Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 15-03-2017 Uruchomiony przez NICOLE (administrator) KOMPUTER (15-04-2017 17:48:56) Uruchomiony z C:\Users\NICOLE\Desktop Załadowane profile: NICOLE & Gość (Dostępne profile: NICOLE & Gość) Platform: Windows 8.1 (Update) (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Opera) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe () C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\afwServ.exe (Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (BlueStack Systems, Inc.) C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe (Digital Wave Ltd.) C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe () C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (McAfee, Inc.) C:\Program Files (x86)\McAfee\SiteAdvisor\mcsacore.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe () C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe () C:\Program Files\ByteFence\rtop\bin\rtop_bg.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Secure VPN\VpnSvc.exe (TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe () C:\Program Files (x86)\UCBrowser\Application\UCService.exe (McAfee, Inc.) C:\Program Files\Common Files\mcafee\systemcore\mfefire.exe (Toshiba Corporation) C:\Program Files\TOSHIBA\Teco\TecoService.exe (Byte Technologies LLC) C:\Program Files\ByteFence\ByteFence.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe (AVAST Software s.r.o.) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Teco\TecoResident.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxsrvc.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (© 2015 Microsoft Corporation) C:\Users\NICOLE\AppData\Local\Microsoft\BingSvc\BingSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (BitTorrent Inc.) C:\Users\NICOLE\AppData\Roaming\uTorrent\uTorrent.exe (Spotify Ltd) C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe (Microsoft Corporation) C:\Windows\System32\StikyNot.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Secure VPN\Vpn.exe (Alcor Micro Corp.) C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe (Emotiplus) C:\Users\NICOLE\AppData\Local\Emotiplus\Emotiplus.exe (TOSHIBA) C:\Program Files (x86)\TOSHIBA\PasswordUtility\readLM.exe (BitTorrent Inc.) C:\Users\NICOLE\AppData\Roaming\uTorrent\updates\3.5.0_43580\utorrentie.exe (Facebook) C:\Users\NICOLE\AppData\Local\Facebook\Games\FacebookGameroom.exe (iSkySoft) C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe (BitTorrent Inc.) C:\Users\NICOLE\AppData\Roaming\uTorrent\updates\3.5.0_43580\utorrentie.exe (Orzilia Ltd.) C:\Program Files (x86)\Tv-Plug-In\Tv-Plug-In.exe () C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe (Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Orzilia Ltd.) C:\Program Files (x86)\Tv-Plug-In\Tv-Plug-In.exe (WildTangent) C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe (HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (The CefSharp Authors) C:\Users\NICOLE\AppData\Local\Facebook\Games\Facebook Gameroom Browser.exe (Toshiba Europe GmbH) C:\Program Files (x86)\Toshiba TEMPRO\Toshiba.Tempro.UI.CommonNotifier.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHSrv.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TPHM\TPCHWMsg.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (CyberLink) C:\Program Files\Cyberlink\Shared files\RichVideo64.exe (TOSHIBA Corporation) C:\Program Files\TOSHIBA\TOSHIBA Service Station\TMachInfo.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera_crashreporter.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe (Orzilia Ltd.) C:\Users\NICOLE\AppData\Roaming\Tv-Plug-In\TvPluginUpdater.exe (Opera Software) C:\Program Files (x86)\Opera\43.0.2442.1144\opera.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [] => [X] HKLM\...\Run: [TSSSrv] => C:\Program Files (x86)\TOSHIBA\System Setting\TSSSrv.exe [296520 2013-09-12] (TOSHIBA Corporation) HKLM\...\Run: [TecoResident] => C:\Program Files\TOSHIBA\Teco\TecoResident.exe [178016 2013-08-21] (TOSHIBA Corporation) HKLM\...\Run: [TosWaitSrv] => C:\Program Files\TOSHIBA\TPHM\TosWaitSrv.exe [354144 2013-08-14] (TOSHIBA Corporation) HKLM\...\Run: [TCrdMain] => C:\Program Files\TOSHIBA\Hotkey\TCrdMain_Win8.exe [2556768 2013-08-18] (TOSHIBA Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2778864 2014-08-06] (Synaptics Incorporated) HKLM\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239104 2017-03-23] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [263088 2017-04-04] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [213824 2017-04-05] (AVAST Software) HKLM-x32\...\Run: [AmIcoSinglun64] => C:\Program Files (x86)\AmIcoSingLun\AmIcoSinglun64.exe [383768 2002-04-12] (Alcor Micro Corp.) HKLM-x32\...\Run: [1.TPUReg] => C:\Program Files (x86)\TOSHIBA\PasswordUtility\readLM.exe [2216800 2013-03-27] (TOSHIBA) HKLM-x32\...\Run: [TSVU] => c:\Program Files\TOSHIBA\TOSHIBA Smart View Utility\TosSmartViewLauncher.exe [516512 2013-07-23] (TOSHIBA) HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1160408 2016-12-17] (Adobe Systems Incorporated) HKLM-x32\...\Run: [QuickTime Task] => "C:\Program Files (x86)\QuickTime\qttask.exe" -atboottime HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239104 2017-03-23] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [iSkysoft Helper Compact.exe] => C:\Program Files (x86)\Common Files\iSkysoft\iSkysoft Helper Compact\ISHelper.exe [2080768 2014-09-12] (iSkySoft) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239104 2017-03-23] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Tv-Plug-In] => C:\Program Files (x86)\Tv-Plug-In\Tv-Plug-In.exe [312552 2015-02-24] (Orzilia Ltd.) HKLM-x32\...\Run: [ProductUpdater] => C:\Program Files (x86)\Common Files\Freemake Shared\ProductUpdater\ProductUpdater.exe [75776 2016-11-24] () HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2137744 2016-10-08] (Wondershare) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-12-12] (Oracle Corporation) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKLM\...\Policies\Explorer: [NoInternetOpenWith] 1 HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3044816 2017-03-17] (Electronic Arts) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [BingSvc] => C:\Users\NICOLE\AppData\Local\Microsoft\BingSvc\BingSvc.exe [144008 2015-11-12] (© 2015 Microsoft Corporation) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [uTorrent] => C:\Users\NICOLE\AppData\Roaming\uTorrent\uTorrent.exe [2144448 2017-04-12] (BitTorrent Inc.) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [Gameo] => C:\Users\NICOLE\AppData\Roaming\Gameo\gameo.exe "C:\Users\NICOLE\AppData\Roaming\Gameo\gameo.dat" mode:minimized HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [Spotify Web Helper] => C:\Program Files (x86)\Spotify\Data\SpotifyWebHelper.exe [1199576 2013-09-19] (Spotify Ltd) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [BlueStacks Agent] => C:\Program Files (x86)\BlueStacks\HD-Agent.exe [1694344 2016-12-13] (BlueStack Systems, Inc.) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [RESTART_STICKY_NOTES] => C:\Windows\System32\StikyNot.exe [479744 2014-10-29] (Microsoft Corporation) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [EmotiplusHelper] => C:\Users\NICOLE\AppData\Local\EmotiplusHelper\EmotiplusHelper.exe [136088 2017-01-31] (Emotiplus) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048 2017-03-14] (Skype Technologies S.A.) HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\MountPoints2: {1cd2640d-6300-11e6-8323-0c54a52fe526} - "D:\Autorun.exe" HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\MountPoints2: {35973888-2f28-11e6-8304-0c54a52fe526} - "C:\Windows\system32\RunDLL32.EXE" Shell32.DLL,ShellExec_RunDLL E:\Start.hta HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\...