Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-02-2021 Uruchomiony przez Pompon (administrator) PINGLO (LENOVO 20202) (22-02-2021 20:31:14) Uruchomiony z C:\Users\Pompon\Desktop Załadowane profile: Pompon Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe (Acronis International GmbH -> ) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\VolPanlu.exe (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.exe (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <38> (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxpers.exe (Intel Corporation-Mobile Wireless Group -> Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe (Intel Corporation-Mobile Wireless Group -> Intel Corporation) C:\Program Files\Intel\BluetoothHS\BTHSAmpPalService.exe (Intel Corporation-Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation-Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\BluetoothHS\BTHSSecurityMgr.exe (Intel Corporation-Mobile Wireless Group -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation-Mobile Wireless Group -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel® Upgrade Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\Pompon\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe <2> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\btplayerctrl.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe (Motorola Solutions Inc. -> Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe (Safer-Networking Ltd. -> Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics Incorporated -> Synaptics) C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtsFT] => C:\Windows\RTFTrack.exe [6334096 2013-11-15] (Realtek Semiconductor Corp -> Realtek semiconductor) HKLM\...\Run: [BLEServicesCtrl] => C:\Program Files (x86)\Intel\Bluetooth\BleServicesCtrl.exe [184112 2012-05-31] (Intel Corporation-Mobile Wireless Group -> Intel Corporation) HKLM\...\Run: [BTMTrayAgent] => C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [11586944 2012-06-18] (Motorola Solutions Inc. -> Motorola Solutions, Inc.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2916152 2012-08-27] (Synaptics Incorporated -> Synaptics Incorporated) HKLM\...\Run: [SynLenovoGestureMgr] => C:\Program Files\Synaptics\SynTP\SynLenovoGestureMgr.exe [665400 2012-08-27] (Synaptics Incorporated -> Synaptics) HKLM\...\Run: [Creative SB Monitoring Utility Launcher] => C:\Windows\system32\SBAVMonL.dll [58880 2018-10-30] (Creative Technology Ltd -> Creative Technology Ltd.) HKLM\...\Run: [Acronis Scheduler2 Service] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [754416 2019-09-26] (Acronis International GmbH -> ) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [291648 2012-05-21] (Intel Corporation -> Intel Corporation) HKLM-x32\...\Run: [Dolby Home Theater v4] => C:\Program Files (x86)\Dolby Home Theater v4\pcee4.exe [508144 2012-07-25] (Dolby Laboratories, Inc. -> Dolby Laboratories Inc.) HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [284440 2011-11-29] (Intel Corporation -> Intel Corporation) HKLM-x32\...\Run: [VolPanel] => C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\VolPanlu.exe [241757 2010-12-08] (Creative Technology Ltd) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [Module Loader] => C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe [57344 2007-07-23] (Creative Technology Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [6787856 2019-03-19] (Safer-Networking Ltd. -> Safer-Networking Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2629632 2012-09-25] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation) HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [427520 2009-07-14] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\Run: [SPowerHost] => C:\ProgramData\system32\SPHostd.vbs [631 2020-12-05] () [Brak podpisu cyfrowego] HKU\S-1-5-21-264015831-1648972797-540543994-1000\Software\Policies\...\system: [disablecmd] 0 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\88.0.4324.182\Installer\chrmstp.exe [2021-02-19] (Google LLC -> Google LLC) AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [182040 2019-04-10] (NVIDIA Corporation-PE-Prod-Sha1 -> NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [159480 2019-04-10] (NVIDIA Corporation-PE-Prod-Sha1 -> NVIDIA Corporation) Startup: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\igfcxpsl.lnk [2020-12-25] ShortcutTarget: igfcxpsl.lnk -> C:\ProgramData\system32\igfx3pl.exe (Brak pliku) Startup: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\sphostd.vbs [2020-12-05] () [Brak podpisu cyfrowego] ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0AAF9163-B68E-485C-86D2-97229D24D16B} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {3F1E1748-6BD6-4441-A7D9-F1857CBF13F1} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [877368 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {42ADC56F-245C-4849-94F3-6E17E12804DB} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-26] (Google LLC -> Google LLC) Task: {5094A274-3C51-40DF-A83A-B7B1A4FE9638} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {53643743-4BAF-4997-BF67-B734EE29ECAF} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [877368 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {5C7E1594-0F3E-4480-8D2F-83E922E5E933} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-264015831-1648972797-540543994-1000 => C:\Users\Pompon\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [87848 2021-01-22] (Lenovo (Beijing) Limited -> Lenovo Group Limited) Task: {62B1DD8D-FDFD-4433-A3B0-9ED9CB192F73} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {6BBD94F5-9143-4E02-B9E9-B52C5698667F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {7132FCA0-A3F0-431E-9945-C2B58D3DFCAF} - System32\Tasks\Patch WU ESU => %SystemRoot%\WuEsu\PatchWU.cmd 0 Task: {759151E5-CA85-4831-839D-9D5427EB7807} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2020-04-26] (Google LLC -> Google LLC) Task: {7F98A9A0-F031-48BE-A9E5-FCEF48B60D11} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849720 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {8F66D5BF-643D-45C4-9960-128786D395D9} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26913848 2021-01-06] (Piriform Software Ltd -> Piriform Software Ltd) Task: {A084D5F9-4CEB-4D3C-B364-08BA3D95CBBD} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [849720 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B74956F2-5061-4F56-AEA3-368D7B190521} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [648504 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {CAA834EF-B3EF-458B-BAFD-E685CB74E0AF} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [782136 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {D3FE4483-994A-4FA0-9B0D-09E54F3D8B50} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [877368 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {D49F0A91-E8B1-482B-B7C0-50460A1F762F} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation) Task: {DDD08E74-4B0F-47D9-AA12-A22C41FB2517} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3729208 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FCEBDB7E-899C-4EE4-8CE5-368CE7603B89} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [591160 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {FFB37A13-150A-469C-A809-F29B5C40B9FA} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [877368 2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 62.179.1.61 62.179.1.63 Tcpip\..\Interfaces\{A34010D0-F369-4F39-85DA-8832DD7D9B81}: [DhcpNameServer] 62.179.1.61 62.179.1.63 FireFox: ======== FF DefaultProfile: wrzr3j7m.default FF ProfilePath: C:\Users\Pompon\AppData\Roaming\Mozilla\Firefox\Profiles\wrzr3j7m.default [2020-05-17] FF ProfilePath: C:\Users\Pompon\AppData\Roaming\Mozilla\Firefox\Profiles\b6hnagn4.default-release-1602187692637 [2021-02-20] FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-01-25] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-01-25] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.0.59 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-11-15] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-11-15] (Intel® Identity Protection Technology Software -> Intel Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) Chrome: ======= CHR Profile: C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default [2021-02-22] CHR HomePage: Default -> hxxp://www.google.com/ CHR StartupUrls: Default -> "hxxp://www.google.com/" CHR DefaultSearchURL: Default -> hxxps://www.instagram.com/static/images/ico/xxhdpi_launcher.png/99cf3909d459.png CHR Extension: (Prezentacje) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-04-26] CHR Extension: (Dokumenty) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-04-26] CHR Extension: (Dysk Google) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-26] CHR Extension: (YouTube) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-04-26] CHR Extension: (Video Downloader Pro) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ccdikaeknpeokoejlpffihfmpfelakcg [2020-07-11] CHR Extension: (Tampermonkey) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2020-10-21] CHR Extension: (Adobe Acrobat) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2020-12-15] CHR Extension: (Facebook Pixel Helper) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\fdgfkebogiimcoedlicjlajpkdmockpc [2020-11-16] CHR Extension: (Arkusze) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-04-26] CHR Extension: (EditThisCookie) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\fngmhnnpilhplaeedifhccceomclgfbg [2020-11-24] CHR Extension: (Dokumenty Google offline) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-18] CHR Extension: (CDA Downloader) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\kjimfkhkcjoadjpldapeomibodflgdpa [2020-08-23] CHR Extension: (Instagram) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\maonlnecdeecdljpahhnnlmhbmalehlm [2020-04-28] CHR Extension: (Desktopify) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlhjgcligpbnjphflfdbmabbmjidnmek [2020-08-24] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30] CHR Extension: (Video Downloader for Web) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pgffceondpnmmmlbpmchkldadpclbcph [2020-09-11] CHR Extension: (Gmail) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-01-30] CHR Profile: C:\Users\Pompon\AppData\Local\Google\Chrome\User Data\System Profile [2021-01-13] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [1157592 2019-09-26] (Acronis International GmbH -> ) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [245760 