Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja:09-01-2015 Uruchomiony przez Robert (administrator) BRABUS (16-12-2018 18:10:56) Uruchomiony z C:\Users\Robert\Downloads Załadowane profile: Robert (Dostępne profile: Robert) Platform: Windows 10 Home Wersja 1803 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) Brak dostępu do procesu -> Registry (Lenovo) C:\Windows\System32\LenovoUpdate.exe (AMD) C:\Windows\System32\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe Brak dostępu do procesu -> Memory Compression (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe (Conceiva Pty. Ltd.) C:\Program Files (x86)\Conceiva\Mezzmo\MezzmoMediaServer.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthService.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Scout Update\ScoutUpdate.exe (Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe (Microsoft Corporation) C:\Windows\System32\SgrmBroker.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe () C:\Program Files (x86)\Microleaves\Online Application\Version 2.6.0\Online-Guardian.exe (Reason Software Company Inc.) C:\Program Files (x86)\Unchecky\bin\unchecky_bg.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Stand) C:\Program Files (x86)\Lawer\420483155.exe (Stand) C:\Program Files (x86)\Lawer\485872045.exe () C:\Program Files (x86)\Lenovo\CCSDK\WinGather.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13874392 2015-01-22] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1392496 2015-02-25] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1392496 2015-02-25] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1392496 2015-02-25] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [323312 2015-03-26] (Intel Corporation) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [446392 2012-04-04] (Adobe Systems Incorporated) HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3947704 2015-08-14] (Synaptics Incorporated) HKLM-x32\...\Run: [SwitchBoard] => C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) HKLM-x32\...\Run: [AdobeCS6ServiceManager] => C:\Program Files (x86)\Common Files\Adobe\CS6ServiceManager\CS6ServiceManager.exe [1073312 2012-03-09] (Adobe Systems Incorporated) HKLM-x32\...\Run: [APSDaemon] => C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe [59720 2013-09-13] (Apple Inc.) HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [98024 2018-12-03] (Avira Operations GmbH & Co. KG) HKLM\...\RunOnce: [d4sjm2ni15u] => C:\Program Files (x86)\Lawer\420483155.exe [796160 2018-12-15] (Stand) HKLM\...\RunOnce: [cw3oadx0oud] => C:\Program Files (x86)\Lawer\485872045.exe [796160 2018-12-15] (Stand) HKLM\...\Policies\Explorer: [SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDriveTypeAutoRun] 145 HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation) HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\Run: [uTorrent] => C:\Users\Robert\AppData\Roaming\uTorrent\uTorrent.exe [1738936 2018-11-10] (BitTorrent Inc.) HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files (x86)\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.) HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\Run: [ChomikBox] => C:\Program Files (x86)\ChomikBox\ChomikBox.exe [3941376 2017-02-21] ( ) HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [9105112 2016-11-15] (Piriform Ltd) HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\Run: [Blogger] => C:\ProgramData\Blogger\Blogger.exe [829952 2018-12-16] () HKU\S-1-5-21-884423482-3915767466-712464105-1001\...\MountPoints2: {57e278b3-50ab-11e8-8330-f0761caf7ed3} - "F:\Lenovo_Suite.exe" GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: 0x3132372E302E302E31202020202020206C6F63616C686F73740D0A0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000D0A0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000D0A0D0A2320756E636865636B795F626567696E0D0A232054686573652072756C657320776572652061646465642062792074686520556E636865636B792070726F6772616D20696E206F7264657220746F20626C6F636B206164766572746973696E6720736F667477617265206D6F64756C65730D0A302E302E302E3020302E302E302E3020232066697820666F72207472616365726F75746520616E64206E65747374617420646973706C617920616E6F6D616C790D0A302E302E302E3020747261636B696E672E6F70656E63616E64792E636F6D2E73332E616D617A6F6E6177732E636F6D0D0A302E302E302E30206D656469612E6F70656E63616E64792E636F6D0D0A302E302E302E302063646E2E6F70656E63616E64792E636F6D0D0A302E302E302E3020747261636B696E672E6F70656E63616E64792E636F6D0D0A302E302E302E30206170692E6F70656E63616E64792E636F6D0D0A302E302E302E30206170692E7265636F6D6D656E64656473772E636F6D0D0A302E302E302E302072702E796566656E657269322E636F6D0D0A302E302E302E30206F732E796566656E657269322E636F6D0D0A302E302E302E30206F73322E796566656E657269322E636F6D0D0A302E302E302E3020696E7374616C6C65722E626574746572696E7374616C6C65722E636F6D0D0A302E302E302E3020696E7374616C6C65722E66696C6562756C6C646F672E636F6D0D0A302E302E302E302064336F78746E31783362386437692E636C6F756466726F6E742E6E65740D0A302E302E302E3020696E6E6F2E62697372762E636F6D0D0A302E302E302E30206E7369732E62697372762E636F6D0D0A302E302E302E302063646E2E66696C65326465736B746F702E636F6D0D0A302E302E302E302063646E2E676F617465617374636163682E75730D0A302E302E302E302063646E2E677574746173746174646B2E75730D0A302E302E302E302063646E2E696E736B696E6D656469612E636F6D0D0A302E302E302E302063646E2E696E7374612E6F6962756E646C6573322E636F6D0D0A302E302E302E302063646E2E696E7374612E706C617962727974652E636F6D0D0A302E302E302E302063646E2E6C6C6F67657466617374636163682E75730D0A302E302E302E302063646E2E6D6F6E74696572612E636F6D0D0A302E302E302E302063646E2E6D7364776E6C642E636F6D0D0A302E302E302E302063646E2E6D7970636261636B75702E636F6D0D0A302E302E302E302063646E2E7070646F776E6C6F61642E636F6D0D0A302E302E302E302063646E2E72696365617465617374636163682E75730D0A302E302E302E302063646E2E73687961706F7461746F2E75730D0A302E302E302E302063646E2E736F6C696D62612E636F6D0D0A302E302E302E302063646E2E7475746F3470632E636F6D0D0A302E302E302E302063646E2E617070726F756E642E62697A0D0A302E302E302E302063646E2E626967737065656470726F2E636F6D0D0A302E302E302E302063646E2E62697370642E636F6D0D0A302E302E302E302063646E2E62697372762E636F6D0D0A302E302E302E302063646E2E63646E64702E636F6D0D0A302E302E302E302063646E2E646F776E6C6F61642E73776565747061636B732E636F6D0D0A302E302E302E302063646E2E6470646F776E6C6F61642E636F6D0D0A302E302E302E302063646E2E76697375616C6265652E6E65740D0A2320756E636865636B795F656E640D0A Tcpip\Parameters: [DhcpNameServer] 192.168.200.250 192.168.199.250 192.168.198.250 Tcpip\..\Interfaces\{01cb844a-56e0-432e-8da5-49c8fc318764}: [NameServer] 82.163.143.146,82.163.142.148 Tcpip\..\Interfaces\{defefabe-f101-4863-9575-b905cb653819}: [NameServer] 8.8.8.8,8.8.4.4 Tcpip\..\Interfaces\{defefabe-f101-4863-9575-b905cb653819}: [DhcpNameServer] 192.168.200.250 192.168.0.250 Tcpip\..\Interfaces\{ecd594c3-43bf-4cf2-a477-8afce5b8b475}: [NameServer] 82.163.143.146,82.163.142.148 Tcpip\..\Interfaces\{ecd594c3-43bf-4cf2-a477-8afce5b8b475}: [DhcpNameServer] 192.168.200.250 192.168.199.250 192.168.198.250 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-884423482-3915767466-712464105-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/p/?LinkId=620947&OCID=AVRES000&pc=UE00 HKU\S-1-5-21-884423482-3915767466-712464105-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com HKU\S-1-5-21-884423482-3915767466-712464105-1001\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://mystart.lenovo.com SearchScopes: HKU\S-1-5-21-884423482-3915767466-712464105-1001 -> {25280AAC-302D-47BF-9988-F432D30F8069} URL = BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-12-14] (Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-12-05] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-05] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-05] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-05] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-12-05] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975 FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_101.dll [2018-12-15] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_101.dll [2018-12-15] () FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.56 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2014-10-10] (Intel Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-09-07] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50709.0\npctrl.dll [2016-07-11] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-09-07] (Microsoft Corporation) FF Plugin-x32: @scout.avira-update.com/Avira Scout Update;version=3 -> C:\Program Files (x86)\Avira\Scout Update\1.3.32.7\npScoutUpdate3.dll [2017-04-19] (Avira Operations GmbH & Co. KG) FF Plugin-x32: @scout.avira-update.com/Avira Scout Update;version=9 -> C:\Program Files (x86)\Avira\Scout Update\1.3.32.7\npScoutUpdate3.dll [2017-04-19] (Avira Operations GmbH & Co. KG) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN) FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.) FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2017-07-31] (Adobe Systems Inc.) FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\abs@avira.com.xpi [2018-12-13] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\AdBlockerLavaSoftFF@lavasoft.com.xpi [2018-05-26] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\uBlock0@raymondhill.net.xpi [2018-12-02] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{0f69e735-1ffb-4103-9cff-5d2bd5d3ca41}.xpi [2018-04-08] FF Extension: Download Status Bar - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{6c28e999-e900-4635-a39d-b1ec90ba0c0f}.xpi [2016-11-19] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{73a6fe31-595d-460b-a920-fcc0f8843232}.xpi [2018-12-02] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{92415ac9-584a-4f96-8042-61af270afb30}.xpi [2018-12-15] FF Extension: Download YouTube Videos as MP4 - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{b9bfaf1c-a63f-47cd-8b9a-29526ced9060}.xpi [2017-06-01] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-08-07] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-12-13] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{e33788ea-0bb9-4502-9c77-bdc551afc8ab}.xpi [2017-10-12] FF Extension: Brak nazwy - C:\Users\Robert\AppData\Roaming\Mozilla\Firefox\Profiles\wymgj3mb.default-1479497823975\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-03-18] Chrome: ======= CHR Profile: C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1 CHR Extension: (Prezentacje) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-15] CHR Extension: (Przelewy24) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aiicmmpkicnndkhlnnloilpgncbpkbjj [2018-08-25] CHR Extension: (Dokumenty) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-15] CHR Extension: (Dysk Google) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-11-18] CHR Extension: (YouTube) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-11-18] CHR Extension: (Adobe Acrobat) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-04] CHR Extension: (Arkusze) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-15] CHR Extension: (Dokumenty Google offline) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-21] CHR Extension: (Szafir SDK Web) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gjalhnomhafafofonpdihihjnbafkipc [2018-01-01] CHR Extension: (Chomikuj.pl) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mabmeicndgkgfompmmdkijoamfleoadk [2017-11-01] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-04] CHR Extension: (Gmail) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-11-18] CHR Extension: (Chrome Media Router) - C:\Users\Robert\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-15] CHR Extension: (Tecknity Cookies) - C:\Users\Robert\Downloads\tecknity-cookies\Tecknity Cookies v4.0 [2018-12-15] CHR HKLM\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [438384 2018-12-03] (Avira Operations GmbH & Co. KG) R2 AviraUpdaterService; C:\Program Files (x86)\Avira\SoftwareUpdater\Avira.SoftwareUpdater.ServiceHost.exe [102816 2018-11-20] (Avira Operations GmbH & Co. KG) S3 BcastDVRUserService; C:\Windows\System32\BcastDVRUserService.dll [1364992 2018-12-08] (Microsoft Corporation) S3 BcastDVRUserService_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) S3 BcastDVRUserService_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 BluetoothUserService; C:\Windows\System32\Microsoft.Bluetooth.UserService.dll [464384 2018-04-12] (Microsoft Corporation) S3 BluetoothUserService_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) S3 BluetoothUserService_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 BTAGService; C:\Windows\System32\BTAGService.dll [514048 2018-11-09] (Microsoft Corporation) S3 BthAvctpSvc; C:\Windows\System32\BthAvctpSvc.dll [399872 2018-11-09] (Microsoft Corporation) R3 camsvc; C:\Windows\system32\CapabilityAccessManager.dll [266752 2018-06-15] (Microsoft Corporation) S2 CCSDK; C:\Program Files (x86)\Lenovo\CCSDK\CCSDK.exe [644080 2014-10-22] () S2 CDPUserSvc; C:\Windows\System32\CDPUserSvc.dll [453632 2018-10-21] (Microsoft Corporation) R2 CDPUserSvc_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) R2 CDPUserSvc_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9646240 2018-12-07] (Microsoft Corporation) S3 DevicePickerUserSvc; C:\Windows\System32\Windows.Devices.Picker.dll [400896 2018-04-12] (Microsoft Corporation) S3 DevicePickerUserSvc; C:\WINDOWS\SysWOW64\Windows.Devices.Picker.dll [312832 2018-04-12] (Microsoft Corporation) S3 DevicePickerUserSvc_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) S3 DevicePickerUserSvc_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 DevicesFlowUserSvc; C:\Windows\System32\DevicesFlowBroker.dll [750080 2018-04-12] (Microsoft Corporation) S3 DevicesFlowUserSvc_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) S3 DevicesFlowUserSvc_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 diagsvc; C:\Windows\system32\DiagSvc.dll [219648 2018-04-12] (Microsoft Corporation) R2 DusmSvc; C:\Windows\System32\dusmsvc.dll [356352 2018-12-08] (Microsoft Corporation) S3 FrameServer; C:\Windows\system32\FrameServer.dll [673792 2018-06-08] (Microsoft Corporation) S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\elevation_service.exe [443872 2018-12-12] (Google Inc.) S3 GraphicsPerfSvc; C:\Windows\System32\GraphicsPerfSvc.dll [90624 2018-04-12] (Microsoft Corporation) S3 HvHost; C:\Windows\System32\hvhostsvc.dll [61736 2018-08-03] (Microsoft Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [19184 2015-03-26] (Intel Corporation) R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [373752 2017-04-23] (Intel Corporation) S3 InstallService; C:\Windows\system32\InstallService.dll [1487360 2018-11-09] (Microsoft Corporation) S3 InstallService; C:\WINDOWS\SysWOW64\InstallService.dll [1110528 2018-11-09] (Microsoft Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [887256 2014-05-13] (Intel(R) Corporation) S3 IpxlatCfgSvc; C:\Windows\System32\IpxlatCfg.dll [63488 2018-04-12] (Microsoft Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [158496 2014-10-10] (Intel Corporation) R3 LenovoUpdate; C:\Windows\System32\LenovoUpdate.exe [26608 2018-12-16] (Lenovo) S3 LxpSvc; C:\Windows\System32\LanguageOverlayServer.dll [199680 2018-04-12] (Microsoft Corporation) R2 Mezzmo; C:\Program Files (x86)\Conceiva\Mezzmo\MezzmoMediaServer.exe [5645056 2014-12-08] (Conceiva Pty. Ltd.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [382456 2016-06-23] (McAfee, Inc.) S3 mfevtp; C:\WINDOWS\system32\mfevtps.exe [277744 2016-04-26] (McAfee, Inc.) S3 NaturalAuthentication; C:\Windows\System32\NaturalAuth.dll [824832 2018-04-12] (Microsoft Corporation) S3 PrintWorkflowUserSvc; C:\Windows\System32\PrintWorkflowService.dll [170496 2018-04-12] (Microsoft Corporation) S3 PrintWorkflowUserSvc; C:\WINDOWS\SysWOW64\PrintWorkflowService.dll [138240 2018-04-12] (Microsoft Corporation) S3 PrintWorkflowUserSvc_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) S3 PrintWorkflowUserSvc_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 PushToInstall; C:\Windows\system32\PushToInstall.dll [262144 2018-07-14] (Microsoft Corporation) R3 RmSvc; C:\Windows\System32\RMapi.dll [153600 2018-12-08] (Microsoft Corporation) S2 scupdate; C:\Program Files (x86)\Avira\Scout Update\ScoutUpdate.exe [157144 2016-11-19] (Avira Operations GmbH & Co. KG) S3 scupdatem; C:\Program Files (x86)\Avira\Scout Update\ScoutUpdate.exe [157144 2016-11-19] (Avira Operations GmbH & Co. KG) R2 SecurityHealthService; C:\Windows\system32\SecurityHealthService.exe [760888 2018-07-14] (Microsoft Corporation) R2 sedsvc; C:\Program Files\rempl\sedsvc.exe [326336 2018-12-02] (Microsoft Corporation) S3 SEMgrSvc; C:\Windows\system32\SEMgrSvc.dll [1248768 2018-04-12] (Microsoft Corporation) R2 SgrmBroker; C:\Windows\system32\SgrmBroker.exe [163336 2018-04-12] (Microsoft Corporation) S3 SharedRealitySvc; C:\Windows\System32\SharedRealitySvc.dll [713216 2018-08-28] (Microsoft Corporation) S4 shpamsvc; C:\Windows\system32\Windows.SharedPC.AccountManager.dll [195584 2018-04-12] (Microsoft Corporation) S3 spectrum; C:\Windows\system32\spectrum.exe [976384 