Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21-06-2017 01 Uruchomiony przez Darek (administrator) DAREK-KOMPUTER (22-06-2017 16:58:43) Uruchomiony z C:\Users\Darek\Desktop Załadowane profile: Darek (Dostępne profile: Darek & DefaultAppPool) Platform: Windows 10 Home Wersja 1511 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe (LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe () C:\Windows\SysWOW64\PnkBstrA.exe (Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe (Microsoft Corporation) C:\Windows\System32\mqsvc.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Razer Inc) C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe (Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe () C:\Gry\Counter-Strike 1.6 v43\SteamServerBrowser\SteamServerBrowser.exe (SteelSeries ApS) C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.5\GoogleCrashHandler64.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_2.15.20002.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Users\Darek\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13213840 2012-10-26] (Realtek Semiconductor) HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [529480 2016-02-24] (Autodesk Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5883912 2017-03-02] (LogMeIn Inc.) HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.) HKU\S-1-5-21-511756095-493730230-178181468-1000\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3042592 2017-06-08] (Valve Corporation) HKU\S-1-5-21-511756095-493730230-178181468-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27427808 2017-02-08] (Skype Technologies S.A.) HKU\S-1-5-21-511756095-493730230-178181468-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8722136 2016-06-01] (Piriform Ltd) HKU\S-1-5-21-511756095-493730230-178181468-1000\...\Run: [SteamServerBrowser] => C:\Gry\Counter-Strike 1.6 v43\SteamServerBrowser\SteamServerBrowser.exe [206848 2017-01-10] () ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll [2015-02-06] (Autodesk, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SteelSeries Engine 3.lnk [2016-11-27] ShortcutTarget: SteelSeries Engine 3.lnk -> C:\Program Files\SteelSeries\SteelSeries Engine 3\SteelSeriesEngine3.exe (SteelSeries ApS) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{1a0fb44c-da49-4d25-ba51-f757cd88ca00}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{4099926b-d972-4433-a130-ca45799d4e68}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{5683a063-7951-42a0-be91-0442ca83e5a7}: [DhcpNameServer] 10.10.54.1 Tcpip\..\Interfaces\{9697ed5b-96f8-4c62-95f0-618770fd4bd5}: [DhcpNameServer] 192.168.43.1 Internet Explorer: ================== BHO: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files\AMD\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_101\bin\ssv.dll [2016-08-04] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-08-04] (Oracle Corporation) BHO-x32: SteadyVideoBHO Class -> {6C680BAE-655C-4E3D-8FC4-E6A520C3D928} -> C:\Program Files (x86)\amd\SteadyVideo\SteadyVideo.dll [2012-02-14] (Advanced Micro Devices) Filter: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/mp4 - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files\AMD\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Filter-x32: video/x-flv - {20C75730-7C25-476B-95DC-C65810F9E489} - C:\Program Files (x86)\amd\SteadyVideo\VideoMIMEFilter.dll [2011-06-08] (Advanced Micro Devices) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxps://www.google.pl/ CHR StartupUrls: Default -> "hxxps://www.google.pl/" CHR Profile: C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default [2017-06-22] CHR Extension: (Dokumenty Google) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-08-11] CHR Extension: (Dysk Google) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-08-11] CHR Extension: (YouTube) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-08-11] CHR Extension: (Steam Inventory Helper) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2017-06-07] CHR Extension: (Tampermonkey) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2017-06-19] CHR Extension: (FBDown Video