2010-01-25] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [286720 2010-02-12] (Creative Technology Ltd) [Brak podpisu cyfrowego] R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4507328 2020-05-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7456464 2021-02-05] (Malwarebytes Inc -> Malwarebytes) S3 mobile_backup_server; C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe [3004128 2019-09-26] (Acronis International GmbH -> Acronis International GmbH) S3 mobile_backup_status_server; C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe [1753704 2019-09-26] (Acronis International GmbH -> ) R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [2747312 2020-04-26] (Safer-Networking Ltd. -> Safer-Networking Ltd.) R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [4583240 2020-04-26] (Safer-Networking Ltd. -> Safer-Networking Ltd.) R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [940976 2019-09-04] (Safer-Networking Ltd. -> Safer-Networking Ltd.) R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2020-02-29] (Microsoft Windows -> Microsoft Corporation) R2 wuauserv; C:\Windows\System32\wuaueng3.dll [2651136 2021-02-22] (Microsoft Corporation) [Brak podpisu cyfrowego] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AMPPAL; C:\Windows\System32\DRIVERS\AMPPAL.sys [198144 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) S3 AMPPALP; C:\Windows\System32\DRIVERS\amppal.sys [198144 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 btmaudio; C:\Windows\System32\drivers\btmaud.sys [80896 2012-05-21] (Microsoft Windows Hardware Compatibility Publisher -> Motorola Solutions, Inc.) R3 btmaux; C:\Windows\System32\DRIVERS\btmaux.sys [111104 2012-05-21] (Microsoft Windows Hardware Compatibility Publisher -> Motorola Solutions, Inc.) R3 btmhsf; C:\Windows\System32\DRIVERS\btmhsf.sys [849408 2012-06-09] (Microsoft Windows Hardware Compatibility Publisher -> Motorola Solutions, Inc.) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [42256 2020-05-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [59360 2020-05-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) R0 file_tracker; C:\Windows\System32\DRIVERS\file_tracker.sys [390592 2020-04-28] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R3 ksaud; C:\Windows\System32\drivers\ksaud.sys [2107392 2018-10-30] (Creative Technology Ltd -> Creative Technology Ltd.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220616 2021-02-22] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-02-20] (Malwarebytes Inc -> Malwarebytes) R0 tib; C:\Windows\System32\DRIVERS\tib.sys [1310552 2020-04-28] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R2 tib_mounter; C:\Windows\System32\DRIVERS\tib_mounter.sys [213336 2020-04-28] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R2 virtual_file; C:\Windows\System32\DRIVERS\virtual_file.sys [331976 2020-04-28] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) R0 volume_tracker; C:\Windows\System32\DRIVERS\volume_tracker.sys [243472 2020-04-28] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-02-22 20:31 - 2021-02-22 20:31 - 000026772 _____ C:\Users\Pompon\Desktop\FRST.txt 2021-02-22 20:30 - 2021-02-22 20:31 - 000000000 ____D C:\FRST 2021-02-22 20:29 - 2021-02-22 20:29 - 000050477 _____ C:\Users\Pompon\Desktop\Defogger (1).exe 2021-02-22 20:28 - 2021-02-22 20:28 - 000380928 _____ C:\Users\Pompon\Desktop\xwkccr45.exe 2021-02-22 20:28 - 2021-02-22 20:28 - 000050477 _____ C:\Users\Pompon\Desktop\Defogger.exe 2021-02-22 20:27 - 2021-02-22 20:30 - 002301440 _____ (Farbar) C:\Users\Pompon\Desktop\FRST64.exe 2021-02-22 19:28 - 2021-02-22 19:28 - 000220616 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-02-22 18:08 - 2021-02-22 18:45 - 000276745 _____ C:\Users\Pompon\Desktop\Raport WEPOL.xlsx 2021-02-21 12:41 - 2021-02-21 12:41 - 000008780 _____ C:\Users\Pompon\Desktop\wyceny terrarium.xlsx 2021-02-19 19:37 - 2021-02-19 19:37 - 000392682 _____ C:\Users\Pompon\Desktop\[Filetracker.PL] - Flora & Ulysses (2021) [1080p] [DSNY] [WEB-DL] [x264] [DDP5.1-FOX] [Dubbing PL].torrent 2021-02-19 19:37 - 2021-02-19 19:37 - 000000000 ____D C:\Users\Pompon\AppData\LocalLow\uTorrent 2021-02-18 19:38 - 2021-02-18 19:38 - 000049853 _____ C:\Users\Pompon\Desktop\faktura 1 deska.pdf 2021-02-08 21:24 - 2021-02-08 21:24 - 000000331 _____ C:\Start_.cmd 2021-02-08 21:24 - 2021-02-08 21:24 - 000000000 ____D C:\ComboFix 2021-02-08 21:21 - 2021-02-08 21:21 - 000000000 ____D C:\Windows\erdnt 2021-02-08 21:12 - 2021-02-08 21:12 - 005659583 ____R (Swearware) C:\Users\Pompon\Desktop\ComboFix.exe 2021-02-08 21:11 - 2021-02-08 21:20 - 000000000 ____D C:\AdwCleaner 2021-02-08 21:10 - 2021-02-08 21:10 - 008457584 _____ (Malwarebytes) C:\Users\Pompon\Desktop\adwcleaner_8.0.9.1.exe 2021-02-05 22:05 - 2021-02-20 16:14 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-02-05 22:05 - 2021-02-05 22:05 - 000153312 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-02-05 22:05 - 2021-02-05 22:05 - 000001960 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-02-05 22:05 - 2021-02-05 22:05 - 000001948 _____ C:\ProgramData\Desktop\Malwarebytes.lnk 2021-02-05 21:55 - 2021-02-05 22:05 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-02-05 21:55 - 2021-02-05 21:55 - 000000000 ____D C:\Program Files\Malwarebytes 2021-02-05 21:52 - 2021-02-05 21:52 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\Obsidium 2021-02-05 20:32 - 2021-02-20 18:28 - 000000000 ____D C:\Users\Pompon\Desktop\MIESZKANIE WARSZAWA 2021-02-05 20:28 - 2021-02-05 20:30 - 000000000 ____D C:\Users\Pompon\Desktop\FIRMA 2021-01-24 12:46 - 2021-01-24 13:29 - 000000000 ____D C:\Users\Pompon\Desktop\zdjęcia ogłoszenia 2021-01-24 12:33 - 2021-01-24 13:06 - 000000000 ____D C:\Users\Pompon\Desktop\zdjęcia moto 2021-01-19 16:57 - 2021-02-01 18:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2021-01-17 21:14 - 2021-02-19 21:03 - 000000000 ____D C:\ProgramData\Napisy24 2021-01-17 21:14 - 2021-01-23 00:36 - 000000856 _____ C:\ProgramData\Desktop\Napisy24.pl.lnk 2021-01-17 21:14 - 2021-01-17 21:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24 2021-01-17 21:14 - 2021-01-17 21:14 - 000000000 ____D C:\Program Files\Napisy24 2021-01-17 21:11 - 2021-01-17 21:12 - 010365375 _____ (Napisy24.pl ) C:\Users\Pompon\Desktop\Napisy24.exe 2021-01-09 05:55 - 2021-01-10 03:43 - 000000000 ____D C:\ProgramData\Malwarebytes' Anti-Malware (portable) 2021-01-07 20:49 - 2021-01-07 20:49 - 000006596 _____ C:\Users\Pompon\Desktop\trojany.txt 2021-01-07 20:40 - 2021-01-07 20:40 - 000000000 ____D C:\Users\Pompon\AppData\Local\mbam 2021-01-03 17:48 - 2021-01-03 17:48 - 000000000 ____D C:\Users\Pompon\AppData\LocalLow\Foxit 2021-01-03 13:45 - 2021-01-03 13:45 - 000001351 _____ C:\ProgramData\Desktop\Foxit Reader.lnk 2021-01-03 13:45 - 2021-01-03 13:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader 2021-01-03 13:45 - 2021-01-03 13:45 - 000000000 ____D C:\ProgramData\Foxit Software 2020-12-26 13:00 - 2020-12-26 14:26 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\NVDCache 2020-12-26 13:00 - 2020-12-26 13:00 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\NVIDIA 2020-12-25 20:12 - 2021-01-07 20:49 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\system32 2020-12-25 20:10 - 2021-01-09 22:05 - 000000384 ____H C:\Users\Pompon\MJKJRegInfo_U5E664P45VMUH7KFFLV36NSWUTVWJHRR 2020-12-25 20:10 - 2021-01-07 20:49 - 000000000 ____D C:\ProgramData\system32 2020-12-25 20:10 - 2020-12-25 20:10 - 000000000 ____D C:\Users\Pompon\Documents\TunePat Netflix Video Downloader 2020-12-25 20:10 - 2020-12-25 20:10 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\Windows 2020-12-25 19:44 - 2021-01-09 22:06 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\TunePat Netflix Video Downloader 2020-12-25 19:44 - 2020-12-25 19:44 - 000001417 _____ C:\Users\Pompon\Desktop\TunePat Netflix Video Downloader.lnk 2020-12-25 19:44 - 2020-12-25 19:44 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TunePat 2020-12-25 19:44 - 2020-12-25 19:44 - 000000000 ____D C:\Program Files (x86)\TunePat 2020-12-10 20:25 - 2020-12-10 20:25 - 000013819 ____H C:\Users\Pompon\Desktop\~WRL0005.tmp 2020-12-04 15:31 - 2020-12-04 15:31 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Brother 2020-12-02 11:47 - 2020-12-02 11:47 - 000163838 _____ C:\Users\Pompon\Desktop\faktura innogy kosztowa.pdf ==================== Trzy miesiące (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-02-22 19:36 - 2009-07-14 05:45 - 000034800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2021-02-22 19:36 - 2009-07-14 05:45 - 000034800 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2021-02-22 19:34 - 2011-04-12 14:21 - 000740112 _____ C:\Windows\system32\perfh015.dat 2021-02-22 19:34 - 2011-04-12 14:21 - 000155654 _____ C:\Windows\system32\perfc015.dat 2021-02-22 19:34 - 2009-07-14 06:13 - 001668230 _____ C:\Windows\system32\PerfStringBackup.INI 2021-02-22 19:34 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2021-02-22 19:30 - 2020-04-27 10:47 - 000000000 ____D C:\Program Files\CCleaner 2021-02-22 19:30 - 2020-04-26 19:50 - 000000000 ____D C:\ProgramData\NVIDIA 2021-02-22 19:28 - 2020-04-27 11:09 - 000000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2 2021-02-22 19:28 - 2020-04-26 18:08 - 002651136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng3.dll 2021-02-22 19:28 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-02-21 19:21 - 2020-04-28 13:56 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\vlc 2021-02-20 18:22 - 2020-05-07 12:35 - 000000000 ____D C:\output 2021-02-20 18:18 - 2020-05-04 07:00 - 000000000 ____D C:\Users\Pompon\AppData\LocalLow\Mozilla 2021-02-20 18:18 - 2020-05-04 07:00 - 000000000 ____D C:\ProgramData\Mozilla 2021-02-19 20:21 - 2020-05-01 14:42 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\uTorrent 2021-02-19 20:20 - 2020-05-01 15:13 - 000000000 ____D C:\Users\Pompon\AppData\Local\BitTorrentHelper 2021-02-19 17:45 - 2020-11-13 09:10 - 000000000 ____D C:\Users\Pompon\Desktop\FABRYKA WYDARZEŃ 2021-02-19 17:42 - 2020-04-26 19:13 - 000002230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-02-19 17:42 - 2020-04-26 19:13 - 000002189 _____ C:\ProgramData\Desktop\Google Chrome.lnk 2021-02-08 20:42 - 2020-11-09 15:18 - 006668375 _____ C:\Users\Pompon\Desktop\Raport KEA.xlsx 2021-02-05 20:34 - 2020-04-26 19:11 - 000003482 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-02-05 20:34 - 2020-04-26 19:11 - 000003354 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-02-05 20:30 - 2020-04-28 21:57 - 000000000 ____D