2018-06-08] (Microsoft Corporation) S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] () S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Adobe Systems Incorporated) [Brak podpisu cyfrowego] R3 TimeBrokerSvc; C:\Windows\System32\TimeBrokerServer.dll [176128 2018-04-12] (Microsoft Corporation) R3 TokenBroker; C:\Windows\System32\TokenBroker.dll [1395200 2018-11-01] (Microsoft Corporation) R3 TokenBroker; C:\WINDOWS\SysWOW64\TokenBroker.dll [1000448 2018-11-01] (Microsoft Corporation) S4 tzautoupdate; C:\WINDOWS\SysWOW64\tzautoupdate.dll [72192 2018-04-12] (Microsoft Corporation) R2 Unchecky; C:\Program Files (x86)\Unchecky\bin\unchecky_svc.exe [297240 2018-04-08] (Reason Software Company Inc.) S3 VacSvc; C:\Windows\System32\vac.dll [411256 2018-04-12] (Microsoft Corporation) S3 vmicrdv; C:\Windows\System32\icsvcext.dll [309760 2018-04-12] (Microsoft Corporation) S3 vmicvss; C:\Windows\System32\icsvcext.dll [309760 2018-04-12] (Microsoft Corporation) S3 WaaSMedicSvc; C:\Windows\System32\WaaSMedicSvc.dll [392704 2018-08-09] (Microsoft Corporation) S3 WarpJITSvc; C:\Windows\System32\Windows.WARP.JITService.dll [31744 2018-04-12] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-12] (Microsoft Corporation) S3 WFDSConMgrSvc; C:\Windows\System32\wfdsconmgrsvc.dll [681984 2018-07-14] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [107136 2018-09-21] (Microsoft Corporation) S3 wisvc; C:\Windows\system32\flightsettings.dll [858112 2018-06-08] (Microsoft Corporation) S3 wisvc; C:\WINDOWS\SysWOW64\flightsettings.dll [729088 2018-06-08] (Microsoft Corporation) S3 wlpasvc; C:\Windows\System32\lpasvc.dll [1364992 2018-11-09] (Microsoft Corporation) S3 WpcMonSvc; C:\Windows\System32\WpcDesktopMonSvc.dll [1456640 2018-06-22] (Microsoft Corporation) S2 WpnUserService; C:\Windows\System32\WpnUserService.dll [96768 2018-04-12] (Microsoft Corporation) R2 WpnUserService_16bf48; C:\WINDOWS\system32\svchost.exe [51288 2018-04-12] (Microsoft Corporation) R2 WpnUserService_16bf48; C:\WINDOWS\SysWOW64\svchost.exe [44520 2018-04-12] (Microsoft Corporation) S3 xbgm; C:\Windows\system32\xbgmsvc.exe [59512 2018-04-12] (Microsoft Corporation) S3 XboxGipSvc; C:\Windows\System32\XboxGipSvc.dll [58880 2018-04-12] (Microsoft Corporation) R2 ibtsiva; %SystemRoot%\system32\ibtsiva [X] S2 P2PEnhance; C:\Program Files (x86)\P2PEnhance\P2PEnhance.exe [X] ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AcpiDev; C:\Windows\System32\drivers\AcpiDev.sys [20480 2018-04-12] (Microsoft Corporation) R1 afunix; C:\Windows\system32\drivers\afunix.sys [39424 2018-04-12] (Microsoft Corporation) R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.) S3 applockerfltr; C:\Windows\System32\drivers\applockerfltr.sys [18432 2018-04-12] (Microsoft Corporation) S0 b06bdrv; C:\Windows\System32\drivers\bxvbda.sys [533912 2018-04-12] (QLogic Corporation) R1 bam; C:\Windows\System32\drivers\bam.sys [60320 2018-04-12] (Microsoft Corporation) S3 bindflt; C:\Windows\system32\drivers\bindflt.sys [92688 2018-12-08] (Microsoft Corporation) S0 bttflt; C:\Windows\System32\drivers\bttflt.sys [38304 2018-04-12] (Microsoft Corporation) R3 CAD; C:\Windows\System32\drivers\CAD.sys [60320 2018-04-12] (Microsoft Corporation) S0 cht4iscsi; C:\Windows\System32\drivers\cht4sx64.sys [321432 2018-04-12] (Chelsio Communications) S3 cht4vbd; C:\Windows\System32\drivers\cht4vx64.sys [1836952 2018-04-12] (Chelsio Communications) R2 CldFlt; C:\Windows\System32\drivers\cldflt.sys [414720 2018-07-14] (Microsoft Corporation) S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) S3 epmntdrv; C:\WINDOWS\system32\epmntdrv.sys [33448 2016-12-07] () S3 epmntdrv; C:\WINDOWS\SysWOW64\epmntdrv.sys [21496 2016-01-14] () S3 EuGdiDrv; C:\WINDOWS\system32\EuGdiDrv.sys [10848 2016-07-11] () [Brak podpisu cyfrowego] S3 EuGdiDrv; C:\WINDOWS\SysWOW64\EuGdiDrv.sys [10208 2016-07-11] () [Brak podpisu cyfrowego] R3 HaoZipVirtualCDBus; C:\Windows\System32\drivers\HaoZipVirtualCDBus.sys [207336 2015-08-28] (Shanghai RuiChuang) S4 hvcrash; C:\Windows\System32\drivers\hvcrash.sys [33184 2018-04-12] (Microsoft Corporation) S3 hvservice; C:\Windows\System32\drivers\hvservice.sys [76280 2018-12-08] (Microsoft Corporation) S3 HwNClx0101; C:\Windows\System32\Drivers\mshwnclx.sys [27136 2018-04-12] (Microsoft Corporation) S3 iagpio; C:\Windows\System32\drivers\iagpio.sys [36864 2018-04-12] (Intel(R) Corporation) S3 iaLPSS2i_GPIO2; C:\Windows\System32\drivers\iaLPSS2i_GPIO2.sys [79360 2018-04-12] (Intel Corporation) S3 iaLPSS2i_GPIO2_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [88576 2018-04-12] (Intel Corporation) S3 iaLPSS2i_I2C_BXT_P; C:\Windows\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [174592 2018-04-12] (Intel Corporation) S0 iaStorAVC; C:\Windows\System32\drivers\iaStorAVC.sys [885144 2018-04-12] (Intel Corporation) R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [231168 2017-01-13] (Intel Corporation) S3 IndirectKmd; C:\Windows\System32\drivers\IndirectKmd.sys [38912 2018-04-12] (Microsoft Corporation) R0 iorate; C:\Windows\System32\drivers\iorate.sys [58168 2018-12-08] (Microsoft Corporation) S3 IPT; C:\Windows\System32\drivers\ipt.sys [32256 2018-04-12] (Microsoft Corporation) S0 ItSas35i; C:\Windows\System32\drivers\ItSas35i.sys [145816 2018-04-12] (Avago Technologies) S3 KMDFVirtualMouse; C:\Windows\System32\drivers\KMDFVirtualMouse.sys [21240 2014-08-04] () S3 mausbhost; C:\Windows\System32\drivers\mausbhost.sys [505240 2018-04-12] (Microsoft Corporation) S3 mausbip; C:\Windows\System32\drivers\mausbip.sys [56736 2018-04-12] (Microsoft Corporation) S0 megasas2i; C:\Windows\System32\drivers\MegaSas2i.sys [75160 2018-04-12] (Avago Technologies) S0 megasas35i; C:\Windows\System32\drivers\megasas35i.sys [82328 2018-04-12] (Avago Technologies) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [129312 2014-10-10] (Intel Corporation) R3 mfeaack; C:\Windows\System32\drivers\mfeaack.sys [419616 2016-04-27] (McAfee, Inc.) R3 mfeavfk; C:\Windows\System32\drivers\mfeavfk.sys [349480 2016-04-27] (McAfee, Inc.) S0 mfeelamk; C:\Windows\System32\drivers\mfeelamk.sys [83608 2016-04-27] (McAfee, Inc.) R0 mfehidk; C:\Windows\System32\drivers\mfehidk.sys [843048 2016-04-27] (McAfee, Inc.) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [175104 2018-04-12] (Microsoft Corporation) R3 NETwNb64; C:\Windows\system32\DRIVERS\Netwbw02.sys [3526392 2017-04-19] (Intel Corporation) S3 nvdimm; C:\Windows\System32\drivers\nvdimm.sys [104448 2018-04-12] (Microsoft Corporation) S0 percsas2i; C:\Windows\System32\drivers\percsas2i.sys [58776 2018-04-12] (Avago Technologies) S3 pmem; C:\Windows\System32\drivers\pmem.sys [105984 2018-04-12] (Microsoft Corporation) S3 ptun0901; C:\Windows\System32\drivers\ptun0901.sys [27136 2014-08-08] (The OpenVPN Project) S0 Ramdisk; C:\Windows\System32\DRIVERS\ramdisk.sys [39840 2018-04-12] (Microsoft Corporation) S3 rhproxy; C:\Windows\System32\drivers\rhproxy.sys [104448 2018-04-12] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [886528 2015-07-22] (Realtek ) S3 RTSUER; C:\Windows\system32\Drivers\RtsUer.sys [419576 2015-11-24] (Realsil Semiconductor Corporation) R3 rtsuvc; C:\Windows\system32\DRIVERS\rtsuvc.sys [3069680 2015-08-30] (Realtek Semiconductor Corp.) S0 scmbus; C:\Windows\System32\drivers\scmbus.sys [128920 2018-08-03] (Microsoft Corporation) S3 SDFRd; C:\Windows\System32\drivers\SDFRd.sys [33176 2018-04-12] (Microsoft Corporation) R0 SgrmAgent; C:\Windows\System32\drivers\SgrmAgent.sys [63896 2018-04-12] (Microsoft Corporation) R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [44216 2015-08-14] (Synaptics Incorporated) S3 SpatialGraphFilter; C:\Windows\System32\drivers\SpatialGraphFilter.sys [57752 2018-04-12] (Microsoft Corporation) S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) R3 tapoas; C:\Windows\System32\drivers\tapoas.sys [30720 2012-07-15] (The OpenVPN Project) S3 UcmTcpciCx0101; C:\Windows\System32\Drivers\UcmTcpciCx.sys [152576 2018-04-12] (Microsoft Corporation) S3 vmgid; C:\Windows\System32\drivers\vmgid.sys [10240 2018-08-03] (Microsoft Corporation) R0 volume; C:\Windows\System32\drivers\volume.sys [16288 2018-04-12] (Microsoft Corporation) R2 wcifs; C:\Windows\system32\drivers\wcifs.sys [151960 2018-04-12] (Microsoft Corporation) S3 wcnfs; C:\Windows\system32\drivers\wcnfs.sys [83456 2018-12-08] (Microsoft Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Corporation) S3 WdmCompanionFilter; C:\Windows\System32\drivers\WdmCompanionFilter.sys [21408 2018-04-12] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Corporation) S3 