Downloader) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\fhplmmllnpjjlncfjpbbpjadoeijkogc [2017-06-18] CHR Extension: (Dokumenty Google offline) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-08-11] CHR Extension: (Hotspot Shield VPN Free Proxy – Unblock Sites) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbejmccbhkncgokjcmghpfloaajcffj [2017-06-22] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-10] CHR Extension: (Gmail) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-08-11] CHR Extension: (Chrome Media Router) - C:\Users\Darek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-06-21] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1145928 2016-02-24] (Autodesk Inc.) R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [361984 2013-02-15] (Advanced Micro Devices, Inc.) [Brak podpisu cyfrowego] S2 amdacpusrsvc; C:\Program Files\AMD\{920DEC42-4CA5-4d1d-9487-67BE645CDDFC}\amdacpusrsvc.exe [121856 2016-03-21] (Advanced Micro Devices) [Brak podpisu cyfrowego] S2 AODService; C:\Program Files (x86)\AMD\OverDrive\AODAssist.exe [137584 2014-09-19] () S4 Autodesk Content Service; C:\Program Files\Autodesk\Content Service\Connect.Service.ContentService.exe [31160 2015-02-05] (Autodesk, Inc.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1530376 2017-04-13] () S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [241936 2016-07-29] (EasyAntiCheat Ltd) S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3416584 2017-03-02] (LogMeIn Inc.) S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2017-03-28] (Hi-Rez Studios) [Brak podpisu cyfrowego] R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2017-02-27] (LogMeIn, Inc.) S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1136608 2016-03-10] (Malwarebytes) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2124296 2017-04-14] (Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [2185232 2017-04-14] (Electronic Arts) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [76152 2016-10-22] () R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [401024 2017-04-19] (Razer Inc.) R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [178312 2017-04-19] (Razer Inc.) S2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] () R2 RzSurroundVADStreamingService; C:\ProgramData\Razer\Synapse\Devices\Razer Surround\Driver\RzSurroundVADStreamingService.exe [4261344 2016-11-04] (Razer Inc) S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-07-17] (Microsoft Corporation) R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2016-10-25] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2017-06-03] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.) R2 AODDriver4.3.0; C:\Program Files (x86)\AMD\OverDrive\amd64\AODDriver2.sys [60104 2014-09-19] (Advanced Micro Devices) S3 athur; C:\WINDOWS\System32\drivers\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.) R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [110088 2017-03-31] (Advanced Micro Devices) U5 Chngr; C:\Users\Darek\Desktop\CSGO_Changer_OBT6_3\bin\Flo\Chngr10.sys [73568 2017-06-19] () R3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics Co., Ltd.) R3 hamachi; C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [45680 2016-07-20] (LogMeIn Inc.) S3 hitmanpro37; C:\WINDOWS\system32\drivers\hitmanpro37.sys [46960 2016-08-12] () R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [27008 2016-03-10] (Malwarebytes) S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [65408 2016-03-10] (Malwarebytes Corporation) S3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek ) S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2016-10-24] () R3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.) R3 RZSURROUNDVADService; C:\WINDOWS\system32\drivers\RzSurroundVAD.sys [49176 2016-10-16] (Windows (R) Win 7 DDK provider) R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [41824 2016-11-03] (SteelSeries ApS) R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [45928 2017-01-10] (SteelSeries ApS) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [165504 2016-09-05] (Samsung Electronics Co., Ltd.) S3 taphss6; C:\WINDOWS\System32\drivers\taphss6.sys [42064 