C:\Users\Pompon\Desktop\ŻÓŁWIE 2020 2021-02-03 12:50 - 2009-07-14 06:08 - 000032604 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2021-02-02 15:11 - 2020-05-04 09:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2021-02-01 18:06 - 2020-05-17 12:32 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-01-27 18:35 - 2020-04-26 19:20 - 000000000 ____D C:\Users\Pompon\AppData\Local\LenovoServiceBridge 2021-01-25 17:58 - 2020-05-08 08:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2021-01-25 17:58 - 2020-05-08 08:34 - 000000000 ____D C:\Program Files\Java 2021-01-25 17:57 - 2020-05-08 08:34 - 000192168 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2021-01-25 17:57 - 2020-05-03 20:25 - 000000000 ____D C:\Users\Pompon\AppData\Local\GG 2021-01-25 17:56 - 2020-05-03 20:25 - 000000000 ____D C:\Users\Pompon\AppData\Roaming\GG 2021-01-25 17:54 - 2020-05-03 12:44 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-05-05 20:22 - 2020-05-05 20:22 - 000007642 _____ () C:\Users\Pompon\AppData\Local\Resmon.ResmonCfg ==================== SigCheckExt ========================= 2020-04-26 19:55 - 2018-06-20 13:16 - 000364032 _____ C:\Windows\system32\APOMgr64.DLL 2020-04-26 19:57 - 2012-07-05 12:32 - 000084480 _____ (Brother Industries, Ltd.) C:\Windows\system32\BrNetSti.dll 2020-04-26 19:57 - 2010-09-23 09:13 - 000051712 _____ (Brother Industries,Ltd) C:\Windows\system32\Brnsplg.dll 2020-04-26 19:57 - 2005-04-22 05:36 - 000143360 _____ C:\Windows\system32\BrSNMP64.dll 2020-04-26 19:57 - 2010-09-23 09:14 - 000058880 _____ (Brother Industries,Ltd.) C:\Windows\system32\BrWiaNCp.dll 2020-04-26 19:55 - 2018-06-20 13:17 - 000089600 _____ C:\Windows\system32\CmdRtr64.DLL 2020-04-26 19:54 - 2008-12-22 19:13 - 000049664 ____N (Creative Technology Ltd) C:\Windows\system32\CTChkAud.dll 2020-04-26 19:55 - 2014-04-17 10:06 - 000175104 ____N (Creative Technology Ltd) C:\Windows\system32\CtUsAs64.DLL 2020-04-26 19:57 - 2012-03-19 05:09 - 000316928 _____ (brother) C:\Windows\system32\NSSRH64.dll 2020-02-28 23:53 - 2020-02-16 21:37 - 000007168 _____ (IMI Kurwica) C:\Windows\system32\sle.dll 2020-04-26 18:08 - 2021-02-22 19:28 - 002651136 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng3.dll 2020-04-26 19:54 - 2006-10-06 12:17 - 000053248 ____N (Creative Technology Ltd ) C:\Windows\Ctregrun.exe 2020-04-26 19:55 - 2018-06-20 13:15 - 000273920 _____ C:\Windows\SysWOW64\APOMngr.DLL 2020-04-26 19:57 - 2007-12-13 21:16 - 000073728 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2.dll 2020-04-26 19:57 - 2007-12-13 21:16 - 000004608 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2L.dll 2020-04-26 19:57 - 2010-03-08 12:50 - 000003072 ____N (Brother Industries Ltd.) C:\Windows\SysWOW64\BrDctF2S.dll 2020-04-26 19:57 - 2010-02-05 10:42 - 000180224 ____N (Brother Industries, Ltd.) C:\Windows\SysWOW64\BroSNMP.dll 2020-05-04 14:48 - 2010-01-22 08:52 - 000061440 _____ (Brother Industries Ltd.) C:\Windows\SysWOW64\brprtink.dll 2020-04-26 19:55 - 2018-06-20 13:16 - 000074240 _____ C:\Windows\SysWOW64\CmdRtr.DLL 2020-04-26 19:03 - 2013-11-15 14:39 - 000053248 _____ (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2020-04-26 19:54 - 2008-12-22 19:13 - 000061440 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CTChkAud.dll 2020-04-26 19:55 - 2014-04-17 10:06 - 000163840 ____N (Creative Technology Ltd) C:\Windows\SysWOW64\CtUsAsio.DLL 2012-02-02 21:08 - 2012-02-02 21:08 - 000001536 _____ C:\Windows\SysWOW64\IusEventLog.dll 2020-04-26 19:57 - 2010-02-09 16:11 - 000217088 ____N (brother) C:\Windows\SysWOW64\NSSearch.dll 2020-04-26 18:32 - 2012-05-21 14:24 - 000041984 _____ (Intel Corporation) C:\Windows\system32\Drivers\USB3Ver.dll 2021-02-08 21:12 - 2021-02-08 21:12 - 005659583 ____R (Swearware) C:\Users\Pompon\Desktop\ComboFix.exe 2021-02-22 20:29 - 2021-02-22 20:29 - 000050477 _____ C:\Users\Pompon\Desktop\Defogger (1).exe 2021-02-22 20:28 - 2021-02-22 20:28 - 000050477 _____ C:\Users\Pompon\Desktop\Defogger.exe 2021-02-22 20:27 - 2021-02-22 20:30 - 002301440 _____ (Farbar) C:\Users\Pompon\Desktop\FRST64.exe 2021-01-17 21:11 - 2021-01-17 21:12 - 010365375 _____ (Napisy24.pl ) C:\Users\Pompon\Desktop\Napisy24.exe 2021-02-22 20:28 - 2021-02-22 20:28 - 000380928 _____ C:\Users\Pompon\Desktop\xwkccr45.exe ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== BCD ================================ Menedżer rozruchu systemu Windows --------------------------------- Identyfikator {bootmgr} device partition=\Device\HarddiskVolume1 path \bootmgr description Windows Boot Manager locale pl-PL default {current} resumeobject {adb792ce-887d-11ea-8f00-806e6f6e6963} displayorder {current} timeout 30 Moduł ładujący rozruchu systemu Windows --------------------------------------- Identyfikator {current} device partition=C: path \Windows\system32\winload.exe description Windows 7 Professional (odzyskano) locale pl-PL recoverysequence {0940e508-8886-11ea-a070-aa0ac23cf981} recoveryenabled Yes osdevice partition=C: systemroot \Windows resumeobject {adb792ce-887d-11ea-8f00-806e6f6e6963} Moduł ładujący rozruchu systemu Windows --------------------------------------- Identyfikator {0940e508-8886-11ea-a070-aa0ac23cf981} device ramdisk=[C:]\Recovery\e299d1c4-87e8-11ea-982e-a9ac66786186\Winre.wim,{0940e509-8886-11ea-a070-aa0ac23cf981} path \windows\system32\winload.exe description Windows Recovery Environment (odzyskano) locale osdevice ramdisk=[C:]\Recovery\e299d1c4-87e8-11ea-982e-a9ac66786186\Winre.wim,{0940e509-8886-11ea-a070-aa0ac23cf981} systemroot \windows winpe Yes Wznawianie ze stanu hibernacji ------------------------------ Identyfikator {adb792ce-887d-11ea-8f00-806e6f6e6963} device partition=C: path \Windows\system32\winresume.exe description Windows 7 Professional (odzyskano) locale pl-PL inherit {resumeloadersettings} filedevice partition=C: filepath \hiberfil.sys debugoptionenabled No Moduł testujący pamięć systemu Windows -------------------------------------- Identyfikator {memdiag} device partition=\Device\HarddiskVolume1 path \boot\memtest.exe description Windows Memory Diagnostic locale pl-PL Opcje urządzenia ---------------- Identyfikator {0940e509-8886-11ea-a070-aa0ac23cf981} ramdisksdidevice partition=C: ramdisksdipath \Recovery\e299d1c4-87e8-11ea-982e-a9ac66786186\boot.sdi LastRegBack: 2021-02-21 19:40 ==================== Koniec FRST.txt ======================== Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 22-02-2021 Uruchomiony przez Pompon (22-02-2021 20:32:50) Uruchomiony z C:\Users\Pompon\Desktop Windows 7 Professional Service Pack 1 (X64) (2020-04-26 17:14:16) Tryb startu: Normal ========================================================== ==================== Konta użytkowników: ============================= Administrator (S-1-5-21-264015831-1648972797-540543994-500 - Administrator - Disabled) Gość (S-1-5-21-264015831-1648972797-540543994-501 - Limited - Disabled) HomeGroupUser$ (S-1-5-21-264015831-1648972797-540543994-1002 - Limited - Enabled) Pompon (S-1-5-21-264015831-1648972797-540543994-1000 - Administrator - Enabled) => C:\Users\Pompon ==================== Centrum zabezpieczeń ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie.) AS: Spybot - Search and Destroy (Enabled - Out of date) {4C1D9672-63FE-5C90-371E-8FDA591C5B75} AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Zainstalowane programy ====================== (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.) µTorrent (HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\uTorrent) (Version: 3.5.5.45852 - BitTorrent Inc.) 7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov) Acronis True Image for Crucial (HKLM-x32\...\{4D4DA0E0-00C7-4AC5-9665-D3DBAF0767BE}) (Version: 23.0.21500 - Acronis) Adobe Flash Player 10 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 10.1.102.64 - Adobe Systems Incorporated) Adobe Flash Player 32 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 32.0.0.371 - Adobe) Aktualizacje NVIDIA 36.0.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 36.0.0.0 - NVIDIA Corporation) Hidden Brother MFL-Pro Suite DCP-J315W (HKLM-x32\...\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}) (Version: 2.0.0.0 - Brother Industries, Ltd.) CCleaner (HKLM\...\CCleaner) (Version: 5.76 - Piriform) Creative ASIO (USB) (HKLM-x32\...\Creative_ASIO(USB)) (Version: 1.00 - Creative Technology Limited) Creative System Information (HKLM-x32\...\SysInfo) (Version: 1.10 - Creative Technology Limited) Crucial Storage Executive (HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\Crucial Storage Executive 5.09.122019.04) (Version: 5.09.122019.04 - Crucial) DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.12.0.1203 - Disc Soft Ltd) DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 425.31 - NVIDIA Corporation) Hidden Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.05 - Creative Technology Limited) Dolby Home Theater v4 (HKLM-x32\...\{B26438B4-BF51-49C3-9567-7F14A5E40CB9}) (Version: 7.2.8000.16 - Dolby Laboratories Inc) e-mikrofirma (HKLM-x32\...\{8553CC3A-61EB-4168-9F5B-0FAB11F8830C}) (Version: 1.3.0.7 - Aplikacje Krytyczne sp. z o. o.) Energy Management (HKLM-x32\...\{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.4.1 - Lenovo) Hidden Energy Management (HKLM-x32\...\InstallShield_{D0956C11-0F60-43FE-99AD-524E833471BB}) (Version: 7.0.4.1 - Lenovo) Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 10.1.1.37576 - Foxit Software Inc.) Google Chrome (HKLM-x32\...\Google Chrome) (Version: 88.0.4324.182 - Google LLC) Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1007 - Intel Corporation) Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.3.1427 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation) Intel(R) PROSet/Wireless for Bluetooth(R) + High Speed (HKLM\...\{BEE86606-EFB5-4353-9F34-29E0C59CDCFA}) (Version: 15.2.0.0284 - Intel Corporation) Intel(R) PROSet/Wireless Software for Bluetooth(R) Technology (HKLM\...\{A10B1524-63B5-40F2-B272-D841CF671C16}) (Version: 2.2.0.0266 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation) Intel(R) USB 3.0 eXtensible Host Controller Driver (HKLM-x32\...\{240C3DDD-C5E9-4029-9DF7-95650D040CF2}) (Version: 1.0.5.235 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{09536BA1-E498-4CC3-B834-D884A67D7E34}) (Version: 1.23.605.1 - Intel Corporation) Java 8 Update 281 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180281F0}) (Version: 8.0.2810.9 - Oracle Corporation) Lenovo Diagnostics Tool (HKLM\...\{01ADF966-E3BA-40DC-9037-E90BBA9ED50E}) (Version: 4.33.0 - Lenovo) Lenovo EasyCamera (HKLM-x32\...