WinNat; C:\Windows\System32\drivers\winnat.sys [228864 2018-10-21] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) NETSVC: InstallService -> C:\Windows\system32\InstallService.dll (Microsoft Corporation) NETSVC: LxpSvc -> C:\Windows\System32\LanguageOverlayServer.dll (Microsoft Corporation) NETSVC: shpamsvc -> C:\Windows\system32\Windows.SharedPC.AccountManager.dll (Microsoft Corporation) NETSVC: PushToInstall -> C:\Windows\system32\PushToInstall.dll (Microsoft Corporation) NETSVC: NaturalAuthentication -> C:\Windows\System32\NaturalAuth.dll (Microsoft Corporation) NETSVC: XboxGipSvc -> C:\Windows\System32\XboxGipSvc.dll (Microsoft Corporation) NETSVC: TokenBroker -> C:\Windows\System32\TokenBroker.dll (Microsoft Corporation) NETSVC: wisvc -> C:\Windows\system32\flightsettings.dll (Microsoft Corporation) NETSVC: WpnService -> C:\Windows\system32\WpnService.dll (Microsoft Corporation) NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-16 18:10 - 2018-12-16 18:11 - 00042336 _____ C:\Users\Robert\Downloads\FRST.txt 2018-12-16 18:09 - 2018-12-16 18:10 - 00000000 ____D C:\FRST 2018-12-16 16:51 - 2018-12-16 16:51 - 00000000 ____D C:\Users\Robert\AppData\LocalLow\uTorrent 2018-12-16 16:50 - 2018-12-16 16:50 - 00000266 __RSH C:\Users\Robert\ntuser.pol 2018-12-16 16:34 - 2018-12-16 16:34 - 00000000 ____D C:\ProgramData\VPN Foundation SDK 2018-12-16 16:22 - 2018-12-16 16:54 - 00000000 ____D C:\Program Files (x86)\Multitimer 2018-12-16 16:22 - 2018-12-16 16:49 - 00000568 _____ C:\WINDOWS\Tasks\gEpJaMmuIFXZexb.job 2018-12-16 16:22 - 2018-12-16 16:25 - 00000000 ____D C:\Program Files (x86)\Lawer 2018-12-16 16:22 - 2018-12-16 16:22 - 00003000 _____ C:\WINDOWS\System32\Tasks\gEpJaMmuIFXZexb 2018-12-16 16:22 - 2018-12-16 16:22 - 00000266 __RSH C:\ProgramData\ntuser.pol 2018-12-16 16:21 - 2018-12-16 16:49 - 00000396 _____ C:\WINDOWS\Tasks\Updater_Online_Application.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G6.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G5.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G4.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G3.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G2.job 2018-12-16 16:21 - 2018-12-16 16:49 - 00000364 _____ C:\WINDOWS\Tasks\Online Application V2G1.job 2018-12-16 16:21 - 2018-12-16 16:21 - 00003290 _____ C:\WINDOWS\System32\Tasks\Updater_Online_Application 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G6 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G5 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G4 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G3 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G2 2018-12-16 16:21 - 2018-12-16 16:21 - 00003254 _____ C:\WINDOWS\System32\Tasks\Online Application V2G1 2018-12-16 16:21 - 2018-12-16 16:21 - 00000000 ____D C:\Users\Robert\AppData\Roaming\Microleaves 2018-12-16 16:21 - 2018-12-16 16:21 - 00000000 ____D C:\Users\Robert\AppData\Local\AdvinstAnalytics 2018-12-16 16:21 - 2018-12-16 16:21 - 00000000 ____D C:\Program Files (x86)\Microleaves 2018-12-16 16:19 - 2018-12-16 16:19 - 00000000 ____D C:\ProgramData\Blogger 2018-12-16 16:16 - 2018-12-16 16:16 - 00000000 ____D C:\ProgramData\Dassu 2018-12-15 20:33 - 2018-12-15 20:33 - 00000000 ____D C:\Users\Robert\Downloads\tecknity-cookies 2018-12-15 20:31 - 2018-12-15 20:31 - 00000000 ____D C:\Users\Robert\Downloads\tecknity-cookies (1) 2018-12-15 20:30 - 2018-12-15 20:30 - 00119980 _____ C:\Users\Robert\Downloads\tecknity-cookies (1).zip 2018-12-15 20:29 - 2018-12-15 20:29 - 00119980 _____ C:\Users\Robert\Downloads\tecknity-cookies.zip 2018-12-15 14:43 - 2018-12-15 14:43 - 00002621 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype dla firm.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002524 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002512 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002494 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002491 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2018-12-15 14:43 - 2018-12-15 14:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2018-12-15 14:41 - 2018-12-15 14:41 - 00004662 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-12-15 13:11 - 2018-12-15 13:12 - 00004684 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier 2018-12-15 13:11 - 2018-12-15 13:12 - 00004522 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2018-12-13 18:29 - 2018-12-13 18:29 - 00000043 _____ C:\Users\Robert\Downloads\SpeechTexter_182938.txt 2018-12-13 18:17 - 2018-12-15 13:06 - 00000000 ____D C:\Users\Robert\AppData\Local\Deployment 2018-12-13 18:17 - 2018-12-13 18:17 - 00000000 ____D C:\Users\Robert\AppData\Local\Apps\2.0 2018-12-13 18:16 - 2018-12-13 18:16 - 02134008 _____ (Microsoft) C:\Users\Robert\Downloads\Setup-Dictate32-5.0.0.exe 2018-12-13 16:08 - 2018-12-13 16:08 - 00025610 _____ C:\Users\Robert\Downloads\NBA-2018-12-12_OKC@NOP_ESPN_720pier.mkv.torrent 2018-12-13 16:08 - 2018-12-13 16:08 - 00014845 _____ C:\Users\Robert\Downloads\NBA-2018-12-12_TOR@GSW_720pier.ru.mkv.torrent 2018-12-13 13:11 - 2018-12-08 13:47 - 00645320 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2018-12-13 13:11 - 2018-12-08 13:42 - 04527800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2018-12-13 13:11 - 2018-12-08 13:42 - 01634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-12-13 13:11 - 2018-12-08 13:42 - 01616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2018-12-13 13:11 - 2018-12-08 13:41 - 02394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL 2018-12-13 13:11 - 2018-12-08 13:41 - 00481880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2018-12-13 13:11 - 2018-12-08 13:40 - 01454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-12-13 13:11 - 2018-12-08 13:29 - 13572608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-12-13 13:11 - 2018-12-08 13:28 - 12710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-12-13 13:11 - 2018-12-08 13:28 - 06586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2018-12-13 13:11 - 2018-12-08 13:28 - 04708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2018-12-13 13:11 - 2018-12-08 13:27 - 05657600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2018-12-13 13:11 - 2018-12-08 13:27 - 00068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll 2018-12-13 13:11 - 2018-12-08 13:27 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll 2018-12-13 13:11 - 2018-12-08 13:25 - 12500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-12-13 13:11 - 2018-12-08 13:25 - 11902976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-12-13 13:11 - 2018-12-08 13:23 - 03649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-12-13 13:11 - 2018-12-08 13:23 - 02892288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-12-13 13:11 - 2018-12-08 13:23 - 01856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-12-13 13:11 - 2018-12-08 13:23 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2018-12-13 13:11 - 2018-12-08 13:22 - 01586176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-12-13 13:11 - 2018-12-08 13:22 - 00577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2018-12-13 13:11 - 2018-12-08 09:13 - 01040936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2018-12-13 13:11 - 2018-12-08 09:07 - 05625352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2018-12-13 13:11 - 2018-12-08 09:07 - 01221632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-12-13 13:11 - 2018-12-08 09:07 - 01030184 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-12-13 13:11 - 2018-12-08 09:07 - 00076280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2018-12-13 13:11 - 2018-12-08 09:06 - 01017168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll 2018-12-13 13:11 - 2018-12-08 09:06 - 00777512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2018-12-13 13:11 - 2018-12-08 09:06 - 00709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-12-13 13:11 - 2018-12-08 09:06 - 00491416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2018-12-13 13:11 - 2018-12-08 09:06 - 00433168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2018-12-13 13:11 - 2018-12-08 09:05 - 07520096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 07436216 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 02822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-12-13 13:11 - 2018-12-08 09:05 - 02463384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 01935008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 01209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 