2016-10-13] (Anchorfree Inc.) R3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [23040 2015-10-30] (Microsoft Corporation) R3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2016-10-16] (Windows (R) Win 7 DDK provider) R1 VBoxUSBMon; C:\WINDOWS\system32\DRIVERS\VBoxUSBMon.sys [127432 2015-09-16] (BigNox Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation) S3 xhunter1; C:\WINDOWS\xhunter1.sys [35880 2016-11-17] (Wellbia.com Co., Ltd.) R1 XQHDrv; C:\WINDOWS\system32\DRIVERS\XQHDrv.sys [253384 2015-09-16] (BigNox Corporation) R1 XQHDrv; C:\Windows\SysWOW64\DRIVERS\XQHDrv.sys [253384 2015-09-16] (BigNox Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-06-22 16:57 - 2017-06-22 16:58 - 00064621 _____ C:\Users\Darek\Desktop\Shortcut.txt 2017-06-22 16:57 - 2017-06-22 16:58 - 00015109 _____ C:\Users\Darek\Desktop\FRST.txt 2017-06-22 16:40 - 2017-06-22 16:44 - 00038081 _____ C:\Users\Darek\Desktop\Fixlog.txt 2017-06-21 16:33 - 2017-06-22 16:58 - 00000000 ____D C:\FRST 2017-06-21 16:33 - 2017-06-21 16:38 - 00052482 _____ C:\Users\Darek\Downloads\FRST.txt 2017-06-21 16:33 - 2017-06-21 16:33 - 00000000 ____D C:\Users\Darek\Downloads\FRST-OlderVersion 2017-06-21 16:31 - 2017-06-22 16:38 - 02439680 _____ (Farbar) C:\Users\Darek\Desktop\FRST64.exe 2017-06-21 15:47 - 2017-06-21 16:38 - 00087345 _____ C:\Users\Darek\Downloads\Addition.txt 2017-06-21 15:42 - 2017-06-21 15:42 - 00336152 _____ C:\Users\Darek\Desktop\OTL.Txt 2017-06-21 15:39 - 2017-06-21 15:39 - 00336152 _____ C:\Users\Darek\Downloads\OTL.Txt 2017-06-21 15:21 - 2017-06-21 15:23 - 64232976 _____ (Malwarebytes ) C:\Users\Darek\Downloads\mb3-setup-consumer-3.1.2.1733-1.0.141-1.0.2092.exe 2017-06-21 15:20 - 2017-06-21 15:20 - 00602112 _____ (OldTimer Tools) C:\Users\Darek\Downloads\OTL.exe 2017-06-21 15:19 - 2017-06-21 15:40 - 00167152 _____ C:\Users\Darek\Downloads\Extras.Txt 2017-06-21 01:09 - 2017-06-21 01:09 - 558451713 _____ C:\Users\Darek\Downloads\PolskiHurtworld_EU_0.3.8.6.7z 2017-06-21 00:25 - 2017-06-21 00:34 - 01130328 _____ (Google Inc.) C:\Users\Darek\Downloads\ChromeSetup.exe 2017-06-20 13:08 - 2017-06-20 13:09 - 04110280 _____ C:\Users\Darek\Downloads\adwcleaner_6.047.exe 2017-06-19 20:56 - 2017-06-19 20:56 - 00271407 _____ C:\Users\Darek\Downloads\BeyondCheat-3.19.0.0.rar 2017-06-19 20:56 - 2017-06-18 16:41 - 00000000 ____D C:\Users\Darek\Downloads\Modules 2017-06-19 20:56 - 2016-08-20 16:49 - 00000058 _____ C:\Users\Darek\Downloads\BeyondConfig.json 2017-06-19 20:09 - 2017-06-19 20:10 - 02781803 _____ C:\Users\Darek\Downloads\beyondcheat-3.19.0.0 (2).zip 2017-06-19 20:06 - 2017-06-19 20:06 - 02781794 _____ C:\Users\Darek\Downloads\command-for-admin.zip 2017-06-19 20:04 - 2017-06-19 20:04 - 00000000 ____D C:\Users\Darek\Downloads\beyondcheat-3.19.0.0 2017-06-19 20:03 - 2017-06-19 20:03 - 02781803 _____ C:\Users\Darek\Downloads\beyondcheat-3.19.0.0 (1).zip 2017-06-19 20:00 - 2017-06-19 20:00 - 02781803 _____ C:\Users\Darek\Downloads\beyondcheat-3.19.0.0.zip 2017-06-17 20:34 - 2017-06-17 20:39 - 11748321 _____ C:\Users\Darek\Downloads\MinerGate-6.8-win64.exe 2017-06-17 20:18 - 2017-06-17 20:18 - 13405751 _____ C:\Users\Darek\Downloads\Claymore's Dual Ethereum+Decred_Siacoin_Lbry_Pascal AMD+NVIDIA GPU Miner v9.5 - Catalyst 15.12-17.x - CUDA 8.0_7.5_6.5.zip 2017-06-17 20:18 - 2017-06-17 20:18 - 00000645 _____ C:\Users\Darek\Downloads\batminer.zip 2017-06-17 20:00 - 2017-06-17 20:01 - 00000000 ____D C:\Program Files (x86)\MSI Afterburner 2017-06-17 20:00 - 2017-06-17 20:00 - 00001151 _____ C:\Users\Darek\Desktop\MSI Afterburner.lnk 2017-06-17 20:00 - 2017-06-17 20:00 - 00000000 ____D C:\Users\Darek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2017-06-17 19:36 - 2017-06-17 19:38 - 40376862 _____ C:\Users\Darek\Downloads\MSIAfterburnerSetup.zip 2017-06-14 14:49 - 2017-06-03 14:51 - 01862008 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2017-06-14 14:49 - 2017-06-03 13:48 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2017-06-14 14:49 - 2017-06-03 13:45 - 00465760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2017-06-14 14:49 - 2017-06-03 13:44 - 21123320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2017-06-14 