Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 16.05.2018 01 Uruchomiony przez Hubert (administrator) DESKTOP-O2CAPF3 (16-05-2018 20:45:05) Uruchomiony z C:\Users\Hubert\Downloads Załadowane profile: Hubert (Dostępne profile: Hubert) Platform: Windows 10 Home Wersja 1803 17134.48 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe () C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe (CHENGDU YIWO Tech Development Co., Ltd) D:\Programy\Todo Backup\bin\Agent.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe () C:\Windows\SysWOW64\PnkBstrA.exe (LogMeIn Inc.) D:\Programy\hamachi\x64\hamachi-2.exe () C:\Windows\SysWOW64\PnkBstrB.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Actian Corporation) C:\Program Files (x86)\Actian\PSQL\bin\w3dbsmgr.exe (VMware, Inc.) D:\Programy\VMware\vmware-authd.exe () C:\Program Files (x86)\Sage\Symfonia MySQL\MySQL Server 5.5\bin\mysqld.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe (VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe (Electronic Arts) D:\Programy\Origin\OriginWebHelperService.exe (LogMeIn, Inc.) D:\Programy\hamachi\x64\LMIGuardianSvc.exe (Microsoft Corporation) C:\Windows\System32\vds.exe () D:\Programy\Todo Backup\bin\TodoBackupService.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.14.17639.18041-0\MsMpEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AI Suite III\AISuite3.exe () C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DipAwayMode.exe () D:\Programy\MSI Afterburner\MSIAfterburner.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe () D:\Programy\RivaTuner Statistics Server\RTSS.exe () D:\Programy\RivaTuner Statistics Server\EncoderServer.exe () D:\Programy\RivaTuner Statistics Server\RTSSHooksLoader64.exe () C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\AsPowerBar.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1813.286.0_x64__kzf8qxf38zg5c\SkypeHost.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (ESET) C:\Program Files\ESET\ESET Security\egui.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Piriform Ltd) D:\Programy\CCleaner\CCleaner64.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet Pro 8620\Bin\ScanToPCActivationApp.exe (Hewlett-Packard Development Company, LP) C:\Program Files\HP\HP Officejet Pro 8620\Bin\HPNetworkCommunicatorCom.exe (Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DTAgent.exe (Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (Spotify Ltd) C:\Users\Hubert\AppData\Roaming\Spotify\~TMP_13744_229~ (Actian Corporation) C:\Program Files (x86)\Actian\PSQL\bin\notifyviewer.exe (LogMeIn Inc.) D:\Programy\hamachi\hamachi-2-ui.exe (Hewlett-Packard) C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe (LogMeIn, Inc.) D:\Programy\hamachi\LMIGuardianSvc.exe (Spotify Ltd) C:\Users\Hubert\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Hubert\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Hubert\AppData\Roaming\Spotify\Spotify.exe (Spotify Ltd) C:\Users\Hubert\AppData\Roaming\Spotify\Spotify.exe (Gaijin Entertainment) C:\Users\Hubert\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Disc Soft Ltd) D:\Programy\DAEMON Tools Lite\DTShellHlp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.9226.21295.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11804.1001.8.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Valve Corporation) D:\Programy\Steam\Steam.exe (Valve Corporation) D:\Programy\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) D:\Programy\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) D:\Programy\Steam\bin\cef\cef.win7\steamwebhelper.exe (Valve Corporation) D:\Programy\Steam\bin\cef\cef.win7\steamwebhelper.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.9226.21295.0_x64__8wekyb3d8bbwe\HxAccounts.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1804.911.0_x64__8wekyb3d8bbwe\Calculator.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files\WindowsApps\Facebook.317180B0BB486_139.1300.61849.0_x86__8xx8rvfyw5nnt\WinUAPEntry.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18031.15820.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Farbar) C:\Users\Hubert\Downloads\FRST64 (1).exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8495320 2015-06-23] (Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [178496 2018-04-29] (ESET) HKLM\...\Run: [Cm108Sound] => C:\WINDOWS\syswow64\RunDll32.exe C:\WINDOWS\Syswow64\cm108.dll,CMICtrlWnd HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [596504 2016-04-01] (Oracle Corporation) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => D:\Programy\hamachi\hamachi-2-ui.exe [5885352 2017-06-29] (LogMeIn Inc.) HKLM-x32\...\Run: [HP Software Update] => C:\Program Files (x86)\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [Steam] => D:\Programy\Steam\steam.exe [3199776 2018-04-03] (Valve Corporation) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [CCleaner Monitoring] => D:\Programy\CCleaner\CCleaner64.exe [10021040 2017-10-18] (Piriform Ltd) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [Gaijin.Net Agent] => C:\Users\Hubert\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2116168 2018-01-22] (Gaijin Entertainment) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [Spotify] => C:\Users\Hubert\AppData\Roaming\Spotify\Spotify.exe [23177616 2018-05-13] (Spotify Ltd) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [HP Officejet Pro 8620 (NET)] => C:\Program Files\HP\HP Officejet Pro 8620\Bin\ScanToPCActivationApp.exe [3487240 2014-07-21] (Hewlett-Packard Development Company, LP) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [DAEMON Tools Lite Automount] => D:\Programy\DAEMON Tools Lite\DTAgent.exe [5263040 2018-01-12] (Disc Soft Ltd) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Run: [Spotify Web Helper] => C:\Users\Hubert\AppData\Roaming\Spotify\SpotifyWebHelper.exe [782736 2018-05-13] (Spotify Ltd) HKU\S-1-5-21-257944886-3990086766-4231524654-1001\...\Command Processor: @mode 20,5 & tasklist /FI "IMAGENAME eq SoundMixer.exe" 2>NUL | find /I /N "SoundMixer.exe">NUL && exit & if exist "C:\Users\Hubert\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" ( start /MIN "" "C:\Users\Hubert\AppData\Roaming\Microsoft\SoundMixer\SoundMixer.exe" & tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) else ( tasklist /FI "IMAGENAME eq explorer.exe" 2>NUL | find /I /N "explorer.exe">NUL && exit & explorer.exe & exit ) <==== UWAGA Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Run Notification Viewer in background.lnk [2017-10-03] ShortcutTarget: Run Notification Viewer in background.lnk -> C:\Windows\Installer\{0A3238D7-AB32-1200-B717-F3E3F18B4A8C}\ico_notifyviewer.exe (Acresso Software Inc.