00793592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2018-12-13 13:11 - 2018-12-08 09:05 - 00706040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-12-13 13:11 - 2018-12-08 09:05 - 00594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2018-12-13 13:11 - 2018-12-08 09:05 - 00413920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2018-12-13 13:11 - 2018-12-08 09:05 - 00171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2018-12-13 13:11 - 2018-12-08 09:05 - 00130312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 09084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-12-13 13:11 - 2018-12-08 09:04 - 04404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 02590296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL 2018-12-13 13:11 - 2018-12-08 09:04 - 02371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 01188512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 01150312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 00885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 00604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-12-13 13:11 - 2018-12-08 09:04 - 00527160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 00416024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2018-12-13 13:11 - 2018-12-08 09:04 - 00413176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2018-12-13 13:11 - 2018-12-08 09:04 - 00375608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2018-12-13 13:11 - 2018-12-08 09:04 - 00260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2018-12-13 13:11 - 2018-12-08 08:49 - 25855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-12-13 13:11 - 2018-12-08 08:47 - 00861744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll 2018-12-13 13:11 - 2018-12-08 08:47 - 00785760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-12-13 13:11 - 2018-12-08 08:46 - 02331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2018-12-13 13:11 - 2018-12-08 08:46 - 01989040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2018-12-13 13:11 - 2018-12-08 08:46 - 01397104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll 2018-12-13 13:11 - 2018-12-08 08:46 - 00665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2018-12-13 13:11 - 2018-12-08 08:46 - 00457056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 06569040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 04789952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 02307240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2018-12-13 13:11 - 2018-12-08 08:45 - 01805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 01379816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 01011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 00567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-12-13 13:11 - 2018-12-08 08:45 - 00129296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2018-12-13 13:11 - 2018-12-08 08:42 - 22715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-12-13 13:11 - 2018-12-08 08:41 - 07057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2018-12-13 13:11 - 2018-12-08 08:40 - 04710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2018-12-13 13:11 - 2018-12-08 08:40 - 04384768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-12-13 13:11 - 2018-12-08 08:38 - 22016000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-12-13 13:11 - 2018-12-08 08:38 - 03392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2018-12-13 13:11 - 2018-12-08 08:38 - 02739200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2018-12-13 13:11 - 2018-12-08 08:37 - 01308160 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2018-12-13 13:11 - 2018-12-08 08:37 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 07573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 03396608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 03090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 02364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 01768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 00894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-12-13 13:11 - 2018-12-08 08:36 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-12-13 13:11 - 2018-12-08 08:35 - 01826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2018-12-13 13:11 - 2018-12-08 08:35 - 01708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2018-12-13 13:11 - 2018-12-08 08:35 - 01551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-12-13 13:11 - 2018-12-08 08:35 - 00808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2018-12-13 13:11 - 2018-12-08 08:35 - 00623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 02173440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 01023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 00684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2018-12-13 13:11 - 2018-12-08 08:34 - 00491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2018-12-13 13:11 - 2018-12-08 08:33 - 19405312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-12-13 13:11 - 2018-12-08 08:33 - 02904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-12-13 13:11 - 2018-12-08 08:33 - 01457152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2018-12-13 13:11 - 2018-12-08 08:33 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2018-12-13 13:11 - 2018-12-08 08:32 - 01097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2018-12-13 13:11 - 2018-12-08 08:32 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2018-12-13 13:11 - 2018-12-08 08:32 - 00895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2018-12-13 13:11 - 2018-12-08 08:32 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2018-12-13 13:11 - 2018-12-08 08:32 - 00776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-12-13 13:11 - 2018-12-08 08:32 - 00542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-12-13 13:11 - 2018-12-08 08:30 - 02966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2018-12-13 13:11 - 2018-12-08 08:30 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2018-12-13 13:11 - 2018-12-08 08:29 - 05883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2018-12-13 13:11 - 2018-12-08 08:29 - 02700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2018-12-13 13:11 - 2018-12-08 08:28 - 05775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-12-13 13:11 - 2018-12-08 08:28 - 02258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2018-12-13 13:11 - 2018-12-08 08:28 - 01361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2018-12-13 13:11 - 2018-12-08 08:28 - 01295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2018-12-13 13:11 - 2018-12-08 08:28 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2018-12-13 13:11 - 2018-12-08 08:27 - 00608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2018-12-13 13:11 - 2018-12-08 08:27 - 00578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-12-13 13:11 - 2018-12-08 08:26 - 01348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2018-12-13 13:11 - 2018-12-08 08:26 - 00848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2018-12-13 13:11 - 2018-12-08 08:25 - 00729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2018-12-13 13:11 - 2018-12-08 08:25 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-12-13 13:11 - 2018-12-08 08:24 - 00795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2018-12-13 13:11 - 2018-12-08 08:24 - 00735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2018-12-13 13:11 - 2018-12-08 08:24 - 00533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-12-13 13:11 - 2018-11-09 06:59 - 08623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2018-12-13 13:11 - 2018-11-09 06:57 - 04491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-12-13 13:11 - 2018-11-09 06:56 - 00392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-12-13 13:11 - 2018-11-09 06:56 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll 2018-12-13 13:11 - 2018-11-09 06:55 - 00878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2018-12-13 13:11 - 2018-11-09 06:20 - 07987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2018-12-13 13:11 - 2018-11-09 06:20 - 03397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2018-12-13 13:11 - 2018-11-09 06:18 - 00344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-12-13 13:11 - 2018-11-09 06:17 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2018-12-13 13:11 - 2018-11-09 03:56 - 01213472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2018-12-13 13:11 - 2018-11-09 03:49 - 