14:49 - 2017-06-03 13:14 - 00316256 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-06-14 14:49 - 2017-06-03 13:13 - 00546968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-06-14 14:49 - 2017-06-03 13:11 - 01368176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll 2017-06-14 14:49 - 2017-06-03 12:43 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2017-06-14 14:49 - 2017-06-03 12:40 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2017-06-14 14:49 - 2017-06-03 12:33 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\odbcconf.dll 2017-06-14 14:49 - 2017-06-03 12:15 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\unimdm.tsp 2017-06-14 14:49 - 2017-06-03 12:14 - 00205312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oemlicense.dll 2017-06-14 14:49 - 2017-06-03 12:09 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IdCtrls.dll 2017-06-14 14:49 - 2017-06-03 12:05 - 00260096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepsync.dll 2017-06-14 14:49 - 2017-06-03 12:04 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\apprepapi.dll 2017-06-14 14:49 - 2017-06-03 12:03 - 02597376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2017-06-14 14:49 - 2017-06-03 11:51 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSSync.dll 2017-06-14 14:49 - 2017-06-03 11:50 - 00792576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2017-06-14 14:49 - 2017-06-03 11:49 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2017-06-14 14:49 - 2017-06-03 11:44 - 00760320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2017-06-14 14:49 - 2017-06-03 11:43 - 00805888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll 2017-06-14 14:49 - 2017-06-03 11:41 - 00667648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2017-06-14 14:49 - 2017-06-03 11:40 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licensingdiag.exe 2017-06-14 14:49 - 2017-06-03 11:34 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2017-06-14 14:49 - 2017-06-03 11:27 - 04078080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2017-06-14 14:49 - 2017-06-03 11:19 - 01501184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2017-06-14 14:49 - 2017-06-03 11:16 - 01984000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2017-06-14 14:49 - 2017-06-03 11:14 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2017-06-14 14:49 - 2017-06-03 11:05 - 03575808 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2017-06-14 14:49 - 2017-06-03 10:59 - 02771456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2017-06-14 14:49 - 2017-06-03 10:56 - 04404736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2017-06-14 14:49 - 2017-06-03 10:55 - 05326848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2017-06-14 14:49 - 2017-06-03 10:51 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll 2017-06-14 14:49 - 2017-06-03 10:23 - 00461824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2017-06-14 14:48 - 2017-06-03 15:34 - 00118112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys 2017-06-14 14:48 - 2017-06-03 15:31 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2017-06-14 14:48 - 2017-06-03 14:45 - 06536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2017-06-14 14:48 - 2017-06-03 13:42 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-06-14 14:48 - 2017-06-03 13:39 - 00041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-06-14 14:48 - 2017-06-03 12:36 - 00865792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2017-06-14 14:48 - 2017-06-03 12:34 - 00095232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-06-14 14:48 - 2017-06-03 12:32 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2017-06-14 14:48 - 2017-06-03 12:31 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-06-14 14:48 - 2017-06-03 12:20 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certenc.dll 2017-06-14 14:48 - 2017-06-03 12:08 - 02280960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2017-06-14 14:48 - 2017-06-03 12:01 - 00541184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe 2017-06-14 14:48 - 2017-06-03 11:55 