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: 127.0.0.1 secure.prepar3d.com Tcpip\..\Interfaces\{1ef8f5a0-f3a3-4df4-bcdb-232c6b2f6d79}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{bfcce024-a937-4ee1-ba17-484df1133e3d}: [DhcpNameServer] 62.179.1.61 62.179.1.63 Internet Explorer: ================== BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-04-30] (Microsoft Corporation) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_91\bin\ssv.dll [2017-07-08] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_91\bin\jp2ssv.dll [2017-07-08] (Oracle Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-30] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-30] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-30] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-30] (Microsoft Corporation) FireFox: ======== FF DefaultProfile: oxs5pyyg.default FF ProfilePath: C:\Users\Hubert\AppData\Roaming\Mozilla\Firefox\Profiles\oxs5pyyg.default [2018-05-16] FF Plugin: @java.com/DTPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\dtplugin\npDeployJava1.dll [2017-07-08] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.91.2 -> C:\Program Files\Java\jre1.8.0_91\bin\plugin2\npjp2.dll [2017-07-08] (Oracle Corporation) FF Plugin: @unity3d.com/UnityPlayer64,version=1.0 -> C:\Program Files\Unity\WebPlayer64\loader-x64\npUnity3D64.dll [2015-06-08] (Unity Technologies ApS) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-03-02] (Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-11-03] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-11-03] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-05-11] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default [2018-05-16] CHR Extension: (Tłumacz Google) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-04-16] CHR Extension: (Prezentacje) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Dokumenty) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Dysk Google) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-07] CHR Extension: (Agar.io Mods) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfllnafdpfdenppkmbllnnackcapfoad [2017-10-22] CHR Extension: (TimeZone Fix) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\bipjjiibaaaodmkpfplphnhefbkgmadn [2018-03-04] CHR Extension: (YouTube) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-07] CHR Extension: (Weava Highlighter - PDF & Web) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\cbnaodkpfinfiipjblikofhlhlcickei [2018-05-05] CHR Extension: (Tampermonkey) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2018-01-12] CHR Extension: (Adobe Acrobat) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-10-30] CHR Extension: (Slither.io Mods, Zoom, Unlock Skins, Bots) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogeabecipmckmihpmkgjbghbffcebcf [2017-10-22] CHR Extension: (CryptoTab) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcaacbfglejpnljiiokpcplbmmlbmnbk [2018-04-18] CHR Extension: (Arkusze) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Dokumenty Google offline) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2017-07-07] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (Gmail) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-07] CHR Extension: (Chrome Media Router) - C:\Users\Hubert\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-05-05] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936728 2017-07-08] () R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.25\aaHMSvc.exe [963544 2017-07-08] (ASUSTeK Computer Inc.) R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.08.17\AsusFanControlService.exe [2394072 2017-07-08] (ASUSTeK Computer Inc.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8566448 2018-04-26] (Microsoft Corporation) R3 Disc Soft Lite Bus Service; D:\Programy\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3480768 2018-01-12] (Disc Soft Ltd) R2 EaseUS Agent; D:\Programy\Todo Backup\bin\Agent.exe [40128 2017-06-19] (CHENGDU YIWO Tech Development Co., Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [775296 2018-04-29] (EasyAntiCheat Ltd) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2240264 2018-04-29] (ESET) R2 Hamachi2Svc; D:\Programy\hamachi\x64\hamachi-2.exe [3418024 2017-06-29] (LogMeIn Inc.) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518264 2017-11-03] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [518264 2017-11-03] (NVIDIA Corporation) S3 Origin Client Service; D:\Programy\Origin\OriginClientService.exe [2158400 2018-04-25] (Electronic Arts) R2 Origin Web Helper Service; D:\Programy\Origin\OriginWebHelperService.exe [3028808 2018-04-25] (Electronic Arts) R2 PnkBstrA; C:\WINDOWS\SysWOW64\PnkBstrA.exe [75136 2017-08-22] () R2 PnkBstrB; C:\WINDOWS\SysWOW64\PnkBstrB.exe [189248 2017-08-22] () R2 psqlWGE; C:\Program Files (x86)\Actian\PSQL\bin\w3dbsmgr.exe [440256 2014-11-26] (Actian Corporation) S3 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] () R2 SymfoniaMySQL; C:\Program Files (x86)\Sage\Symfonia MySQL\MySQL Server 5.5\bin\mysqld.exe [8144384 2011-04-11] () [Brak podpisu cyfrowego] R2 VMAuthdService; D:\Programy\VMware\vmware-authd.exe [99816 2017-06-19] (VMware, Inc.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\NisSrv.exe [4632736 2018-04-26] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MsMpEng.exe [104680 2018-04-26] (Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2017-07-08] () R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-07-07] (Disc Soft Ltd) R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-07-07] (Disc Soft Ltd) S3 dtultrascsibus; C:\WINDOWS\System32\drivers\dtultrascsibus.sys [30264 2017-12-20] (Disc Soft Ltd) S3 dtultrausbbus; C:\WINDOWS\System32\drivers\dtultrausbbus.sys [47672 2017-12-20] (Disc Soft Ltd) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [137928 2018-04-29] (ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [110432 2018-04-29] (ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15872 2018-02-19] (ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [196112 2018-04-29] (ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50136 2018-04-29] (ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [82816 2018-04-29] (ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [108320 2018-04-29] (ESET) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [152184 2018-04-26] (Malwarebytes) R0 EUBKMON; C:\WINDOWS\System32\drivers\EUBKMON.sys [52392 2016-11-28] () R3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-06-29] (LogMeIn Inc.) R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [24824 2016-07-12] (ASUSTeK Computer Inc.