Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja: 15.09.2018 Uruchomiony przez Piotr (administrator) JEŻ (19-09-2018 15:19:07) Uruchomiony z E:\downloads Załadowane profile: Piotr (Dostępne profile: Piotr & Administrator & DefaultAppPool) Platform: Microsoft Windows 10 Home Wersja 1803 17134.285 (X86) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Gigabyte Technology CO., LTD.) C:\Program Files\GIGABYTE\smart6\timelock\TimeMgmtDaemon.exe (Microsoft Corporation) C:\Windows\System32\snmp.exe (Microsoft Corporation) C:\Windows\System32\snmptrap.exe (DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (COMODO) C:\Program Files\COMODO\Internet Security Essentials\isesrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe (Wondershare) C:\Program Files\Wondershare\WAF\2.3.1.204\WsAppService.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (Gigabyte Technology CO., LTD.) C:\Program Files\GIGABYTE\smart6\timelock\AlarmClock.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\CisTray.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x86__kzf8qxf38zg5c\SkypeHost.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe (Skillbrains) C:\Program Files\Skillbrains\lightshot\5.4.0.35\Lightshot.exe (COMODO) C:\Program Files\COMODO\Internet Security Essentials\vkise.exe () C:\Program Files\Rainlendar2\Rainlendar2.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (IObit) C:\Program Files\IObit\Smart Defrag\SmartDefrag.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\resources\app\out\vs\workbench\services\files\node\watcher\win32\CodeHelper.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18071.15310.1000_x86__8wekyb3d8bbwe\Microsoft.Photos.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18082.10311.0_x86__8wekyb3d8bbwe\Video.UI.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\Microsoft VS Code\Code.exe (Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [486816 2018-04-11] (Microsoft Corporation) HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2403104 2014-07-25] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2012-07-04] (Marvell Semiconductor, Inc.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtHDVCpl.exe [16557512 2018-08-01] (Realtek Semiconductor) HKLM\...\Run: [Lightshot] => C:\Program Files\Skillbrains\lightshot\Lightshot.exe [225944 2017-04-11] () HKLM\...\Run: [IseUI] => C:\Program Files\COMODO\Internet Security Essentials\vkise.exe [4260040 2018-06-22] (COMODO) HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [1484480 2018-06-18] (COMODO) HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2018-04-11] (Microsoft Corporation) HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\Run: [Rainlendar2] => C:\Program Files\Rainlendar2\Rainlendar2.exe [2739240 2015-11-13] () HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\Run: [Legimi dla Kindle] => C:\Users\Piotr\AppData\Local\Programs\Legimi dla Kindle\Legimi dla Kindle.exe [1135008 2017-11-27] (Legimi sp. z o.o.) HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [13684416 2018-07-20] (Piriform Ltd) HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\...\MountPoints2: {f36089be-a7b5-11e0-ad3a-806e6f6e6963} - "D:\Autorun.exe" Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk [2018-07-05] ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe () ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{0288e6d6-baed-4fdd-95eb-c6d626ab2898}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{113c6ad0-21fb-4431-b794-cbab77df596e}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{306513f9-a9b4-445f-9f7f-7fdd11c555e3}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{d1f0ccb7-7dbe-4109-a6d9-089cdaa00735}: [NameServer] 194.204.152.34,194.204.159.1 Tcpip\..\Interfaces\{d1f0ccb7-7dbe-4109-a6d9-089cdaa00735}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{f73c7d60-9fcd-448e-bd5c-e536e7afd138}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKU\S-1-5-21-2399471354-2781755390-4139130681-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://search.yahoo.com/?fr=vmn&type=auslog_ya_hp SearchScopes: HKU\S-1-5-21-2399471354-2781755390-4139130681-1000 -> {93731F81-2798-4460-A356-E16E18DB266F} URL = hxxp://www.allegro.pl/search.php?sg=0&string={searchTerms} SearchScopes: HKU\S-1-5-21-2399471354-2781755390-4139130681-1000 -> {FF37A499-90B8-4284-A336-CE9927E12330} URL = hxxp://www.google.com/search?hl=pl&q={searchTerms} BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_151\bin\ssv.dll [2017-11-24] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-24] (Oracle Corporation) FireFox: ======== FF DefaultProfile: k7pq1yoi.default-1515323035174 FF ProfilePath: C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174 [2018-09-19] FF Homepage: Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174 -> hxxps://www.google.pl/ FF Extension: (Brak nazwy) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\@react-devtools.xpi [2018-08-31] FF Extension: (ADB Helper) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\adbhelper@mozilla.org.xpi [2018-08-09] [Przestarzałe] FF Extension: (Awesome Screenshot - Capture, Annotate & More) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\jid0-GXjLLfbCoAx0LcltEdFrEkQdQPI@jetpack.xpi [2018-06-02] FF Extension: (English (GB) Language Pack) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2018-09-08] FF Extension: (Polski słownik poprawnej pisowni) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\pl@dictionaries.addons.mozilla.org [2018-04-15] [Przestarzałe] FF Extension: (PerfectPixel by WellDoneCode) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\{4c47d1b1-c33d-4b05-908f-90c05bf6e2ab}.xpi [2018-07-02] FF Extension: (ColorZilla) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\{6AC85730-7D0F-4de0-B3FA-21142DD85326}.xpi [2018-04-26] FF Extension: (OurStickys - Sticky Notes on every page) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\{980500da-0b6d-4de9-ad90-93d17605276b}.xpi [2018-04-05] FF Extension: (Web Developer) - C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\k7pq1yoi.default-1515323035174\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2018-01-11] FF ProfilePath: C:\Users\Piotr\AppData\Roaming\Mozilla\Firefox\Profiles\kih9jpwe.dev-edition-default [2018-08-18] FF HKLM\...\Firefox\Extensions: [{C1A2A613-35F1-4FCF-B27F-2840527B6556}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\NS_22.8.0.50\coFFAddon => nie znaleziono FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_30_0_0_134.dll [2018-07-11] () FF Plugin: @cuminas.jp/DjVuPlugin -> C:\Program Files\Cuminas\Document Express DjVu Plug-in\npdjvu.dll [2015-05-08] (Cuminas Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-07-17] (Foxit Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-07-17] (Foxit Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-07-17] (Foxit Corporation) FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2018-07-17] (Foxit Corporation) FF Plugin: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-24] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-24] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.) StartMenuInternet: Firefox-CA9422711AE1A81C - C:\Program Files\Firefox Developer Edition\firefox.exe Chrome: ======= CHR Profile: C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default [2018-08-28] CHR Extension: (Dokumenty) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-02-20] CHR Extension: (Note Anywhere) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\bohahkiiknkelflnjjlipnaeapefmjbh [2018-04-05] CHR Extension: (PerfectPixel by WellDoneCode) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkaagdgjmgdmbnecmcefdhjekcoceebi [2018-06-30] CHR Extension: (Awesome Screenshot: Screen Video Recorder) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlipoenfbbikpbjkfpfillcgkoblgpmj [2018-06-18] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-05] CHR Extension: (e-pity - dodatek) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2018-04-30] CHR Extension: (Chrome Media Router) - C:\Users\Piotr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-06-30] CHR HKLM\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [8683840 2018-06-18] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2080448 2018-06-18] (COMODO) S3 IDriverT; C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 isesrv; C:\Program Files\COMODO\Internet Security Essentials\isesrv.exe [1041608 2018-06-22] (COMODO) S3 jswpsapi; C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\WPS\jswpsapi.exe [954368 2016-02-09] (Wireless) [Brak podpisu cyfrowego] R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1720608 2014-07-25] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [17536800 2014-07-25] (NVIDIA Corporation) R2 Smart TimeLock; C:\Program Files\GIGABYTE\Smart6\Timelock\TimeMgmtDaemon.exe [114688 2009-10-13] (Gigabyte Technology CO., LTD.) [Brak podpisu cyfrowego] S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [353792 2018-03-19] () R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2017-03-22] (DEVGURU Co., LTD.) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe [3287728 2018-07-31] (Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe [91648 2018-07-31] (Microsoft Corporation) R2 WsAppService; C:\Program Files\Wondershare\WAF\2.3.1.204\WsAppService.exe [437392 2016-12-14] (Wondershare) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S0 cmdboot; C:\WINDOWS\System32\DRIVERS\cmdboot.sys [14872 2018-05-23] (COMODO) R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [39264 2018-05-23] (COMODO) R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [653328 2018-05-23] (COMODO) R1 cmdhlp; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [46040 2018-05-23] (COMODO) S3 EraserUtilDrv11720; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilDrv11720.sys [126592 2017-07-25] (Symantec Corporation) S3 gdrv; C:\Windows\gdrv.sys [17488 2015-12-17] (Windows (R) 2000 DDK provider) S3 GVTDrv; C:\Windows\system32\Drivers\GVTDrv.sys [24944 2011-08-07] () R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO32.SYS [23840 2015-11-21] (REALiX(tm)) R1 inspect; C:\WINDOWS\system32\DRIVERS\inspect.sys [113496 2018-05-23] (COMODO) R1 isedrv; C:\WINDOWS\system32\drivers\isedrv.sys [49640 2017-12-13] (COMODO) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19232 2014-07-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [53616 2018-08-01] (NVIDIA Corporation) R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [958176 2018-08-01] (Realtek ) R3 RtlWlanu; C:\WINDOWS\system32\DRIVERS\rtwlanu.sys [1383568 2013-03-05] (Realtek Semiconductor Corporation ) S3 SG762_XP; C:\WINDOWS\System32\DRIVERS\WlanBZXP.sys [402432 2006-01-19] (ZyDAS Technology Corporation) [Brak podpisu cyfrowego] R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [18800 2016-03-22] (IObit) R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [26792 2016-12-24] (Synaptics Incorporated) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [38904 2018-07-31] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [279592 2018-07-31] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [46120 2018-07-31] (Microsoft Corporation) S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [189952 2018-04-11] (Microsoft Corporation) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [4096 2010-07-04] () [Brak podpisu cyfrowego] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-09-19 10:17 - 2018-09-19 10:17 - 000000473 _____ C:\Users\Piotr\.gitconfig 2018-09-19 09:04 - 2018-09-19 09:04 - 000001222 _____ C:\Users\Public\Desktop\Smart Defrag 6.lnk 2018-09-13 09:07 - 2018-08-31 08:54 - 001466816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-09-13 09:07 - 2018-08-31 08:54 - 000458024 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll 2018-09-13 09:07 - 2018-08-31 08:53 - 001327504 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2018-09-13 09:07 - 2018-08-31 08:51 - 000316224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2018-09-13 09:07 - 2018-08-31 08:41 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2018-09-13 09:07 - 2018-08-31 08:41 - 000078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bowser.sys 2018-09-13 09:07 - 2018-08-31 08:41 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2018-09-13 09:07 - 2018-08-31 08:40 - 000216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\spp.dll 2018-09-13 09:07 - 2018-08-31 08:39 - 000402944 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll 2018-09-13 09:07 - 2018-08-31 08:37 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-09-13 09:07 - 2018-08-31 08:37 - 001082880 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2018-09-13 09:07 - 2018-08-31 08:37 - 000887808 _____ (Microsoft Corporation) C:\WINDOWS\system32\nettrace.dll 2018-09-13 09:07 - 2018-08-31 08:37 - 000622080 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdh.dll 2018-09-13 09:07 - 2018-08-31 08:37 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-09-13 09:07 - 2018-08-31 08:36 - 001469952 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2018-09-13 09:07 - 2018-08-31 05:29 - 000622424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2018-09-13 09:07 - 2018-08-31 05:29 - 000541216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-09-13 09:07 - 2018-08-31 05:29 - 000143656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2018-09-13 09:07 - 