\MountPoints2: {b68051cf-1f2b-11e5-829e-0c54a52fe526} - "E:\LGAutoRun.exe" AppInit_DLLs: C:\ProgramData\Utatity\Zoomstrong.dll => C:\ProgramData\Utatity\Zoomstrong.dll [805376 2015-12-25] () ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-04-05] (AVAST Software) ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-04-05] (AVAST Software) ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-04-05] (AVAST Software) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\AVG Secure VPN.lnk [2017-04-15] ShortcutTarget: AVG Secure VPN.lnk -> C:\Program Files (x86)\AVG\Secure VPN\Vpn.exe (AVG Technologies CZ, s.r.o.) Startup: C:\Users\NICOLE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Emotiplus.lnk [2016-06-29] ShortcutTarget: Emotiplus.lnk -> C:\Users\NICOLE\AppData\Local\Emotiplus\Emotiplus.exe (Emotiplus) Startup: C:\Users\NICOLE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-03-22] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\NICOLE\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{2162F727-B5C3-4A33-A6A3-63BD8543528E}: [DhcpNameServer] 127.0.0.1 Tcpip\..\Interfaces\{9EA4B834-1ED9-4838-B1CF-0D026E22CDB8}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{9EA4B834-1ED9-4838-B1CF-0D026E22CDB8}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{A2B88241-1A6C-4D5C-AFDB-B0C8A41A9CB8}: [DhcpNameServer] 10.1.4.1 8.8.8.8 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.omniboxes.com/?type=hp&ts=1448439111&z=d133250fd22c24a36c042b3g5z8zdbez3c0t7g0edt&from=ient07021&uid=HGSTXHTS545050A7E380_130918TM85134T2Y10XLX HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://toshiba13.msn.com/?pc=TEJB hxxp://toshiba.eu/symbaloo_c HKU\S-1-5-21-2025162763-2227396240-2464615446-501\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2025162763-2227396240-2464615446-501\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://toshiba13.msn.com/?pc=TEJB HKU\S-1-5-21-2025162763-2227396240-2464615446-501\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://toshiba.eu/symbaloo_c SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKLM-x32 -> DefaultScope - brak wartości SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-2025162763-2227396240-2464615446-1001 -> {22B11BD7-E227-4F28-B419-93B32706FB92} URL = SearchScopes: HKU\S-1-5-21-2025162763-2227396240-2464615446-1001 -> {95B7759C-8C7F-4BF1-B163-73684A933233} URL = hxxps://mysearch.avg.com/search?cid={56F25554-ADF3-412D-AB9E-C3D6215B8740}&mid=dd003c7f262547d2a1d9b513424d02cc-a73a5fcae03011f6275d4497fcdac0ba117b498d&lang=pl&ds=AVG&coid=avgtbavg&cmpid=1215tb&pr=fr&d=2014-06-19 19:38:24&v=19.0.0.10&pid=safeguard&sg=&sap=dsp&q={searchTerms} SearchScopes: HKU\S-1-5-21-2025162763-2227396240-2464615446-1001 -> {ielnksrch} URL = hxxp://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBPxn49PYmQ6e1krQXBFZY3cspTp75tL3NbcfenwkTxGKuh0dGlGpBAlETq_qUc27ncBJ94aeYdoYk_aJ5VSi9d3_ruR738v5cF-no5d87oPNk6mHyFvt_z7QVMCmglJGeVlLpNHnw8ZfyaNoxrFXE9SO0-U7t7-Cx5Yw,,&q={searchTerms} SearchScopes: HKU\S-1-5-21-2025162763-2227396240-2464615446-501 -> DefaultScope {22B11BD7-E227-4F28-B419-93B32706FB92} URL = SearchScopes: HKU\S-1-5-21-2025162763-2227396240-2464615446-501 -> {22B11BD7-E227-4F28-B419-93B32706FB92} URL = BHO: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-03-27] (McAfee, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\ssv.dll [2017-04-13] (Oracle Corporation) BHO-x32: McAfee WebAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-03-27] (McAfee, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\jp2ssv.dll [2017-04-13] (Oracle Corporation) Toolbar: HKU\S-1-5-21-2025162763-2227396240-2464615446-1001 -> Brak nazwy - {E7DF6BFF-55A5-4EB7-A673-4ED3E9456D39} - Brak pliku Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-03-27] (McAfee, Inc.) Handler-x32: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-03-27] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\x64\McIEPlg.dll [2017-03-27] (McAfee, Inc.) Handler-x32: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files (x86)\McAfee\SiteAdvisor\McIEPlg.dll [2017-03-27] (McAfee, Inc.) FireFox: ======== FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF Extension: (McAfee WebAdvisor) - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi [2017-02-14] FF HKLM-x32\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files (x86)\McAfee\SiteAdvisor\saffplg.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_148.dll [2017-04-11] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_148.dll [2017-04-11] () FF Plugin-x32: @gametree.co.kr/GTL -> C:\ProgramData\Gametree\GTL\npGTL.dll [2013-06-13] (NtreevSoft) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\dtplugin\npDeployJava1.dll [2017-04-13] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.121.2 -> C:\Program Files (x86)\Java\jre1.8.0_121\bin\plugin2\npjp2.dll [2017-04-13] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50906.0\npctrl.dll [2017-03-09] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-04-01] (Microsoft Corporation) FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2017-03-13] () FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-12-17] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-2025162763-2227396240-2464615446-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\NICOLE\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2009-11-30] (Unity Technologies ApS) Chrome: ======= CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-29] CHR HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx CHR HKU\S-1-5-21-2025162763-2227396240-2464615446-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files (x86)\McAfee\SiteAdvisor\McChPlg.crx [2016-06-29] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7398336 2017-04-05] (AVAST Software s.r.o.) R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [312448 2013-08-22] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego] R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [261712 2017-04-05] (AVAST Software) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [262696 2017-04-04] (AVG Technologies CZ, s.r.o.) R2 AVG Firewall; C:\Program Files (x86)\AVG\Antivirus\afwServ.exe [311488 2017-04-13] (AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7448992 2017-04-04] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428680 2017-03-23] (AVG Technologies CZ, s.r.o.) S2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [729048 2017-03-23] (AVG Technologies CZ, s.r.o.) S3 BstHdAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Service.exe [486936 2016-12-13] (BlueStack Systems, Inc.) R2 BstHdLogRotatorSvc; C:\Program Files (x86)\BlueStacks\HD-LogRotatorService.exe [470552 2016-12-13] (BlueStack Systems, Inc.) S3 BstHdPlusAndroidSvc; C:\Program Files (x86)\BlueStacks\HD-Plus-Service.exe [511512 2016-12-13] (BlueStack Systems, Inc.) R2 DigitalWave.Update.Service; C:\Program Files (x86)\Common Files\DVDVideoSoft\lib\app_updater.exe [388968 2015-12-11] (Digital Wave Ltd.) R2 dts_apo_service; C:\Program Files (x86)\DTS, Inc\DTS Studio Sound\dts_apo_service.exe [19792 2013-09-10] () S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [104448 2016-11-24] (Freemake) [Brak podpisu cyfrowego] R2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350576 2017-03-13] (WildTangent) R2 GFNEXSrv; C:\Program Files (x86)\TOSHIBA\PasswordUtility\GFNEXSrv.exe [163168 2013-03-27] () R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [31776 2016-12-07] (HP Inc.) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-09-04] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation) R2 McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [188264 2017-03-27] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [219272 2013-08-07] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [182752 2013-08-07] (McAfee, Inc.) S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [5560840 2016-05-11] (INCA Internet Co., Ltd.) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2123240 2017-03-17] (Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2184688 2017-03-17] (Electronic Arts) R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2015-09-23] (CyberLink) R2 rtop; C:\Program Files\ByteFence\rtop\bin\rtop_svc.exe [304456 2017-04-15] () R2 SecureVpn; C:\Program Files (x86)\AVG\Secure VPN\VpnSvc.exe [2154704 2017-04-03] (AVG Technologies CZ, s.r.o.) R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [339456 2013-08-16] (IDT, Inc.) [Brak podpisu cyfrowego] S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [116088 2013-07-19] (Toshiba Europe GmbH) R2 UCBrowserSvc; C:\Program Files (x86)\UCBrowser\Application\UCService.exe [935720 2016-10-31] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) S2 BstHdUpdaterSvc; C:\Program Files (x86)\BlueStacks\HD-UpdaterService.exe [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [307736 2017-04-05] (AVAST Software s.r.o.) R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-04-05] (AVAST Software s.r.o.) R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334088 2017-04-05] (AVAST Software s.r.o.) R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-04-05] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-04-05] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [127112 2017-04-05] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [101152 2017-04-05] (AVAST Software) R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-04-05] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1005048 2017-04-05] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [556784 2017-04-05] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [164064 2017-04-05] (AVAST Software) R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [339696 2017-04-05] (AVAST Software) R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3858944 2013-10-24] (Qualcomm Atheros Communications, Inc.) R1 avgbdisk; C:\Windows\system32\drivers\avgbdiska.sys [166136 2017-04-04] (AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\Windows\system32\drivers\avgbidsdrivera.sys [310056 2017-04-04] (AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\Windows\system32\drivers\avgbidsha.sys [192096 2017-04-04] (AVG Technologies CZ, s.r.o.) R0 avgblog; C:\Windows\system32\drivers\avgbloga.sys [336408 2017-04-04] (AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\Windows\system32\drivers\avgbuniva.sys [50848 2017-04-04] (AVG Technologies CZ, s.r.o.) S3 avgHwid; C:\Windows\system32\drivers\avgHwid.sys [39288 2017-04-04] (AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\Windows\system32\drivers\avgMonFlt.sys [128096 2017-04-04] (AVG Technologies CZ, s.r.o.) R1 avgNetSec; C:\Windows\system32\drivers\avgNetSec.sys [506864 2017-04-13] (AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\Windows\system32\drivers\avgRdr2.sys [102136 2017-04-04] (AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\Windows\system32\drivers\avgRvrt.sys [76688 2017-04-04] (AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\Windows\system32\drivers\avgSnx.sys [1006040 2017-04-04] (AVG Technologies CZ, s.r.o.) R1 avgSP; C:\Windows\system32\drivers\avgSP.sys [557776 2017-04-04] (AVG Technologies CZ, s.r.o.) R2 avgStm; C:\Windows\system32\drivers\avgStm.sys [165048 2017-04-04] (AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\Windows\system32\drivers\avgVmm.sys [340688 2017-04-04] (AVG Technologies CZ, s.r.o.) S3 AX88772; C:\Windows\system32\DRIVERS\ax88772.sys [113864 2013-07-18] (ASIX Electronics Corp.) R2 BstHdDrv; C:\Program Files (x86)\BlueStacks\HD-Hypervisor-amd64.sys [152672 2016-12-13] (BlueStack Systems) S3 BstkDrv; C:\Program Files (x86)\BlueStacks\BstkDrv.sys [270904 2016-11-08] (Bluestack System Inc. ) S3 cfwids; C:\Windows\System32\drivers\cfwids.sys [70112 2013-08-07] (McAfee, Inc.) S3 dot4; C:\Windows\system32\DRIVERS\Dot4.sys [151968 2012-10-19] (Windows (R) Win 7 DDK provider) S3 Dot4Print; C:\Windows\System32\drivers\Dot4Prt.sys [27040 2012-10-19] (Windows (R) Win 7 DDK provider) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation) S3 mfeapfk; C:\Windows\System32\drivers\mfeapfk.sys [179664 2013-08-07] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [310224 2013-08-07] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [69264 2013-08-07] (McAfee, Inc.) R3 mfefirek; C:\Windows\System32\drivers\mfefirek.sys [519064 2013-08-07] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [776168 2013-08-07] (McAfee, Inc.) R3 mfesapsn; C:\Program Files (x86)\McAfee\SiteAdvisor\x64\mfesapsn.sys [46240 2016-06-06] (McAfee, Inc.) R0 mfewfpk; C:\Windows\System32\drivers\mfewfpk.sys [343568 2013-08-07] (McAfee, Inc.) R2 PEGAGFN; C:\Program Files (x86)\TOSHIBA\PasswordUtility\PEGAGFN.sys [14344 2009-09-11] (PEGATRON) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [13512 2015-12-07] () S3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [1936088 2013-07-31] (Realtek Semiconductor Corporation ) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2014-08-06] (Synaptics Incorporated) S3 ssudserd; C:\Windows\system32\DRIVERS\ssudserd.sys [214832 2015-12-08] (DEVGURU Co., LTD.(www.devguru.co.kr)) R3 Thotkey; C:\Windows\System32\drivers\Thotkey.sys [32624 2013-08-19] (Windows (R) Win 7 DDK provider) R1 ucdrv; C:\Windows\System32\drivers:ucdrv-x64.sys [80850 ] (UC Web Inc.) <==== UWAGA R1 UCGuard; C:\Windows\System32\DRIVERS\ucguard.sys [81792 2016-08-02] (Huorong Borui (Beijing) Technology Co., Ltd.) <==== UWAGA S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) S3 dump_wmimmc; \??\c:\program files (x86)\gameforgelive\games\pol_pol\elsword\data\GameGuard\dump_wmimmc.sys [X] S1 mukzqcar; \??\C:\Windows\system32\drivers\mukzqcar.sys [X] S1 oulmatix; \??\C:\Windows\system32\drivers\oulmatix.sys [X] S1 qvfwgljr; \??\C:\Windows\system32\drivers\qvfwgljr.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-15 17:48 - 2017-04-15 17:51 - 00032026 _____ C:\Users\NICOLE\Desktop\FRST.txt 2017-04-15 17:47 - 2017-04-15 17:48 - 00000000 ____D C:\FRST 2017-04-15 17:44 - 2017-04-15 17:44 - 02424832 _____ (Farbar) C:\Users\NICOLE\Desktop\FRST64.exe 2017-04-15 17:38 - 2017-04-15 17:38 - 01766912 _____ (Farbar) C:\Users\NICOLE\Downloads\FRST.exe 2017-04-15 14:23 - 2017-04-15 14:25 - 04089296 _____ C:\Users\NICOLE\Downloads\adwcleaner_6.045_www.INSTALKI.pl.exe 2017-04-15 14:03 - 2017-04-15 14:03 - 00003910 _____ C:\Windows\System32\Tasks\AVG Secure VPN Update 2017-04-15 14:03 - 2017-04-15 14:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2017-04-14 14:53 - 2017-04-14 14:53 - 00286224 _____ C:\Windows\Minidump\041417-44828-01.dmp 2017-04-13 22:04 - 2017-04-13 22:04 - 00000000 ____D C:\ProgramData\SWCUTemp 2017-04-13 21:57 - 2017-04-13 21:55 - 00506864 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetSec.sys 2017-04-13 21:56 - 2017-04-04 18:02 - 00400928 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe 2017-04-13 19:39 - 2017-04-13 19:39 - 00286224 _____ C:\Windows\Minidump\041317-52562-01.dmp 2017-04-13 19:24 - 2017-04-01 03:12 - 00835576 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-04-13 19:24 - 2017-04-01 03:12 - 00177656 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-04-13 18:34 - 2017-03-21 15:11 - 00875712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr120_clr0400.dll 2017-04-13 18:34 - 2017-03-21 15:11 - 00869568 _____ (Microsoft