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2017-06-14 14:48 - 2017-06-03 11:49 - 01151488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certutil.exe 2017-06-14 14:48 - 2017-06-03 11:41 - 03695104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll 2017-06-14 14:48 - 2017-06-03 11:20 - 02911744 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2017-06-14 14:48 - 2017-06-03 10:48 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2017-06-14 14:46 - 2017-06-03 15:49 - 07464288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-06-14 14:46 - 2017-06-03 15:49 - 02656952 _____ C:\WINDOWS\system32\CoreUIComponents.dll 2017-06-14 14:46 - 2017-06-03 15:27 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll 2017-06-14 14:46 - 2017-06-03 14:57 - 00245848 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2017-06-14 14:46 - 2017-06-03 14:47 - 22560744 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2017-06-14 14:46 - 2017-06-03 13:49 - 00084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2017-06-14 14:46 - 2017-06-03 13:42 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2017-06-14 14:46 - 2017-06-03 13:41 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\odbcconf.dll 2017-06-14 14:46 - 2017-06-03 13:21 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\unimdm.tsp 2017-06-14 14:46 - 2017-06-03 13:19 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll 2017-06-14 14:46 - 2017-06-03 13:09 - 00200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll 2017-06-14 14:46 - 2017-06-03 13:08 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-06-14 14:46 - 2017-06-03 12:55 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2017-06-14 14:46 - 2017-06-03 12:50 - 00183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSSync.dll 2017-06-14 14:46 - 2017-06-03 12:49 - 00971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2017-06-14 14:46 - 2017-06-03 12:48 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2017-06-14 14:46 - 2017-06-03 12:43 - 00853504 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2017-06-14 14:46 - 2017-06-03 12:43 - 00842240 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2017-06-14 14:46 - 2017-06-03 12:41 - 01752576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2017-06-14 14:46 - 2017-06-03 12:40 - 01648128 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2017-06-14 14:46 - 2017-06-03 12:40 - 00961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll 2017-06-14 14:46 - 2017-06-03 12:34 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2017-06-14 14:46 - 2017-06-03 12:26 - 02433536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2017-06-14 14:46 - 2017-06-03 12:17 - 05123072 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2017-06-14 14:46 - 2017-06-03 12:16 - 01121792 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll 2017-06-14 14:46 - 2017-06-03 12:07 - 01729536 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2017-06-14 14:46 - 2017-06-03 12:06 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe 2017-06-14 14:46 - 2017-06-03 12:05 - 00307200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-06-14 14:46 - 2017-06-03 12:01 - 07977984 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2017-06-14 14:46 - 2017-06-03 11:49 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2017-06-14 14:46 - 2017-06-03 11:47 - 16985600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2017-06-14 14:46 - 2017-06-03 11:44 - 01526272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2017-06-14 14:46 - 2017-06-03 11:41 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2017-06-14 14:46 - 2017-06-03 11:31 - 04890112 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2017-06-14 14:46 - 2017-06-03 11:30 - 22376448 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-06-14 14:46 - 2017-06-03 11:19 - 24605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-06-14 14:46 - 2017-06-03 11:17 - 13393920 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-06-14 14:46 - 2017-06-03 11:05 - 07852032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-06-14 14:46 - 2017-06-03 11:00 - 