Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 03.05.2018 Uruchomiony przez Piotr (administrator) PIEC-KAFLOWY (05-05-2018 22:59:42) Uruchomiony z D:\Biblioteki\Pobrane Załadowane profile: Piotr (Dostępne profile: Piotr) Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\atiesrxx.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (AMD) C:\Windows\System32\atieclxx.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Cambridge Silicon Radio Limited) D:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\66.0.3359.12\remoting_host.exe (Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome Remote Desktop\66.0.3359.12\remoting_host.exe (Cambridge Silicon Radio Limited) D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe (Cambridge Silicon Radio Limited) D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe (Scarlet.Crush Productions) D:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpService.exe (ESET) D:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (F5 Networks, Inc.) C:\Windows\SysWOW64\F5InstallerService.exe (F5 Networks, Inc.) C:\Windows\SysWOW64\F5FltSrv.exe (F5 Networks, Inc.) C:\Windows\SysWOW64\F5TrafficSrv.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (F5 Networks, Inc.) C:\Windows\SysWOW64\F5MachineCertService.exe (Advanced Micro Devices, Inc.) D:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (ESET) D:\Program Files\ESET\ESET Smart Security\egui.exe (TuneUp Software) D:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe (NTeWORKS) D:\Program Files (x86)\PicPick\picpick.exe (f.lux Software LLC) C:\Users\Piotr\AppData\Local\FluxSoftware\Flux\flux.exe (Spotify Ltd) C:\Users\Piotr\AppData\Roaming\Spotify\SpotifyWebHelper.exe (Scarlet.Crush Productions) D:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpTrayApp.exe (Dropbox, Inc.) C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe (Cambridge Silicon Radio Limited) D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe (Dropbox, Inc.) C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe (TuneUp Software) D:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesApp64.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Spotify Ltd) C:\Users\Piotr\AppData\Roaming\Spotify\Spotify.exe (Advanced Micro Devices, Inc.) D:\Program Files\AMD\CNext\CNext\amddvr.exe (Spotify Ltd) C:\Users\Piotr\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Piotr\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Piotr\AppData\Roaming\Spotify\Spotify.exe (Advanced Micro Devices, Inc.) D:\Program Files\AMD\CNext\CNext\amdow.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Python Software Foundation) D:\Program Files\Python36-32\pythonw.exe (Python Software Foundation) D:\Program Files\Python36-32\pythonw.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [egui] => D:\Program Files\ESET\ESET Smart Security\egui.exe [4081008 2012-03-07] (ESET) HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\Run: [PicPick Start] => D:\Program Files (x86)\PicPick\picpick.exe [19920704 2015-06-16] (NTeWORKS) HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\Run: [f.lux] => C:\Users\Piotr\AppData\Local\FluxSoftware\Flux\flux.exe [1678840 2017-10-10] (f.lux Software LLC) HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\Run: [Piotr] => explorer.exe hxxp://exinariuminix.info <==== UWAGA HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\Run: [GoogleChromeAutoLaunch_555C9C84E87400ED348C4CD617569470] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [1586008 2018-04-26] (Google Inc.) HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\Run: [Spotify Web Helper] => C:\Users\Piotr\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-03-28] (Spotify Ltd) HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {037b65c8-ac92-11e6-b134-889870bd0942} - G:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {072e79ef-1c7f-11e7-82cb-463500000031} - I:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {2da9d58c-383f-11e8-b448-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {4d90c6ff-3846-11e8-a33d-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {4d90c70e-3846-11e8-a33d-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {74d00034-ac23-11e6-baf4-b6ca38233c40} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {8cc2fae0-ae59-11e7-b4b1-463500000031} - E:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {90a6343f-015f-11e5-bceb-fcaa1475b077} - G:\DTLplus_Launcher.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {942d01ff-b6d3-11e5-affc-fcaa1475b077} - F:\setup.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {a93d50c5-3771-11e8-bac4-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {a93d5151-3771-11e8-bac4-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {d238e567-368e-11e8-92f2-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {d238e588-368e-11e8-92f2-463500000031} - E:\AutoRun.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {f241e491-d250-11e6-a711-fcaa1475b077} - J:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {f7d80438-af21-11e7-92de-463500000031} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {f7d80443-af21-11e7-92de-463500000031} - E:\HiSuiteDownLoader.exe HKU\S-1-5-21-948294637-126623534-2788625075-1000\...\MountPoints2: {fdba4e03-312b-11e8-82fc-463500000031} - E:\HiSuiteDownLoader.exe IFEO\skype.exe: [Debugger] "D:\Program Files (x86)\TuneUp Utilities 2014\TUAutoReactivator64.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ScpToolkit Tray Notifications.lnk [2018-03-24] ShortcutTarget: ScpToolkit Tray Notifications.lnk -> D:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpTrayApp.exe (Scarlet.Crush Productions) Startup: C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2018-04-25] ShortcutTarget: Dropbox.lnk -> C:\Users\Piotr\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.) GroupPolicy: Ograniczenia <==== UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{1B9A5DA3-F247-445C-AC17-9588EC76E6B6}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{414C1CD0-0D48-40CB-AC6F-F99E9D9D5824}: [DhcpNameServer] 172.20.10.1 Tcpip\..