2018-08-31 05:28 - 006686192 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-09-13 09:07 - 2018-08-31 05:28 - 006570040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 006043680 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 002354672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-09-13 09:07 - 2018-08-31 05:28 - 002144224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-09-13 09:07 - 2018-08-31 05:28 - 001989496 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 001514352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 001190680 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-09-13 09:07 - 2018-08-31 05:28 - 001050672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-09-13 09:07 - 2018-08-31 05:28 - 000950040 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-09-13 09:07 - 2018-08-31 05:28 - 000831696 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-09-13 09:07 - 2018-08-31 05:28 - 000679816 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 000453104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpx.dll 2018-09-13 09:07 - 2018-08-31 05:28 - 000135768 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll 2018-09-13 09:07 - 2018-08-31 05:21 - 022008320 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-09-13 09:07 - 2018-08-31 05:16 - 019404288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-09-13 09:07 - 2018-08-31 05:16 - 006661120 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2018-09-13 09:07 - 2018-08-31 05:14 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2018-09-13 09:07 - 2018-08-31 05:12 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\netevent.dll 2018-09-13 09:07 - 2018-08-31 05:11 - 003254784 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-09-13 09:07 - 2018-08-31 05:11 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mpsdrv.sys 2018-09-13 09:07 - 2018-08-31 05:10 - 005777920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-09-13 09:07 - 2018-08-31 05:10 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-09-13 09:07 - 2018-08-31 05:10 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2018-09-13 09:07 - 2018-08-31 05:10 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2018-09-13 09:07 - 2018-08-31 05:10 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-09-13 09:07 - 2018-08-31 05:10 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2018-09-13 09:07 - 2018-08-31 05:09 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2018-09-13 09:07 - 2018-08-31 05:09 - 000624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2018-09-13 09:07 - 2018-08-31 05:09 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-09-13 09:07 - 2018-08-31 05:09 - 000301568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys 2018-09-13 09:07 - 2018-08-31 05:08 - 001173504 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-09-13 09:07 - 2018-08-31 05:08 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll 2018-09-13 09:07 - 2018-08-31 05:07 - 001755136 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-09-13 09:07 - 2018-08-31 05:07 - 001627648 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-09-13 09:07 - 2018-08-31 05:07 - 001414144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2018-09-13 09:07 - 2018-08-31 05:07 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2018-09-13 09:07 - 2018-08-31 05:07 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2018-09-13 09:07 - 2018-08-31 05:07 - 000493056 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2018-09-13 09:07 - 2018-08-31 05:06 - 000982528 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll 2018-09-13 09:07 - 2018-08-31 05:06 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll 2018-09-13 09:07 - 2018-08-31 05:06 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2018-09-13 09:07 - 2018-08-28 07:44 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\system32\HeadTrackerStorage.dll 2018-09-13 09:07 - 2018-08-28 07:41 - 000513024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedRealitySvc.dll 2018-09-13 09:07 - 2018-08-14 04:14 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msjet40.dll 2018-09-13 09:07 - 2018-08-14 04:14 - 000340480 _____ (Microsoft Corporation) C:\WINDOWS\system32\msexcl40.dll 2018-09-13 09:07 - 2018-08-09 10:37 - 001363960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2018-09-13 09:07 - 2018-08-09 10:36 - 000660896 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingWinRT.dll 