Corporation) C:\Windows\system32\msvcr120_clr0400.dll 2017-04-13 18:34 - 2017-03-21 15:11 - 00678592 _____ (Microsoft Corporation) C:\Windows\system32\msvcp120_clr0400.dll 2017-04-13 18:34 - 2017-03-21 15:11 - 00536768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp120_clr0400.dll 2017-04-13 13:19 - 2017-04-13 13:19 - 00000000 ____D C:\Users\NICOLE\AppData\Local\AVAST Software 2017-04-13 12:09 - 2017-04-13 12:10 - 00286224 _____ C:\Windows\Minidump\041317-66812-01.dmp 2017-04-13 11:45 - 2017-04-13 11:45 - 00003438 _____ C:\Windows\System32\Tasks\Reimage Reminder 2017-04-13 11:44 - 2017-04-13 11:44 - 00004276 _____ C:\Windows\System32\Tasks\ReimageUpdater 2017-04-13 11:43 - 2017-04-13 11:44 - 00000000 ____D C:\ProgramData\Reimage Protector 2017-04-13 11:43 - 2017-04-13 11:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Reimage Repair 2017-04-13 11:42 - 2017-04-13 11:46 - 00000000 ____D C:\rei 2017-04-13 11:42 - 2017-04-13 11:43 - 00000000 ____D C:\Program Files\Reimage 2017-04-13 11:40 - 2017-04-14 14:42 - 00000150 _____ C:\Windows\Reimage.ini 2017-04-13 11:40 - 2017-04-13 11:40 - 00604928 _____ (Reimage) C:\Users\NICOLE\Downloads\ReimageRepair (1).exe 2017-04-13 11:37 - 2017-04-13 11:40 - 00604928 _____ (Reimage) C:\Users\NICOLE\Downloads\ReimageRepair.exe 2017-04-12 19:41 - 2017-04-15 15:47 - 00000000 ____D C:\Users\NICOLE\AppData\LocalLow\uTorrent 2017-04-12 18:20 - 2017-03-25 21:39 - 20284416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2017-04-12 18:20 - 2017-03-25 21:07 - 04604416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2017-04-12 18:20 - 2017-03-25 21:06 - 13654016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2017-04-12 18:20 - 2017-03-25 20:55 - 02767360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2017-04-12 18:20 - 2017-03-25 19:52 - 25746944 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2017-04-12 18:20 - 2017-03-25 18:28 - 15259136 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2017-04-12 18:20 - 2017-03-25 18:24 - 03241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2017-04-12 18:20 - 2017-03-14 16:26 - 03714560 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll 2017-04-12 18:20 - 2017-03-09 23:13 - 04169216 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2017-04-12 18:19 - 2017-03-25 20:52 - 02289152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2017-04-12 18:19 - 2017-03-25 20:51 - 01313280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2017-04-12 18:19 - 2017-03-25 20:48 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2017-04-12 18:19 - 2017-03-25 20:47 - 02055680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2017-04-12 18:19 - 2017-03-25 20:47 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2017-04-12 18:19 - 2017-03-25 20:46 - 00693248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2017-04-12 18:19 - 2017-03-25 20:46 - 00663552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2017-04-12 18:19 - 2017-03-25 20:46 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2017-04-12 18:19 - 2017-03-25 20:45 - 00880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll 2017-04-12 18:19 - 2017-03-25 20:45 - 00330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2017-04-12 18:19 - 2017-03-25 20:13 - 00576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2017-04-12 18:19 - 2017-03-25 20:10 - 02898432 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2017-04-12 18:19 - 2017-03-25 19:56 - 00817664 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2017-04-12 18:19 - 2017-03-25 19:41 - 06045696 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2017-04-12 18:19 - 2017-03-25 19:12 - 01033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll 2017-04-12 18:19 - 2017-03-25 19:04 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2017-04-12 18:19 - 2017-03-25 19:00 - 00725504 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2017-04-12 18:19 - 2017-03-25 19:00 - 00378880 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2017-04-12 18:19 - 2017-03-25 18:59 - 00806912 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2017-04-12 18:19 - 2017-03-25 18:57 - 02131456 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2017-04-12 18:19 - 2017-03-25 18:10 - 01546240 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2017-04-12 18:19 - 2017-03-25 18:01 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2017-04-12 18:19 - 2017-03-25 06:43 - 01375960 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2017-04-12 18:19 - 2017-03-24 20:24 - 01094656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2017-04-12 18:19 - 2017-03-14 21:06 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe 2017-04-12 18:19 - 2017-03-14 16:09 - 02240512 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll 2017-04-12 18:19 - 2017-03-14 16:08 - 00897024 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll 2017-04-12 18:19 - 2017-03-14 16:06 - 00726528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll 2017-04-12 18:19 - 2017-03-13 18:13 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe 2017-04-12 18:19 - 2017-03-13 18:12 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll 2017-04-12 18:19 - 2017-03-13 18:08 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll 2017-04-12 18:19 - 2017-03-13 18:08 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll 2017-04-12 18:19 - 2017-03-13 17:59 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll 2017-04-12 18:19 - 2017-03-13 17:59 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe 2017-04-12 18:19 - 2017-03-13 17:56 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll 2017-04-12 18:19 - 2017-03-12 17:04 - 00033792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BasicRender.sys 2017-04-12 18:19 - 2017-03-11 05:59 - 01763888 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll 2017-04-12 18:19 - 2017-03-11 05:56 - 01489608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll 2017-04-12 18:19 - 2017-03-11 05:49 - 01549144 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys 2017-04-12 18:19 - 2017-03-11 05:49 - 00388440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys 2017-04-12 18:19 - 2017-03-11 05:44 - 00373080 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2017-04-12 18:19 - 2017-03-11 05:41 - 00315224 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2017-04-12 18:19 - 2017-03-09 23:08 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2017-04-12 18:19 - 2017-03-09 21:29 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2017-04-12 18:19 - 2017-03-08 01:25 - 01661064 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll 2017-04-12 18:19 - 2017-03-08 01:21 - 01212760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll 2017-04-12 18:19 - 2017-03-04 21:24 - 00132096 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2017-04-12 18:19 - 2017-03-04 21:06 - 00091648 _____ (Microsoft Corporation) C:\Windows\system32\asycfilt.dll 2017-04-12 18:19 - 2017-03-04 20:15 - 00077824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\asycfilt.dll 2017-04-12 18:19 - 2017-03-04 18:37 - 03547648 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2017-04-12 18:19 - 2017-03-03 17:11 - 01697792 _____ (Microsoft Corporation) C:\Windows\system32\quartz.dll 2017-04-12 18:19 - 2017-03-03 17:10 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\mfmjpegdec.dll 2017-04-12 18:19 - 2017-03-03 17:06 - 01501184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\quartz.dll 2017-04-12 18:19 - 2017-03-03 17:04 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmjpegdec.dll 2017-04-10 20:33 - 2017-04-10 20:36 - 12990669 _____ C:\Users\NICOLE\Downloads\TOP-Animacje, przerywniki i dodatki do filmów - 1 CZYTAJ OPIS.mp4 2017-04-09 17:49 - 2017-04-09 17:49 - 01255768 _____ ( ) C:\Users\NICOLE\Downloads\Microsoft-Office-2007-PL-Service-Pack-1-12126-AsystentPobierania.exe 2017-04-05 19:26 - 2017-04-05 19:26 - 00399944 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-04-05 16:25 - 2017-04-05 16:25 - 00450142 _____ C:\Users\NICOLE\Downloads\Alicia_Launcher_Install_Beta (1).exe 2017-04-05 16:25 - 2017-04-05 16:25 - 00011999 _____ C:\Users\NICOLE\Downloads\Alicia_setup_008 (1).torrent 2017-04-04 18:45 - 2017-03-30 21:08 - 00513192 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2017-04-04 18:03 - 2017-04-14 15:20 - 00004178 _____ C:\Windows\System32\Tasks\Antivirus Emergency Update 2017-04-04 18:03 - 2017-04-04 18:02 - 00557776 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00340688 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00165048 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgStm.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00128096 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00102136 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00076688 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys 2017-04-04 18:03 - 2017-04-04 18:02 - 00039288 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgHwid.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 01006040 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 00336408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbloga.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 00310056 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdrivera.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 00192096 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsha.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 00166136 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbdiska.sys 2017-04-04 18:03 - 2017-04-04 18:01 - 00050848 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniva.sys 2017-04-01 15:29 - 2017-04-03 17:05 - 00000000 ____D C:\Program Files (x86)\Star Stable Online 2017-04-01 15:29 - 2017-04-01 15:29 - 00002783 _____ C:\Users\Public\Desktop\Star Stable Online.lnk 2017-04-01 15:29 - 2017-04-01 15:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Stable Online 2017-04-01 15:25 - 2017-04-01 15:27 - 09675152 _____ (Star Stable Entertainment AB) C:\Users\NICOLE\Downloads\StarStableOnlineSetup.exe 2017-04-01 00:04 - 2017-04-01 01:47 - 1212018712 ____R (NtreevSoft) C:\Users\NICOLE\Downloads\Alicia_setup_008.exe 2017-04-01 00:02 - 2017-04-01 00:02 - 00450142 _____ C:\Users\NICOLE\Downloads\Alicia_Launcher_Install_Beta.exe 2017-04-01 00:02 - 2017-04-01 00:02 - 00011999 _____ C:\Users\NICOLE\Downloads\Alicia_setup_008.torrent 2017-03-30 14:22 - 2017-03-30 14:22 - 00053248 _____ C:\Users\NICOLE\Downloads\opengl32.dll 2017-03-29 19:59 - 2017-03-29 19:59 - 00276176 _____ (Spotify Ltd) C:\Users\NICOLE\Downloads\SpotifySetup.exe 2017-03-29 19:01 - 2017-03-29 19:01 - 00000000 ____D C:\Program Files\Windows Defender 2017-03-29 18:34 - 2015-01-06 05:01 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys 2017-03-29 18:34 - 2015-01-06 04:59 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys 2017-03-29 18:34 - 2015-01-06 03:12 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll 2017-03-29 18:34 - 2015-01-06 03:02 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll 2017-03-29 18:32 - 2017-02-11 20:18 - 00477184 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll 2017-03-29 18:32 - 2017-02-11 19:00 - 00865792 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll 2017-03-29 18:32 - 2017-02-11 18:49 - 00269824 _____ (Microsoft Corporation) C:\Windows\system32\DafPrintProvider.dll 2017-03-29 18:32 - 2017-02-11 18:42 - 00204288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DafPrintProvider.dll 2017-03-29 18:32 - 2017-02-10 21:06 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-03-29 18:32 - 2017-02-10 16:37 - 00046600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdBoot.sys 2017-03-29 18:32 - 2017-02-04 19:51 - 00842240 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll 2017-03-29 18:32 - 2017-02-01 21:44 - 00201728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-03-29 18:32 - 2017-02-01 21:42 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-03-29 18:32 - 2017-01-19 04:18 - 01113944 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys 2017-03-29 18:32 - 2017-01-18 16:35 - 00994760 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2017-03-29 18:32 - 2017-01-18 16:34 - 00922432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2017-03-29 18:32 - 2017-01-14 22:32 - 00955016 _____ (Microsoft Corporation) C:\Windows\system32\mfmp4srcsnk.dll 2017-03-29 18:32 - 2017-01-14 21:18 - 00787688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfmp4srcsnk.dll 2017-03-29 18:32 - 2017-01-12 18:51 - 00274776 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdFilter.sys 2017-03-29 18:32 - 2017-01-12 18:51 - 00117592 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\WdNisDrv.sys 2017-03-29 18:32 - 2017-01-12 08:12 - 00990040 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys 2017-03-29 18:32 - 2017-01-11 21:12 - 00342016 _____ (Microsoft Corporation) C:\Windows\system32\SessEnv.dll 2017-03-29 18:32 - 2017-01-11 19:28 - 00422744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\spaceport.sys 2017-03-29 18:32 - 2017-01-11 17:09 - 00296960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SessEnv.dll 2017-03-29 18:32 - 2017-01-11 00:37 - 00138752 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys 2017-03-29 18:32 - 2017-01-10 23:06 - 00840192 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2017-03-29 18:32 - 2017-01-10 22:46 - 01388544 _____ (Microsoft Corporation) C:\Windows\system32\mispace.dll 2017-03-29 18:32 - 2017-01-10 21:20 - 00696832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2017-03-29 18:32 - 2017-01-10 21:09 - 01108480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mispace.dll 2017-03-29 18:32 - 2017-01-06 19:25 - 02513408 _____ (Microsoft Corporation) C:\Windows\system32\storagewmi.dll 2017-03-29 18:32 - 2017-01-06 19:04 - 01495552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\storagewmi.dll 2017-03-29 18:32 - 2016-12-25 03:14 - 00242176 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll 2017-03-29 18:32 - 2016-12-25 02:48 - 00158720 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll 2017-03-29 18:32 - 2016-12-25 01:39 - 00133120 _____ (Microsoft Corporation) C:\Windows\system32\ScDeviceEnum.dll 2017-03-29 18:32 - 2016-12-09 10:08 - 00379736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\storport.sys 2017-03-29 18:31 - 2017-02-04 19:53 - 00111616 _____ (Microsoft Corporation) C:\Windows\system32\samlib.dll 2017-03-29 18:31 - 2017-02-04 19:19 - 00065024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\samlib.dll 2017-03-29 18:31 - 2017-01-14 16:37 - 00447095 _____ C:\Windows\system32\ApnDatabase.xml 2017-03-29 18:31 - 2016-12-25 03:21 - 00040960 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\scfilter.sys 2017-03-29 18:31 - 2016-12-25 02:19 - 00170496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll 2017-03-29 18:29 - 2014-11-15 21:05 - 00801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll 2017-03-29 18:29 - 2014-11-15 08:29 - 00962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll 2017-03-29 18:29 - 2014-11-14 08:57 - 01027584 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll 2017-03-29 18:29 - 2014-11-14 07:03 - 00885760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll 2017-03-29 18:29 - 2014-11-08 06:00 - 00024576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys 2017-03-29 18:29 - 2014-11-08 05:56 - 00048128 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp 2017-03-29 18:29 - 2014-11-08 05:56 - 00043008 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll 2017-03-29 18:29 - 2014-11-08 05:56 - 00030208 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll 2017-03-29 18:29 - 2014-11-08 05:24 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll 2017-03-29 18:29 - 2014-11-08 05:13 - 00039424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp 2017-03-29 18:29 - 2014-11-08 05:13 - 00033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll 2017-03-29 18:29 - 2014-11-08 05:13 - 00022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll 2017-03-29 18:29 - 2014-11-08 04:48 - 00061440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll 2017-03-29 18:29 - 2014-11-08 04:03 - 00733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll 2017-03-29 18:29 - 2014-11-08 03:58 - 04837376 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll 2017-03-29 18:29 - 2014-11-08 03:49 - 01154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe 2017-03-29 18:29 - 2014-11-05 04:12 - 00211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL 2017-03-29 18:29 - 2014-11-05 04:12 - 00128000 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL 2017-03-29 18:29 - 2014-11-05 04:06 - 00514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll 2017-03-29 18:29 - 2014-11-05 03:39 - 00155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL 2017-03-29 18:29 - 2014-11-05 03:39 - 00094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL 2017-03-29 18:29 - 2014-11-05 03:33 - 00465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll 2017-03-29 18:29 - 2014-11-05 03:21 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\WSDApi.dll 2017-03-29 18:29 - 2014-11-05 03:14 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll 2017-03-29 18:29 - 2014-11-05 03:06 - 00555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSDApi.dll 2017-03-29 18:29 - 2014-11-04 21:33 - 00058176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys 2017-03-29 18:29 - 2014-11-04 08:27 - 00128512 _____ (Microsoft Corporation) C:\Windows\splwow64.exe 2017-03-29 18:29 - 2014-11-04 07:01 - 00827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe 2017-03-29 18:29 - 2014-10-21 03:59 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll 2017-03-29 18:29 - 2014-10-21 03:19 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll 2017-03-29 18:29 - 2014-10-21 02:50 - 00074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll 2017-03-29 18:29 - 2014-10-21 02:31 - 01574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll 2017-03-29 18:29 - 2014-10-21 02:31 - 00055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll 2017-03-29 18:29 - 2014-10-21 02:20 - 01142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll 2017-03-29 18:29 - 2014-10-17 06:56 - 00039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys 2017-03-29 18:29 - 2014-10-17 05:35 - 00086336 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pdc.sys 2017-03-29 18:19 - 2014-11-17 22:17 - 00672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe 2017-03-29 18:19 - 2014-11-14 08:54 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll 2017-03-29 18:16 - 2015-06-10 00:39 - 00081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\BTHUSB.SYS 2017-03-29 18:16 - 2015-06-10 00:39 - 00053248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthenum.sys 2017-03-29 18:16 - 2015-06-10 00:38 - 01201664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys 2017-03-29 17:57 - 2017-03-29 17:57 - 00315624 _____ (Microsoft Corporation) C:\Users\NICOLE\Downloads\dxwebsetup.exe 2017-03-29 17:48 - 2017-03-29 17:48 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\Hewlett-Packard 2017-03-26 15:20 - 2017-03-26 15:20 - 00000000 ____D C:\Users\Gość\AppData\Local\Hewlett-Packard 2017-03-26 14:29 - 2017-03-26 14:29 - 00000000 ____D C:\ProgramData\HP 2017-03-26 14:17 - 2017-03-26 14:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2017-03-26 14:16 - 2017-03-26 14:16 - 00000000 ____D C:\System.sav 2017-03-26 14:13 - 2017-03-26 14:13 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\hpqLog 2017-03-26 14:07 - 2017-03-26 14:22 - 00000000 ____D C:\Users\NICOLE\Downloads\HP Downloads 2017-03-26 14:07 - 2017-03-26 14:07 - 00000000 ____D C:\Windows\System32\Tasks\Hewlett-Packard 2017-03-26 14:07 - 2017-03-26 14:07 - 00000000 ____D C:\Users\NICOLE\AppData\Local\Hewlett-Packard 2017-03-26 14:05 - 2017-03-26 14:16 - 00000000 ____D C:\Program Files (x86)\Hewlett-Packard 2017-03-26 14:01 - 2017-03-26 14:01 - 04057776 _____ (Oleg N. Scherbakov) C:\Users\NICOLE\Downloads\HPSupportSolutionsFramework-12.5.32.203.exe 2017-03-25 23:27 - 2017-03-25 23:27 - 00002966 _____ C:\Users\NICOLE\AppData\Local\recently-used.xbel 2017-03-22 19:43 - 2017-03-22 19:44 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook 2017-03-22 19:43 - 2017-03-22 19:43 - 00000000 ____D C:\Users\NICOLE\AppData\Local\Facebook 2017-03-22 19:32 - 2017-03-22 19:33 - 00252208 _____ (Facebook) C:\Users\NICOLE\Downloads\FacebookGameroom.exe 2017-03-17 23:16 - 2017-04-05 19:27 - 00003914 _____ C:\Windows\System32\Tasks\Avast Emergency Update 2017-03-17 23:16 - 2017-04-05 19:25 - 00334088 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys 2017-03-17 23:16 - 2017-04-05 19:25 - 00307736 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys 2017-03-17 23:16 - 2017-04-05 19:25 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys 2017-03-17 23:16 - 2017-04-05 19:25 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys 2017-03-16 23:25 - 2017-03-16 23:25 - 00000000 ____D C:\Users\Gość\AppData\Local\Apple 2017-03-16 18:54 - 2017-02-11 07:12 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll 2017-03-16 18:54 - 2017-02-10 07:10 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2017-03-16 18:54 - 2017-02-10 07:09 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll 2017-03-16 18:53 - 2017-02-11 07:12 - 00315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2017-03-16 18:53 - 2017-02-10 07:08 - 00279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2017-03-16 18:53 - 2017-02-09 17:28 - 01987584 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2017-03-16 18:53 - 2017-02-09 17:19 - 01377792 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2017-03-16 18:53 - 2017-02-09 17:16 - 01560064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2017-03-16 18:53 - 2017-02-09 16:59 - 00658432 _____ (Microsoft Corporation) C:\Windows\system32\dnsapi.dll 2017-03-16 18:53 - 2017-02-09 16:58 - 00499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dnsapi.dll 2017-03-16 18:53 - 2017-02-04 22:32 - 07444832 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2017-03-16 18:53 - 2017-02-04 22:30 - 01490128 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2017-03-16 18:53 - 2017-02-04 22:30 - 01358960 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe 2017-03-16 18:53 - 2017-02-04 21:32 - 00251392 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll 2017-03-16 18:53 - 2017-02-04 21:30 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2017-03-16 18:53 - 2017-02-04 19:40 - 01754112 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll 2017-03-16 18:53 - 2017-02-04 19:10 - 01491456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll 2017-03-16 18:53 - 2017-01-21 19:48 - 01437696 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-03-16 18:53 - 2017-01-11 21:37 - 02345984 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll 2017-03-16 18:53 - 2017-01-10 21:08 - 01549312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll 2017-03-16 18:53 - 2017-01-05 20:09 - 