\Interfaces\{D9B43C93-4D53-4175-8FE8-4C323B34A048}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{DF20471D-35F1-45D4-9FCC-2DF77BF59A87}: [NameServer] 10.1.1.0,10.1.1.100 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2018-05-04] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-22] (Oracle Corporation) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\root\Office16\URLREDIR.DLL [2018-05-04] (Microsoft Corporation) BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> D:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2012-10-01] (Microsoft Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-22] (Oracle Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2018-05-04] (Microsoft Corporation) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\URLREDIR.DLL [2018-05-04] (Microsoft Corporation) BHO-x32: Brak nazwy -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> Brak pliku DPF: HKLM-x32 {00627E89-A19D-4A2B-938B-059CB7B1B493} file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5certchk.cab DPF: HKLM-x32 {2A0B9B82-D5C8-4D3D-8338-AD55B23662B1} file://C:/Program Files (x86)/F5 VPN/F5_TMP/cachecleaner.cab DPF: HKLM-x32 {2BCDB465-81F9-41CB-832C-8037A4064446} file://C:/Program Files (x86)/F5 VPN/F5_TMP/urxvpn.cab DPF: HKLM-x32 {2c8ffa64-e3f7-49ae-87c2-49018fde3aea} file://C:/Program Files (x86)/F5 VPN/F5_TMP/OesisInspector.cab DPF: HKLM-x32 {41EF3CD2-D8CC-4438-84B1-280BB4E77C8E} file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5tunsrv.cab DPF: HKLM-x32 {45B69029-F3AB-4204-92DE-D5140C3E8E74} file://C:/Program Files (x86)/F5 VPN/F5_TMP/InstallerControl.cab DPF: HKLM-x32 {57C76689-F052-487B-A19F-855AFDDF28EE} C:\Windows\TEMP\f5tmp\f5InspectionHost.cab DPF: HKLM-x32 {7E73BE8F-FD87-44EC-8E22-023D5FF960FF} file://C:/Program Files (x86)/F5 VPN/F5_TMP/vdeskctrl.cab DPF: HKLM-x32 {8F6AFB67-F834-4227-94A7-A51377E0678E} file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5GroupPolicyAgent.cab DPF: HKLM-x32 {CC85ACDF-B277-486F-8C70-2C9B2ED2A4E7} file://C:/Program Files (x86)/F5 VPN/F5_TMP/urxshost.cab DPF: HKLM-x32 {E0FF21FA-B857-45C5-8621-F120A0C17FF2} file://C:/Program Files (x86)/F5 VPN/F5_TMP/urxhost.cab DPF: HKLM-x32 {E615C9EA-AD69-4AE9-83C9-9D906A0ACA6D} file://C:/Program Files (x86)/F5 VPN/F5_TMP/f5syschk.cab Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - D:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2012-10-01] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-05-04] (Microsoft Corporation) Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies) FireFox: ======== FF DefaultProfile: ifukcu1k.default FF ProfilePath: C:\Users\Piotr\AppData\Roaming\Oxylane\ONconnect\Profiles\akw68t6c.default [2015-08-24] FF ProfilePath: C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\ifukcu1k.default [2018-04-19] FF Extension: (DownThemAll! AntiContainer) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\ifukcu1k.default\Extensions\anticontainer@downthemall.net.xpi [2015-07-04] [Przestarzałe] FF Extension: (FlashGot) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\ifukcu1k.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2016-12-29] [Przestarzałe] FF Extension: (Adblock Plus) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\ifukcu1k.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-11-23] [Przestarzałe] FF Extension: (DownThemAll!) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\ifukcu1k.default\Extensions\{DDC359D1-844A-42a7-9AA1-88A850A938A8}.xpi [2015-12-12] [Przestarzałe] FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - D:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird FF Extension: (ESET Smart Security Extension) - D:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2015-05-18] [Przestarzałe] [Brak podpisu cyfrowego] FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> d:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.) FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-22] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-22] (Oracle Corporation) FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-04-03] (Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> d:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [2015-08-06] (Adobe Systems) FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> d:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-04-03] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2018-03-27] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-15] (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> d:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect32.dll [2015-08-06] (Adobe Systems) FF Plugin HKU\S-1-5-21-948294637-126623534-2788625075-1000: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> d:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2015-06-08] (Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR DefaultProfile: Default CHR HomePage: Default -> hxxps://web.whatsapp.com/ CHR StartupUrls: Default -> "hxxp://google.pl/","hxxp://my.ge.com" CHR Profile: C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default [2018-05-05] CHR Extension: (Dysk Google) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-03-14] CHR Extension: (uBlock Origin) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-05-05] CHR Extension: (Videostream for Google Chromecast™) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cnciopoikihiagdjbjpnocolokfelagl [2018-04-02] CHR Extension: (MyJDownloader Browser Extension) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbcohnmimjicjdomonkcbcpbpnhggkip [2018-04-22] CHR Extension: (Pulpit zdalny Chrome) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2018-03-10] CHR Extension: (Dokumenty Google offline) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-03-14] CHR Extension: (Google Keep – notatki i listy) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmjkmjkepdijhoojdojkdfohbdgmmhki [2018-05-04] CHR Extension: (Downloads) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\jfchnphgogjhineanplmfkofljiagjfb [2015-08-05] CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2018-03-14] CHR Extension: (Rozszerzenie Google Keep do Chrome) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2018-05-04] CHR Extension: (Save to Pocket) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2018-04-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Checker Plus for Gmail™) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2018-05-04] CHR Extension: (Chrome Media Router) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-04-25] CHR Profile: C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Guest Profile [2016-01-22] CHR Profile: C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\System Profile [2016-01-22] CHR HKU\S-1-5-21-948294637-126623534-2788625075-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [apdfllckaahabafndbhieahigkjlhalf] - C:\Users\Piotr\AppData\Local\Google\Drive\user_default\apdfllckaahabafndbhieahigkjlhalf_live.crx [2018-03-14] CHR HKU\S-1-5-21-948294637-126623534-2788625075-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [acaoakiamfeidcmgooclgeleejkbaecf] - C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2319848 2018-01-05] (Adobe Systems, Incorporated) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-09-22] (Apple Inc.) R2 BtSwitcherService; D:\Program Files\CSR\CSR Harmony Wireless Software Stack\BtSwitcherService.exe [64216 2012-03-22] (Cambridge Silicon Radio Limited) R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\66.0.3359.12\remoting_host.exe [71000 2018-03-06] (Google Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8566440 2018-04-23] (Microsoft Corporation) R2 CSRBtAudioService; D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtAudioService.exe [465624 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtOBEXService; D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtOBEXService.exe [1041616 2012-03-22] (Cambridge Silicon Radio Limited) R2 CsrBtService; D:\Program Files\CSR\CSR Harmony Wireless Software Stack\CsrBtService.exe [825032 2012-03-22] (Cambridge Silicon Radio Limited) R2 Ds3Service; D:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpService.exe [389632 2016-01-10] (Scarlet.Crush Productions) [Brak podpisu cyfrowego] R2 ekrn; D:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [913144 2012-03-07] (ESET) R2 F5 Networks Component Installer; C:\Windows\SysWOW64\F5InstallerService.exe [403424 2016-10-28] (F5 Networks, Inc.) R2 F5FltSrv; C:\Windows\SysWOW64\F5FltSrv.exe [359904 2016-10-28] (F5 Networks, Inc.) R2 F5TrafficSrv; C:\Windows\SysWOW64\F5TrafficSrv.exe [211472 2013-09-20] (F5 Networks, Inc.) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [355232 2015-08-09] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [192120 2015-09-19] (Logitech Inc.) R2 MachineCertService; C:\Windows\SysWOW64\F5MachineCertService.exe [267792 2013-09-20] (F5 Networks, Inc.) S3 OverwolfUpdater; C:\Program Files (x86)\Overwolf\OverwolfUpdater.exe [1453896 2018-04-26] (Overwolf LTD) R2 TuneUp.UtilitiesSvc; D:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesService64.exe [2145080 2014-07-16] (TuneUp Software) S3 updater; D:\Program Files\Nefarius Software Solutions\ScpToolkit\ScpUpdater.exe [464384 2016-01-10] (Nefarius Software Solutions) [Brak podpisu cyfrowego] R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) S3 ose64; "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE" [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 amdkmpfd; C:\Windows\System32\DRIVERS\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) S3 anvsnddrv; C:\Windows\System32\drivers\anvsnddrv.sys [34416 2017-06-20] (AnvSoft Inc.) S3 csravrcp; C:\Windows\System32\DRIVERS\csravrcp.sys [26304 2012-03-22] (Cambridge Silicon Radio Limited) S3 CsrBtPort; C:\Windows\System32\DRIVERS\CsrBtPort.sys [2784968 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrpan; C:\Windows\System32\DRIVERS\csrpan.sys [39616 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrserial; C:\Windows\System32\DRIVERS\csrserial.sys [61128 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusb; C:\Windows\System32\Drivers\csrusb.sys [47296 2012-03-22] (Cambridge Silicon Radio Limited) S3 csrusbfilter; C:\Windows\System32\Drivers\csrusbfilter.sys [23752 2012-03-22] (Cambridge Silicon Radio Limited) S3 csr_bthav; C:\Windows\System32\drivers\csrbthav.sys [99520 2012-03-22] (Cambridge Silicon Radio Limited) S3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2017-09-06] (Disc Soft Ltd) S3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2017-09-06] (Disc Soft Ltd) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [209768 2012-03-14] (ESET) R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [148528 2012-03-14] (ESET) R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [187632 2012-03-14] (ESET) R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [38288 2012-03-14] (ESET) R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62496 2012-03-14] (ESET) S3 F5FltDrv; C:\Windows\SysWOW64\drivers\F5FltDrv.sys [47848 2016-10-28] (F5 Networks, Inc.) S3 f5ipfw; C:\Windows\system32\drivers\urfltv64.sys [30952 2013-09-06] (F5 Networks, Inc.) S3 