\{E0A7ED39-8CD6-4351-93C3-69CCA00D12B4}) (Version: 6.2.8400.10182 - Realtek Semiconductor Corp.) Lenovo Service Bridge (HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.1.7 - Lenovo) Malwarebytes version 4.3.0.98 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.3.0.98 - Malwarebytes) Microsoft .NET Framework 4.8 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.8.03761 - Microsoft Corporation) Microsoft .NET Framework 4.8 (Polski) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1045) (Version: 4.8.03761 - Microsoft Corporation) Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation) Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation) Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation) Mozilla Firefox 84.0.2 (x86 pl) (HKLM-x32\...\Mozilla Firefox 84.0.2 (x86 pl)) (Version: 84.0.2 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 81.0.1 - Mozilla) NapiProjekt (2.2.0.2399) (HKLM-x32\...\NapiProjekt_is1) (Version: - ) Napisy24 (HKLM\...\{D1985DBC-F09E-4317-91B8-932AD0FD4A27}_is1) (Version: 1.9.5 - Napisy24.pl) Narzędzia sprawdzające pakietu Microsoft Office 2016 — polski (HKLM\...\{90160000-001F-0415-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.15 - NVIDIA Corporation) Hidden NVIDIA GeForce Experience 3.18.0.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.18.0.94 - NVIDIA Corporation) NVIDIA Oprogramowanie systemu PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation) NVIDIA Sterownik 3D Vision 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 425.31 - NVIDIA Corporation) NVIDIA Sterownik graficzny 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 425.31 - NVIDIA Corporation) Oprogramowanie Intel® PROSet/Wireless WiFi (HKLM\...\{181BBF43-CA17-4E1A-A78D-81E67A57B8A4}) (Version: 15.02.0000.1258 - Intel Corporation) Pakiet sterowników systemu Windows - Lenovo (ACPIVPC) System (12/15/2011 7.1.0.1) (HKLM\...\99841829BE839365AA67B2AD0E50D371F59F8A1E) (Version: 12/15/2011 7.1.0.1 - Lenovo) Panel sterowania NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden PhotoScape (HKLM-x32\...\PhotoScape) (Version: - ) Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6702 - Realtek Semiconductor Corp.) Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.7601.39019 - Realtek Semiconductor Corp.) Skype (wersja 8.68) (HKLM-x32\...\Skype_is1) (Version: 8.68 - Skype Technologies S.A.) Sound Blaster X-Fi Surround 5.1 Pro (HKLM-x32\...\{05627579-2BA6-4DA2-8243-0EEF752EF14B}) (Version: 1.0 - Creative Technology Limited) Spybot - Search & Destroy (HKLM-x32\...\{B4092C6D-E886-4CB2-BA68-FE5A99D31DE7}_is1) (Version: 2.8.68.0 - Safer-Networking Ltd.) Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 16.2.10.13 - Synaptics Incorporated) TunePat Netflix Video Downloader 1.3.3 (HKLM-x32\...\TunePat Netflix Video Downloader) (Version: 1.3.3 - TunePat) VLC media player (HKLM\...\VLC media player) (Version: 3.0.10 - VideoLAN) Winamp (HKLM-x32\...\Winamp) (Version: 5.8 - Winamp SA) WinDirStat 1.1.2 (HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\WinDirStat) (Version: - ) Z400 48Wh battery (HKLM-x32\...\{5B7EF375-70C7-4349-9DD2-99FF487F5078}) (Version: 1.0.0.0 - Lenovo) ==================== Niestandardowe rejestracje CLSID (filtrowane): ============== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ShellIconOverlayIdentifiers: [ AcronisDrive] -> {5D74FD4B-4EFB-4586-8022-8637BBE40970} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2019-09-26] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncError] -> {934BC6C0-FEC2-4df5-A100-961DE2C8A0ED} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2019-09-26] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncInProgress] -> {00F848DC-B1D4-4892-9C25-CAADC86A215D} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2019-09-26] (Acronis International GmbH -> ) ShellIconOverlayIdentifiers: [ AcronisSyncOk] -> {71573297-552E-46fc-BE3D-3DFAF88D47B7} => C:\Program Files (x86)\Acronis\TrueImageHome\tishell64.dll [2019-09-26] (Acronis International GmbH -> ) ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-05-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2020-05-01] (AVB Disc Soft, SIA -> Disc Soft Ltd) ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Brak podpisu cyfrowego] ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2012-03-27] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation) ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation) ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [Brak podpisu cyfrowego] ==================== Codecs (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll ==================== Skróty & WMI ======================== (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) WMI:subscription\__FilterToConsumerBinding->CommandLineEventConsumer.Name=\"BVTConsumer\"",Filter="__EventFilter.Name=\"BVTFilter\":: WMI:subscription\__EventFilter->BVTFilter::[Query => SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99] WMI:subscription\CommandLineEventConsumer->BVTConsumer::[CommandLineTemplate => cscript KernCap.vbs][WorkingDirectory => C:\\tools\\kernrate] Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Aplikacje Krytyczne sp. z o. o..lnk -> hxxp://akmf.pl Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Jednolity Plik Kontrolny.lnk -> hxxp://jpk.mf.gov.pl Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Ministerstwo Finansów.lnk -> hxxp://www.mf.gov.pl ==================== Załadowane moduły (filtrowane) ============= 2020-04-26 19:07 - 2011-11-29 19:00 - 000059392 _____ () [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IsdiInterop.dll 2020-04-26 19:57 - 2009-02-27 15:38 - 000139264 ____R () [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\BrUtilities\BrLogAPI.dll 2020-04-26 19:07 - 2020-04-26 19:07 - 000172032 _____ () [Brak podpisu cyfrowego] C:\Windows\assembly\NativeImages_v2.0.50727_32\IsdiInterop\72942022d04b079ab54528d7acd76660\IsdiInterop.ni.dll 2020-04-26 19:55 - 2018-06-20 13:16 - 000364032 _____ () [Brak podpisu cyfrowego] C:\Windows\SYSTEM32\APOMgr64.DLL 2020-04-26 19:57 - 2005-04-22 05:36 - 000143360 _____ () [Brak podpisu cyfrowego] C:\Windows\system32\BrSNMP64.dll 2020-04-26 19:55 - 2018-06-20 13:17 - 000089600 _____ () [Brak podpisu cyfrowego] C:\Windows\SYSTEM32\CmdRtr64.DLL 2020-04-26 19:55 - 2018-06-20 13:15 - 000273920 _____ () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\APOMngr.DLL 2020-04-26 19:55 - 2018-06-20 13:16 - 000074240 _____ () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\CmdRtr.DLL 2020-05-08 08:59 - 2010-01-22 08:54 - 000058880 _____ (Brother Industries Ltd.) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\BRIL10A.DLL 2020-05-08 08:59 - 2010-01-22 08:54 - 001926656 _____ (Brother Industries Ltd.) [Brak podpisu cyfrowego] C:\Windows\system32\spool\DRIVERS\x64\3\briu10a.dll 2020-04-26 19:57 - 2009-12-23 14:45 - 000327680 ____N (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrMonitor.dll 2020-04-26 19:57 - 2012-07-05 12:32 - 000084480 _____ (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Windows\system32\BrNetSti.dll 2020-04-26 19:54 - 2004-11-16 16:06 - 000065536 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\CTAudSeu.dll 2020-04-26 19:54 - 2006-06-07 15:23 - 000126976 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCHIDUSB.dll 2020-04-26 19:54 - 2009-10-21 16:36 - 000163840 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\ctcadi.dll 2020-04-26 19:54 - 2009-03-18 15:00 - 000151552 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTCadiEP.dll 2020-04-26 19:54 - 2013-05-06 13:47 - 000573440 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTRice.dll 2020-04-26 19:54 - 2011-08-10 14:00 - 000249856 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\DBACSU.dll 2020-04-26 19:54 - 2007-02-01 10:13 - 000061440 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\NotiMan.dll 2020-04-26 19:54 - 2009-02-23 10:41 - 000413696 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\CTAudEp.dll 2020-04-26 19:54 - 2008-01-11 09:10 - 000065536 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\CTAudSeu.dll 2020-04-26 19:54 - 2005-01-06 16:26 - 000053248 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\CTIniFu.dll 2020-04-26 19:54 - 2007-03-07 13:07 - 000176128 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\CTThemeU.dll 2020-04-26 19:54 - 2006-03-31 16:26 - 000335872 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\GDICtrl.sku 2020-04-26 19:54 - 2007-03-07 13:56 - 000151552 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\GDICtrl2.sku 2020-04-26 19:54 - 2006-05-04 16:11 - 000110592 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\GDICtrl3.sku 2020-04-26 19:54 - 2006-03-28 15:21 - 000114757 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\RtxCtrl.sku 2020-04-26 19:54 - 2008-12-29 10:25 - 000077824 ____N (Creative Technology Ltd) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\VolPanel.crl 2020-04-26 19:54 - 2007-12-13 16:36 - 000077824 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\Audio Emulator\AudDrvEm.dll 2020-04-26 19:54 - 2007-05-04 14:27 - 000233472 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\OSD\PanelSvc.dll 2020-04-26 19:54 - 2009-03-16 13:55 - 000020480 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\AudSet.crl 2020-04-26 19:54 - 2009-12-21 14:14 - 000065536 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXCADI.DLL 2020-04-26 19:54 - 2009-04-03 13:50 - 000036963 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\EAXMod.dll 2020-04-26 19:54 - 2010-02-04 09:35 - 000241664 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCRx\RCCADIIR.dll 2020-04-26 19:54 - 2009-09-16 16:59 - 000009728 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.CRL 2020-04-26 19:54 - 2009-12-16 09:24 - 000323584 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Shared Files\Module Loader\RC System\RCSystem.dll 2020-04-26 19:54 - 2012-10-16 12:47 - 000417792 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTPresetW.dll 2020-04-26 19:54 - 2005-11-23 09:28 - 000040960 ____N (Creative Technology Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\CtrlSrcU.dll 2020-02-28 23:53 - 2020-02-16 21:37 - 000007168 _____ (IMI Kurwica) [Brak podpisu cyfrowego] C:\Windows\system32\sle.dll 2020-04-26 19:07 - 2020-04-26 19:07 - 000014336 _____ (Intel Corp.) [Brak podpisu cyfrowego] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorCommon\2c124842f2740267d4146b4211b412a0\IAStorCommon.ni.dll 2020-04-26 19:07 - 2011-11-29 19:00 - 000175616 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUIHelper.dll 2020-04-26 19:07 - 2011-11-29 