2018-09-13 09:07 - 2018-08-09 10:36 - 000288104 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppwinob.dll 2018-09-13 09:07 - 2018-08-09 10:36 - 000221120 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditionUpgradeManagerObj.dll 2018-09-13 09:07 - 2018-08-09 10:24 - 011901952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-09-13 09:07 - 2018-08-09 10:24 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2018-09-13 09:07 - 2018-08-09 10:24 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsExt.dll 2018-09-13 09:07 - 2018-08-09 10:24 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdeploy.dll 2018-09-13 09:07 - 2018-08-09 10:23 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-09-13 09:07 - 2018-08-09 10:23 - 001308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2018-09-13 09:07 - 2018-08-09 10:23 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollUI.dll 2018-09-13 09:07 - 2018-08-09 10:22 - 001452544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2018-09-13 09:07 - 2018-08-09 10:22 - 000668160 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2018-09-13 09:07 - 2018-08-09 10:22 - 000485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2018-09-13 09:07 - 2018-08-09 10:22 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\system32\certreq.exe 2018-09-13 09:07 - 2018-08-09 10:22 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2018-09-13 09:07 - 2018-08-09 10:21 - 002894848 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-09-13 09:07 - 2018-08-09 10:21 - 002016768 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2018-09-13 09:07 - 2018-08-09 10:21 - 001274368 _____ (Microsoft Corporation) C:\WINDOWS\system32\certutil.exe 2018-09-13 09:07 - 2018-08-09 10:21 - 000775168 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2018-09-13 09:07 - 2018-08-09 10:20 - 002401792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2018-09-13 09:07 - 2018-08-09 10:20 - 000627712 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll 2018-09-13 09:07 - 2018-08-09 10:20 - 000423424 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2018-09-13 09:07 - 2018-08-09 10:20 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput8.dll 2018-09-13 09:07 - 2018-08-09 10:20 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dinput.dll 2018-09-13 09:07 - 2018-08-09 10:19 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe 2018-09-13 09:07 - 2018-08-09 06:40 - 000290088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-09-13 09:07 - 2018-08-09 06:40 - 000187296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tpm.sys 2018-09-13 09:07 - 2018-08-09 06:35 - 000995792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2018-09-13 09:07 - 2018-08-09 06:35 - 000731760 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll 2018-09-13 09:07 - 2018-08-09 06:30 - 000829856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2018-09-13 09:07 - 2018-08-09 06:30 - 000183992 _____ (Microsoft Corporation) C:\WINDOWS\system32\rsaenh.dll 2018-09-13 09:07 - 2018-08-09 06:29 - 002253584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-09-13 09:07 - 2018-08-09 06:29 - 001618280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-09-13 09:07 - 2018-08-09 06:29 - 001174552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll 2018-09-13 09:07 - 2018-08-09 06:29 - 000802200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys 2018-09-13 09:07 - 2018-08-09 06:29 - 000099208 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptxml.dll 2018-09-13 09:07 - 2018-08-09 06:13 - 002807296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-09-13 09:07 - 2018-08-09 06:13 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll 2018-09-13 09:07 - 2018-08-09 06:13 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2018-09-13 09:07 - 2018-08-09 06:13 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe 2018-09-13 09:07 - 2018-08-09 06:12 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2018-09-13 09:07 - 2018-08-09 06:12 - 000652288 _____ (Microsoft Corporation) C:\WINDOWS\system32\certca.dll 2018-09-13 09:07 - 2018-08-09 06:12 - 000434688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys 2018-09-13 09:07 - 2018-08-09 06:12 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll 2018-09-13 09:07 - 2018-08-09 06:12 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\eShims.