HWHandSet; C:\Windows\System32\DRIVERS\hw_quusbmdm.sys [226560 2017-07-26] (Huawei Technologies Co., Ltd.) [Brak podpisu cyfrowego] U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2017-07-26] (Huawei Technologies Co., Ltd.) R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech) R3 LGJoyXlCore; C:\Windows\System32\drivers\LGJoyXlCore.sys [68384 2015-06-11] (Logitech Inc.) R3 LGSHidFilt; C:\Windows\System32\DRIVERS\LGSHidFilt.Sys [64280 2013-05-30] (Logitech Inc.) R3 LGSUsbFilt; C:\Windows\System32\DRIVERS\LGSUsbFilt.Sys [41752 2013-05-30] (Logitech Inc.) S3 libusb0; C:\Windows\System32\DRIVERS\libusb0.sys [52832 2017-01-06] (hxxp://libusb-win32.sourceforge.net) R3 libusbK; C:\Windows\System32\DRIVERS\libusbK.sys [47200 2018-03-07] (hxxp://libusb-win32.sourceforge.net) R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 MotioninJoyXFilter; C:\Windows\System32\DRIVERS\MijXfilt.sys [115272 2011-11-10] (MotioninJoy) [Brak podpisu cyfrowego] S3 ptun0901; C:\Windows\System32\DRIVERS\ptun0901.sys [27136 2016-06-15] (The OpenVPN Project) S3 RtlWlanu; C:\Windows\System32\DRIVERS\rtwlanu.sys [3591384 2014-10-13] (Realtek Semiconductor Corporation ) R3 ScpVBus; C:\Windows\System32\DRIVERS\ScpVBus.sys [39168 2013-05-19] (Scarlet.Crush Productions) R3 TuneUpUtilitiesDrv; D:\Program Files (x86)\TuneUp Utilities 2014\TuneUpUtilitiesDriver64.sys [14112 2014-06-23] (TuneUp Software) R3 urvpndrv; C:\Windows\System32\DRIVERS\covpnv64.sys [45776 2013-09-06] (F5 Networks, Inc.) S1 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [117768 2015-09-08] (Oracle Corporation) S3 ew_hwusbdev; system32\DRIVERS\ew_hwusbdev.sys [X] S3 ew_usbenumfilter; system32\DRIVERS\ew_usbenumfilter.sys [X] S3 huawei_cdcacm; system32\DRIVERS\ew_jucdcacm.sys [X] S3 huawei_enumerator; system32\DRIVERS\ew_jubusenum.sys [X] S3 huawei_ext_ctrl; system32\DRIVERS\ew_juextctrl.sys [X] S3 huawei_wwanecm; system32\DRIVERS\ew_juwwanecm.sys [X] S3 vmci; \SystemRoot\system32\DRIVERS\vmci.sys [X] S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-05-05 17:23 - 2018-05-05 17:23 - 000000000 ____D C:\Users\Piotr\Python-exercises 2018-05-05 16:45 - 2018-05-05 17:23 - 000000000 ____D C:\Users\Piotr\.idlerc 2018-05-05 16:44 - 2018-05-05 16:44 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6 2018-05-04 22:31 - 2018-05-04 22:31 - 000003060 _____ C:\cr3.exe — skrót.lnk 2018-05-04 22:03 - 2018-05-04 22:34 - 000000000 ____D C:\Users\Piotr\.cr3 2018-05-04 22:00 - 2018-05-04 22:00 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\mIRC 2018-05-04 22:00 - 2018-05-04 22:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\mIRC 2018-05-04 19:21 - 2018-05-04 19:21 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2018-05-04 19:20 - 2018-05-04 19:20 - 000000000 ____D C:\Users\Default\AppData\Local\Google 2018-05-04 19:20 - 2018-05-04 19:20 - 000000000 ____D C:\Users\Default User\AppData\Local\Google 2018-04-25 23:25 - 2018-04-25 23:25 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-04-21 00:11 - 2018-05-05 16:44 - 000000000 ____D C:\Users\Piotr\AppData\Local\Package Cache 2018-04-18 19:19 - 2018-04-18 19:19 - 000000000 ____D C:\ProgramData\X360CE 2018-04-14 23:46 - 2018-04-20 22:00 - 000004976 _____ C:\Windows\System32\Tasks\Microsoft Office 15 Sync Maintenance for Piec-Kaflowy-Piotr Piec-Kaflowy 2018-04-11 19:49 - 2018-04-11 19:49 - 000000000 ____D C:\Users\Piotr\AppData\Local\Targem 2018-04-10 21:56 - 2018-03-31 04:09 - 005583040 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2018-04-10 21:56 - 2018-03-31 04:09 - 000708288 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2018-04-10 21:56 - 2018-03-31 04:09 - 000262336 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2018-04-10 21:56 - 2018-03-31 04:09 - 000154816 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2018-04-10 21:56 - 2018-03-31 04:09 - 000095424 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2018-04-10 21:56 - 2018-03-31 03:45 - 000631640 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2018-04-10 21:56 - 2018-03-31 03:39 - 004046528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2018-04-10 21:56 - 2018-03-31 03:39 - 003958464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2018-04-10 21:56 - 2018-03-31 03:38 - 001665336 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 001461248 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000094720 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:35 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:12 - 001314064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:09 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 03:06 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2018-04-10 21:56 - 2018-03-31 03:06 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2018-04-10 21:56 - 2018-03-31 03:06 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2018-04-10 21:56 - 2018-03-31 03:06 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2018-04-10 21:56 - 2018-03-31 03:03 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2018-04-10 21:56 - 2018-03-31 03:02 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2018-04-10 21:56 - 2018-03-31 03:02 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys 2018-04-10 21:56 - 2018-03-31 02:59 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2018-04-10 21:56 - 2018-03-31 02:58 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2018-04-10 21:56 - 2018-03-31 02:58 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2018-04-10 21:56 - 2018-03-31 02:58 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2018-04-10 21:56 - 2018-03-31 02:58 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2018-04-10 21:56 - 2018-03-31 02:51 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2018-04-10 