689525 _____ C:\Users\Tomek\Documents\pierzchalski_UX.odt
2021-12-12 19:18 - 2021-12-12 19:18 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4168713232-2136251825-2858130799-1001
2021-12-10 18:23 - 2021-12-10 18:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-12-10 18:23 - 2021-12-10 18:23 - 000000000 ____D C:\Program Files\LGHUB
2021-12-10 11:25 - 2021-12-22 16:49 - 000000000 ____D C:\Users\Tomek\Desktop\składanie tekstu
2021-12-08 23:20 - 2021-12-08 23:20 - 000026997 _____ C:\Users\Tomek\Desktop\historia sztuk plastycznych - notatki.pdf
2021-12-08 19:37 - 2021-12-08 19:37 - 000000000 ____D C:\Users\Tomek\Downloads\FIFA Mod Manager v1.0.8
2021-12-08 17:38 - 2021-12-08 17:38 - 000008159 _____ C:\Users\Tomek\Downloads\OCCT.config.json
2021-12-08 16:33 - 2021-12-08 16:33 - 000005190 _____ C:\Users\Tomek\AppData\Local\4208131837
2021-12-08 16:33 - 2021-12-08 16:33 - 000000000 ____D C:\Users\Tomek\AppData\Local\Sports Interactive
2021-12-07 18:46 - 2021-12-07 18:46 - 000000000 ____D C:\Users\Tomek\Downloads\Nowy folder
2021-12-07 15:04 - 2021-12-07 15:04 - 007120594 _____ C:\Users\Tomek\Downloads\Materiały do cw. podsumowujacego-20211201.zip
2021-12-07 15:04 - 2021-12-07 15:04 - 000408382 _____ C:\Users\Tomek\Downloads\cw. podsum. w. 2.pdf
2021-12-07 15:04 - 2021-12-07 15:04 - 000214213 _____ C:\Users\Tomek\Downloads\Ćwiczenie podsumowujące3 opis.pdf
2021-12-07 14:36 - 2021-12-17 08:46 - 000028012 _____ C:\Users\Tomek\Desktop\historia sztuk plastycznych - notatki.odt
2021-12-06 11:54 - 2021-12-06 11:54 - 008003959 _____ C:\Users\Tomek\Downloads\tekst dla studentów - Hist. szt. plast. - 1.pdf
2021-12-06 11:54 - 2021-12-06 11:54 - 006805985 _____ C:\Users\Tomek\Downloads\tekst dla studentów - Sztuka w naszym wieku.pdf
2021-12-06 11:54 - 2021-12-06 11:54 - 005363912 _____ C:\Users\Tomek\Downloads\tekst dla studentów - Przewodnik po sztuce współczesnej.pdf
2021-12-04 20:22 - 2021-12-04 20:22 - 000001121 _____ C:\Users\Public\Desktop\Farming Simulator 22.lnk
2021-12-04 13:39 - 2021-12-04 13:39 - 008017067 _____ C:\Users\Tomek\Downloads\12_Bliej_Brukseli__Transport.pdf
2021-12-04 13:06 - 2021-12-04 13:06 - 002644724 _____ C:\Users\Tomek\Downloads\PlanPracyBACNC20PL (1).pdf
2021-12-04 12:55 - 2021-12-04 12:56 - 002644724 _____ C:\Users\Tomek\Downloads\PlanPracyBACNC20PL.pdf
2021-12-02 20:14 - 2021-12-02 20:14 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\FLT
2021-12-02 19:52 - 2021-12-02 21:10 - 000002478 _____ C:\Windows\system32\Drivers\etc\hosts.rollback
2021-12-02 19:52 - 2021-05-23 12:40 - 000000822 _____ C:\Windows\system32\Drivers\etc\hosts.backup
2021-12-02 17:38 - 2021-12-02 17:38 - 000091972 _____ C:\Users\Tomek\Downloads\nowakowski_pierzchalski.pdf
2021-12-01 21:47 - 2021-12-11 03:13 - 000000000 ____D C:\Users\Tomek\AppData\Local\LogMeIn Hamachi
