Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 27-04-2017 Uruchomiony przez fafci_000 (administrator) RAFAŁ (30-04-2017 10:41:35) Uruchomiony z C:\Users\fafci_000\Downloads Załadowane profile: fafci_000 (Dostępne profile: fafci_000) Platform: Windows 10 Home Wersja 1607 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\atiesrxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe (Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Broadcom Corporation.) C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe () C:\Windows\System32\igfxTray.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Electronic Arts) F:\Nowy folder\OriginWebHelperService.exe () C:\Program Files\WindowsApps\Microsoft.BingNews_4.20.1102.0_x64__8wekyb3d8bbwe\Microsoft.Msn.News.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe (Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe (Microsoft Corporation) C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe () C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1704.1013.0_x64__8wekyb3d8bbwe\Time.exe () C:\Users\fafci_000\AppData\Roaming\ACEStream\updater\ace_update.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.14.662.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtsFT] => C:\WINDOWS\RTFTrack.exe [6340312 2013-07-19] (Realtek semiconductor) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [935104 2014-11-25] (Conexant Systems, Inc.) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc.) HKLM\...\Run: [IgfxTray] => C:\WINDOWS\system32\igfxtray.exe [401896 2016-11-02] () HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3944136 2015-06-03] (Synaptics Incorporated) HKLM\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239104 2017-03-23] (AVG Technologies CZ, s.r.o.) HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [263088 2017-04-01] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [Raptr] => C:\Program Files (x86)\Raptr Inc\Raptr\raptrstub.exe [58640 2016-07-21] (Raptr, Inc) HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-06-22] (Advanced Micro Devices, Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [239104 2017-03-23] (AVG Technologies CZ, s.r.o.) HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\Run: [uTorrent] => C:\Users\fafci_000\AppData\Roaming\uTorrent\uTorrent.exe [2144448 2017-04-13] (BitTorrent Inc.) HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\Run: [AceStream] => C:\Users\fafci_000\AppData\Roaming\ACEStream\engine\ace_engine.exe [28024 2017-03-20] (Innovative Digital Technologies) HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\MountPoints2: {1d60f45c-fb53-11e6-ab2c-f8a963357b61} - "H:\HiSuiteDownLoader.exe" HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\MountPoints2: {28d307f9-ee2b-11e6-8325-f8a963357b61} - "H:\HiSuiteDownLoader.exe" HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\MountPoints2: {66b8a74d-09c1-11e7-832c-f8a963357b61} - "H:\HiSuiteDownLoader.exe" HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\MountPoints2: {66b8a76c-09c1-11e7-832c-f8a963357b61} - "H:\HiSuiteDownLoader.exe" ShellIconOverlayIdentifiers: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku ShellIconOverlayIdentifiers: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku ShellIconOverlayIdentifiers: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [###MegaShellExtPending] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [###MegaShellExtSynced] -> {05B38830-F4E9-4329-978B-1DD28605D202} => -> Brak pliku ShellIconOverlayIdentifiers-x32: [###MegaShellExtSyncing] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => -> Brak pliku ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{01006b29-8d21-4c5d-be97-61e3b54a6f12}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{2a8c0885-53a5-446d-af1d-ca1d8b4591a0}: [DhcpNameServer] 169.254.42.207 Internet Explorer: ================== HKU\S-1-5-21-718178956-2281005182-3596695073-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/ HKU\S-1-5-21-718178956-2281005182-3596695073-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.lenovo.com SearchScopes: HKU\S-1-5-21-718178956-2281005182-3596695073-1001 -> DefaultScope {77D2BDFF-2C8C-4197-88C4-C083C6DE5B06} URL = SearchScopes: HKU\S-1-5-21-718178956-2281005182-3596695073-1001 -> {77D2BDFF-2C8C-4197-88C4-C083C6DE5B06} URL = FireFox: ======== FF ProfilePath: C:\Users\fafci_000\AppData\Roaming\Mozilla\Firefox\Profiles\rna8mofo.default [2017-04-24] FF Homepage: Mozilla\Firefox\Profiles\rna8mofo.default -> about:newtab FF Extension: (MEGA) - C:\Users\fafci_000\AppData\Roaming\Mozilla\Firefox\Profiles\rna8mofo.default\Extensions\firefox@mega.co.nz.xpi [2017-04-24] FF Extension: (Ace Stream Web Extension) - C:\Users\fafci_000\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi [2017-01-31] FF SearchPlugin: C:\Users\fafci_000\AppData\Roaming\Mozilla\Firefox\Profiles\rna8mofo.default\searchplugins\ask-search.xml [2015-08-24] FF Extension: (Site Deployment Checker) - C:\Program Files (x86)\Mozilla Firefox\browser\features\deployment-checker@mozilla.org.xpi [2017-04-09] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-718178956-2281005182-3596695073-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\fafci_000\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_24_0_0_221.dll [2017-02-14] () FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1220162.dll [2015-08-31] (Adobe Systems, Inc.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-08-08] (Intel Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-04-28] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> F:\Program Files\VLC\npvlc.dll [2014-07-23] (VideoLAN) FF Plugin HKU\S-1-5-21-718178956-2281005182-3596695073-1001: @acestream.net/acestreamplugin,version=3.1.7 -> C:\Users\fafci_000\AppData\Roaming\ACEStream\player\npace_plugin.dll [2017-01-31] (Innovative Digital Technologies) FF Plugin HKU\S-1-5-21-718178956-2281005182-3596695073-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\fafci_000\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2016-03-11] (Unity Technologies ApS) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\np32dsw.dll [2007-04-30] (Adobe Systems, Inc.) Chrome: ======= CHR Profile: C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default [2017-04-30] CHR Extension: (Prezentacje Google) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-10-21] CHR Extension: (Dokumenty Google) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-10-21] CHR Extension: (Dysk Google) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-10-21] CHR Extension: (YouTube) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-21] CHR Extension: (Adblock Plus) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-03-22] CHR Extension: (Google Search) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-31] CHR Extension: (Arkusze Google) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-10-21] CHR Extension: (Dokumenty Google offline) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16] CHR Extension: (IE Tab) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2017-04-25] CHR Extension: (Ace Stream Web Extension) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2016-08-07] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Gmail) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-21] CHR Extension: (Chrome