21:56 - 2018-03-31 02:47 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2018-04-10 21:56 - 2018-03-31 02:47 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2018-04-10 21:56 - 2018-03-31 02:47 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2018-04-10 21:56 - 2018-03-31 02:47 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2018-04-10 21:56 - 2018-03-28 09:30 - 003225600 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2018-04-10 21:56 - 2018-03-23 20:50 - 000396952 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2018-04-10 21:56 - 2018-03-23 19:59 - 000348824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2018-04-10 21:56 - 2018-03-23 01:00 - 025742336 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2018-04-10 21:56 - 2018-03-22 23:32 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2018-04-10 21:56 - 2018-03-22 23:32 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2018-04-10 21:56 - 2018-03-22 23:26 - 020287488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2018-04-10 21:56 - 2018-03-22 23:19 - 002901504 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2018-04-10 21:56 - 2018-03-22 23:18 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2018-04-10 21:56 - 2018-03-22 23:17 - 000578048 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2018-04-10 21:56 - 2018-03-22 23:17 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2018-04-10 21:56 - 2018-03-22 23:17 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2018-04-10 21:56 - 2018-03-22 23:17 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2018-04-10 21:56 - 2018-03-22 23:15 - 005780480 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2018-04-10 21:56 - 2018-03-22 23:10 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2018-04-10 21:56 - 2018-03-22 23:09 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2018-04-10 21:56 - 2018-03-22 23:07 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2018-04-10 21:56 - 2018-03-22 23:06 - 000794112 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2018-04-10 21:56 - 2018-03-22 23:06 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2018-04-10 21:56 - 2018-03-22 23:06 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2018-04-10 21:56 - 2018-03-22 23:05 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2018-04-10 21:56 - 2018-03-22 23:04 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2018-04-10 21:56 - 2018-03-22 22:58 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2018-04-10 21:56 - 2018-03-22 22:55 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2018-04-10 21:56 - 2018-03-22 22:52 - 000499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2018-04-10 21:56 - 2018-03-22 22:52 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2018-04-10 21:56 - 2018-03-22 22:51 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2018-04-10 21:56 - 2018-03-22 22:51 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2018-04-10 21:56 - 2018-03-22 22:50 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2018-04-10 21:56 - 2018-03-22 22:49 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2018-04-10 21:56 - 2018-03-22 22:48 - 002295296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2018-04-10 21:56 - 2018-03-22 22:48 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2018-04-10 21:56 - 2018-03-22 22:48 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2018-04-10 21:56 - 2018-03-22 22:45 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2018-04-10 21:56 - 2018-03-22 22:45 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2018-04-10 21:56 - 2018-03-22 22:45 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2018-04-10 21:56 - 2018-03-22 22:44 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2018-04-10 21:56 - 2018-03-22 22:43 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2018-04-10 21:56 - 2018-03-22 22:42 - 000661504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2018-04-10 21:56 - 2018-03-22 22:42 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2018-04-10 21:56 - 2018-03-22 22:42 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2018-04-10 21:56 - 2018-03-22 22:41 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2018-04-10 21:56 - 2018-03-22 22:40 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2018-04-10 21:56 - 2018-03-22 22:33 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2018-04-10 21:56 - 2018-03-22 22:31 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2018-04-10 21:56 - 2018-03-22 22:29 - 015282688 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2018-04-10 21:56 - 2018-03-22 22:29 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2018-04-10 21:56 - 2018-03-22 22:29 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2018-04-10 21:56 - 2018-03-22 22:29 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2018-04-10 21:56 - 2018-03-22 22:28 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2018-04-10 21:56 - 2018-03-22 22:28 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2018-04-10 21:56 - 2018-03-22 22:27 - 002135552 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2018-04-10 21:56 - 2018-03-22 22:27 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2018-04-10 21:56 - 2018-03-22 22:25 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2018-04-10 21:56 - 2018-03-22 22:25 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2018-04-10 21:56 - 2018-03-22 22:24 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2018-04-10 21:56 - 2018-03-22 22:22 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2018-04-10 21:56 - 2018-03-22 22:21 - 004496896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2018-04-10 21:56 - 2018-03-22 22:20 - 