19344896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-06-14 14:46 - 2017-06-03 10:59 - 18672640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-06-14 14:46 - 2017-06-03 10:59 - 03660288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2017-06-14 14:46 - 2017-06-03 10:57 - 12139008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-06-14 14:46 - 2017-06-03 10:42 - 05670400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-06-14 14:46 - 2017-06-03 08:03 - 00448576 _____ C:\WINDOWS\system32\ApnDatabase.xml 2017-06-14 14:45 - 2017-06-03 15:51 - 00129376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2017-06-14 14:45 - 2017-06-03 15:46 - 00754664 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2017-06-14 14:45 - 2017-06-03 14:47 - 00566112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2017-06-14 14:45 - 2017-06-03 14:46 - 01540224 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2017-06-14 14:45 - 2017-06-03 14:46 - 00692136 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2017-06-14 14:45 - 2017-06-03 14:43 - 01128104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2017-06-14 14:45 - 2017-06-03 14:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll 2017-06-14 14:45 - 2017-06-03 14:12 - 01987424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-06-14 14:45 - 2017-06-03 14:12 - 00636304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-06-14 14:45 - 2017-06-03 14:12 - 00379232 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-06-14 14:45 - 2017-06-03 14:10 - 01597520 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 01564512 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 01214816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00629088 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00544096 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00225632 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00136032 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2017-06-14 14:45 - 2017-06-03 13:57 - 00096608 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2017-06-14 14:45 - 2017-06-03 13:57 - 00034656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2017-06-14 14:45 - 2017-06-03 13:42 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll 2017-06-14 14:45 - 2017-06-03 13:41 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2017-06-14 14:45 - 2017-06-03 13:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2017-06-14 14:45 - 2017-06-03 13:39 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-06-14 14:45 - 2017-06-03 13:32 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2017-06-14 14:45 - 2017-06-03 13:27 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\certenc.dll 2017-06-14 14:45 - 2017-06-03 13:20 - 00285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oemlicense.dll 2017-06-14 14:45 - 2017-06-03 13:13 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\IdCtrls.dll 2017-06-14 14:45 - 2017-06-03 13:11 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll 2017-06-14 14:45 - 2017-06-03 13:09 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepsync.dll 2017-06-14 14:45 - 2017-06-03 13:07 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\apprepapi.dll 2017-06-14 14:45 - 2017-06-03 13:02 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe 2017-06-14 14:45 - 2017-06-03 12:48 - 00515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2017-06-14 14:45 - 2017-06-03 12:47 - 01418240 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2017-06-14 14:45 - 2017-06-03 12:45 - 01386496 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2017-06-14 14:45 - 2017-06-03 12:38 - 01663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2017-06-14 14:45 - 2017-06-03 12:37 - 04456448 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll 2017-06-14 14:45 - 2017-06-03 12:35 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\licensingdiag.exe 2017-06-14 14:45 - 2017-06-03 12:24 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll 2017-06-14 14:45 - 2017-06-03 12:20 - 03587072 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-06-14 14:45 - 2017-06-03 11:21 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2017-06-14 