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [190696 2018-05-13] (Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [112864 2018-05-13] (Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [44768 2018-05-13] (Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253664 2018-05-13] (Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [103648 2018-05-16] (Malwarebytes) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispui.inf_amd64_b78e6dd17905924a\nvlddmkm.sys [16937408 2017-11-03] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-11-03] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [50808 2017-11-03] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57976 2017-11-03] (NVIDIA Corporation) S3 ptun0901; C:\WINDOWS\System32\drivers\ptun0901.sys [27136 2014-08-08] (The OpenVPN Project) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-05-29] (Realtek ) R3 RTCore64; D:\Programy\MSI Afterburner\RTCore64.sys [14024 2017-08-27] () R3 ssdevfactory; C:\WINDOWS\System32\drivers\ssdevfactory.sys [46408 2017-06-02] (SteelSeries ApS) R3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [45936 2017-08-15] (SteelSeries ApS) R3 vjoy; C:\WINDOWS\System32\drivers\vjoy.sys [57976 2017-03-09] (Shaul Eizikovich) R0 vsock; C:\WINDOWS\system32\DRIVERS\vsock.sys [91712 2016-09-30] (VMware, Inc.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-04-26] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [313888 2018-04-26] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61472 2018-04-26] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-05-16 20:40 - 2018-05-16 20:41 - 002413056 _____ (Farbar) C:\Users\Hubert\Downloads\FRST64 (1).exe 2018-05-13 20:11 - 2018-05-14 08:23 - 000000000 ____D C:\Users\Hubert\AppData\Local\PlaceholderTileLogoFolder 2018-05-13 19:21 - 2018-05-13 19:21 - 029369175 _____ C:\Users\Hubert\Downloads\supertact.zip 2018-05-13 19:09 - 2018-05-13 19:09 - 000000211 _____ C:\Users\Hubert\Desktop\War Thunder.url 2018-05-13 19:01 - 2018-05-13 18:10 - 000000000 ____D C:\Windows.old 2018-05-13 18:56 - 2018-05-13 19:01 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2018-05-13 18:55 - 2018-05-13 18:56 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2018-05-13 18:55 - 2018-05-13 18:55 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2018-05-13 18:54 - 2018-05-13 18:54 - 025848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 023862272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 022707712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 022002688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 021389360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 020383720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 019525120 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 019399168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 013570560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 012712960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 011903488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 009159064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 008623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 007583232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 007519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 007436624 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 006569952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 006044104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 005951488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 005782528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 004867072 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 004706816 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 004372992 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 004070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003732800 _____ C:\WINDOWS\system32\Windows.Mirage.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003712000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003655168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 003440640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003283400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002961408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002897408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 002841312 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002835864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 002753040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002700800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002486976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002422168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 002366976 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002242208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 002170368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001953280 _____ C:\WINDOWS\system32\rdpnano.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001664512 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001636352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001634800 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001565592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001534976 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001456616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-05-13 18:54 - 2018-05-13 18:54 - 001454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001426328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001191168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001174424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 001063320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2018-05-13 18:54 - 2018-05-13 18:54 - 001034624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000885848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000860160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000788216 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000786168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000776880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000733992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000709816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2018-05-13 18:54 - 2018-05-13 18:54 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000665320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs4.