Media Router) - C:\Users\fafci_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-27] CHR HKU\S-1-5-21-718178956-2281005182-3596695073-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [262696 2017-04-01] (AVG Technologies CZ, s.r.o.) R3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7448992 2017-04-01] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1428680 2017-03-23] (AVG Technologies CZ, s.r.o.) R2 BcmBtRSupport; C:\WINDOWS\system32\BtwRSupportService.exe [2251992 2015-03-27] (Broadcom Corporation.) R2 btwdins; C:\Program Files\Lenovo\Bluetooth Software\btwdins.exe [976600 2013-09-25] (Broadcom Corporation.) R3 fussvc; C:\Program Files (x86)\Windows Kits\8.0\App Certification Kit\fussvc.exe [139776 2012-07-25] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Brak podpisu cyfrowego] S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-02] (Intel Corporation) S2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-11] (Intel(R) Corporation) [Brak podpisu cyfrowego] R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-08-08] (Intel Corporation) S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] S3 Origin Client Service; F:\Nowy folder\OriginClientService.exe [2146704 2017-04-20] (Electronic Arts) R2 Origin Web Helper Service; F:\Nowy folder\OriginWebHelperService.exe [3115928 2017-04-20] (Electronic Arts) S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [249032 2015-06-03] (Synaptics Incorporated) S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.0\Testing\Runtimes\TAEF\Wex.Services.exe [126976 2012-07-25] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103712 2017-03-04] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [73976 2015-06-04] (Advanced Micro Devices, Inc.) R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [310728 2015-01-13] () R1 avgbdisk; C:\WINDOWS\system32\drivers\avgbdiska.sys [166136 2017-04-01] (AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\WINDOWS\system32\drivers\avgbidsdrivera.sys [310056 2017-04-01] (AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\WINDOWS\system32\drivers\avgbidsha.sys [192096 2017-04-01] (AVG Technologies CZ, s.r.o.) R0 avgblog; C:\WINDOWS\system32\drivers\avgbloga.sys [336408 2017-04-01] (AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\WINDOWS\system32\drivers\avgbuniva.sys [50848 2017-04-01] (AVG Technologies CZ, s.r.o.) S3 avgHwid; C:\WINDOWS\system32\drivers\avgHwid.sys [39288 2017-04-01] (AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\WINDOWS\system32\drivers\avgMonFlt.sys [129776 2017-04-28] (AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\WINDOWS\system32\drivers\avgRdr2.sys [102136 2017-04-01] (AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\system32\drivers\avgRvrt.sys [76688 2017-04-01] (AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\WINDOWS\system32\drivers\avgSnx.sys [1006040 2017-04-01] (AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\system32\drivers\avgSP.sys [557912 2017-04-28] (AVG Technologies CZ, s.r.o.) R2 avgStm; C:\WINDOWS\system32\drivers\avgStm.sys [165048 2017-04-01] (AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\WINDOWS\system32\drivers\avgVmm.sys [340688 2017-04-01] (AVG Technologies CZ, s.r.o.) R3 bcbtums; C:\WINDOWS\system32\drivers\bcbtums.sys [173312 2015-03-27] (Broadcom Corporation.) R3 BCM43XX; C:\WINDOWS\system32\DRIVERS\bcmwl63a.sys [7474864 2013-08-07] (Broadcom Corporation) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283064 2015-01-13] (Disc Soft Ltd) R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [42696 2015-01-13] () R3 MEIx64; C:\WINDOWS\system32\DRIVERS\TeeDriverx64.sys [99288 2013-08-08] (Intel