07076864 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll 2017-03-16 18:53 - 2017-01-05 19:29 - 05273600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll 2017-03-16 18:53 - 2017-01-05 19:13 - 07796224 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll 2017-03-16 18:53 - 2017-01-05 18:57 - 05268480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll 2017-03-16 18:52 - 2017-03-04 09:45 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2017-03-16 18:52 - 2017-02-11 21:25 - 00417792 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2017-03-16 18:52 - 2017-02-10 07:34 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2017-03-16 18:52 - 2017-02-09 16:58 - 00252416 _____ (Microsoft Corporation) C:\Windows\system32\dnsrslvr.dll 2017-03-16 18:52 - 2017-02-04 22:30 - 01663184 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2017-03-16 18:52 - 2017-02-04 22:30 - 01523216 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe 2017-03-16 18:52 - 2017-02-04 20:14 - 01001472 _____ (Microsoft Corporation) C:\Windows\HelpPane.exe 2017-03-16 18:52 - 2017-02-04 19:50 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll 2017-03-16 18:52 - 2017-02-04 19:32 - 00584704 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll 2017-03-16 18:52 - 2017-02-04 19:17 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll 2017-03-16 18:52 - 2017-02-04 19:05 - 00503808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll 2017-03-16 18:52 - 2017-01-21 23:37 - 00567152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys 2017-03-16 18:52 - 2017-01-21 21:27 - 00756736 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-03-16 18:52 - 2017-01-21 21:27 - 00061952 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2017-03-16 18:52 - 2017-01-21 20:40 - 00756736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2017-03-16 18:52 - 2017-01-21 20:40 - 00061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2017-03-16 18:52 - 2017-01-21 20:37 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2017-03-16 18:52 - 2017-01-21 19:58 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2017-03-16 18:52 - 2017-01-14 19:49 - 00146944 _____ (Microsoft Corporation) C:\Windows\system32\wininit.exe 2017-03-16 18:52 - 2016-11-09 21:22 - 00681472 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2017-03-16 15:18 - 2017-02-23 16:50 - 00093360 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2017-03-16 15:18 - 2017-02-22 16:35 - 01609216 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 01286144 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00646656 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00556544 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00335360 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00293376 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00233984 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2017-03-16 15:18 - 2017-02-22 16:35 - 00133632 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-15 17:50 - 2015-07-18 11:27 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\Skype 2017-04-15 17:49 - 2015-10-05 20:35 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\uTorrent 2017-04-15 17:28 - 2014-06-09 13:46 - 00003600 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2025162763-2227396240-2464615446-1001 2017-04-15 17:25 - 2016-11-04 19:59 - 00000476 _____ C:\Windows\Tasks\UCBrowserUpdater.job 2017-04-15 17:12 - 2015-01-05 20:36 - 00000000 ____D C:\Program Files (x86)\QuickTime 2017-04-15 17:11 - 2015-01-05 20:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\QuickTime 2017-04-15 16:39 - 2015-11-26 20:38 - 00000000 ____D C:\Users\NICOLE\AppData\Local\AvgSetupLog 2017-04-15 16:31 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF 2017-04-15 16:30 - 2014-06-09 14:26 - 00000000 ____D C:\Program Files (x86)\Google 2017-04-15 16:29 - 2014-06-09 14:26 - 00000000 ____D C:\Users\NICOLE\AppData\Local\Google 2017-04-15 16:27 - 2016-01-05 23:00 - 00000000 ____D C:\Users\NICOLE\AppData\Local\CrashDumps 2017-04-15 15:47 - 2015-12-27 04:47 - 00000000 ___DO C:\Users\NICOLE\OneDrive 2017-04-15 15:43 - 2016-11-04 21:25 - 00000312 _____ C:\Windows\Tasks\UCBrowserUpdaterCore.job 2017-04-15 15:42 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-04-15 15:22 - 2016-06-02 13:29 - 00000000 ____D C:\AdwCleaner 2017-04-15 15:17 - 2015-01-27 04:17 - 00000000 ____D C:\Users\Gość 2017-04-15 15:01 - 2013-08-22 15:36 - 00000000 ____D C:\Windows\Inf 2017-04-15 14:19 - 2014-06-09 14:26 - 00003844 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{B29B0CD4-6369-4130-B237-A83CA5FD375C} 2017-04-15 14:04 - 2015-11-26 20:58 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\AVG 2017-04-15 14:02 - 2015-11-26 20:41 - 00000000 ____D C:\ProgramData\Avg 2017-04-15 14:02 - 2014-06-09 23:42 - 00000000 ____D C:\Program Files (x86)\AVG 2017-04-15 13:58 - 2014-11-30 19:38 - 00000000 ____D C:\Users\NICOLE\AppData\Local\Avg 2017-04-15 13:52 - 2016-09-23 21:09 - 00003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task 2017-04-15 11:57 - 2016-11-04 19:43 - 00000000 ____D C:\Program Files (x86)\F406D7D0-1478281426-81E3-3956-0C54A52FE526 2017-04-15 09:18 - 2016-06-02 13:23 - 00000000 ____D C:\Users\Gość\AppData\Local\CrashDumps 2017-04-14 21:30 - 2016-06-29 17:26 - 00000000 ____D C:\Program Files\ByteFence 2017-04-14 20:50 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness 2017-04-14 15:49 - 2016-05-28 19:47 - 00000000 ____D C:\Users\Gość\AppData\Roaming\AVG 2017-04-14 14:54 - 2014-06-09 13:39 - 00000000 ____D C:\Users\NICOLE 2017-04-14 14:53 - 2014-07-03 08:39 - 00000000 ____D C:\Windows\Minidump 2017-04-14 14:53 - 2014-07-03 08:38 - 702567211 _____ C:\Windows\MEMORY.DMP 2017-04-13 19:06 - 2013-08-22 16:44 - 00370696 _____ C:\Windows\system32\FNTCACHE.DAT 2017-04-13 18:53 - 2014-06-09 23:48 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-04-13 18:52 - 2014-06-20 16:26 - 00000000 ____D C:\Windows\system32\MRT 2017-04-13 18:46 - 2014-06-20 16:26 - 148601744 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-04-13 18:46 - 2014-06-09 23:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-04-13 18:44 - 2014-06-09 23:48 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-04-13 18:37 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp 2017-04-13 17:10 - 2015-10-05 20:03 - 00000000 ____D C:\Program Files (x86)\Opera 2017-04-13 14:42 - 2016-11-04 19:43 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\YSPackage 2017-04-13 14:13 - 2015-12-22 23:15 - 00000000 ____D C:\ProgramData\Utatity 2017-04-13 13:42 - 2014-06-09 23:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-04-13 13:41 - 2014-08-23 15:12 - 00097856 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll 2017-04-13 13:40 - 2014-08-23 15:12 - 00000000 ____D C:\Program Files (x86)\Java 2017-04-13 13:39 - 2014-06-09 23:36 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2017-04-13 12:08 - 2015-06-26 16:45 - 00000000 ____D C:\Program Files\Common Files\AV 2017-04-13 12:08 - 2014-06-09 23:39 - 00000000 ____D C:\ProgramData\MFAData 2017-04-12 23:05 - 2015-12-20 14:13 - 00000000 ____D C:\Users\NICOLE\Desktop\YouTube 2017-04-12 08:07 - 2013-11-22 18:38 - 00000000 ____D C:\Program Files (x86)\WildTangent Games 2017-04-12 08:06 - 2013-11-22 18:38 - 00002499 ____N C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - toshiba.lnk 2017-04-12 08:06 - 2013-11-22 18:38 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2017-04-11 22:14 - 2014-06-09 23:44 - 00004252 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-04-11 22:12 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\Macromed 2017-04-11 22:11 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-04-10 