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000606448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000604568 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs3.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2018-05-13 18:54 - 2018-05-13 18:54 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000567136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000559968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs2.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000473496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs1.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000434584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2018-05-13 18:54 - 2018-05-13 18:54 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000382872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000272288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000269216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win81.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000170904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2018-05-13 18:54 - 2018-05-13 18:54 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win8rtm.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000134552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2018-05-13 18:54 - 2018-05-13 18:54 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim 2018-05-13 18:51 - 2018-05-13 18:51 - 004492288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-05-13 18:51 - 2018-05-13 18:51 - 003398144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2018-05-13 18:51 - 2018-05-13 18:51 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll 2018-05-13 18:51 - 2018-05-13 18:51 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2018-05-13 18:51 - 2018-05-13 18:51 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2018-05-13 18:51 - 2018-05-13 18:51 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2018-05-13 18:51 - 2018-05-13 18:51 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2018-05-13 18:51 - 2018-05-13 18:51 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2018-05-13 18:51 - 2018-05-13 18:51 - 000000000 ____D C:\Program Files\Reference Assemblies 2018-05-13 18:51 - 2018-05-13 18:51 - 000000000 ____D C:\Program Files\MSBuild 2018-05-13 18:51 - 2018-05-13 18:51 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2018-05-13 18:51 - 2018-05-13 18:51 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-05-13 18:48 - 2018-05-16 19:49 - 000103648 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2018-05-13 18:48 - 2018-05-13 18:48 - 000253664 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2018-05-13 18:48 - 2018-05-13 18:48 - 000190696 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2018-05-13 18:48 - 2018-05-13 18:48 - 000112864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2018-05-13 18:48 - 2018-05-13 18:48 - 000044768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2018-05-13 18:48 - 2018-05-13 18:48 - 000001918 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2018-05-13 18:48 - 2018-05-13 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-05-13 18:48 - 2018-04-26 05:36 - 000152184 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2018-05-13 18:39 - 2018-05-13 18:39 - 075110848 _____ (Malwarebytes ) C:\Users\Hubert\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.365-1.0.5078.exe 2018-05-13 18:38 - 2018-05-13 18:38 - 010440395 _____ C:\Users\Hubert\Downloads\Malwarebytes-Mac-3.3.22.1387.pkg 2018-05-13 18:37 - 2018-05-16 20:43 - 000082516 _____ C:\Users\Hubert\Downloads\Addition.txt 2018-05-13 18:36 - 2018-05-16 20:45 - 000027083 _____ C:\Users\Hubert\Downloads\FRST.txt 2018-05-13 18:36 - 2018-05-16 20:45 - 000000000 ____D C:\FRST 2018-05-13 18:36 - 2018-05-13 18:36 - 002404864 _____ (Farbar) C:\Users\Hubert\Downloads\FRST64.exe 2018-05-13 18:12 - 2018-05-13 18:12 - 000001417 _____ C:\Users\Hubert\Desktop\Microsoft Edge.lnk 2018-05-13 18:12 - 2018-05-13 18:12 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2018-05-13 18:11 - 2018-05-13 18:34 - 000000000 ____D C:\Users\Hubert\AppData\Local\D3DSCache 2018-05-13 18:11 - 2018-05-13 18:11 - 001763504 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-05-13 18:10 - 2018-05-16 20:37 - 000004226 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{E8D0973C-E6CF-49FD-A6AF-3C337632A57D} 2018-05-13 18:10 - 2018-05-15 16:52 - 000004562 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2018-05-13 18:10 - 2018-05-13 18:10 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2018-05-13 18:10 - 2018-05-13 18:10 - 000007623 _____ C:\WINDOWS\diagerr.xml 2018-05-13 18:10 - 2018-05-13 18:10 - 000003494 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-05-13 18:10 - 2018-05-13 18:10 - 000003398 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000003348 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1499946161 2018-05-13 18:10 - 2018-05-13 18:10 - 000003270 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-05-13 18:10 - 2018-05-13 18:10 - 000003176 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002914 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002876 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-05-13 18:10 - 2018-05-13 18:10 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-257944886-3990086766-4231524654-1001 2018-05-13 18:10 - 2018-05-13 18:10 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002786 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-05-13 18:10 - 2018-05-13 18:10 - 000002704 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP Officejet Pro 8620 2018-05-13 18:10 - 