013680128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2018-04-10 21:56 - 2018-03-22 22:17 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2018-04-10 21:56 - 2018-03-22 22:15 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2018-04-10 21:56 - 2018-03-22 22:15 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2018-04-10 21:56 - 2018-03-22 22:14 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2018-04-10 21:56 - 2018-03-22 22:14 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2018-04-10 21:56 - 2018-03-22 22:04 - 001545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2018-04-10 21:56 - 2018-03-22 21:55 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2018-04-10 21:56 - 2018-03-22 21:53 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2018-04-10 21:56 - 2018-03-22 21:52 - 001313792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2018-04-10 21:56 - 2018-03-22 21:51 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2018-04-10 21:56 - 2018-03-14 19:14 - 000135360 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe 2018-04-10 21:56 - 2018-03-14 19:09 - 000656384 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 001993728 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe 2018-04-10 21:56 - 2018-03-14 15:05 - 001559552 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000739840 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000599552 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000450048 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000414720 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000291840 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll 2018-04-10 21:56 - 2018-03-14 15:05 - 000237056 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll 2018-04-10 21:56 - 2018-03-10 19:11 - 000340480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll 2018-04-10 21:56 - 2018-03-09 20:18 - 000309440 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2018-04-10 21:56 - 2018-03-09 20:12 - 000383680 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2018-04-10 21:56 - 2018-03-09 20:12 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll 2018-04-10 21:56 - 2018-03-09 20:12 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2018-04-10 21:56 - 2018-03-09 20:12 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2018-04-10 21:56 - 2018-03-09 20:11 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2018-04-10 21:56 - 2018-03-09 20:07 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll 2018-04-10 21:56 - 2018-03-09 20:07 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2018-04-10 21:56 - 2018-03-09 20:07 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2018-04-10 21:56 - 2018-03-09 20:06 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2018-04-10 21:56 - 2018-03-09 20:06 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2018-04-10 21:56 - 2018-03-09 19:31 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2018-04-10 21:56 - 2018-03-06 20:13 - 000148160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll 2018-04-10 21:56 - 2018-03-06 20:11 - 000184320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll 2018-04-10 21:56 - 2018-03-06 20:11 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsnmp32.dll 2018-04-10 21:56 - 2018-03-06 20:10 - 000170176 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll 2018-04-10 21:56 - 2018-03-06 20:07 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll 2018-04-10 21:56 - 2018-03-06 20:07 - 000067072 _____ (Microsoft Corporation) C:\Windows\system32\wsnmp32.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000995272 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000063832 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000020824 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-math-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000019800 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000017752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-string-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000017752 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-stdio-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000016216 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-runtime-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000015704 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-convert-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000014168 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-time-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000014168 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-2-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000013656 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012632 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-process-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012632 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-heap-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012632 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-conio-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-utility-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-locale-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-environment-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-2-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000012120 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-1.