19:31 - 2016-07-11 18:16 - 00000000 ____D C:\PaintToolSAI 2017-04-09 18:17 - 2017-03-09 21:20 - 236070336 _____ (Microsoft Corporation) C:\Users\NICOLE\Downloads\office2007sp1-kb936982-fullfile-pl-pl.exe 2017-04-05 19:26 - 2016-10-07 19:00 - 00556784 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00339696 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00164064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00127112 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00101152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-04-05 19:26 - 2016-10-07 19:00 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-04-05 19:25 - 2016-10-07 19:00 - 01005048 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2017-04-05 17:57 - 2016-12-07 14:29 - 00003174 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task v2 2017-04-05 17:57 - 2016-04-19 15:42 - 00002360 _____ C:\Users\NICOLE\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive dla Firm.lnk 2017-04-05 17:57 - 2015-11-27 17:07 - 00003182 _____ C:\Windows\System32\Tasks\Microsoft OneDrive Auto Update Task-S-1-5-21-2025162763-2227396240-2464615446-1001 2017-04-04 18:18 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP 2017-04-01 20:05 - 2015-11-27 18:12 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\.minecraft 2017-04-01 15:23 - 2013-09-19 19:04 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-04-01 00:13 - 2015-10-04 17:45 - 00000925 _____ C:\Users\Gość\Desktop\Alicia.lnk 2017-03-30 14:53 - 2014-11-10 05:30 - 00000000 ____D C:\ProgramData\Origin 2017-03-30 14:52 - 2013-09-19 19:02 - 00005430 _____ C:\Windows\system32\PerfStringBackup.INI 2017-03-30 14:52 - 2013-08-28 16:28 - 01310818 _____ C:\Windows\system32\perfh015.dat 2017-03-30 14:52 - 2013-08-28 16:28 - 00324590 _____ C:\Windows\system32\perfc015.dat 2017-03-30 14:43 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\BBI 2017-03-29 20:00 - 2016-09-30 22:20 - 00000000 ____D C:\Users\NICOLE\AppData\Roaming\Spotify 2017-03-29 19:02 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData 2017-03-29 19:01 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-03-29 16:16 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM 2017-03-26 18:01 - 2017-03-13 21:22 - 00000000 ____D C:\Users\NICOLE\Documents\oCam 2017-03-26 17:44 - 2015-10-05 20:42 - 00000000 ___RD C:\Users\NICOLE\Desktop\Nikola 2017-03-26 14:16 - 2014-07-20 22:35 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2017-03-25 23:41 - 2015-12-18 23:57 - 00000000 ____D C:\Users\NICOLE\.gimp-2.8 2017-03-23 19:19 - 2014-12-14 05:56 - 00000000 ____D C:\Windows\system32\appraiser 2017-03-22 14:25 - 2016-10-07 18:46 - 00000000 ____D C:\ProgramData\AVAST Software 2017-03-17 23:16 - 2016-10-07 19:00 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.148978543387504 2017-03-17 22:54 - 2014-11-10 05:30 - 00000000 ____D C:\Program Files (x86)\Origin 2017-03-16 15:07 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-12-24 02:41 - 2016-12-24 02:48 - 0005120 _____ () C:\Users\NICOLE\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-03-25 23:27 - 2017-03-25 23:27 - 0002966 _____ () C:\Users\NICOLE\AppData\Local\recently-used.xbel 2016-12-17 15:02 - 2016-11-23 15:37 - 0000570 _____ () C:\Users\NICOLE\AppData\Local\TroubleshooterConfig.json Niektóre pliki w TEMP: ==================== 2016-06-02 13:51 - 2016-04-22 19:01 - 0186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Gość\AppData\Local\Temp\avguirn_081685966653.exe 2016-03-28 17:13 - 2016-05-09 07:08 - 2458672 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\Gość\AppData\Local\Temp\libeay32.dll 2016-03-28 17:13 - 2013-10-05 02:38 - 0970912 _____ (Microsoft Corporation) C:\Users\Gość\AppData\Local\Temp\msvcr120.dll 2016-03-03 11:50 - 2016-05-09 07:08 - 0772672 _____ () C:\Users\Gość\AppData\Local\Temp\sqlite3.dll 2014-08-23 15:12 - 2014-08-23 15:12 - 0549272 _____ (Ask Partner Network) C:\Users\NICOLE\AppData\Local\Temp\APNSetup.exe 2015-11-26 20:39 - 2015-11-26 20:39 - 2892128 _____ (AVG Technologies) C:\Users\NICOLE\AppData\Local\Temp\avg-9b394c75-9bde-416c-8a35-ec14204ea20c.exe 2016-05-13 19:25 - 2016-04-15 02:29 - 0186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081012474743.exe 2016-01-15 18:51 - 2015-12-08 17:23 - 0091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081085263312.exe 2016-04-08 11:38 - 2016-02-18 22:09 - 0179624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081264481238.exe 2016-06-23 13:33 - 2016-05-18 13:03 - 0186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081385107173.exe 2016-01-05 18:23 - 2015-11-13 02:54 - 0091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081509454376.exe 2016-07-29 11:14 - 2016-06-21 18:49 - 0186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_081897166268.exe 2016-08-30 17:41 - 2016-07-20 14:01 - 0186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\NICOLE\AppData\Local\Temp\avguirn_08837202047.exe 2016-05-26 13:48 - 2016-05-26 13:48 - 0008192 _____ () C:\Users\NICOLE\AppData\Local\Temp\b3zlmjb1.dll 2015-09-24 08:20 - 2015-09-24 08:20 - 1001992 _____ (www.Bandisoft.com) C:\Users\NICOLE\AppData\Local\Temp\bdcam64_0.dll 2015-09-24 08:20 - 2015-09-24 08:20 - 0849416 _____ (www.Bandisoft.com) C:\Users\NICOLE\AppData\Local\Temp\bdcam_0.dll 2013-08-05 08:15 - 2013-08-05 08:15 - 4292136 _____ (www.Bandisoft.com) C:\Users\NICOLE\AppData\Local\Temp\bdfilters.dll 2015-11-12 14:26 - 2015-11-12 14:26 - 0144008 _____ (© 2015 Microsoft Corporation) C:\Users\NICOLE\AppData\Local\Temp\BingSvc.exe 2016-11-04 19:46 - 2016-11-04 19:58 - 51400592 _____ (UCWeb Inc.) C:\Users\NICOLE\AppData\Local\Temp\Browser_V5.6.14087.902_f_4674_(Build1608021049).exe 2015-07-18 11:38 - 2015-11-12 14:26 - 1118360 _____ (© 2015 Microsoft Corporation) C:\Users\NICOLE\AppData\Local\Temp\BSvcProcessor.exe 2015-07-18 11:38 - 2015-11-12 14:26 - 0170128 _____ (© 2015 Microsoft Corporation) C:\Users\NICOLE\AppData\Local\Temp\BSvcUpdater.exe 2015-12-22 23:15 - 2015-12-22 23:15 - 2394350 _____ () C:\Users\NICOLE\AppData\Local\Temp\DomDomcof.exe 2016-08-30 13:44 - 2017-04-05 19:26 - 0204800 _____ (Sony DADC Austria AG) C:\Users\NICOLE\AppData\Local\Temp\drm_dyndata_7370014.dll 2016-09-09 19:43 - 2016-11-11 23:58 - 0257944 _____ (Emotiplus) C:\Users\NICOLE\AppData\Local\Temp\Emotiplus_Uninstaller.exe 2016-12-01 19:00 - 2016-12-01 19:04 - 33862800 _____ (Ellora Assets Corporation ) C:\Users\NICOLE\AppData\Local\Temp\FreemakeVideoConverterFull.exe 2014-01-09 19:08 - 2012-01-13 01:48 - 0202216 _____ () C:\Users\NICOLE\AppData\Local\Temp\GPUengine.exe 2017-03-26 14:39 - 2017-03-26 14:41 - 1244408 _____ (Tehe ) C:\Users\NICOLE\AppData\Local\Temp\ICReinstall_AVS-Video-Recorder-27595-dp.exe 2016-12-28 21:04 - 2016-12-28 21:07 - 37171128 _____ () C:\Users\NICOLE\AppData\Local\Temp\InstallIMVU_529.0.exe 2016-12-29 01:58 - 2016-12-29 01:58 - 0737856 _____ (Oracle Corporation) C:\Users\NICOLE\AppData\Local\Temp\jre-8u111-windows-au.exe 2016-01-22 20:01 - 2016-01-22 20:01 - 0644704 _____ (Oracle Corporation) C:\Users\NICOLE\AppData\Local\Temp\jre-8u71-windows-au.exe 2016-04-22 18:19 - 2016-04-22 18:19 - 0739904 _____ (Oracle Corporation) C:\Users\NICOLE\AppData\Local\Temp\jre-8u91-windows-au.exe 2015-01-20 17:41 - 2008-05-06 09:19 - 0818784 ____N (Techland) C:\Users\NICOLE\AppData\Local\Temp\Launcher.exe 2015-12-22 23:12 - 2017-04-13 11:42 - 13414504 _____ (Reimage) C:\Users\NICOLE\AppData\Local\Temp\ReimagePackage.exe 2016-05-24 19:22 - 2017-02-11 19:15 - 44048864 _____ (Skype Technologies S.A.) C:\Users\NICOLE\AppData\Local\Temp\SkypeSetup.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2016-05-01 13:41 ==================== Koniec FRST.txt ============================