2021-12-01 21:47 - 2021-12-01 21:47 - 000000000 ____D C:\Users\Tomek\AppData\Local\LogMeIn
2021-12-01 21:47 - 2021-12-01 21:47 - 000000000 ____D C:\ProgramData\LogMeIn
2021-12-01 21:46 - 2021-12-01 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2021-12-01 21:46 - 2021-12-01 21:46 - 000000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2021-12-01 15:16 - 2021-12-01 15:16 - 000000876 _____ C:\Users\Tomek\Downloads\index6 (2).html
2021-12-01 15:16 - 2021-12-01 15:16 - 000000810 _____ C:\Users\Tomek\Downloads\index4.html
2021-12-01 15:16 - 2021-12-01 15:16 - 000000763 _____ C:\Users\Tomek\Downloads\index3 (1).html
2021-12-01 15:15 - 2021-12-01 15:15 - 000000876 _____ C:\Users\Tomek\Downloads\index6 (1).html
2021-12-01 14:46 - 2021-12-01 14:46 - 000000876 _____ C:\Users\Tomek\Downloads\index6.html
2021-11-29 12:36 - 2021-12-21 11:06 - 000000000 ____D C:\Users\Tomek\Desktop\studia- 2 rok
2021-11-29 11:49 - 2021-11-29 11:49 - 003136220 _____ C:\Users\Tomek\Downloads\Reportaz?e w ksia?z?kach, prasie i telewizji.pdf
2021-11-29 11:48 - 2021-11-29 11:48 - 001429237 _____ C:\Users\Tomek\Downloads\Łoszewski, 5.pdf
2021-11-29 11:48 - 2021-11-29 11:48 - 000326201 _____ C:\Users\Tomek\Downloads\Wywiady w prasie, radiu i telewizji - podobien?stwa i ro?z?nice.pdf
2021-11-29 11:48 - 2021-11-29 11:48 - 000003584 _____ C:\Users\Tomek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2021-11-29 11:47 - 2021-11-29 11:47 - 019607968 _____ C:\Users\Tomek\Downloads\temat 6 je?zyk reklamy Igor Kwiecein.pdf
2021-11-29 11:47 - 2021-11-29 11:47 - 004786754 _____ C:\Users\Tomek\Downloads\Je?zyk i s?rodki wyrazu w programach kulinarnych prasa, telewizja, Internetfor.pdf
2021-11-29 11:47 - 2021-11-29 11:47 - 003157974 _____ C:\Users\Tomek\Downloads\MAJEWSKI, 12.pdf
2021-11-29 11:47 - 2021-11-29 11:47 - 003020591 _____ C:\Users\Tomek\Downloads\Pierzchalski_10 (1).pdf
2021-11-29 11:47 - 2021-11-29 11:47 - 000342217 _____ C:\Users\Tomek\Downloads\Mys?lewska_9.pdf
2021-11-28 19:43 - 2021-11-28 19:43 - 000026281 _____ C:\Users\Tomek\Documents\Pierzchalski_essey_POI.pdf
2021-11-28 16:45 - 2021-11-28 16:45 - 000073629 _____ C:\Users\Tomek\Downloads\Prezentacja THE POWER OF INFORMATION (3).pptx
2021-11-28 13:21 - 2021-11-28 13:21 - 000066937 _____ C:\Users\Tomek\Downloads\zadanie_pierzchalski_bbrp.pdf
2021-11-28 12:51 - 2021-11-28 13:20 - 000022683 _____ C:\Users\Tomek\Documents\zadanie_pierzchalski_bbrp.odt
2021-11-25 19:09 - 2021-12-08 22:26 - 000000000 ____D C:\Users\Tomek\Documents\Sports Interactive
2021-11-25 19:09 - 2021-12-08 16:33 - 000000000 ____D C:\Users\Public\Documents\Sports Interactive
2021-11-24 17:57 - 2021-11-24 17:57 - 000223825 _____ C:\Users\Tomek\Downloads\zagadnienia do koła_211124_175602 (1).pdf