2018-05-13 18:10 - 000002666 _____ C:\WINDOWS\System32\Tasks\HPCustParticipation HP OfficeJet 4650 series 2018-05-13 18:10 - 2018-05-13 18:10 - 000002410 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner 2018-05-13 18:10 - 2018-05-13 18:10 - 000002208 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-05-13 18:10 - 2018-05-13 18:10 - 000000020 ___SH C:\Users\Hubert\ntuser.ini 2018-05-13 18:10 - 2018-05-13 18:10 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-05-13 18:10 - 2018-05-13 18:10 - 000000000 ____D C:\WINDOWS\System32\Tasks\ASUS 2018-05-13 18:06 - 2018-05-13 18:06 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2018-05-13 18:05 - 2018-05-13 18:10 - 000000000 ____D C:\Users\Hubert 2018-05-13 18:05 - 2018-05-13 18:05 - 000002140 _____ C:\Users\Public\Desktop\3D Vision Photo Viewer.lnk 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Ustawienia lokalne 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Szablony 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Moje dokumenty 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Menu Start 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Documents\Moje wideo 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Documents\Moje obrazy 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Documents\Moja muzyka 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\Dane aplikacji 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\AppData\Local\Historia 2018-05-13 18:05 - 2018-05-13 18:05 - 000000000 _SHDL C:\Users\Hubert\AppData\Local\Dane aplikacji 2018-05-13 18:05 - 2018-04-12 01:34 - 000001105 _____ C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-05-13 18:05 - 2017-11-26 17:23 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Macromedia 2018-05-13 18:04 - 2018-05-13 18:04 - 000000000 ____D C:\ProgramData\USOShared 2018-05-13 18:04 - 2018-05-13 18:04 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-05-13 18:04 - 2017-11-03 03:04 - 000532088 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2018-05-13 18:04 - 2017-11-03 03:04 - 000437696 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2018-05-13 18:04 - 2017-11-03 00:31 - 000136312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2018-05-13 18:04 - 2017-09-14 01:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2018-05-13 18:04 - 2017-09-14 01:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2018-05-13 18:04 - 2017-09-14 01:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll 2018-05-13 18:04 - 2017-09-14 01:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe 2018-05-13 18:02 - 2018-05-16 19:47 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-05-13 18:02 - 2018-05-13 18:07 - 000419304 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-05-13 18:02 - 2018-04-12 01:33 - 002752000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2018-05-13 13:55 - 2018-05-13 18:11 - 000000000 ___DC C:\WINDOWS\Panther 2018-05-11 22:47 - 2018-05-11 22:49 - 300407614 _____ C:\Users\Hubert\Downloads\klasyka700mobi.zip 2018-05-06 10:59 - 2018-05-06 10:59 - 000000000 ____D C:\Users\Hubert\Documents\Frontier Developments 2018-05-06 10:59 - 2018-05-06 10:59 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Frontier Developments 2018-05-06 10:59 - 2018-05-06 10:59 - 000000000 ____D C:\Users\Hubert\AppData\Local\Frontier Developments 2018-05-05 23:18 - 2018-05-05 23:18 - 000349158 _____ C:\Users\Hubert\Downloads\Planet.Coaster.v1.6.2-VOKSI.torrent 2018-05-05 22:40 - 2018-05-05 22:40 - 001780224 _____ (Bleeping Computer, LLC) C:\Users\Hubert\Downloads\rkill-unsigned.exe 2018-05-05 22:33 - 2018-05-05 22:33 - 000138480 _____ C:\Users\Hubert\Downloads\unarc.zip 2018-05-05 22:33 - 2016-08-10 10:38 - 000306688 _____ C:\WINDOWS\SysWOW64\unarc.dll 2018-05-05 22:33 - 2016-08-10 10:38 - 000306688 _____ C:\WINDOWS\system32\unarc.dll 2018-05-05 22:29 - 2018-05-05 22:29 - 000235847 _____ C:\Users\Hubert\Downloads\isdone (1).zip 2018-05-05 22:29 - 2016-08-10 10:43 - 000456704 _____ (FragSoft) C:\WINDOWS\system32\ISDone.dll 2018-05-05 22:23 - 2016-08-10 10:43 - 000456704 _____ (FragSoft) C:\WINDOWS\SysWOW64\ISDone.dll 2018-05-05 22:22 - 2018-05-05 22:22 - 000235847 _____ C:\Users\Hubert\Downloads\isdone.zip 2018-05-05 22:02 - 2018-05-05 22:02 - 000000214 _____ C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job 2018-05-05 21:35 - 2018-05-05 21:35 - 000082846 _____ C:\WINDOWS\ntbtlog.txt 2018-05-05 20:43 - 2018-05-05 20:43 - 000056998 _____ C:\Users\Hubert\Downloads\Planet.Coaster.v1.6.2.Incl.6.DLCs-Repack.torrent 2018-05-05 20:13 - 2018-05-05 22:06 - 000000000 ____D C:\WINDOWS\pss 2018-05-05 20:00 - 2018-05-13 19:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RollerCoaster Tycoon World 2018-05-05 19:55 - 2018-05-06 19:55 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\RollerCoaster.Tycoon.World.Deluxe.Edition.Multi.9.Repack 2018-05-02 19:28 - 2018-05-02 19:28 - 000000000 ____D C:\Users\Hubert\AppData\LocalLow\Amistech 2018-05-02 19:27 - 2018-05-02 19:27 - 000000000 ____D C:\Users\Hubert\Desktop\My.Summer.Car.v01.04.2018 2018-04-29 19:15 - 2018-04-29 19:15 - 000000000 __SHD C:\82ace7d6-0197-474d-bf4b-a2043e72329b 2018-04-29 19:15 - 2018-04-29 01:13 - 000000233 _____ C:\Users\Public\Libraries.ini 2018-04-29 19:10 - 2018-04-29 19:10 - 000000000 ____D C:\Users\Hubert\AppData\Local\FortniteGame 2018-04-29 19:09 - 2018-04-29 19:09 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\EasyAntiCheat 2018-04-29 19:09 - 2018-04-29 19:09 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat 2018-04-28 16:59 - 2018-05-13 19:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI Kombustor 3 2018-04-28 16:59 - 2018-04-28 16:59 - 000000758 _____ C:\Users\Hubert\Desktop\MSI Kombustor 3.lnk 2018-04-28 16:58 - 2018-04-28 16:58 - 019819074 _____ (MSI Co., LTD ) C:\Users\Hubert\Downloads\MSI_Kombustor_Setup_3.5.2.1_x64_www.INSTALKI.pl.exe 2018-04-28 16:55 - 2018-05-13 18:07 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RivaTuner Statistics Server 2018-04-28 16:55 - 2018-05-13 18:07 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MSI Afterburner 2018-04-28 16:55 - 2018-04-28 16:55 - 000000763 _____ C:\Users\Hubert\Desktop\MSI Afterburner.lnk 2018-04-28 16:54 - 2018-04-28 16:54 - 039762304 _____ C:\Users\Hubert\Downloads\MSIAfterburnerSetup450.exe 2018-04-26 22:13 - 2018-04-26 22:13 - 