Corporation) R3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo_VPN.sys [38432 2015-09-22] (SoftEther Corporation) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realsil Semiconductor Corporation) R3 rtsuvc; C:\WINDOWS\system32\DRIVERS\rtsuvc.sys [8247640 2013-07-19] (Realtek Semiconductor Corp.) R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [50208 2015-09-22] (SoftEther Corporation) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [42696 2015-06-03] (Synaptics Incorporated) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S1 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [117768 2015-12-18] (Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [194976 2015-12-18] (Oracle Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) U3 aspnet_state; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-30 10:41 - 2017-04-30 10:42 - 00019927 _____ C:\Users\fafci_000\Downloads\FRST.txt 2017-04-30 10:40 - 2017-04-30 10:41 - 00000000 ____D C:\FRST 2017-04-30 10:39 - 2017-04-30 10:39 - 00371282 _____ C:\Users\fafci_000\Downloads\gmer.zip 2017-04-30 10:38 - 2017-04-30 10:40 - 02427392 _____ (Farbar) C:\Users\fafci_000\Downloads\FRST64.exe 2017-04-30 10:32 - 2017-04-30 10:32 - 00000000 ____D C:\Users\fafci_000\Downloads\backups 2017-04-30 10:28 - 2017-04-30 10:28 - 00388608 _____ (Trend Micro Inc.) C:\Users\fafci_000\Downloads\HijackThis.exe 2017-04-30 10:22 - 2017-04-30 10:24 - 05659609 _____ (Swearware) C:\Users\fafci_000\Downloads\ComboFix.exe 2017-04-28 21:02 - 2017-04-28 21:02 - 00003326 _____ C:\WINDOWS\System32\Tasks\{EF462059-096D-4466-8DD2-FBF37D9EF049} 2017-04-27 17:24 - 2017-04-27 17:24 - 00000864 _____ C:\Users\Public\Desktop\Mass Effect 2.lnk 2017-04-27 17:23 - 2017-04-27 17:23 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-04-27 16:36 - 2017-04-27 16:36 - 00000000 ____D C:\ProgramData\Windows App Certification Kit 2017-04-27 16:35 - 2017-04-27 16:35 - 00000000 ____D C:\Program Files\Application Verifier 2017-04-27 16:35 - 2017-04-27 16:35 - 00000000 ____D C:\Program Files (x86)\Microsoft SDKs 2017-04-27 16:35 - 2017-04-27 16:35 - 00000000 ____D C:\Program Files (x86)\Application Verifier 2017-04-27 16:33 - 2017-04-27 16:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2017-04-27 16:32 - 2017-04-27 16:32 - 00000000 ____D C:\Program Files (x86)\Windows Kits 2017-04-27 16:24 - 2017-04-27 16:25 - 00991536 _____ (Microsoft Corporation) C:\Users\fafci_000\Downloads\sdksetup.exe 2017-04-27 15:40 - 2017-04-27 15:40 - 03260766 _____ C:\Users\fafci_000\Downloads\hw32_550.zip 2017-04-26 18:07 - 2017-04-26 19:13 - 00000692 _____ C:\Users\Public\Desktop\FIFA 17.lnk 2017-04-26 18:07 - 2017-04-26 18:07 - 00000000 ___HD C:\Program Files\Common Files\EAInstaller 2017-04-25 19:49 - 2017-04-25 19:49 - 00023213 _____ C:\Users\fafci_000\Downloads\kong.skull.island.(2017).pol.1cd.(6945682).zip 2017-04-25 19:48 - 2017-04-25 19:48 - 00897024 _____ C:\Users\fafci_000\Downloads\Kong.Skull_Island.2017.HC.HDRip.XViD.AC3-ETRG.avi.iso 2017-04-25 19:46 - 2017-04-25 19:46 - 00030605 _____ C:\Users\fafci_000\Downloads\434CA07305C69F3B8F37F3E69957ECCC32D6BBAF.torrent 2017-04-25 19:44 - 2017-04-25 19:45 - 00115226 _____ C:\Users\fafci_000\Downloads\ADB1BF7580741D6F5AD83F7FDDF66A4247D1CA07.torrent 2017-04-25 19:42 - 2017-04-25 19:43 - 00115809 _____ C:\Users\fafci_000\Downloads\78BE4C14FCFB944EA46D2C3FFBF48AA76CE8B0E2.torrent 2017-04-24 21:19 - 2017-04-24 21:19 - 00019732 _____ C:\Users\fafci_000\Downloads\dont.knock.twice.(2016).pol.1cd.