==================== Jeden miesiąc (zmodyfikowane) ==================

(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)

2021-12-24 14:42 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2021-12-24 14:38 - 2021-04-06 11:37 - 000000000 ____D C:\Program Files (x86)\Google
2021-12-24 14:37 - 2021-09-14 13:25 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\dll-propagation
2021-12-24 14:37 - 2021-08-28 19:08 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\dllservices
2021-12-24 14:36 - 2020-12-02 20:58 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\LGHUB
2021-12-24 14:36 - 2020-12-02 20:58 - 000000000 ____D C:\Users\Tomek\AppData\Local\LGHUB
2021-12-24 14:36 - 2020-12-02 20:05 - 000000000 ____D C:\ProgramData\NVIDIA
2021-12-24 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2021-12-24 14:36 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-12-24 14:35 - 2020-09-27 08:52 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-12-24 14:35 - 2020-09-27 06:52 - 000008192 ___SH C:\DumpStack.log.tmp
2021-12-24 14:35 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2021-12-24 14:34 - 2021-07-24 12:24 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2021-12-24 13:42 - 2020-09-27 06:52 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-12-24 01:24 - 2020-12-02 19:55 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\discord
2021-12-24 00:40 - 2020-12-02 19:55 - 000000000 ____D C:\Users\Tomek\AppData\Local\Discord
2021-12-23 17:52 - 2020-12-02 19:39 - 000000000 ____D C:\Users\Tomek\AppData\Local\D3DSCache
2021-12-22 18:41 - 2020-12-02 20:05 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003976 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003858 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2021-12-22 18:41 - 2020-12-02 20:05 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2021-12-22 18:41 - 2020-12-02 19:36 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2021-12-22 18:41 - 2020-12-02 19:36 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2021-12-22 16:35 - 2020-12-04 17:29 - 000002389 _____ C:\Users\Public\Desktop\Norton Security.lnk
2021-12-22 13:48 - 2020-12-02 19:50 - 000004260 _____ C:\Windows\system32\Tasks\Opera GX scheduled Autoupdate 1606934998
2021-12-22 13:48 - 2020-12-02 19:49 - 000001438 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera GX.lnk
2021-12-22 11:13 - 2021-05-04 17:35 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\TS3Client
2021-12-22 02:31 - 2020-12-02 19:53 - 000000000 ____D C:\Program Files (x86)\Steam
2021-12-21 22:05 - 2020-12-28 00:16 - 000000000 ____D C:\Program Files (x86)\Overwolf
2021-12-21 22:05 - 2020-12-25 18:54 - 000000000 ____D C:\ProgramData\Riot Games
2021-12-21 22:04 - 2020-12-28 00:14 - 000000000 ____D C:\Users\Tomek\AppData\Local\Overwolf
2021-12-21 11:05 - 2020-12-18 21:59 - 000007601 _____ C:\Users\Tomek\AppData\Local\Resmon.ResmonCfg
2021-12-21 00:49 - 2020-12-02 22:28 - 000000000 ____D C:\Users\Tomek\AppData\Local\CrashDumps
2021-12-20 12:32 - 2020-12-04 21:37 - 000000000 ____D C:\Program Files\Common Files\AV
2021-12-19 21:49 - 2020-12-02 19:29 - 000000000 ____D C:\Users\Tomek\AppData\Local\ConnectedDevicesPlatform
2021-12-19 21:49 - 2020-09-27 08:56 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-12-19 13:37 - 2020-09-27 08:55 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-12-19 13:37 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-12-18 15:29 - 2020-12-04 17:28 - 000000000 ____D C:\ProgramData\Norton
2021-12-18 15:17 - 2020-12-02 19:29 - 000000000 ____D C:\Users\Tomek\AppData\Local\Packages
2021-12-18 15:17 - 2020-09-27 08:56 - 000000000 ____D C:\ProgramData\Packages
2021-12-18 15:14 - 2020-12-04 17:29 - 000000000 ____D C:\Windows\system32\Drivers\NGCx64
2021-12-18 15:14 - 2019-12-07 10:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2021-12-17 12:36 - 2021-11-08 20:29 - 002225640 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2021-12-17 12:36 - 2021-11-08 20:29 - 000217536 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy.dll
2021-12-17 12:36 - 2021-11-08 20:29 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2021-12-17 12:35 - 2021-11-18 20:55 - 000116200 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2021-12-17 12:35 - 2021-11-08 20:29 - 000333288 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2021-12-17 12:35 - 2021-11-08 20:29 - 000197048 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2021-12-17 12:35 - 2021-11-08 20:29 - 000062952 _____ (Microsoft Corporation) C:\Windows\system32\gamemodcontrol.exe
2021-12-17 07:43 - 2020-12-02 19:30 - 001767984 _____ C:\Windows\system32\PerfStringBackup.INI
2021-12-17 07:43 - 2019-12-07 16:08 - 000784340 _____ C:\Windows\system32\perfh015.dat