000535421 _____ C:\Users\Hubert\Documents\Scan0004.pdf 2018-04-26 22:12 - 2018-04-26 22:12 - 000063148 _____ C:\Users\Hubert\Documents\Scan0003.pdf 2018-04-26 22:07 - 2018-04-26 22:08 - 000474519 _____ C:\Users\Hubert\Downloads\download.zip 2018-04-22 11:34 - 2018-05-08 16:52 - 000000000 ____D C:\Users\Hubert\AppData\LocalLow\Mozilla 2018-04-22 11:34 - 2018-04-22 11:38 - 000000000 ____D C:\Users\Hubert\AppData\Local\Mozilla 2018-04-22 11:34 - 2018-04-22 11:34 - 000001011 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-04-22 11:34 - 2018-04-22 11:34 - 000000999 _____ C:\Users\Public\Desktop\Firefox.lnk 2018-04-22 11:34 - 2018-04-22 11:34 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Mozilla 2018-04-22 11:34 - 2018-04-22 11:34 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-04-22 11:34 - 2018-04-22 11:34 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-04-22 11:33 - 2018-04-22 11:33 - 000313688 _____ (Mozilla) C:\Users\Hubert\Downloads\Firefox Installer.exe 2018-04-22 09:12 - 2018-04-22 09:12 - 000001781 _____ C:\Users\Public\Desktop\NVIDIA Nsight HUD Launcher 5.4.lnk 2018-04-22 09:12 - 2018-04-22 09:12 - 000000000 ____D C:\Program Files\NVIDIA GPU Computing Toolkit 2018-04-22 09:11 - 2017-11-03 03:04 - 000057976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2018-04-22 09:10 - 2017-11-03 03:04 - 040237504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 036239480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 035156928 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 029270976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 023265048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 019038976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 013865256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 013254848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 011780560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 010883232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 004485048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 004201592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 003817584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 003614144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001989240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438819.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001673664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438819.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001331200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001321264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001099712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001044664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001038680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 001031288 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000980928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000932472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000885496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000794576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000739264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000634224 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000618744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000615544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000598464 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000505976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2018-04-22 09:10 - 2017-11-03 03:04 - 000050808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2018-04-22 09:10 - 2017-11-03 03:04 - 000048442 _____ C:\WINDOWS\system32\nvinfo.pb 2018-04-22 09:10 - 2017-11-03 03:04 - 000000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2018-04-22 09:10 - 2017-11-03 03:04 - 000000669 _____ C:\WINDOWS\system32\nv-vk64.json 2018-04-22 08:56 - 2018-04-22 09:06 - 1446894456 _____ (NVIDIA Corporation) C:\Users\Hubert\Downloads\cuda_9.1.85_win10.exe 2018-04-19 12:45 - 2018-05-13 18:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2018-04-19 12:45 - 2018-04-19 12:45 - 000000706 _____ C:\Users\Public\Desktop\CPUID HWMonitor.lnk 2018-04-19 09:08 - 2018-04-19 09:08 - 001250832 _____ (CPUID, Inc. ) C:\Users\Hubert\Downloads\hwmonitor_1.35.exe 2018-04-18 14:55 - 2018-04-29 18:26 - 000000000 ____D C:\ProgramData\Epic 2018-04-18 14:55 - 2018-04-18 14:55 - 000000891 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk 2018-04-18 14:55 - 2018-04-18 14:55 - 000000891 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2018-04-18 14:55 - 2018-04-18 14:55 - 000000000 ____D C:\Users\Hubert\AppData\Local\UnrealEngineLauncher 2018-04-18 14:55 - 2018-04-18 14:55 - 000000000 ____D C:\Users\Hubert\AppData\Local\EpicGamesLauncher 2018-04-18 14:53 - 2018-04-18 14:53 - 032366592 _____ C:\Users\Hubert\Downloads\EpicInstaller-7.9.0-fortnite-0376783ebc31449894855c0ef6e1b7d7.msi ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-05-16 20:32 - 2017-09-22 12:43 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Spotify 2018-05-16 19:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-05-16 19:47 - 2017-09-22 12:44 - 000000000 ____D C:\Users\Hubert\AppData\Local\Spotify 2018-05-16 16:30 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-05-16 13:53 - 2017-07-10 17:47 - 000000000 ____D C:\ProgramData\NVIDIA 2018-05-15 22:14 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2018-05-15 16:51 - 2017-10-30 18:28 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-05-15 16:50 - 2017-12-23 22:54 - 000000000 ____D C:\Users\Hubert\AppData\Local\LogMeIn Hamachi 2018-05-14 18:11 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2018-05-14 16:17 - 2017-10-06 19:54 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2018-05-14 08:26 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\appcompat 2018-05-13 20:16 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-05-13 20:14 - 2017-11-22 21:31 - 000000000 ____D C:\Users\Hubert\AppData\Local\Packages 2018-05-13 19:09 - 2017-07-07 23:27 - 000000000 ____D C:\Users\Hubert\Documents\BeamNG.drive 2018-05-13 19:09 - 2017-07-07 23:19 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2018-05-13 19:01 - 2018-04-15 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MicroCFD 2018-05-13 19:01 - 2018-04-12 01:41 - 000000000 ____D C:\WINDOWS\Setup 2018-05-13 19:01 - 