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l2-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-timezone-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l2-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:05 - 000011608 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-2-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000922944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000066392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000022360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000019800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000017752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000017752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000016216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000015704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000014168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000014168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000013656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000012120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll 2018-04-10 21:56 - 2018-01-25 16:04 - 000011608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll 2018-04-07 13:11 - 2018-01-23 21:34 - 004387608 _____ C:\wget.exe 2018-04-06 23:27 - 2018-04-06 23:27 - 000000000 ____D C:\Users\Piotr\AppData\Local\Microsoft_Corporation 2018-04-06 22:49 - 2018-04-07 23:14 - 000000000 ____D C:\test 2018-04-06 21:19 - 2018-04-06 21:19 - 000000000 ____D C:\Program Files (x86)\Dungeon Defenders ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-05-05 22:59 - 2015-07-29 20:09 - 000000000 ____D C:\FRST 2018-05-05 22:57 - 2015-05-22 17:34 - 000000000 ____D C:\Program Files\Common Files\Adobe 2018-05-05 22:57 - 2015-05-20 22:18 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Adobe 2018-05-05 22:53 - 2017-06-26 21:37 - 000000318 _____ C:\Windows\Tasks\iToolsDaemon.job 2018-05-05 22:53 - 2009-07-14 20:09 - 000000000 ____D C:\Windows\ShellNew 2018-05-05 22:50 - 2015-06-18 20:00 - 000001162 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-948294637-126623534-2788625075-1000UA.job 2018-05-05 22:50 - 2015-06-18 20:00 - 000001110 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-948294637-126623534-2788625075-1000Core.job 2018-05-05 22:38 - 2017-04-20 22:26 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Spotify 2018-05-05 19:27 - 2009-07-14 06:45 - 000021024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-05-05 19:27 - 2009-07-14 06:45 - 000021024 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-05-05 18:01 - 2015-05-23 17:23 - 000503950 _____ C:\Windows\system32\perfh006.dat 2018-05-05 18:01 - 2015-05-23 17:23 - 000411314 _____ C:\Windows\system32\perfh011.dat 2018-05-05 18:01 - 2015-05-23 17:23 - 000122640 _____ C:\Windows\system32\perfc011.dat 2018-05-05 18:01 - 2015-05-23 17:23 - 000099198 _____ C:\Windows\system32\perfc006.dat 2018-05-05 18:01 - 2015-05-22 22:42 - 000392878 _____ C:\Windows\system32\prfh0404.dat 2018-05-05 18:01 - 2015-05-22 22:42 - 000115630 _____ C:\Windows\system32\prfc0404.dat 2018-05-05 18:01 - 2015-05-22 22:35 - 000708416 _____ C:\Windows\system32\prfh0416.dat 2018-05-05 18:01 - 2015-05-22 22:35 - 000148196 _____ C:\Windows\system32\prfc0416.dat 2018-05-05 18:01 - 2015-05-22 22:27 - 000723554 _____ C:\Windows\system32\prfh0816.dat 2018-05-05 18:01 - 2015-05-22 22:27 - 000153446 _____ C:\Windows\system32\prfc0816.dat 2018-05-05 18:01 - 2015-05-22 22:22 - 000651218 _____ C:\Windows\system32\perfh01F.dat 2018-05-05 18:01 - 2015-05-22 22:22 - 000140540 _____ C:\Windows\system32\perfc01F.dat 2018-05-05 18:01 - 2015-05-22 22:13 - 000375706 _____ C:\Windows\system32\prfh0804.dat 2018-05-05 18:01 - 2015-05-22 22:13 - 000120132 _____ C:\Windows\system32\prfc0804.dat 2018-05-05 18:01 - 2015-05-22 21:59 - 000719136 _____ C:\Windows\system32\perfh019.dat 2018-05-05 18:01 - 2015-05-22 21:59 - 000151382 _____ C:\Windows\system32\perfc019.dat 2018-05-05 18:01 - 2015-05-22 21:55 - 000489050 _____ C:\Windows\system32\perfh014.dat 2018-05-05 18:01 - 2015-05-22 21:55 - 000095944 _____ C:\Windows\system32\perfc014.dat 2018-05-05 18:01 - 2015-05-22 21:50 - 000601524 _____ C:\Windows\system32\perfh008.dat 2018-05-05 18:01 - 2015-05-22 21:50 - 000111668 _____ C:\Windows\system32\perfc008.dat 2018-05-05 18:01 - 2015-05-22 21:46 - 000658256 _____ C:\Windows\system32\perfh01D.dat 2018-05-05 18:01 - 2015-05-22 21:46 - 000143014 _____ C:\Windows\system32\perfc01D.dat 2018-05-05 18:01 - 2015-05-22 21:42 - 000422960 _____ C:\Windows\system32\perfh012.dat 2018-05-05 18:01 - 2015-05-22 21:42 - 000120924 _____ C:\Windows\system32\perfc012.dat 2018-05-05 18:01 - 2015-05-22 21:38 - 000663376 _____ C:\Windows\system32\perfh005.dat 2018-05-05 18:01 - 2015-05-22 21:38 - 000141966 _____ C:\Windows\system32\perfc005.dat 2018-05-05 18:01 - 2015-05-22 21:28 - 000738034 _____ C:\Windows\system32\perfh013.dat 2018-05-05 18:01 - 2015-05-22 21:28 - 000153642 _____ C:\Windows\system32\perfc013.dat 2018-05-05 18:01 - 2015-05-22 21:22 - 000476030 _____ C:\Windows\system32\perfh00B.dat 2018-05-05 18:01 - 2015-05-22 21:22 - 000102060 _____ C:\Windows\system32\perfc00B.dat 2018-05-05 18:01 - 2015-05-22 21:18 - 000678290 _____ C:\Windows\system32\perfh00E.dat 2018-05-05 18:01 - 2015-05-22 21:18 - 000171814 _____ C:\Windows\system32\perfc00E.dat 2018-05-05 18:01 - 2015-05-22 21:13 - 000739992 _____ C:\Windows\system32\perfh00A.dat 2018-05-05 18:01 - 2015-05-22 21:13 - 000159014 _____ C:\Windows\system32\perfc00A.dat 2018-05-05 18:01 - 2015-05-22 21:10 - 000386880 _____ C:\Windows\system32\perfh00D.dat 2018-05-05 18:01 - 2015-05-22 21:10 - 000085298 _____ C:\Windows\system32\perfc00D.dat 2018-05-05 18:01 - 2015-05-22 21:02 - 000734582 _____ C:\Windows\system32\perfh010.dat 2018-05-05 18:01 - 2015-05-22 21:02 - 000147386 _____ C:\Windows\system32\perfc010.dat 2018-05-05 18:01 - 2015-05-22 21:00 - 000473550 _____ C:\Windows\system32\perfh001.dat 2018-05-05 18:01 - 2015-05-22 21:00 - 000095312 _____ C:\Windows\system32\perfc001.dat 2018-05-05 18:01 - 2015-05-22 20:59 - 000740252 _____ C:\Windows\system32\perfh00C.dat 2018-05-05 