00565048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2018-12-13 13:11 - 2018-11-09 03:49 - 00368656 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2018-12-13 13:11 - 2018-11-09 03:48 - 03179760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2018-12-13 13:11 - 2018-11-09 03:48 - 02719736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-12-13 13:11 - 2018-11-09 03:48 - 01613288 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2018-12-13 13:11 - 2018-11-09 03:48 - 00899920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2018-12-13 13:11 - 2018-11-09 03:48 - 00766704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2018-12-13 13:11 - 2018-11-09 03:48 - 00745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2018-12-13 13:11 - 2018-11-09 03:48 - 00375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-12-13 13:11 - 2018-11-09 03:47 - 02765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-12-13 13:11 - 2018-11-09 03:47 - 02571128 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2018-12-13 13:11 - 2018-11-09 03:47 - 02062392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2018-12-13 13:11 - 2018-11-09 03:47 - 01285432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-12-13 13:11 - 2018-11-09 03:47 - 00930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2018-12-13 13:11 - 2018-11-09 03:21 - 04866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-12-13 13:11 - 2018-11-09 03:21 - 00119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2018-12-13 13:11 - 2018-11-09 03:21 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2018-12-13 13:11 - 2018-11-09 03:20 - 06032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2018-12-13 13:11 - 2018-11-09 03:19 - 02368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2018-12-13 13:11 - 2018-11-09 03:19 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-12-13 13:11 - 2018-11-09 03:18 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-12-13 13:11 - 2018-11-09 03:17 - 02584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2018-12-13 13:11 - 2018-11-09 03:17 - 01069568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2018-12-13 13:11 - 2018-11-09 03:16 - 04939776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-12-13 13:11 - 2018-11-09 03:16 - 02224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-12-13 13:11 - 2018-11-09 03:15 - 00943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2018-12-13 13:11 - 2018-11-09 03:15 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2018-12-13 13:11 - 2018-11-09 03:15 - 00505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-12-13 13:11 - 2018-11-09 03:07 - 02417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2018-12-13 13:11 - 2018-11-09 03:07 - 01299704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll 2018-12-13 13:11 - 2018-11-09 02:48 - 00550728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2018-12-13 13:11 - 2018-11-09 02:46 - 02253184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-12-13 13:11 - 2018-11-09 02:46 - 02161008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2018-12-13 13:11 - 2018-11-09 02:46 - 01980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2018-12-13 13:11 - 2018-11-09 02:46 - 00829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2018-12-13 13:11 - 2018-11-09 02:46 - 00721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2018-12-13 13:11 - 2018-11-09 02:46 - 00573504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2018-12-13 13:11 - 2018-11-09 02:31 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2018-12-13 13:11 - 2018-11-09 02:29 - 03711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-12-13 13:11 - 2018-11-09 02:29 - 00561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-12-13 13:11 - 2018-11-09 02:29 - 00331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2018-12-13 13:11 - 2018-11-09 02:28 - 05307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2018-12-13 13:11 - 2018-11-09 02:28 - 02900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-12-13 13:11 - 2018-11-09 02:26 - 04514816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-12-13 13:11 - 2018-11-09 02:26 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2018-12-13 13:11 - 2018-11-09 02:25 - 00713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2018-12-13 13:11 - 2018-11-09 02:25 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2018-12-13 13:10 - 2018-12-08 13:47 - 01048712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2018-12-13 13:10 - 2018-12-08 13:46 - 00549760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll 2018-12-13 13:10 - 2018-12-08 13:39 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll 2018-12-13 13:10 - 2018-12-08 13:29 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2018-12-13 13:10 - 2018-12-08 13:27 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys 2018-12-13 13:10 - 2018-12-08 13:23 - 01661440 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2018-12-13 13:10 - 2018-12-08 13:23 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2018-12-13 13:10 - 2018-12-08 13:23 - 00471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll 2018-12-13 13:10 - 2018-12-08 13:22 - 01469952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2018-12-13 13:10 - 2018-12-08 09:12 - 00272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-12-13 13:10 - 2018-12-08 09:12 - 00269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-12-13 13:10 - 2018-12-08 09:12 - 00092688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2018-12-13 13:10 - 2018-12-08 09:07 - 01328632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2018-12-13 13:10 - 2018-12-08 09:07 - 01063416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2018-12-13 13:10 - 2018-12-08 09:07 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-12-13 13:10 - 2018-12-08 09:06 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2018-12-13 13:10 - 2018-12-08 09:06 - 00249088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2018-12-13 13:10 - 2018-12-08 09:05 - 01018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2018-12-13 13:10 - 2018-12-08 09:05 - 00421176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xbgmengine.dll 2018-12-13 13:10 - 2018-12-08 09:05 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys 2018-12-13 13:10 - 2018-12-08 09:04 - 01943328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-12-13 13:10 - 2018-12-08 09:04 - 01457032 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-12-13 13:10 - 2018-12-08 09:04 - 01257672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-12-13 13:10 - 2018-12-08 09:04 - 01140480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-12-13 13:10 - 2018-12-08 09:04 - 00982912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-12-13 13:10 - 2018-12-08 09:04 - 00335672 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2018-12-13 13:10 - 2018-12-08 09:04 - 00268280 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2018-12-13 13:10 - 2018-12-08 09:04 - 00158624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll 2018-12-13 13:10 - 2018-12-08 09:04 - 00128824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2018-12-13 13:10 - 2018-12-08 09:04 - 00058168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys 2018-12-13 13:10 - 2018-12-08 09:04 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe 2018-12-13 13:10 - 2018-12-08 08:46 - 00101192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll 2018-12-13 13:10 - 2018-12-08 08:45 - 06043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-12-13 13:10 - 2018-12-08 08:45 - 01620472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-12-13 13:10 - 2018-12-08 08:45 - 00356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2018-12-13 13:10 - 2018-12-08 08:42 - 09084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2018-12-13 13:10 - 2018-12-08 08:39 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll 2018-12-13 13:10 - 2018-12-08 08:38 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll 2018-12-13 13:10 - 2018-12-08 08:38 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll 2018-12-13 13:10 - 2018-12-08 08:38 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe 2018-12-13 13:10 - 2018-12-08 08:38 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2018-12-13 13:10 - 2018-12-08 08:38 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys 2018-12-13 13:10 - 2018-12-08 08:38 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 