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000270848 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2018-09-13 09:07 - 2018-08-09 06:11 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsAuth.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TtlsCfg.dll 2018-09-13 09:07 - 2018-08-09 06:11 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2018-09-13 09:07 - 2018-08-09 06:10 - 002893824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll 2018-09-13 09:07 - 2018-08-09 06:10 - 002412544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-09-13 09:07 - 2018-08-09 06:10 - 001751552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-09-13 09:07 - 2018-08-09 06:10 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2018-09-13 09:07 - 2018-08-09 06:10 - 000738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL 2018-09-13 09:07 - 2018-08-09 06:10 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys 2018-09-13 09:07 - 2018-08-09 06:10 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2018-09-13 09:07 - 2018-08-09 06:09 - 004191232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-09-13 09:07 - 2018-08-09 06:09 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2018-09-13 09:07 - 2018-08-09 06:09 - 001272832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-09-13 09:07 - 2018-08-09 06:08 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\GlobCollationHost.dll 2018-09-13 09:07 - 2018-08-09 04:55 - 000806416 _____ C:\WINDOWS\system32\locale.nls 2018-09-06 10:08 - 2018-09-06 10:09 - 000002683 _____ C:\Users\Piotr\.babel.json 2018-09-06 10:08 - 2018-09-06 10:08 - 000009350 _____ C:\Users\Piotr\.v8flags.6.2.414.54.3ad23a007ddf1d4f26249cc1c18562e1.json 2018-09-06 08:49 - 2018-09-06 08:49 - 000000000 ____D C:\Users\Piotr\AppData\LocalLow\uTorrent 2018-08-31 19:46 - 2018-08-31 19:46 - 000038210 _____ C:\Users\Piotr\Downloads\429083_1_En_1_MOESM1_ESM.zip 2018-08-31 15:51 - 2018-08-31 15:51 - 000000000 ____D C:\ProgramData\Foxit Software 2018-08-28 17:47 - 2018-08-28 17:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cuminas 2018-08-28 17:47 - 2018-08-28 17:47 - 000000000 ____D C:\Program Files\Cuminas 2018-08-24 14:52 - 2018-08-24 14:53 - 000000000 ____D C:\Users\Piotr\AppData\Local\avocode 2018-08-24 14:40 - 2018-08-24 15:20 - 000000000 ____D C:\Users\Piotr\Documents\Biblioteka calibre 2018-08-24 14:11 - 2018-09-19 10:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio Code 2018-08-24 14:11 - 2018-09-06 15:46 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Code 2018-08-24 14:11 - 2018-08-24 14:11 - 000001209 _____ C:\Users\Public\Desktop\Visual Studio Code.lnk 2018-08-24 14:11 - 2018-08-24 14:11 - 000000000 ____D C:\Users\Piotr\.vscode 2018-08-24 14:07 - 2018-09-19 10:21 - 000000000 ____D C:\Program Files\Microsoft VS Code 2018-08-23 13:54 - 2018-08-23 13:54 - 000000000 ____D C:\Users\Piotr\unamotris 2018-08-21 07:23 - 2018-05-23 12:59 - 000003013 _____ C:\Users\Piotr\Documents\ANNA_STAWECKA_MAKSYMIUK_2018-05-23 12_58_51.pfx ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-09-19 15:19 - 2018-08-02 08:00 - 000000000 ____D C:\FRST 2018-09-19 15:16 - 2018-07-31 12:56 - 001474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat 2018-09-19 15:09 - 2018-04-11 22:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-09-19 14:00 - 2016-11-19 20:09 - 000000000 ____D C:\Users\Piotr\AppData\LocalLow\Mozilla 2018-09-19 10:53 - 2018-05-09 19:21 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-09-19 10:17 - 2018-05-09 19:30 - 000000000 ____D C:\Users\Piotr 2018-09-19 09:04 - 2018-07-24 10:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Smart Defrag 2018-09-19 08:58 - 2014-08-18 14:26 - 000000000 ____D C:\Users\Piotr\.rainlendar2 2018-09-18 07:30 - 2018-02-17 18:32 - 000002284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-09-17 08:05 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-09-17 07:44 - 2018-05-09 19:30 - 000002444 _____ C:\Users\Piotr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-09-17 07:44 - 2015-12-17 23:24 - 000000000 ___RD C:\Users\Piotr\OneDrive 2018-09-17 07:39 - 2018-04-11 22:36 - 000000000 ___HD C:\Program Files\WindowsApps 2018-09-15 19:25 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-09-15 14:16 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-09-14 20:03 - 2018-01-15 19:08 - 000000000 ____D C:\Users\Piotr\AppData\Local\Packages 2018-09-14 13:22 - 2017-01-21 21:57 - 000000000 ____D C:\Users\Piotr\Documents\kucharskie robocze 2018-09-14 08:26 - 2018-04-11 22:31 - 000000000 ____D C:\WINDOWS\INF 2018-09-13 20:01 - 2016-12-21 23:02 - 000000000 ____D C:\Users\Piotr\AppData\Local\CrashDumps 2018-09-13 13:38 - 2018-05-09 19:21 - 000525744 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-09-13 13:37 - 2018-05-09 19:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-09-13 13:36 - 2018-04-11 14:45 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\zu-ZA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\yo-NG 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\xh-ZA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\wo-SN 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\tn-ZA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\ti-ET 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\rw-RW 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\nso-ZA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\ig-NG 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2018-09-13 13:35 - 2018-04-12 07:05 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2018-09-13 13:35 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\TextInput 2018-09-13 13:35 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\system32\oobe 2018-09-13 13:35 - 2018-04-11 22:36 - 000000000 ____D C:\WINDOWS\bcastdvr 2018-09-13 13:35 - 2018-04-11 14:45 - 000000000 ____D C:\WINDOWS\system32\Dism 2018-09-13 13:31 - 2015-11-08 10:44 - 000000000 ____D C:\Program Files\Mozilla Firefox 2018-09-13 13:31 - 2015-10-14 21:16 - 000000000 ____D C:\Program Files\Mozilla Maintenance Service 2018-09-13 09:19 - 2018-04-11 22:25 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-09-11 19:19 - 2013-08-18 19:44 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-09-11 19:12 - 2011-07-06 16:28 - 136114104 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-09-10 18:52 - 2018-01-04 23:38 - 000000000 ____D C:\Program Files\CCleaner 2018-09-08 09:43 - 2015-10-14 21:16 - 000001221 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-09-06 19:36 - 2018-05-09 19:25 - 001998262 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-09-06 19:36 - 2018-04-12 07:04 - 000869958 _____ C:\WINDOWS\system32\perfh015.dat 2018-09-06 19:36 - 2018-04-12 07:04 - 000189146 _____ C:\WINDOWS\system32\perfc015.dat 2018-09-06 14:35 - 2016-06-04 09:14 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\uTorrent 2018-09-06 10:30 - 2018-08-10 14:36 - 000177086 _____ C:\WINDOWS\system32\Drivers\fvstore.dat 2018-09-06 10:07 - 2018-02-06 21:34 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\npm 2018-09-05 01:04 - 2018-07-11 15:10 - 000835144 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2018-09-05 01:04 - 2018-07-11 15:10 - 000179808 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2018-09-03 10:35 - 2014-11-27 09:43 - 000000000 ____D C:\Users\Piotr\Documents\Biznes 2018-08-31 15:51 - 2018-08-06 19:30 - 000000000 ____D C:\Users\Public\Foxit Software 2018-08-29 22:54 - 2018-08-01 14:58 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\Easeware 2018-08-29 21:45 - 2018-01-08 09:55 - 001773568 _____ (Farbar) C:\Users\Piotr\Desktop\FRST.exe 2018-08-28 17:32 - 2018-05-20 23:11 - 000000000 ____D C:\Program Files\Firefox Developer Edition 2018-08-24 15:20 - 2018-08-07 16:17 - 000001030 _____ C:\Users\Public\Desktop\calibre - E-book management.lnk 2018-08-24 15:20 - 2016-12-03 10:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre - E-book Management 2018-08-24 15:20 - 2016-12-03 10:52 - 000000000 ____D C:\Program Files\Calibre2 2018-08-24 14:55 - 2018-03-09 20:01 - 000000000 ____D C:\Users\Piotr\AppData\Local\SquirrelTemp 2018-08-24 14:55 - 2016-12-03 10:53 - 000000000 ____D C:\Users\Piotr\AppData\Local\calibre-cache 2018-08-24 14:32 - 2016-02-09 17:50 - 000000000 ___HD C:\VTRoot 2018-08-24 14:19 - 2016-12-03 10:53 - 000000000 ____D C:\Users\Piotr\AppData\Roaming\calibre ==================== Pliki w katalogu głównym wybranych folderów ======= 2012-05-18 08:24 - 2012-07-21 21:57 - 000006144 _____ () C:\Users\Piotr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2018-01-26 18:14 - 2018-01-26 18:14 - 000000218 _____ () C:\Users\Piotr\AppData\Local\recently-used.xbel 2018-06-02 18:34 - 2018-06-02 18:34 - 000000003 _____ () C:\Users\Piotr\AppData\Local\updater.log 2018-06-02 18:34 - 2018-06-02 18:34 - 000000413 _____ () C:\Users\Piotr\AppData\Local\UserProducts.xml ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-05-09 19:21 ==================== Koniec FRST.txt ============================