14:45 - 2017-06-03 11:19 - 06977024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2017-06-14 14:45 - 2017-06-03 11:00 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2017-06-14 14:45 - 2016-06-18 06:57 - 00523264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2017-06-11 21:49 - 2017-06-11 21:59 - 41315000 _____ (AMD Inc.) C:\Users\Darek\Downloads\radeon-crimson-relive-17.6.1-minimalsetup-170608_64bit.exe 2017-06-08 18:18 - 2017-06-09 00:29 - 00000000 ____D C:\Users\Darek\Desktop\Nowy folder 2017-06-08 17:34 - 2017-06-08 17:34 - 00001265 _____ C:\Users\Darek\Desktop\CrystalDiskInfo.lnk 2017-06-08 17:34 - 2017-06-08 17:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo 2017-06-08 17:33 - 2017-06-08 17:34 - 00000000 ____D C:\Program Files (x86)\CrystalDiskInfo 2017-06-08 17:33 - 2017-06-08 17:33 - 03961080 _____ (Crystal Dew World ) C:\Users\Darek\Downloads\CrystalDiskInfo7_0_5.exe 2017-06-08 17:26 - 2017-06-08 17:26 - 00000000 ____D C:\Users\Darek\Desktop\Józef Haller 2017-06-07 23:02 - 2017-06-07 23:02 - 00177487 _____ C:\Users\Darek\Downloads\18988490_1228428430613428_6621895850152951808_n.mp4 2017-06-07 22:57 - 2017-06-07 22:57 - 00736088 _____ C:\Users\Darek\Downloads\19012441_1928432720747353_7361302782583767040_n.mp4 2017-06-05 17:54 - 2017-06-05 17:54 - 00001341 _____ C:\Users\Darek\Downloads\Hurtworld_Chets_ByAnalnyKolega.xht 2017-06-05 16:22 - 2017-06-05 16:23 - 706721872 _____ C:\Users\Darek\Downloads\PolskiHurtworld_eu_v0.3.8.5.7z 2017-06-02 14:08 - 2017-06-02 14:08 - 00001406 _____ C:\Users\Darek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ustawienia aktualizacji i prywatności.lnk 2017-06-02 14:08 - 2017-06-02 14:08 - 00000000 ____D C:\Users\Darek\AppData\Local\UNP 2017-06-02 00:01 - 2017-06-02 00:02 - 00000000 ____D C:\Program Files\UNP 2017-06-02 00:01 - 2017-06-02 00:01 - 00000000 ____D C:\WINDOWS\system32\UNP 2017-05-31 23:12 - 2017-05-31 23:14 - 00280796 _____ C:\WINDOWS\Minidump\053117-24671-01.dmp 2017-05-30 16:20 - 2017-05-30 16:20 - 00280916 _____ C:\WINDOWS\Minidump\053017-25093-01.dmp 2017-05-30 11:35 - 2017-06-18 16:07 - 00000000 ____D C:\Users\Darek\Desktop\CSGO_Changer_OBT6_3 2017-05-30 11:33 - 2017-05-30 11:33 - 41575566 _____ C:\Users\Darek\Downloads\CSGO_Changer_OBT6_3.zip 2017-05-30 00:58 - 2017-05-30 00:58 - 00003160 _____ C:\WINDOWS\System32\Tasks\StartCN 2017-05-30 00:58 - 2017-05-30 00:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Settings 2017-05-30 00:31 - 2017-05-30 00:32 - 41315000 _____ (AMD Inc.) C:\Users\Darek\Downloads\radeon-crimson-relive-17.5.2-minimalsetup-170518_64bit.exe 2017-05-27 23:07 - 2017-05-27 23:17 - 00000000 ____D C:\Users\Darek\AppData\Roaming\BoL 2017-05-27 23:05 - 2017-05-27 23:05 - 32423602 _____ C:\Users\Darek\Downloads\c3iL 's BoL Folder.zip 2017-05-27 00:36 - 2017-05-27 00:36 - 00253042 _____ C:\WINDOWS\SysWOW64\lua52.dll 2017-05-27 00:36 - 2017-05-27 00:36 - 00167936 _____ C:\WINDOWS\SysWOW64\lua5.1.dll 2017-05-27 00:32 - 2017-05-27 00:32 - 03014144 _____ (Gaming0nStero!ds) C:\Users\Darek\Downloads\Loader.exe 2017-05-27 00:32 - 2017-05-27 00:32 - 00000000 ____D C:\Users\Darek\AppData\Roaming\GamingOnSteroids 2017-05-27 00:22 - 2017-05-27 00:22 - 06178953 _____ C:\Users\Darek\Downloads\Bot of Legends.rar 2017-05-26 23:46 - 2015-10-29 19:43 - 08629248 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0019.dll 2017-05-26 08:03 - 2017-05-26 08:03 - 07765511 _____ C:\Users\Darek\Downloads\projekt edukacyjny (1).pptx 2017-05-26 07:34 - 2017-05-26 07:34 - 01252948 _____ C:\Users\Darek\Downloads\projekt edukacyjny.pptx 2017-05-26 07:33 - 2017-05-26 07:34 - 00226657 _____ C:\Users\Darek\Downloads\Jankos-i-innocent.pptx 2017-05-23 15:26 - 2017-05-23 15:26 - 00000000 ____D C:\Users\Darek\AppData\Local\IsolatedStorage 2017-05-23 15:20 - 2017-05-23 15:20 - 44577682 _____ C:\Users\Darek\Downloads\CSGO_Changer_OBT6.rar ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-06-22 16:53 - 2017-05-11 16:13 - 00000000 ____D C:\Users\Darek\AppData\Roaming\TS3Client 2017-06-22 16:52 - 2016-08-04 11:32 - 00004218 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{9710A623-00BC-4303-B5AE-3474C472A386} 