2018-04-12 01:38 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 __RHD C:\Users\Public\Libraries 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\spool 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\System 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Help 2018-05-13 19:01 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-05-13 19:01 - 2018-04-05 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC 2018-05-13 19:01 - 2018-04-05 21:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RC Desk Pilot 2018-05-13 19:01 - 2018-04-03 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vJoy 2018-05-13 19:01 - 2018-04-03 12:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartPropoPlus 2018-05-13 19:01 - 2018-03-25 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genesis HX66 Headset Driver 2018-05-13 19:01 - 2018-03-02 17:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Arma 3 Tac-Ops Mission Pack 2018-05-13 19:01 - 2018-01-31 15:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image-Line 2018-05-13 19:01 - 2018-01-19 17:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite 2018-05-13 19:01 - 2018-01-19 16:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Production Line [GOG.com] 2018-05-13 19:01 - 2018-01-07 18:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP 2018-05-13 19:01 - 2017-12-25 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Transport Fever [GOG.com] 2018-05-13 19:01 - 2017-12-23 22:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2018-05-13 19:01 - 2017-12-21 23:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealFlight 7.5 2018-05-13 19:01 - 2017-12-20 22:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Car Mechanic Simulator 2018 Plymouth 2018-05-13 19:01 - 2017-11-02 17:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\vShare Helper 2018-05-13 19:01 - 2017-10-31 22:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016 2018-05-13 19:01 - 2017-10-06 21:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X-Plane 11 2018-05-13 19:01 - 2017-10-03 21:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller 2018-05-13 19:01 - 2017-10-03 17:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Actian PSQL 12 2018-05-13 19:01 - 2017-09-29 21:44 - 000000000 __SHD C:\WINDOWS\SysWOW64\AI_RecycleBin 2018-05-13 19:01 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2018-05-13 19:01 - 2017-09-09 21:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sage 2018-05-13 19:01 - 2017-09-09 21:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Filedrop 2018-05-13 19:01 - 2017-08-29 16:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.7 2018-05-13 19:01 - 2017-08-22 12:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battlefield 3 2018-05-13 19:01 - 2017-08-21 17:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimCity™ 2018-05-13 19:01 - 2017-07-14 19:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup 10.5 2018-05-13 19:01 - 2017-07-14 18:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2018-05-13 19:01 - 2017-07-13 14:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware 2018-05-13 19:01 - 2017-07-13 14:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-05-13 19:01 - 2017-07-11 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin 2018-05-13 19:01 - 2017-07-10 17:47 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-05-13 19:01 - 2017-07-08 21:12 - 000000000 ____D C:\Program Files\UNP 2018-05-13 19:01 - 2017-07-08 12:57 - 000000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2018-05-13 19:01 - 2017-07-08 12:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-05-13 19:01 - 2017-07-08 11:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2018-05-13 19:01 - 2017-07-08 11:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fraps 2018-05-13 19:01 - 2017-07-07 23:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cities Skylines Mass Transit 2018-05-13 19:01 - 2017-07-07 23:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2018-05-13 18:56 - 2018-01-20 12:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations 2018-05-13 18:56 - 2018-01-20 12:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dovetail Games - Flight 2018-05-13 18:56 - 2017-12-20 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DJI Product 2018-05-13 18:56 - 2017-11-27 22:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2018-05-13 18:56 - 2017-10-21 15:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KaOs 2018-05-13 18:56 - 2017-09-29 21:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\REX 4 2018-05-13 18:56 - 2017-09-03 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft 2018-05-13 18:56 - 2017-09-03 14:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\xSQL Software 2018-05-13 18:56 - 2017-08-23 21:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lockheed Martin 2018-05-13 18:56 - 2017-07-10 17:47 - 000000000 ____D C:\Program Files\Realtek 2018-05-13 18:56 - 2017-07-08 12:57 - 000000000 ____D C:\WINDOWS\system32\BestPractices 2018-05-13 18:56 - 2017-07-08 09:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tk-TM 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ti-ET 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\te-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sw-KE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\prs-AF 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\or-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mn-MN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ky-KG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\km-KH 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\is-IS 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\id-ID 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-BD 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\be-BY 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\as-IN 2018-05-13 18:54 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ta-in 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\si-lk 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\setup 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\am-et 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2018-05-13 18:54 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\system32\winrm 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\system32\WCN 