(6898995).zip 2017-04-23 21:08 - 2017-04-23 21:08 - 00100333 _____ C:\Users\fafci_000\Downloads\Router_CLI_MS.pkt 2017-04-20 21:49 - 2017-04-20 21:49 - 00105133 _____ C:\Users\fafci_000\Downloads\07165EFBA1C3C8389AB8FB9AD9CA2398905073D2.torrent 2017-04-20 21:48 - 2017-04-20 21:48 - 00015388 _____ C:\Users\fafci_000\Downloads\2150B8574A6ABB4CF57243F8D85C81C1497A4F16.torrent 2017-04-20 16:17 - 2017-04-20 16:17 - 00000085 _____ C:\Users\fafci_000\Desktop\Nowy dokument tekstowy.txt 2017-04-16 20:55 - 2017-04-16 20:55 - 00015605 _____ C:\Users\fafci_000\Downloads\boyka.undisputed.(2016).pol.1cd.(6949058).zip 2017-04-16 11:17 - 2017-04-16 11:17 - 00135524 _____ C:\Users\fafci_000\Downloads\E244F2EF71416AD351A66B6CC0443CCDC3D19993.torrent 2017-04-15 21:24 - 2017-04-15 21:24 - 00020106 _____ C:\Users\fafci_000\Downloads\dont.knock.twice.(2016).pol.1cd.(6900190).zip 2017-04-15 19:32 - 2017-04-15 19:32 - 00014988 _____ C:\Users\fafci_000\Downloads\32D6C61E781120FC56F926821DF6ECE91158151D.torrent 2017-04-13 17:04 - 2017-04-13 17:04 - 00014059 _____ C:\Users\fafci_000\Downloads\8A3820837340F0215E608F8B75A120F043508196.torrent 2017-04-13 17:02 - 2017-04-13 17:02 - 00021428 _____ C:\Users\fafci_000\Downloads\9AB18123632F9FA4E836A4665DD321CAF456E271.torrent 2017-04-03 20:38 - 2017-04-03 20:38 - 00116174 _____ C:\Users\fafci_000\Downloads\BA6690868AD877FD881D9CE0B92F98840570CDAA.torrent 2017-04-01 18:56 - 2017-04-28 15:41 - 00557912 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgsp.sys 2017-04-01 18:56 - 2017-04-28 15:41 - 00129776 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmonflt.sys 2017-04-01 18:56 - 2017-04-28 15:36 - 00004282 _____ C:\WINDOWS\System32\Tasks\Antivirus Emergency Update 2017-04-01 18:56 - 2017-04-01 18:56 - 01006040 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys 2017-04-01 18:56 - 2017-04-01 18:56 - 00557776 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgsp.sys.149338688481201 2017-04-01 18:56 - 2017-04-01 18:56 - 00400928 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe 2017-04-01 18:56 - 2017-04-01 18:56 - 00340688 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys 2017-04-01 18:56 - 2017-04-01 18:56 - 00165048 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys 2017-04-01 18:56 - 2017-04-01 18:56 - 00128096 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgmonflt.sys.149338688481201 2017-04-01 18:56 - 2017-04-01 18:56 - 00102136 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys 2017-04-01 18:56 - 2017-04-01 18:56 - 00076688 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys 2017-04-01 18:56 - 2017-04-01 18:56 - 00039288 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgHwid.sys 2017-04-01 18:56 - 2017-04-01 18:55 - 00336408 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbloga.sys 2017-04-01 18:56 - 2017-04-01 18:55 - 00310056 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdrivera.sys 2017-04-01 18:56 - 2017-04-01 18:55 - 00192096 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsha.sys 2017-04-01 18:56 - 2017-04-01 18:55 - 00166136 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbdiska.sys 2017-04-01 18:56 - 2017-04-01 18:55 - 00050848 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniva.sys 2017-04-01 18:51 - 2017-04-24 21:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-30 10:14 - 2016-11-21 02:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-04-29 23:51 - 2014-11-11 15:40 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\vlc 2017-04-29 21:23 - 2017-02-25 14:22 - 00003668 _____ C:\WINDOWS\System32\Tasks\AVG EUpdate Task 2017-04-29 21:19 - 2014-11-13 18:19 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\Origin 2017-04-29 21:19 - 2014-11-13 18:15 - 00000000 ____D C:\ProgramData\Origin 2017-04-28 21:16 - 2014-10-18 19:18 - 00000000 ____D