19:00 - 001319424 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IntelVisualDesign.dll 2020-04-26 19:07 - 2011-11-29 19:03 - 000007680 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\pl-PL\IAStorDataMgr.resources.dll 2020-04-26 19:07 - 2011-11-29 19:03 - 000032768 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\pl-PL\IAStorIcon.resources.dll 2020-04-26 19:07 - 2011-11-29 19:03 - 000004608 _____ (Intel Corporation) [Brak podpisu cyfrowego] [Plik w użyciu] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\pl-PL\IntelVisualDesign.resources.dll 2020-04-26 19:07 - 2011-11-29 18:41 - 000278016 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\ISDI.dll 2020-04-26 18:32 - 2012-05-21 14:24 - 000073728 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.dll 2012-04-23 16:21 - 2012-04-23 16:21 - 000333312 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files\Intel\BluetoothHS\BTHSSupplicant.dll 2012-03-15 05:00 - 2012-03-15 05:00 - 000105472 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Program Files\Intel\BluetoothHS\UsR3IoPort.dll 2020-04-26 19:07 - 2020-04-26 19:07 - 000225280 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorDataMgr\c64c05bf09fe8c421829cca89b51f547\IAStorDataMgr.ni.dll 2020-04-26 19:07 - 2020-04-26 19:07 - 000487424 _____ (Intel Corporation) [Brak podpisu cyfrowego] C:\Windows\assembly\NativeImages_v2.0.50727_32\IAStorUtil\432a39402d23f6e21a6887900c7b573e\IAStorUtil.ni.dll 2020-04-26 18:08 - 2021-02-22 19:28 - 002651136 _____ (Microsoft Corporation) [Brak podpisu cyfrowego] c:\windows\system32\wuaueng3.dll ==================== Alternate Data Streams (filtrowane) ======== (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.) AlternateDataStreams: C:\Users\Pompon\Desktop\logo_zolwik_hd (full).jpg:$CmdZnID [26] ==================== Tryb awaryjny (filtrowane) ================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.) HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\procexp90.Sys => ""="Driver" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\PEVSystemStart => ""="Service" HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\procexp90.Sys => ""="Driver" ==================== Powiązania plików (filtrowane) ================= ==================== Internet Explorer (Wersja 11) (filtrowane) ========== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_281\bin\ssv.dll [2021-01-25] (Oracle America, Inc. -> Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_281\bin\jp2ssv.dll [2021-01-25] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office16\URLREDIR.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2016-07-13] (Microsoft Corporation -> Microsoft Corporation) Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2016-07-12] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2016-07-12] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.) IE restricted site: HKU\.DEFAULT\...\007guard.com -> install.007guard.com IE restricted site: HKU\.DEFAULT\...\008i.com -> 008i.com IE restricted site: HKU\.DEFAULT\...\008k.com -> www.008k.com IE restricted site: HKU\.DEFAULT\...\00hq.com -> www.00hq.com IE restricted site: HKU\.DEFAULT\...\010402.com -> 010402.com IE restricted site: HKU\.DEFAULT\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\.DEFAULT\...\0scan.com -> www.0scan.com IE restricted site: HKU\.DEFAULT\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\.DEFAULT\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\.DEFAULT\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\.DEFAULT\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\.DEFAULT\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\.DEFAULT\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\.DEFAULT\...\10sek.com -> www.10sek.com IE restricted site: HKU\.DEFAULT\...\12-26.net -> user1.12-26.net IE restricted site: HKU\.DEFAULT\...\12-27.net -> user1.12-27.net IE restricted site: HKU\.DEFAULT\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\.DEFAULT\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\.DEFAULT\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\.DEFAULT\...\123simsen.com -> www.123simsen.com Wykryto więcej niż wyliczono: 7940 witryn. IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\007guard.com -> install.007guard.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\008i.com -> 008i.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\008k.com -> www.008k.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\00hq.com -> www.00hq.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\010402.com -> 010402.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\032439.com -> 80gw6ry3i3x3qbrkwhxhw.032439.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\0scan.com -> www.0scan.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\1-2005-search.com -> www.1-2005-search.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\1-domains-registrations.com -> www.1-domains-registrations.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\1000gratisproben.com -> www.1000gratisproben.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\1001namen.com -> www.1001namen.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\100888290cs.com -> mir.100888290cs.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\100sexlinks.com -> www.100sexlinks.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\10sek.com -> www.10sek.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\12-26.net -> user1.12-26.net IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\12-27.net -> user1.12-27.net IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\123fporn.info -> www.123fporn.info IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\123haustiereundmehr.com -> www.123haustiereundmehr.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\123moviedownload.com -> www.123moviedownload.com IE restricted site: HKU\S-1-5-21-264015831-1648972797-540543994-1000\...\123simsen.com -> www.123simsen.com Wykryto więcej niż wyliczono: 7940 witryn. ==================== Hosts - zawartość: ========================= (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.) 2009-07-14 03:34 - 2021-02-05 22:00 - 000454764 _____ C:\Windows\system32\drivers\etc\hosts 127.0.0.1 www.007guard.com 127.0.0.1 007guard.com 127.0.0.1 008i.com 127.0.0.1 www.008k.com 127.0.0.1 008k.com 127.0.0.1 www.00hq.com 127.0.0.1 00hq.com 127.0.0.1 010402.com 127.0.0.1 www.032439.com 127.0.0.1 032439.com 127.0.0.1 www.0scan.com 127.0.0.1 0scan.com 127.0.0.1 1000gratisproben.com 127.0.0.1 www.1000gratisproben.com 127.0.0.1 1001namen.com 127.0.0.1 www.1001namen.com 127.0.0.1 100888290cs.com 127.0.0.1 www.100888290cs.com 127.0.0.1 www.100sexlinks.com 127.0.0.1 100sexlinks.com 127.0.0.1 10sek.com 127.0.0.1 www.10sek.com 127.0.0.1 www.1-2005-search.com 127.0.0.1 1-2005-search.com 127.0.0.1 123fporn.info 127.0.0.1 www.123fporn.info 127.0.0.1 www.123haustiereundmehr.com 127.0.0.1 123haustiereundmehr.com 127.0.0.1 123moviedownload.com 127.0.0.1 www.123moviedownload.com Wykryto więcej niż wyliczono: 15608 linii. ==================== Inne obszary =========================== (Obecnie brak automatycznej naprawy dla tej sekcji.) HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Common Files\Acronis\VirtualFile\;C:\Program Files (x86)\Common Files\Acronis\VirtualFile64\;C:\Program Files (x86)\Common Files\Acronis\SnapAPI\;C:\Program Files\Crucial\Crucial Storage Executive HKU\S-1-5-21-264015831-1648972797-540543994-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 62.179.1.61 - 62.179.1.63 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0) Zapora systemu Windows [funkcja włączona] ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy == (Załączenie wejścia w fixlist spowoduje jego usunięcie.) MSCONFIG\startupreg: Acronis Scheduler2 Service => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe MSCONFIG\startupreg: AcronisTibMounterMonitor => C:\Program Files (x86)\Common Files\Acronis\TibMounter\TibMounterMonitor.exe MSCONFIG\startupreg: BrStsMon00 => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe /AUTORUN MSCONFIG\startupreg: CCleaner Smart Cleaning => "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR MSCONFIG\startupreg: ControlCenter3 => C:\Program Files (x86)\Brother\ControlCenter3\brctrcen.exe /autorun MSCONFIG\startupreg: DAEMON Tools Lite Automount => "C:\Program Files\DAEMON Tools Lite\DTAgent.exe" -autorun MSCONFIG\startupreg: Energy Management => C:\Program Files (x86)\Lenovo\Energy Management\Energy Management.exe MSCONFIG\startupreg: EnergyUtility => C:\Program Files (x86)\Lenovo\Energy Management\Utility.exe MSCONFIG\startupreg: GG => "C:\Users\Pompon\AppData\Local\GG\Application\gghub.exe" MSCONFIG\startupreg: Napisy24.pl => "C:\Program Files\Napisy24\Napisy24.exe" AutoStart MSCONFIG\startupreg: Napisy24Update => "C:\Program Files\Napisy24\Napisy24Update.exe" "sleep" MSCONFIG\startupreg: RtHDVBg_Dolby => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe /FORPCEE4 MSCONFIG\startupreg: RtHDVCpl => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s MSCONFIG\startupreg: Skype for Desktop => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe MSCONFIG\startupreg: TrueImageMonitor.exe => C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe ==================== Reguły Zapory systemu Windows (filtrowane) ================ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) FirewallRules: [SPPSVC-In-TCP] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) C:\Windows\system32\sppsvc.exe (Microsoft Windows -> Microsoft Corporation) FirewallRules: [{43AA3DA4-ECD2-4F23-B6EB-3EE68F94F88E}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe (Intel Corporation-Mobile Wireless Group -> ) FirewallRules: [{D070E57F-2915-42F5-87FB-B749B8B589BD}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{0A4C457D-127F-4F89-A898-E056E1B5B5B9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{29857F55-2AFD-4955-9D45-ABA9AE183D1E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{E30C414A-41C6-4D52-B7FE-F5792FDE23CE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{1A410B0F-F995-4490-86FE-0E8DF7FFA653}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{3F59C4A0-5EC3-4699-829C-9292B6D01023}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation) FirewallRules: [{4546B506-2851-4B02-A232-2F7A7E52A996}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImage.exe (Acronis International GmbH -> ) FirewallRules: [{619792E2-89CC-4C6E-902A-12ACE736C77C}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageMonitor.exe (Acronis International GmbH -> ) FirewallRules: [{82D0B3B2-1653-47E9-81DB-D334A3BC327A}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe (Acronis International GmbH -> ) FirewallRules: [{0D8ED333-E380-4664-8DFD-E772B72ABA83}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\TrueImageHome\TrueImageHomeService.exe (Acronis International GmbH -> ) FirewallRules: [{E6F48F11-BF07-4EE9-851A-E482EA933D90}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe (Acronis International GmbH -> ) FirewallRules: [{B573A26E-F1C5-4D4F-A4F9-C3FFE6EE46ED}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe (Acronis International GmbH -> ) FirewallRules: [{06A734B4-D187-4F93-8EBF-91618DC2C088}] => (Allow) C:\Program Files (x86)\Common Files\Acronis\MobileBackupServer\mobile_backup_server.exe (Acronis International GmbH -> Acronis International GmbH) FirewallRules: [{DD5188B7-7528-4A40-8635-044C1C0FFBF8}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\mobile_backup_status_server.exe (Acronis International GmbH -> ) FirewallRules: [{6AE96235-E79A-4A12-A46A-E71FDC150861}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\ga_service.exe (Acronis International GmbH -> ) FirewallRules: [{3AD1D8CD-01F8-483D-B329-0D70B6E86B0B}] => (Allow) C:\Program Files (x86)\Acronis\TrueImageHome\LicenseActivator.exe (Acronis International GmbH -> ) FirewallRules: [{FA03F07C-6613-4CF1-8232-3DC96F375355}] => (Allow) C:\Users\Pompon\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{10837076-4581-405C-A86A-E7B558DEA1D5}] => (Allow) C:\Users\Pompon\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.) FirewallRules: [{04D1471E-B97D-4D96-A833-75C9AF167270}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{F82AA458-45FF-4D35-98CA-E81F541ACFB6}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd) FirewallRules: [{EF09B499-96AE-4416-93A8-DD8A99162BCE}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe () [Brak podpisu cyfrowego] FirewallRules: [{F0C84FD8-C5D6-47E5-AC94-643ECAFA4DF1}] => (Allow) C:\Program Files (x86)\NapiProjekt\napisy.exe () [Brak podpisu cyfrowego] FirewallRules: [TCP Query User{917B5974-CCF6-4263-9E27-BF25A8ABEF14}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe FirewallRules: [UDP Query User{6A7681B8-8EFE-4FE8-96D8-60E876B9675A}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe FirewallRules: [{584832C1-1ADB-4A4C-ACE7-82A16534D487}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA) FirewallRules: [{DF9CCF67-3BBD-4105-9A7F-2BFDD2B6C67E}] => (Allow) C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA -> Winamp SA) FirewallRules: [{6490745D-5CC0-4736-963B-4BAE3FA913AC}] => (Allow) LPort=54925 FirewallRules: [{66F93058-303B-4DF6-8A72-BFD4A7D53467}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{850AA4DA-C9AF-49AA-B284-B1B7B92C5713}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation) FirewallRules: [{32507628-3FEE-4FCF-B863-C9C0F6224E19}] => (Allow) C:\Program Files (x86)\TunePat\TunePat Netflix Video Downloader\TunePat Netflix Video Downloader.exe (CHENGBU TURING SOFTWARE CO., LTD -> TunePat) FirewallRules: [{A59EE384-AD61-449A-898A-5E10D08C53F3}] => (Allow) C:\Program Files (x86)\TunePat\TunePat Netflix Video Downloader\TunePat Netflix Video Downloader.exe (CHENGBU TURING SOFTWARE CO., LTD -> TunePat) FirewallRules: [{4035DF5D-F204-44F1-BDA7-F2AFA3D81D81}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{B7FFA4BF-C7BF-4B5B-BB7B-D90C6DA87C08}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.) FirewallRules: [{2580EE70-4E4E-418F-BF4E-779230A407A0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdate.exe] => Enabled:Spybot-S&D 2 Updater StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe] => Enabled:Spybot-S&D 2 Background update service StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe] => Enabled:Spybot - Search & Destroy tray access StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe] => Enabled:Spybot-S&D 2 Scanner Service ==================== Punkty Przywracania systemu ========================= 13-02-2021 13:16:53 Zaplanowany punkt kontrolny 20-02-2021 15:56:18 Zaplanowany punkt kontrolny ==================== Wadliwe urządzenia w Menedżerze urządzeń ============ Name: Kontroler Ethernet Description: Kontroler Ethernet Class Guid: Manufacturer: Service: Problem: : The drivers for this device are not installed. (Code 28) Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard. ==================== Błędy w Dzienniku zdarzeń: ======================== Dziennik Aplikacja: ================== Error: (02/22/2021 07:28:27 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/22/2021 06:49:12 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/22/2021 06:47:54 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/22/2021 06:09:33 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (02/22/2021 05:59:23 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/21/2021 06:31:30 PM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Error: (02/21/2021 11:37:17 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: ) Description: Event-ID 0 Error: (02/21/2021 11:26:39 AM) (Source: WinMgmt) (EventID: 10) (User: ) Description: Event filter with query "SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 99" could not be reactivated in namespace "//./root/CIMV2" because of error 0x80041003. Events cannot be delivered through this filter until the problem is corrected. Dziennik System: ============= Error: (02/22/2021 06:49:23 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {FE7BF085-73BC-4CE1-830E-62335D63E74B} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/22/2021 06:49:20 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {995C996E-D918-4A8C-A302-45719A6F4EA7} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/22/2021 06:49:18 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {1EF75F33-893B-4E8F-9655-C3D602BA4897} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/22/2021 06:49:15 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/22/2021 06:48:04 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {FE7BF085-73BC-4CE1-830E-62335D63E74B} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/22/2021 06:48:02 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {995C996E-D918-4A8C-A302-45719A6F4EA7} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/21/2021 11:25:50 PM) (Source: DCOM) (EventID: 10010) (User: ) Description: Serwer {995C996E-D918-4A8C-A302-45719A6F4EA7} nie zarejestrował się w modelu DCOM w wymaganym czasie. Error: (02/21/2021 11:32:41 AM) (Source: Schannel) (EventID: 4119) (User: ZARZĄDZANIE NT) Description: Odebrano następujący alert krytyczny: 80. Windows Defender: ================ Date: 2021-02-07 03:37:58.881 Description: Skanowanie produktu Windows Defender zostało zatrzymane przed ukończeniem. Identyfikator skanowania:{7BACBF82-0962-4F29-9991-C37FD4DEAF90} Typ skanowania:Oprogramowanie antyszpiegowskie Parametry skanowania:Szybkie skanowanie Użytkownik:ZARZĄDZANIE NT\USŁUGA SIECIOWA Date: 2020-04-26 19:10:42.909 Description: Produkt Windows Defender napotkał błąd podczas próby załadowania podpisów i podejmie próbę powrotu do znanego zestawu dobrych podpisów. Podpisy objęte próbą:Bieżące Kod błędu:0x80070003 Opis błędu:System nie może odnaleźć określonej ścieżki. Wersja podpisu:0.0.0.0 Wersja aparatu:0.0.0.0 ==================== Statystyki pamięci =========================== BIOS: LENOVO 71CN31WW(V1.10) 11/16/2012 Płyta główna: LENOVO INVALID Procesor: Intel(R) Core(TM) i3-3120M CPU @ 2.50GHz Procent pamięci w użyciu: 68% Całkowita pamięć fizyczna: 8053.6 MB Dostępna pamięć fizyczna: 2533.35 MB Całkowita pamięć wirtualna: 16105.35 MB Dostępna pamięć wirtualna: 8717.37 MB ==================== Dyski ================================ Drive c: () (Fixed) (Total:97.56 GB) (Free:8.08 GB) NTFS Drive d: () (Fixed) (Total:488.28 GB) (Free:138.86 GB) NTFS Drive e: () (Fixed) (Total:345.57 GB) (Free:102.49 GB) NTFS \\?\Volume{8ccdb153-87e0-11ea-81c6-806e6f6e6963}\ (Zastrzeżone przez system) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS ==================== MBR & Tablica partycji ==================== ========================================================== Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 5BAA30D5) Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS) Partition 2: (Not Active) - (Size=97.6 GB) - (Type=07 NTFS) Partition 3: (Not Active) - (Size=488.3 GB) - (Type=07 NTFS) Partition 4: (Not Active) - (Size=345.6 GB) - (Type=07 NTFS) ==================== Koniec Addition.txt ======================= Rezultat skanowania skrótów użytkowników (x64) Wersja: 22-02-2021 Uruchomiony przez Pompon (22-02-2021 20:34:10) Uruchomiony z C:\Users\Pompon\Desktop Tryb startu: Normal ==================== Skróty ============================= (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Aplikacje Krytyczne sp. z o. o..lnk -> hxxp://akmf.pl Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Jednolity Plik Kontrolny.lnk -> hxxp://jpk.mf.gov.pl Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Ministerstwo Finansów.lnk -> hxxp://www.mf.gov.pl Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis True Image for Crucial.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\xlicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk -> C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk -> C:\Windows\ehome\ehshell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\pptico.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Anytime Upgrade.lnk -> C:\Windows\System32\WindowsAnytimeUpgradeUI.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk -> C:\Program Files\DVD Maker\DVDMaker.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\wordicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat\Help (ENG).lnk -> C:\Program Files (x86)\WinDirStat\windirstat.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat\Help (PLK).lnk -> C:\Program Files (x86)\WinDirStat\wdsh0415.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat\Uninstall WinDirStat.lnk -> C:\Program Files (x86)\WinDirStat\Uninstall.exe (WDS Team) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinDirStat\WinDirStat.lnk -> C:\Program Files (x86)\WinDirStat\windirstat.exe (Seifert) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp\Uninstall Winamp.lnk -> C:\Program Files (x86)\Winamp\UninstWA.exe (Nullsoft, Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp\Winamp.lnk -> C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Documentation.lnk -> C:\Program Files\VideoLAN\VLC\Documentation.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\Release Notes.lnk -> C:\Program Files\VideoLAN\VLC\NEWS.