02825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2018-12-13 13:10 - 2018-12-08 08:37 - 00079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2018-12-13 13:10 - 2018-12-08 08:36 - 03381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2018-12-13 13:10 - 2018-12-08 08:36 - 00566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2018-12-13 13:10 - 2018-12-08 08:36 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2018-12-13 13:10 - 2018-12-08 08:36 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2018-12-13 13:10 - 2018-12-08 08:36 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2018-12-13 13:10 - 2018-12-08 08:36 - 00153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2018-12-13 13:10 - 2018-12-08 08:36 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys 2018-12-13 13:10 - 2018-12-08 08:35 - 02126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2018-12-13 13:10 - 2018-12-08 08:34 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2018-12-13 13:10 - 2018-12-08 08:33 - 01264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2018-12-13 13:10 - 2018-12-08 08:33 - 01058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2018-12-13 13:10 - 2018-12-08 08:33 - 00823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2018-12-13 13:10 - 2018-12-08 08:33 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2018-12-13 13:10 - 2018-12-08 08:32 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2018-12-13 13:10 - 2018-12-08 08:30 - 06647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2018-12-13 13:10 - 2018-12-08 08:29 - 00311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll 2018-12-13 13:10 - 2018-12-08 08:29 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2018-12-13 13:10 - 2018-12-08 08:28 - 00391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2018-12-13 13:10 - 2018-12-08 08:27 - 02449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2018-12-13 13:10 - 2018-12-08 08:27 - 01986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2018-12-13 13:10 - 2018-12-08 08:27 - 00555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2018-12-13 13:10 - 2018-12-08 08:27 - 00059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2018-12-13 13:10 - 2018-12-08 08:25 - 00978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2018-12-13 13:10 - 2018-12-08 08:25 - 00856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2018-12-13 13:10 - 2018-12-08 08:25 - 00702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2018-12-13 13:10 - 2018-12-08 08:25 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2018-12-13 13:10 - 2018-12-08 08:24 - 00345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2018-12-13 13:10 - 2018-12-08 07:16 - 00001310 _____ C:\WINDOWS\system32\tcbres.wim 2018-12-13 13:10 - 2018-11-09 07:15 - 21388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-12-13 13:10 - 2018-11-09 07:00 - 00177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2018-12-13 13:10 - 2018-11-09 06:58 - 00244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll 2018-12-13 13:10 - 2018-11-09 06:57 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll 2018-12-13 13:10 - 2018-11-09 06:56 - 00381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll 2018-12-13 13:10 - 2018-11-09 06:55 - 01254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2018-12-13 13:10 - 2018-11-09 06:54 - 01535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2018-12-13 13:10 - 2018-11-09 06:32 - 20383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-12-13 13:10 - 2018-11-09 06:22 - 00138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2018-12-13 13:10 - 2018-11-09 06:19 - 00181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll 2018-12-13 13:10 - 2018-11-09 06:18 - 00320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll 2018-12-13 13:10 - 2018-11-09 03:49 - 00723416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2018-12-13 13:10 - 2018-11-09 03:47 - 00537912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2018-12-13 13:10 - 2018-11-09 03:22 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2018-12-13 13:10 - 2018-11-09 03:22 - 00097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll 2018-12-13 13:10 - 2018-11-09 03:21 - 01627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2018-12-13 13:10 - 2018-11-09 03:21 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2018-12-13 13:10 - 2018-11-09 03:20 - 00530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2018-12-13 13:10 - 2018-11-09 03:20 - 00399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll 2018-12-13 13:10 - 2018-11-09 03:20 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2018-12-13 13:10 - 2018-11-09 03:20 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2018-12-13 13:10 - 2018-11-09 03:19 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2018-12-13 13:10 - 2018-11-09 03:18 - 01487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2018-12-13 13:10 - 2018-11-09 03:18 - 00573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2018-12-13 13:10 - 2018-11-09 03:18 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2018-12-13 13:10 - 2018-11-09 03:18 - 00300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2018-12-13 13:10 - 2018-11-09 03:16 - 01364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll 2018-12-13 13:10 - 2018-11-09 03:16 - 01225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2018-12-13 13:10 - 2018-11-09 03:16 - 00308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 2018-12-13 13:10 - 2018-11-09 03:15 - 00933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2018-12-13 13:10 - 2018-11-09 02:47 - 00295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2018-12-13 13:10 - 2018-11-09 02:31 - 00002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2018-12-13 13:10 - 2018-11-09 02:30 - 00142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll 2018-12-13 13:10 - 2018-11-09 02:30 - 00082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll 2018-12-13 13:10 - 2018-11-09 02:29 - 00392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2018-12-13 13:10 - 2018-11-09 02:27 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2018-12-13 13:10 - 2018-11-09 02:26 - 01110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2018-12-13 13:10 - 2018-11-09 02:26 - 00873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2018-12-13 12:52 - 2018-12-13 13:00 - 00000000 ____D C:\Users\Robert\Desktop\Plac zabaw oferty 2018-12-11 16:37 - 2018-12-11 16:48 - 350378498 ____R C:\Users\Robert\Downloads\NBA-2018-12-10_UTA@OKC_720pier.ru.mkv 2018-12-11 16:37 - 2018-12-11 16:37 - 00011645 _____ C:\Users\Robert\Downloads\NBA-2018-12-10_UTA@OKC_720pier.ru.mkv.torrent 2018-12-10 17:29 - 2018-12-10 17:32 - 3306849881 ____R C:\Users\Robert\Downloads\NBA-2018-12-09_MIL@TOR_FSWIS_720pier.mkv 2018-12-10 17:29 - 2018-12-10 17:29 - 00032132 _____ C:\Users\Robert\Downloads\NBA-2018-12-09_MIL@TOR_FSWIS_720pier.mkv.torrent 2018-12-08 14:08 - 2018-12-08 14:08 - 00383506 _____ C:\Users\Robert\Downloads\Umowa Bankowości Elektronicznej.pdf 2018-12-05 09:18 - 2018-12-05 09:27 - 3504259177 _____ C:\Users\Robert\Downloads\NBA-2018-12-03_OKC@DET_FSD_720pier.mkv 2018-12-05 09:18 - 2018-12-05 09:27 - 12513765 _____ C:\Users\Robert\Downloads\NBA-2018-12-03_DEN@TOR_720pier.ru.mkv 2018-12-02 23:21 - 2018-12-02 23:21 - 00000000 ____D C:\WINDOWS\Panther 2018-11-20 14:27 - 2018-11-20 14:27 - 00000000 ____D C:\Users\Robert\Downloads\UFC 228. Woodley vs. Till (Full Event) [HD 720p, ENG] 2018-11-20 14:16 - 2018-11-20 14:18 - 00000000 ____D C:\Users\Robert\Downloads\UFC 229. Khabib vs. McGregor (Full Event) [HD 720p, ENG] 2018-11-20 14:16 - 2018-11-20 14:16 - 00000000 ____D C:\Users\Robert\Downloads\UFC 230. Cormier vs. Lewis (Full Event) [HD 720p, ENG] 2018-11-17 22:38 - 2018-11-17 22:38 - 00000022 _____ C:\Users\Robert\Downloads\pl-this-is-us-2016-S03E01-O-SubRip-windows-1250 (1).zip 2018-11-17 22:36 - 2018-11-17 22:37 - 00000022 _____ C:\Users\Robert\Downloads\pl-this-is-us-2016-S03E01-O-SubRip-windows-1250.zip 2018-11-17 22:34 - 2018-11-17 22:34 - 00039226 _____ C:\Users\Robert\Downloads\This.Is.Us.S03E01.HDTV.x264-SVA.ettv.srt 2018-11-17 22:34 - 2018-11-17 22:34 - 00038620 _____ C:\Users\Robert\Downloads\This.Is.Us.S03E01.720p.HDTV.x264-AVS.ettv.srt 2018-11-17 22:32 - 2018-11-17 22:32 - 00019118 _____ C:\Users\Robert\Downloads\S03E01.txt 2018-11-17 21:44 - 2018-11-17 21:48 - 00000000 ____D C:\Users\Robert\Downloads\Big Little Lies Season 1 Mp4 1080p 2018-11-17 21:42 - 2018-11-17 21:58 - 00000000 ____D