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\system32\slmgr 2018-05-13 18:53 - 2018-04-12 17:51 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\F12 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\migwiz 2018-05-13 18:53 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2018-05-13 18:53 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\servicing 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\et-EE 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\es-MX 2018-05-13 18:51 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\en-GB 2018-05-13 18:48 - 2017-07-07 23:25 - 000000000 ____D C:\ProgramData\Malwarebytes 2018-05-13 18:48 - 2017-07-07 23:25 - 000000000 ____D C:\Program Files\Malwarebytes 2018-05-13 18:27 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\PrintDialog 2018-05-13 18:11 - 2018-04-12 17:51 - 000782334 _____ C:\WINDOWS\system32\perfh015.dat 2018-05-13 18:11 - 2018-04-12 17:51 - 000151496 _____ C:\WINDOWS\system32\perfc015.dat 2018-05-13 18:11 - 2017-11-12 00:07 - 000000000 ___RD C:\Users\Hubert\3D Objects 2018-05-13 18:11 - 2017-07-08 05:26 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-05-13 18:10 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Registration 2018-05-13 18:10 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\windows nt 2018-05-13 18:10 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Defender 2018-05-13 18:10 - 2018-04-11 23:04 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2018-05-13 18:09 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-05-13 18:09 - 2017-07-07 22:40 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-05-13 18:09 - 2017-07-07 22:40 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-05-13 18:08 - 2017-07-10 17:50 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat 2018-05-13 18:07 - 2018-04-11 23:04 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2018-05-13 18:07 - 2018-03-30 11:07 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flying Model Simulator 2018-05-13 18:07 - 2018-03-23 21:12 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Live for Speed 2018-05-13 18:07 - 2018-02-25 16:45 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ministerstwo Finansów 2018-05-13 18:07 - 2018-01-31 15:38 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Image-Line 2018-05-13 18:07 - 2018-01-31 15:38 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ASIO4ALL v2 2018-05-13 18:07 - 2017-10-04 14:44 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SceneryConfigEditor 2018-05-13 18:07 - 2017-08-30 12:31 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox 2018-05-13 18:07 - 2017-07-13 14:21 - 000000000 ____D C:\ProgramData\VMware 2018-05-13 18:07 - 2017-07-13 14:20 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2018-05-13 18:07 - 2017-07-08 11:35 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder 2018-05-13 18:05 - 2018-01-17 11:26 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Next Limit 2018-05-13 18:05 - 2017-07-10 17:47 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2018-05-13 18:05 - 2017-07-10 17:47 - 000000000 ____D C:\WINDOWS\system32\DAX2 2018-05-13 18:05 - 2017-07-10 17:47 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-05-13 18:05 - 2017-07-07 22:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-05-13 18:04 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\USOPrivate 2018-05-13 18:02 - 2017-07-10 17:47 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-05-13 17:46 - 2017-07-07 23:23 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\uTorrent 2018-05-13 17:17 - 2017-10-15 20:39 - 000000000 ____D C:\Users\Hubert\AppData\Local\CrashDumps 2018-05-09 16:24 - 2017-10-11 21:41 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-05-09 16:24 - 2017-07-08 11:41 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-05-09 16:24 - 2017-07-08 11:41 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-05-03 09:41 - 2017-10-06 21:39 - 000000015 _____ C:\Users\Hubert\AppData\Local\X-Plane_drm_11.prf 2018-05-02 19:29 - 2017-11-01 21:46 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\SmartSteamEmu 2018-05-02 11:58 - 2017-07-08 05:27 - 000000000 ___RD C:\Users\Hubert\OneDrive 2018-05-01 23:22 - 2018-04-12 01:41 - 000835064 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-05-01 23:22 - 2018-04-12 01:41 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-04-29 19:11 - 2017-07-08 11:30 - 000000000 ____D C:\Users\Hubert\AppData\Local\NVIDIA Corporation 2018-04-29 19:10 - 2017-12-30 19:12 - 000000000 ____D C:\Users\Hubert\AppData\Local\UnrealEngine 2018-04-29 18:26 - 2017-07-07 23:29 - 000000000 ____D C:\ProgramData\Package Cache 2018-04-29 12:39 - 2017-11-02 10:02 - 000137928 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2018-04-29 12:39 - 2017-10-09 17:49 - 000196112 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2018-04-29 12:39 - 2017-09-19 10:05 - 000110432 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys 2018-04-29 12:39 - 2017-09-19 10:05 - 000108320 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2018-04-29 12:39 - 2017-09-19 10:05 - 000082816 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys 2018-04-29 12:39 - 2017-09-19 10:05 - 000050136 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys 2018-04-28 16:58 - 2018-03-08 23:17 - 000000000 ____D C:\Users\Hubert\Desktop\ściągi 2018-04-26 14:38 - 2018-02-24 11:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-04-24 16:35 - 2017-07-08 11:30 - 000000000 ____D C:\Users\Hubert\AppData\Local\NVIDIA 2018-04-22 10:18 - 2017-07-08 21:37 - 000000000 ____D C:\Users\Hubert\AppData\Roaming\NVIDIA 2018-04-22 09:35 - 2017-07-08 11:30 - 000001491 _____ C:\Users\Public\Desktop\GeForce Experience.lnk ==================== Pliki w katalogu głównym wybranych folderów ======= 2017-09-20 21:56 - 2017-09-20 21:56 - 000000052 _____ () C:\Users\Hubert\AppData\Roaming\~SiMPLEX.ini 2017-10-06 21:39 - 2018-05-03 09:41 - 000000015 _____ () C:\Users\Hubert\AppData\Local\X-Plane_drm_11.prf 2017-10-06 21:36 - 2017-10-06 21:36 - 000000020 _____ () C:\Users\Hubert\AppData\Local\x-plane_install_11.txt ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo UWAGA: ==> Nie można uzyskać dostępu do BCD. LastRegBack: 2018-05-13 18:02 ==================== Koniec FRST.txt ============================