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VideoLAN Website.lnk -> C:\Program Files\VideoLAN\VLC\VideoLAN Website.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Create System Report.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDLogReport.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\File Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFiles.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Immunization.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDImmunize.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Rootkit Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDRootAlyzer.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Tray Icon (Live Protection).lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Spybot - Search & Destroy 2\Uninstall Spybot-S&D.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype\Skype.lnk -> C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe (Skype Technologies S.A.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape\PhotoScape.lnk -> C:\Program Files (x86)\PhotoScape\PhotoScape.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhotoScape\Uninstall PhotoScape.lnk -> C:\Program Files (x86)\PhotoScape\uninstall.exe (Mooii) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\GeForce Experience.lnk -> C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe (NVIDIA Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Database Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\dbcicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Dziennik telemetryczny dla pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\osmclienticon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Office 2016 Upload Center.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\msouc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Preferencje językowe pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\misc.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Spreadsheet Compare 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\sscicons.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016\Telemetryczny pulpit nawigacyjny dla pakietu Office 2016.lnk -> C:\Windows\Installer\{90160000-0011-0000-1000-0000000FF1CE}\osmadminicon.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24\Napisy24.pl.lnk -> C:\Program Files\Napisy24\Napisy24.exe (Napisy24.pl) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt\Informacje o zmianach.lnk -> C:\Program Files (x86)\NapiProjekt\changelog.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt\NapiProjekt.lnk -> C:\Program Files (x86)\NapiProjekt\napisy.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt\Strona domowa NapiProjekt.lnk -> C:\Program Files (x86)\NapiProjekt\www.url () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Create Recovery Disc.lnk -> C:\Windows\System32\recdisc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Remote Assistance.lnk -> C:\Windows\System32\msra.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Diagnostics Tool\Lenovo Diagnostics Tool .lnk -> C:\Windows\Installer\{01ADF966-E3BA-40DC-9037-E90BBA9ED50E}\Start_E8CE4F44D9194AE9875368E466D56847.exe (Flexera) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files\Java\jre1.8.0_281\bin\javacpl.exe (Oracle Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel Control Center.lnk -> C:\Program Files (x86)\Intel\Intel Control Center\IntelControlCenter.exe (Intel Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Rapid Storage Technology.lnk -> C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorUI.exe (Intel Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\GameExplorer.lnk -> C:\Windows\System32\gameux.dll (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader\Dezinstalacja aplikacji Foxit Reader.lnk -> C:\Program Files (x86)\Foxit Software\Foxit Reader\unins000.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader\Foxit Reader.lnk -> C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReader.exe (Foxit Software Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby\Dolby Demo.lnk -> C:\Program Files (x86)\Dolby Home Theater v4\pcee4d.exe (Dolby Laboratories Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dolby\Dolby Profile.lnk -> C:\Program Files (x86)\Dolby Home Theater v4\pcee4e.exe (Dolby Laboratories Inc.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Creative Software AutoUpdate.lnk -> C:\Program Files (x86)\Creative\Shared Files\Software Update\AutoUpdate.exe (Creative Technology Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Creative System Information.lnk -> C:\Program Files (x86)\Creative\Support\System Information\CTSi.exe (Creative Technology Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Creative Audio Control Panel.lnk -> C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\AudioCS\CTAudCS.exe (Creative Technology Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Creative Entertainment Console.lnk -> C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Console Launcher 3\Entertainment Console\EntC.exe (Creative Technology Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel.lnk -> C:\Program Files (x86)\Creative\Sound Blaster X-Fi Surround 5.1 Pro\Volume Panel\VolPanlu.exe (Creative Technology Ltd) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Read Me.lnk -> C:\Program Files (x86)\Brother\Brmfl10b\RM10aPol.rtf () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Ustawienia skanera\Read Me.lnk -> C:\Program Files (x86)\Brother\Brmfl10b\ScanRead.txt () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Ustawienia skanera\Scanner Utility.lnk -> C:\Program Files (x86)\Brother\Brmfl10b\BrScUtil.exe (Brother Industries Ltd.) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Data Sources (ODBC).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Print Management.lnk -> C:\Windows\System32\printmanagement.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Acronis True Image for Crucial.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageLauncher.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis System Report.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\SystemReport.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Bootable Rescue Media Builder.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\MediaBuilder.exe () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Bluetooth File Transfer Wizard.lnk -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Calculator.lnk -> C:\Windows\System32\calc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\displayswitch.lnk -> C:\Windows\System32\displayswitch.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\NetworkProjection.lnk -> C:\Windows\System32\NetProj.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sound Recorder.lnk -> C:\Windows\System32\SoundRecorder.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sticky Notes.lnk -> C:\Windows\System32\StikyNot.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Sync Center.lnk -> C:\Windows\System32\mobsync.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\Windowspowershell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\ShapeCollector.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\ShapeCollector.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Tablet PC\TabTip.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\TabTip.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\System Restore.lnk -> C:\Windows\System32\rstrui.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer Reports.lnk -> C:\Windows\System32\migwiz\PostMig.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Windows Easy Transfer.lnk -> C:\Windows\System32\migwiz\migwiz.exe (Microsoft Corporation) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip File Manager.lnk -> C:\Program Files\7-Zip\7zFM.exe (Igor Pavlov) Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk -> C:\Program Files\7-Zip\7-zip.chm () Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\DAEMON Tools Lite\DAEMON Tools Lite.lnk -> C:\Program Files\DAEMON Tools Lite\DTLite.exe (Disc Soft Ltd) Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\Spybot-S&D Start Center.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWelcome.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Microsoft\Internet Explorer\Quick Launch\System Scan.lnk -> C:\Program Files (x86)\Spybot - Search & Destroy 2\SDScan.exe (Safer-Networking Ltd.) Shortcut: C:\ProgramData\Intel\ExtremeGraphics\CUI\Resource\Grafika HD Intel®.lnk -> C:\Windows\System32\GfxUI.exe (Intel Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\Links\Downloads.lnk -> C:\Users\Pompon\Downloads () Shortcut: C:\Users\Pompon\Links\RecentPlaces.lnk -> [::{22877A6D-37A1-461A-91B0-DBDA5AAEBC99}] Shortcut: C:\Users\Pompon\Desktop\Crucial Storage Executive.lnk -> C:\Program Files\Crucial\Crucial Storage Executive\StorageExecutiveClient.exe (Crucial) Shortcut: C:\Users\Pompon\Desktop\Dysk lokalny (C) — skrót.lnk -> C:\ () Shortcut: C:\Users\Pompon\Desktop\Dysk lokalny (D) — skrót.lnk -> D:\ () Shortcut: C:\Users\Pompon\Desktop\Dysk lokalny (E) — skrót.lnk -> E:\ () Shortcut: C:\Users\Pompon\Desktop\e-mikrofirma.lnk -> C:\Users\Pompon\AppData\Roaming\Microsoft\Installer\{8553CC3A-61EB-4168-9F5B-0FAB11F8830C}\DesktopIcon.exe () Shortcut: C:\Users\Pompon\Desktop\NapiProjekt.lnk -> C:\Program Files (x86)\NapiProjekt\napisy.exe () Shortcut: C:\Users\Pompon\Desktop\PhotoScape.lnk -> C:\Program Files (x86)\PhotoScape\PhotoScape.exe () Shortcut: C:\Users\Pompon\Desktop\TunePat Netflix Video Downloader.lnk -> C:\Program Files (x86)\TunePat\TunePat Netflix Video Downloader\TunePat Netflix Video Downloader.exe (TunePat) Shortcut: C:\Users\Pompon\Desktop\WinDirStat.lnk -> C:\Program Files (x86)\WinDirStat\windirstat.exe (Seifert) Shortcut: C:\Users\Pompon\Desktop\µTorrent.lnk -> C:\Users\Pompon\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) Shortcut: C:\Users\Pompon\Desktop\PULPIT\kiciowe.lnk -> F:\kiciowe (Brak pliku) Shortcut: C:\Users\Pompon\Desktop\PULPIT\LGg4C\SD\.footprints\SDHC (J) — skrót.lnk -> J:\ (Brak pliku) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\Pompon\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TunePat\TunePat Netflix Video Downloader\TunePat Netflix Video Downloader.lnk -> C:\Program Files (x86)\TunePat\TunePat Netflix Video Downloader\TunePat Netflix Video Downloader.exe (TunePat) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\igfcxpsl.lnk -> C:\ProgramData\system32\igfx3pl.exe (Brak pliku) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\e-mikrofirma.lnk -> C:\Users\Pompon\AppData\Roaming\Microsoft\Installer\{8553CC3A-61EB-4168-9F5B-0FAB11F8830C}\StartMenuIcon.exe () Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance\Help.