C:\Users\Robert\Downloads\Umbre - Season 1 Complete - 1080p x265 HEVC - ROM (ENG SUBS) [BRSHNKV] 2018-11-17 21:40 - 2018-11-17 21:54 - 00000000 ____D C:\Users\Robert\Downloads\Ray Donovan Season 1 - COMPLETE 720p x264 [MKV,AC3,5.1] Ehhhh 2018-11-17 21:40 - 2018-11-17 21:44 - 00000000 ____D C:\Users\Robert\Downloads\Ray Donovan Season 2 - COMPLETE 720p HDTV x264 [MKV,AC3,5.1] Ehhhh 2018-11-17 21:40 - 2018-11-17 21:40 - 00000000 ____D C:\Users\Robert\Downloads\www.scenetime.com - This.Is.Us.S03E01.1080p.WEB.x264-TBS ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-16 18:09 - 2018-04-11 22:04 - 00000000 ____D C:\Windows 2018-12-16 17:54 - 2015-12-15 15:55 - 00000000 ____D C:\Users\Robert\AppData\Roaming\HaoZip 2018-12-16 17:53 - 2016-11-18 22:57 - 00000000 ____D C:\Users\Robert\AppData\LocalLow\Mozilla 2018-12-16 17:48 - 2018-04-12 00:38 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-12-16 17:47 - 2018-06-22 18:59 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2018-12-16 17:47 - 2016-10-07 17:29 - 00000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2018-12-16 17:47 - 2015-11-15 18:31 - 00000000 __SHD C:\Users\Robert\IntelGraphicsProfiles 2018-12-16 17:31 - 2018-06-22 19:19 - 01766926 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-12-16 17:31 - 2018-04-12 16:51 - 00784614 _____ C:\WINDOWS\system32\perfh015.dat 2018-12-16 17:31 - 2018-04-12 16:51 - 00152238 _____ C:\WINDOWS\system32\perfc015.dat 2018-12-16 17:31 - 2018-04-12 00:36 - 00000000 ____D C:\WINDOWS\INF 2018-12-16 17:27 - 2018-06-22 19:32 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-12-16 17:27 - 2016-10-07 17:23 - 00111088 _____ (Lenovo (Beijing) Limited) C:\WINDOWS\system32\LenovoCheck.exe 2018-12-16 17:27 - 2016-10-07 17:23 - 00026608 _____ (Lenovo) C:\WINDOWS\system32\LenovoUpdate.exe 2018-12-16 17:27 - 2016-02-02 15:40 - 00000043 _____ C:\WINDOWS\MezzmoMediaServer.INI 2018-12-16 17:26 - 2018-04-11 22:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2018-12-16 17:26 - 2016-10-07 17:23 - 00153336 _____ C:\WINDOWS\system32\wpbbin.exe 2018-12-16 17:03 - 2015-11-15 21:52 - 00000000 ____D C:\Users\Robert\AppData\Roaming\uTorrent 2018-12-16 16:54 - 2015-06-08 08:29 - 00000000 ____D C:\ProgramData\Package Cache 2018-12-16 16:50 - 2018-06-22 19:07 - 00000000 ____D C:\Users\Robert 2018-12-16 16:49 - 2016-01-06 22:43 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-12-16 16:22 - 2013-08-22 16:36 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy 2018-12-15 14:42 - 2015-12-13 09:28 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2018-12-15 14:41 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-12-15 14:41 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\system32\Macromed 2018-12-15 13:13 - 2016-11-18 22:56 - 00001239 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-12-15 13:12 - 2015-11-15 18:41 - 00000000 ____D C:\Users\Robert\AppData\Local\Adobe 2018-12-15 13:05 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\AppReadiness 2018-12-14 22:30 - 2016-12-14 13:32 - 00002318 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-12-14 22:28 - 2018-04-12 00:38 - 00000000 ___HD C:\Program Files\WindowsApps 2018-12-13 20:53 - 2017-02-18 20:48 - 00000000 ____D C:\Users\Robert\AppData\Roaming\vlc 2018-12-13 18:16 - 2015-11-29 10:21 - 00000000 ____D C:\Users\Robert\AppData\Local\Downloaded Installations 2018-12-13 16:06 - 2015-12-13 22:17 - 00000000 ___RD C:\Users\Robert\3D Objects 2018-12-13 16:06 - 2015-11-16 00:24 - 00000000 __RHD C:\Users\Public\AccountPictures 2018-12-13 16:04 - 2018-06-22 18:59 - 05310456 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\zu-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\yo-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\xh-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\wo-SN 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\tn-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\ti-ET 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\rw-RW 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\nso-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\ig-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\zu-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\yo-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\xh-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\wo-SN 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\uz-Latn-UZ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\tn-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\ti-ET 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\sd-Arab-PK 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\rw-RW 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\quc-Latn-GT 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\pa-Arab-PK 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\nso-ZA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\ku-Arab-IQ 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\ig-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\ha-Latn-NG 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\chr-CHER-US 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\ca-ES-valencia 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\bs-Latn-BA 2018-12-13 16:00 - 2018-04-12 16:53 - 00000000 ____D C:\WINDOWS\system32\az-Latn-AZ 2018-12-13 16:00 - 2018-04-12 00:38 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs 2018-12-13 16:00 - 2018-04-12 00:38 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-12-13 16:00 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\TextInput 2018-12-13 16:00 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\ShellComponents 2018-12-13 16:00 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\bcastdvr 2018-12-13 13:51 - 2015-11-15 19:13 - 00000000 ____D C:\WINDOWS\system32\MRT 2018-12-13 13:30 - 2015-11-15 19:13 - 137260640 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-12-13 13:25 - 2018-04-12 00:30 - 00000000 ____D C:\WINDOWS\CbsTemp 2018-12-13 12:58 - 2018-04-12 00:38 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2018-12-13 12:55 - 2016-03-05 21:37 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-12-10 17:22 - 2016-11-19 12:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira 2018-12-08 13:31 - 2017-11-10 23:56 - 00000000 ____D C:\Users\Robert\AppData\Local\Packages 2018-12-07 16:01 - 2017-09-29 13:01 - 00000000 ____D C:\Program Files\rempl 2018-12-03 13:07 - 2018-06-22 19:32 - 00003358 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-884423482-3915767466-712464105-1001 2018-12-03 13:06 - 2018-06-22 19:07 - 00002458 _____ C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-12-03 13:06 - 2015-11-15 21:19 - 00000000 ___RD C:\Users\Robert\OneDrive 2018-12-01 05:01 - 2018-11-15 22:07 - 00835688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-12-01 05:01 - 2018-11-15 22:07 - 00179808 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-11-22 14:27 - 2018-08-18 19:27 - 00000000 ____D C:\Users\Robert\Downloads\SERIALE 2018-11-22 14:26 - 2018-08-18 19:27 - 00000000 ____D C:\Users\Robert\Downloads\FILMY ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-10-20 23:19 - 2016-10-20 23:19 - 0000132 _____ () C:\Users\Robert\AppData\Roaming\Adobe BMP Format CS6 Prefs 2018-03-30 13:10 - 2018-03-30 13:10 - 0001456 _____ () C:\Users\Robert\AppData\Local\Adobe Save for Web 13.0 Prefs 2017-05-02 17:23 - 2017-05-02 17:23 - 0000001 _____ () C:\Users\Robert\AppData\Local\llftool.4.40.agreement 2017-11-11 16:45 - 2017-11-11 16:45 - 0000019 _____ () C:\Users\Robert\AppData\Local\llftool.license 2017-04-23 15:15 - 2017-04-23 15:15 - 0003220 _____ () C:\Users\Robert\AppData\Local\unins000.dat 2017-04-23 15:15 - 2017-04-23 15:15 - 0711640 _____ () C:\Users\Robert\AppData\Local\unins000.exe 2017-04-23 15:15 - 2017-04-23 15:15 - 0011761 _____ () C:\Users\Robert\AppData\Local\unins000.msg 2016-11-19 11:48 - 2016-11-19 11:48 - 0044149 _____ () C:\ProgramData\1479552498.bdinstall.bin 2016-11-19 11:54 - 2016-11-19 11:54 - 0028759 _____ () C:\ProgramData\agent.1479552854.bdinstall.bin 2016-11-19 12:16 - 2016-11-19 12:16 - 0029151 _____ () C:\ProgramData\agent.1479554164.bdinstall.bin 2016-10-07 17:29 - 2016-10-07 17:29 - 0000000 _____ () C:\ProgramData\DP45977C.lfl Niektóre pliki w TEMP: ==================== C:\Users\Robert\AppData\Local\Temp\Bottle.exe C:\Users\Robert\AppData\Local\Temp\setup.dll C:\Users\Robert\AppData\Local\Temp\yjgxv1nmqos.exe ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-06-22 18:59 ==================== Koniec FRST.txt ============================