2021-12-17 07:43 - 2019-12-07 16:08 - 000152236 _____ C:\Windows\system32\perfc015.dat
2021-12-17 01:07 - 2020-09-27 06:52 - 000482984 _____ C:\Windows\system32\FNTCACHE.DAT
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\setup
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lv-LV
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\lt-LT
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\et-EE
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\es-MX
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Provisioning
2021-12-17 01:06 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2021-12-16 21:26 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2021-12-16 21:13 - 2020-12-02 23:39 - 000000000 ____D C:\Windows\system32\MRT
2021-12-16 21:11 - 2020-12-02 23:39 - 137938848 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2021-12-16 13:22 - 2020-12-02 19:29 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\Adobe
2021-12-16 12:07 - 2021-04-06 11:37 - 000002213 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-12-15 20:53 - 2020-12-03 00:58 - 000000000 ____D C:\Program Files (x86)\Origin
2021-12-13 20:51 - 2021-04-12 20:04 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\.tlauncher
2021-12-13 20:51 - 2021-04-12 20:01 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\.minecraft
2021-12-12 19:18 - 2020-12-02 19:30 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4168713232-2136251825-2858130799-1001
2021-12-12 19:18 - 2020-12-02 19:26 - 000002427 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-12-12 18:01 - 2020-12-03 13:12 - 000000000 ____D C:\Users\Tomek\AppData\Local\UnrealEngine
2021-12-11 14:16 - 2020-12-02 19:26 - 000000000 ____D C:\Users\Tomek
2021-12-11 12:47 - 2021-07-16 18:18 - 000000000 ____D C:\Users\Tomek\AppData\LocalLow\Norton
2021-12-10 21:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\NDF
2021-12-09 00:48 - 2020-09-27 08:54 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-12-09 00:48 - 2020-09-27 08:54 - 000003386 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-12-08 19:35 - 2021-11-08 20:49 - 000000000 ____D C:\Program Files\EA Games
2021-12-08 17:54 - 2021-08-28 19:10 - 000000000 ____D C:\Program Files\Common Files\Adobe
2021-12-08 17:49 - 2021-08-28 19:09 - 000000000 ____D C:\ProgramData\Adobe
2021-12-08 17:46 - 2021-08-28 19:09 - 000000000 ____D C:\Users\Tomek\AppData\Local\Adobe
2021-12-08 17:21 - 2020-12-13 12:04 - 000000000 ____D C:\Users\Tomek\AppData\Local\Rockstar Games
2021-12-08 17:21 - 2020-12-13 12:03 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2021-12-08 17:21 - 2020-12-13 12:03 - 000000000 ____D C:\ProgramData\Rockstar Games
2021-12-08 17:19 - 2021-01-15 12:23 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\IrfanView
2021-12-08 17:18 - 2020-12-13 12:02 - 000000000 ____D C:\Program Files\Rockstar Games
2021-12-08 15:20 - 2020-12-02 21:29 - 000000000 ____D C:\Users\Tomek\AppData\Local\PlaceholderTileLogoFolder
2021-12-08 15:18 - 2021-03-13 17:01 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\uTorrent
2021-12-08 15:11 - 2021-03-13 17:03 - 000000000 ____D C:\Users\Tomek\AppData\Local\BitTorrentHelper
2021-12-08 08:19 - 2020-12-02 20:05 - 002851840 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2021-12-08 08:19 - 2020-12-02 20:05 - 002197504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2021-12-08 08:19 - 2020-12-02 20:05 - 001294024 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll
2021-12-07 18:08 - 2019-12-07 16:10 - 000000000 ____D C:\Windows\system32\FxsTmp
2021-12-06 12:17 - 2021-04-23 11:05 - 000002368 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk
2021-12-06 12:17 - 2021-04-23 11:05 - 000002360 _____ C:\Users\Tomek\Desktop\Microsoft Teams.lnk
2021-12-03 18:20 - 2020-12-28 17:47 - 000000000 ____D C:\Windows\SysWOW64\directx
2021-12-02 20:14 - 2020-12-03 18:19 - 000000000 ____D C:\Users\Tomek\Documents\My Games
2021-11-28 22:43 - 2021-02-18 12:43 - 000000000 ____D C:\Users\Tomek\AppData\Local\ElevatedDiagnostics
2021-11-27 17:17 - 2021-04-16 00:45 - 000000000 ____D C:\Windows\Minidump

==================== Pliki w katalogu głównym wybranych folderów ========

2021-12-14 12:23 - 2021-12-14 12:23 - 000005222 _____ () C:\Users\Tomek\AppData\Local\2636042875
2021-12-08 16:33 - 2021-12-08 16:33 - 000005190 _____ () C:\Users\Tomek\AppData\Local\4208131837
2021-11-29 11:48 - 2021-11-29 11:48 - 000003584 _____ () C:\Users\Tomek\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2021-08-22 17:31 - 2021-08-22 17:31 - 000043077 _____ () C:\Users\Tomek\AppData\Local\recently-used.xbel
2020-12-18 21:59 - 2021-12-21 11:05 - 000007601 _____ () C:\Users\Tomek\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)

==================== Koniec FRST.txt ========================


Pobierz plik - link do postu