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Deinstalacja programu Lenovo Service Bridge.lnk -> C:\Users\Pompon\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\unins000.exe () Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Lenovo Service Bridge.lnk -> C:\Users\Pompon\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe (Lenovo Group Limited) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Energy Management\Help file.Lnk -> C:\Program Files (x86)\Lenovo\Energy Management\Pol.chm () Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo\Energy Management\Power management options.Lnk -> C:\Program Files (x86)\Lenovo\Energy Management\Open EnergyManagement.exe () Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crucial Storage Executive\Crucial Storage Executive User Guide.lnk -> C:\Program Files\Crucial\Crucial Storage Executive\user_guide_en.pdf () Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crucial Storage Executive\Crucial Storage Executive.lnk -> C:\Program Files\Crucial\Crucial Storage Executive\StorageExecutiveClient.exe (Crucial) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Crucial Storage Executive\Uninstall Crucial Storage Executive.lnk -> C:\Program Files\Crucial\Crucial Storage Executive\UninstallStorageExecutive.exe (Crucial) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner.lnk -> C:\Program Files\CCleaner\CCleaner64.exe (Piriform Software Ltd) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\computer.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Private Character Editor.lnk -> C:\Windows\System32\eudcedit.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Firefox.lnk -> C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\µTorrent.lnk -> C:\Users\Pompon\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.) Shortcut: C:\Users\Pompon\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\7e4dca80246863e3\pinned.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) Shortcut: C:\Users\Pompon\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe.lnk -> C:\L\LSB\LSB\bin\Release\LSB.exe (Brak pliku) ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Default Programs.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DefaultPrograms ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Windows Update.lnk -> C:\Windows\System32\wuapp.exe (Microsoft Corporation) -> startmenu ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sidebar.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation) -> /showgadgets ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Winamp\Winamp (Safe Mode).lnk -> C:\Program Files (x86)\Winamp\winamp.exe (Winamp SA) -> /SAFE=1 ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player - reset preferences and cache files.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) -> --reset-config --reset-plugins-cache vlc://quit ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN\VLC media player skinned.lnk -> C:\Program Files\VideoLAN\VLC\vlc.exe (VideoLAN) -> -Iskins ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Disable 3D Vision.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /disable ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\Enable 3D Vision.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /enable ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt\Napisy oczekujące na pobranie.lnk -> C:\Program Files (x86)\NapiProjekt\napisy.exe () -> -kolejka ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maintenance\Backup and Restore Center.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.BackupAndRestore ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files\Java\jre1.8.0_281\bin\javacpl.exe (Oracle Corporation) -> -tab about ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files\Java\jre1.8.0_281\bin\javacpl.exe (Oracle Corporation) -> -tab update ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\Diagnostyka ręczna WiFi.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel(R) Corporation) -> /sf Wireless Diagnostics ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\Przeglądarka zdarzeń WiFi.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel(R) Corporation) -> /sf Wireless Event Viewer ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless\Statystyka zaawansowana WiFi.lnk -> C:\Program Files\Common Files\Intel\WirelessCommon\imFrmwrk.exe (Intel(R) Corporation) -> /sf Advanced Statistics ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\On Screen Display.lnk -> C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd.) -> -1 PanelSvcSettings "C:\Program Files (x86)\Creative\Shared Files\Module Loader\OSD\PanelSvc.dll" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Product Registration.lnk -> C:\Program Files (x86)\Creative\Product Registration\English\InetReg.exe (Creative Technology Ltd) -> /PreProcess=RegFlash.exe ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative\Remote Control Settings.lnk -> C:\Program Files (x86)\Creative\Shared Files\Module Loader\DLLML.exe (Creative Technology Ltd.) -> -1 RCSettings * ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\ControlCenter3.lnk -> C:\Program Files (x86)\Brother\ControlCenter3\BrCtrCen.exe (Brother Industries, Ltd.) -> /Model=DCP-J315W LAN ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Instalowanie diagnostyki.lnk -> C:\Program Files (x86)\Brother\Brmfl10b\Brinstck.exe (Brother Industries, Ltd.) -> DCP-J315W LAN ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Odinstaluj.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{FB83EAC4-E3F6-4666-B45B-44522F2344B6}\setup.exe (Macrovision Corporation) -> -runfromtemp -l0x0015 UNINSTALL Reg=BH9e2_C1,Brother DCP-J315W,LAN ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Rejestracja On-Line.lnk -> C:\Program Files (x86)\Brother\Brmfl10b\Brolink\Brolink0.exe (Brother Industories, Ltd.) -> OLR_URL /mDCP-J315W ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Sieciowe Centrum PhotoCapture.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> "ftp://BRW00225818ED37" ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Status Monitor.lnk -> C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) -> Brother DCP-J315W Printer on BRW00225818ED37 /SHOW ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Ustawienia skanera\Skanery i aparaty fotograficzne.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ScannersAndCameras ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Security Configuration Management.lnk -> C:\Windows\System32\secpol.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows PowerShell Modules.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation) -> -NoExit -ImportSystemModules ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis DriveCleanser.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /drive_cleanser ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis Secure Zone.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /manage_asz ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Acronis Startup Recovery Manager.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /asz_recovery_manager ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Add New Disk.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /add_new_disk ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis\True Image\Tools and Utilities\Clone Disk.lnk -> C:\Program Files (x86)\Acronis\TrueImageHome\TrueImageTools.exe () -> /clone_disk ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation) -> /open ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Welcome Center.lnk -> C:\Windows\System32\rundll32.exe (Microsoft Corporation) -> %SystemRoot%\system32\OobeFldr.dll,ShowWelcomeCenter LaunchedBy_StartMenuShortcut ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo ShortcutWithArgument: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów\Deinstalacja Aplikacji e-mikrofirma.lnk -> C:\Windows\System32\msiexec.exe (Microsoft Corporation) -> /x {8553CC3A-61EB-4168-9F5B-0FAB11F8830C} ShortcutWithArgument: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Internet Explorer (No Add-ons).lnk -> C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) -> -extoff ShortcutWithArgument: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Accessibility\Ease of Access.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.EaseOfAccessCenter ShortcutWithArgument: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy24\Strona internetowa aplikacji Napisy24.pl.url -> URL: hxxp://napisy24.pl/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> URL: hxxps://java.com/help InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> URL: hxxps://java.com/ InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Brother Creative Center.url -> URL: "hxxp://www.brother.com/creativecenter/?WT.mc_id=AF" InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Podręczniki użytkownika w formacie PDF.url -> URL: hxxp://solutions.brother.com/cgi-bin/solutions.cgi?MDL=mfc289&LNG=pl&SRC=DOC InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\DCP-J315W LAN\Pomoc online i często zadawane pytania (FAQ).url -> URL: hxxp://solutions.brother.com/cgi-bin/solutions.cgi?MDL=mfc289&LNG=pl&SRC=FAQ InternetURL: C:\Users\Pompon\Favorites\Links for Polska\Bezpieczeństwo w trybie online.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=142211 InternetURL: C:\Users\Pompon\Favorites\Links for Polska\Bezpieczny Internet.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129626 InternetURL: C:\Users\Pompon\Favorites\Links for Polska\Kultura.pl.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129625 InternetURL: C:\Users\Pompon\Favorites\Links for Polska\Pogodynka.pl — oficjalny serwis pogodowy IMGW.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129624 InternetURL: C:\Users\Pompon\Favorites\Links for Polska\Polska.pl.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=129622 InternetURL: C:\Users\Pompon\Favorites\Links\Galeria obiektów Web Slice.url -> URL: hxxp://go.microsoft.com/fwlink/?LinkId=121315 InternetURL: C:\Users\Pompon\Favorites\Links\Sugerowane witryny.url -> URL: hxxps://ieonline.microsoft.com/#ieslice InternetURL: C:\Users\Pompon\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CCleaner\CCleaner Homepage.url -> URL: hxxp://www.ccleaner.com/ccleaner ==================== Koniec Shortcut.txt =============================