C:\Users\fafci_000\AppData\Local\Ubisoft Game Launcher 2017-04-28 21:16 - 2014-06-07 19:45 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-04-28 21:13 - 2014-06-07 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2017-04-28 21:13 - 2014-06-07 19:55 - 00000000 ____D C:\Program Files (x86)\Lenovo 2017-04-28 21:12 - 2017-02-11 15:51 - 00000000 ____D C:\Program Files (x86)\PhotoScape 2017-04-28 21:09 - 2016-08-30 20:54 - 00000000 ____D C:\Users\fafci_000\AppData\Local\Hisuite 2017-04-28 21:05 - 2017-01-02 19:03 - 00000000 ____D C:\ProgramData\ParetoLogic 2017-04-28 21:04 - 2017-01-02 19:03 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ParetoLogic 2017-04-28 21:02 - 2016-10-09 18:29 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ 2017-04-28 20:46 - 2017-02-25 14:22 - 00003566 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-04-28 20:46 - 2017-02-25 14:22 - 00003442 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-04-28 19:32 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-04-27 22:55 - 2016-08-07 16:23 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\.ACEStream 2017-04-27 18:33 - 2015-03-21 19:28 - 00000000 ____D C:\Users\fafci_000\Desktop\ALLLLLLLL 2017-04-27 16:32 - 2015-12-16 20:01 - 00000000 ____D C:\ProgramData\Package Cache 2017-04-27 15:55 - 2017-01-05 15:45 - 00000000 ____D C:\Users\fafci_000\Documents\FIFA 17 2017-04-27 11:58 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2017-04-27 06:55 - 2015-10-21 20:44 - 00002289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-04-26 15:46 - 2014-10-14 11:13 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\uTorrent 2017-04-24 21:18 - 2016-11-20 00:07 - 00000000 ____D C:\Users\fafci_000\AppData\LocalLow\Mozilla 2017-04-24 21:01 - 2016-11-01 20:23 - 00000955 _____ C:\Users\Public\Desktop\AVG.lnk 2017-04-23 21:09 - 2015-10-29 23:34 - 00000196 _____ C:\Users\fafci_000\.packettracer 2017-04-23 13:01 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-04-23 13:01 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-04-18 14:22 - 2014-06-07 20:47 - 00000000 ____D C:\Users\fafci_000\AppData\Local\Packages 2017-04-17 17:36 - 2016-11-21 11:16 - 01578398 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-04-17 17:36 - 2016-11-21 10:34 - 00537616 _____ C:\WINDOWS\system32\perfh015.dat 2017-04-17 17:36 - 2016-11-21 10:34 - 00098546 _____ C:\WINDOWS\system32\perfc015.dat 2017-04-17 17:35 - 2017-02-25 13:49 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-04-17 17:35 - 2015-12-16 20:34 - 00000000 __SHD C:\Users\fafci_000\IntelGraphicsProfiles 2017-04-17 17:32 - 2016-11-21 11:06 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-04-17 17:31 - 2014-10-14 14:57 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-04-15 15:36 - 2014-10-15 21:42 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-04-15 15:30 - 2014-10-15 21:42 - 148601744 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-04-14 12:59 - 2015-09-22 16:42 - 00000886 _____ C:\Users\Public\Desktop\FIFA 16.lnk 2017-04-09 21:18 - 2015-12-29 15:03 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-04-05 20:11 - 2015-05-23 14:27 - 00000000 ____D C:\Users\fafci_000\AppData\Local\Avg 2017-04-05 20:11 - 2014-10-13 21:43 - 00000000 ____D C:\ProgramData\MFAData 2017-04-01 20:52 - 2017-03-25 20:21 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-04-01 20:52 - 2017-03-25 20:21 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-04-01 19:34 - 2015-12-14 15:51 - 00000000 ____D C:\ProgramData\Avg 2017-04-01 19:07 - 2015-12-14 16:04 - 00000000 ____D C:\Users\fafci_000\AppData\Roaming\AVG 2017-04-01 18:52 - 2015-12-14 15:51 - 00000000 ____D C:\Program Files (x86)\AVG ==================== Pliki w katalogu głównym wybranych folderów ======= 2014-10-14 20:40 - 2011-04-19 00:53 - 0199680 _____ (Igor Pavlov) C:\Program Files (x86)\7zxa.dll 2014-10-14 20:40 - 2014-08-27 22:41 - 0061528 _____ () C:\Program Files (x86)\Ace32Loader.exe 2014-10-14 20:40 - 2014-08-27 22:40 - 0211456 _____ () C:\Program Files (x86)\Default.SFX 2014-10-14 20:40 - 2014-08-27 22:40 - 0259072 _____ () C:\Program Files (x86)\Default64.SFX 2014-10-14 20:40 - 2014-05-08 23:16 - 0000852 _____ () C:\Program Files (x86)\Descript.ion 2014-10-14 20:40 - 2014-05-22 22:31 - 0006880 _____ () C:\Program Files (x86)\License.txt 2014-10-14 20:40 - 2010-11-25 15:15 - 0003266 _____ () C:\Program Files (x86)\Order.htm 2014-10-14 20:40 - 2014-08-27 22:41 - 0525400 _____ (Alexander Roshal) C:\Program Files (x86)\Rar.exe 2014-10-14 20:40 - 2014-08-06 19:52 - 0099263 _____ () C:\Program Files (x86)\Rar.txt 2014-10-14 20:40 - 2014-08-27 22:41 - 0318040 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt.dll 2014-10-14 20:40 - 2014-08-27 22:41 - 0267864 _____ (Alexander Roshal) C:\Program Files (x86)\RarExt32.dll 2014-10-14 20:40 - 2014-03-19 01:09 - 0001241 _____ () C:\Program Files (x86)\RarFiles.lst 2014-10-14 20:40 - 2014-10-14 20:40 - 0000020 _____ () C:\Program Files (x86)\rarnew.dat 2014-10-14 20:40 - 2013-01-11 22:13 - 0001284 _____ () C:\Program Files (x86)\ReadMe.txt 2014-10-14 20:40 - 2005-08-26 02:50 - 0077312 _____ () C:\Program Files (x86)\UNACEV2.DLL 2014-10-14 20:40 - 2014-08-27 22:41 - 0165976 _____ (Alexander Roshal) C:\Program Files (x86)\Uninstall.exe 2014-10-14 20:40 - 2014-08-27 22:41 - 0000443 _____ () C:\Program Files (x86)\Uninstall.lst 2014-10-14 20:40 - 2014-08-27 22:41 - 0331352 _____ (Alexander Roshal) C:\Program Files (x86)\UnRAR.exe 2014-10-14 20:40 - 2014-08-27 22:37 - 0045463 _____ () C:\Program Files (x86)\WhatsNew.txt 2014-10-14 20:40 - 2014-08-27 22:40 - 0198656 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon.SFX 2014-10-14 20:40 - 2014-08-27 22:40 - 0238592 _____ (Alexander Roshal) C:\Program Files (x86)\WinCon64.SFX 2014-10-14 20:40 - 2014-08-27 22:41 - 0298034 _____ () C:\Program Files (x86)\WinRAR.chm 2014-10-14 20:40 - 2014-08-27 22:41 - 1481816 _____ (Alexander Roshal) C:\Program Files (x86)\WinRAR.exe 2014-10-14 20:40 - 2014-08-27 22:41 - 0157184 _____ () C:\Program Files (x86)\Zip.SFX 2014-10-14 20:40 - 2014-08-27 22:41 - 0181248 _____ () C:\Program Files (x86)\Zip64.SFX 2014-10-14 20:40 - 2014-10-14 20:40 - 0000022 _____ () C:\Program Files (x86)\zipnew.dat 2015-07-05 20:08 - 2015-07-05 20:08 - 0000097 _____ () C:\Users\fafci_000\AppData\Local\fusioncache.dat 2015-08-17 14:26 - 2015-08-17 14:26 - 0000000 ___SH () C:\Users\fafci_000\AppData\Local\LumaEmu 2015-01-13 19:40 - 2015-01-13 19:40 - 0007976 _____ () C:\Users\fafci_000\AppData\Local\recently-used.xbel 2015-02-11 13:39 - 2015-10-31 20:35 - 0007668 _____ () C:\Users\fafci_000\AppData\Local\resmon.resmoncfg 2017-02-25 13:49 - 2017-02-25 13:49 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2016-12-28 10:36 - 2016-12-28 11:06 - 0001841 _____ () C:\ProgramData\hpzinstall.log Niektóre pliki w TEMP: ==================== 2017-04-28 21:06 - 2006-09-07 00:15 - 0344064 _____ (Electronic Arts Inc.) C:\Users\fafci_000\AppData\Local\Temp\eauninstall.exe 2017-04-28 21:06 - 2006-06-08 17:19 - 0073728 _____ (Electronic Arts Inc.) C:\Users\fafci_000\AppData\Local\Temp\FIFA 07_uninst.exe 2017-04-28 21:11 - 1999-06-25 12:55 - 0149504 _____ () C:\Users\fafci_000\AppData\Local\Temp\GLB1A2B.EXE ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-04-23 12:58 ==================== Koniec FRST.txt ============================