18:01 - 2015-05-22 20:59 - 000150120 _____ C:\Windows\system32\perfc00C.dat 2018-05-05 18:01 - 2015-05-22 20:54 - 000691744 _____ C:\Windows\system32\perfh007.dat 2018-05-05 18:01 - 2015-05-22 20:54 - 000149656 _____ C:\Windows\system32\perfc007.dat 2018-05-05 18:01 - 2009-07-14 19:55 - 000743040 _____ C:\Windows\system32\perfh015.dat 2018-05-05 18:01 - 2009-07-14 19:55 - 000156554 _____ C:\Windows\system32\perfc015.dat 2018-05-05 18:01 - 2009-07-14 07:13 - 017523048 _____ C:\Windows\system32\PerfStringBackup.INI 2018-05-05 18:01 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-05-05 17:23 - 2015-05-17 19:11 - 000000000 ____D C:\Users\Piotr 2018-05-05 17:11 - 2016-11-01 13:22 - 000000000 ____D C:\Program Files (x86)\Overwolf 2018-05-05 14:27 - 2016-03-09 22:20 - 000000000 ____D C:\Users\Piotr\AppData\Local\CrashDumps 2018-05-05 09:41 - 2017-04-20 22:33 - 000000000 ____D C:\Users\Piotr\AppData\Local\Spotify 2018-05-05 09:40 - 2017-06-26 21:37 - 000003300 _____ C:\Windows\System32\Tasks\iToolsDaemon 2018-05-05 09:40 - 2015-05-22 20:37 - 000000000 __SHD C:\Users\Piotr\IntelGraphicsProfiles 2018-05-05 09:40 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-05-04 23:49 - 2016-09-20 22:44 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2018-05-04 22:06 - 2018-03-28 09:35 - 000003180 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-948294637-126623534-2788625075-1000 2018-05-04 22:05 - 2018-03-27 09:40 - 000002204 _____ C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft OneDrive.lnk 2018-05-04 22:05 - 2018-03-27 09:40 - 000000000 ___RD C:\Users\Piotr\OneDrive 2018-05-04 19:23 - 2009-07-14 05:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared 2018-05-04 19:20 - 2018-03-14 22:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2018-05-04 19:16 - 2018-03-27 09:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools 2018-05-04 19:16 - 2018-03-27 09:23 - 000000000 ____D C:\Program Files\Microsoft Office 2018-05-04 19:16 - 2016-11-04 22:39 - 000003348 _____ C:\Windows\System32\Tasks\ESET Windows 10 upgrade – Refresh settings 2018-04-25 23:25 - 2015-05-18 18:16 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Dropbox 2018-04-25 19:26 - 2018-04-04 23:07 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\qBittorrent 2018-04-22 14:58 - 2016-09-17 23:04 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\KeePass 2018-04-21 00:11 - 2016-05-14 22:01 - 000322874 ____N C:\Windows\Minidump\042118-8626-01.dmp 2018-04-21 00:11 - 2015-05-31 21:39 - 000000000 ____D C:\Windows\Minidump 2018-04-21 00:11 - 2015-05-17 19:30 - 000000000 ____D C:\ProgramData\Package Cache 2018-04-19 23:04 - 2018-03-29 19:48 - 000003512 _____ C:\Windows\System32\Tasks\Piotr 2018-04-19 23:04 - 2018-03-27 18:36 - 000003076 _____ C:\Windows\System32\Tasks\StartDVR 2018-04-16 23:48 - 2016-06-07 08:44 - 000003342 _____ C:\Windows\System32\Tasks\wyłączenie kompa 2018-04-16 18:39 - 2015-05-20 22:10 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-04-16 18:29 - 2017-10-11 10:59 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome 2018-04-15 19:20 - 2016-02-13 22:38 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\FileZilla 2018-04-15 17:34 - 2015-08-18 23:17 - 000000000 ____D C:\ProgramData\boost_interprocess 2018-04-15 14:48 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\rescache 2018-04-13 19:05 - 2017-05-03 20:23 - 000151400 _____ C:\Users\Piotr\AppData\Local\GDIPFONTCACHEV1.DAT 2018-04-13 18:36 - 2017-05-03 20:19 - 005194744 _____ C:\Windows\system32\FNTCACHE.DAT 2018-04-11 17:23 - 2015-12-21 23:53 - 000000000 ____D C:\Users\Piotr\AppData\Local\ElevatedDiagnostics 2018-04-11 17:23 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\system32\NDF 2018-04-11 16:57 - 2015-05-20 18:44 - 000000000 ____D C:\Windows\system32\appraiser 2018-04-10 22:47 - 2015-05-22 19:53 - 000000000 ____D C:\Windows\system32\MRT 2018-04-10 22:46 - 2017-10-11 17:55 - 136971704 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe 2018-04-10 22:46 - 2015-05-22 19:53 - 136971704 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2018-04-06 21:18 - 2015-10-03 17:00 - 000000000 ____D C:\Windows\SysWOW64\directx ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-12-10 19:40 - 2015-12-10 19:42 - 000005843 _____ () C:\Users\Piotr\AppData\Roaming\droid4xinstaller.log 2016-06-07 21:15 - 2016-06-07 21:15 - 266040255 _____ () C:\Users\Piotr\AppData\Local\ACCCx3_6_0_248.zip.aamdownload 2016-06-07 21:15 - 2016-06-07 21:15 - 000003014 _____ () C:\Users\Piotr\AppData\Local\ACCCx3_6_0_248.zip.aamdownload.aamd 2016-09-11 23:36 - 2016-09-11 23:36 - 305520897 _____ () C:\Users\Piotr\AppData\Local\ACCCx3_8_0_310.zip.aamdownload 2016-09-11 23:36 - 2016-09-11 23:36 - 000003413 _____ () C:\Users\Piotr\AppData\Local\ACCCx3_8_0_310.zip.aamdownload.aamd 2017-11-01 21:28 - 2017-11-01 21:28 - 000003057 _____ () C:\Users\Piotr\AppData\Local\recently-used.xbel 2017-10-11 17:20 - 2017-10-11 17:20 - 000000066 _____ () C:\Users\Piotr\AppData\Local\uts.ini Niektóre pliki w TEMP: ==================== 2018-05-05 22:54 - 2018-05-05 22:54 - 000079904 _____ () C:\Users\Piotr\AppData\Local\Temp\i4jdel0.exe 2018-05-04 22:30 - 2018-05-04 22:30 - 000040448 ____N () C:\Users\Piotr\AppData\Local\Temp\proxy_vole4500217607362045865.dll 2018-05-04 22:31 - 2018-05-04 22:31 - 000040448 _____ () C:\Users\Piotr\AppData\Local\Temp\proxy_vole6112171520256123310.dll 2018-05-04 22:30 - 2018-05-04 22:30 - 000040448 ____N () C:\Users\Piotr\AppData\Local\Temp\proxy_vole8606473516488664742.dll 2018-05-05 22:53 - 2017-06-26 21:37 - 000758717 _____ () C:\Users\Piotr\AppData\Local\Temp\unins000.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-05-04 20:25 ==================== Koniec FRST.txt ============================