2017-06-22 16:49 - 2017-05-06 18:26 - 00000000 _____ C:\WINDOWS\system32\RzSurroundVADAudioDeviceManager_log.txt 2017-06-22 16:47 - 2016-08-06 00:09 - 00000008 __RSH C:\Users\Darek\ntuser.pol 2017-06-22 16:47 - 2016-07-29 11:43 - 00000000 ____D C:\Users\Darek 2017-06-22 16:46 - 2016-08-04 00:18 - 00000008 __RSH C:\ProgramData\ntuser.pol 2017-06-22 16:46 - 2016-04-27 07:27 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-06-22 16:45 - 2016-07-29 11:38 - 00065536 _____ C:\WINDOWS\system32\spu_storage.bin 2017-06-22 16:45 - 2015-10-30 08:28 - 00524288 ___SH C:\WINDOWS\system32\config\BBI 2017-06-22 16:41 - 2017-02-03 00:34 - 00000000 ____D C:\Users\Darek\AppData\LocalLow\Temp 2017-06-22 16:40 - 2009-07-14 05:20 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2017-06-22 15:54 - 2016-03-14 00:08 - 00000000 ____D C:\Program Files (x86)\Steam 2017-06-22 14:16 - 2017-03-01 20:31 - 00738856 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys 2017-06-22 14:03 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps 2017-06-22 14:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-06-21 16:38 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF 2017-06-21 00:38 - 2016-08-11 15:02 - 00000000 ____D C:\Program Files (x86)\Google 2017-06-21 00:23 - 2015-10-11 15:11 - 00000000 ____D C:\AdwCleaner 2017-06-20 13:15 - 2016-08-03 23:16 - 00000000 ____D C:\Program Files\Recuva 2017-06-17 19:31 - 2016-03-20 12:34 - 00000000 ____D C:\Users\Darek\AppData\Roaming\Skype 2017-06-15 22:39 - 2016-04-27 07:33 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-06-15 22:37 - 2016-04-26 22:24 - 00298944 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Defender 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2017-06-15 22:33 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Defender 2017-06-15 22:32 - 2016-07-30 12:04 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2017-06-15 22:32 - 2016-07-30 12:04 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2017-06-14 15:10 - 2016-07-30 12:06 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-06-14 15:04 - 2016-07-30 12:06 - 133627792 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-06-14 15:04 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-06-14 14:56 - 2016-07-30 12:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2017-06-11 21:59 - 2014-12-31 11:45 - 00000000 ____D C:\AMD 2017-06-11 20:47 - 2016-07-19 22:33 - 00000000 ____D C:\Users\Darek\AppData\Roaming\steelseries-engine-3-client 2017-06-07 21:35 - 2016-07-29 11:42 - 02128712 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-06-07 21:35 - 2016-04-27 07:04 - 00921548 _____ C:\WINDOWS\system32\perfh015.dat 2017-06-07 21:35 - 2016-04-27 07:04 - 00203630 _____ C:\WINDOWS\system32\perfc015.dat 2017-06-07 21:34 - 2016-06-17 21:11 - 00000000 ____D C:\Users\Darek\AppData\Roaming\uTorrent 2017-06-07 21:29 - 2016-08-24 01:10 - 00000000 ____D C:\Users\Darek\AppData\LocalLow\uTorrent 2017-06-05 19:45 - 2016-12-10 18:12 - 00000000 ____D C:\Users\Darek\Documents\OCCT 2017-06-03 20:08 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache 2017-06-03 15:14 - 2016-04-27 07:29 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-06-03 10:56 - 2017-05-19 17:15 - 00000000 ____D C:\Users\Darek\Desktop\obrazki 2017-06-03 05:07 - 2015-10-30 09:26 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-06-03 05:07 - 2015-10-30 09:26 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-05-31 23:12 - 2017-05-19 18:06 - 454912980 _____ C:\WINDOWS\MEMORY.DMP 2017-05-31 23:12 - 2016-08-12 17:33 - 00000000 ____D C:\WINDOWS\Minidump 2017-05-30 22:45 - 2010-11-21 05:27 - 00565416 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-05-30 00:58 - 2016-11-14 00:18 - 00000000 ____D C:\Users\Darek\AppData\LocalLow\AMD 2017-05-26 23:46 - 2016-04-27 07:08 - 00000000 ____D C:\WINDOWS\OCR ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-08-24 00:05 - 2016-08-24 00:05 - 0000133 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.64.bc ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-06-15 11:12 ==================== Koniec FRST.txt ============================