Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 09.01.2019 01 Uruchomiony przez Tomek (administrator) T (10-01-2019 20:33:46) Uruchomiony z C:\Users\Tomek\Desktop Załadowane profile: Tomek (Dostępne profile: defaultuser0 & Tomek) Platform: Windows 10 Home Wersja 1809 17763.253 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Creative Technology Ltd) C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe () C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (Microsoft) C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe (COMODO) C:\Program Files (x86)\Comodo\Internet Security Essentials\isesrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe () C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe () C:\Program Files\WindowsApps\Microsoft.YourPhone_1.0.20032.0_x64__8wekyb3d8bbwe\YourPhone.exe () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe () C:\Program Files (x86)\GIGABYTE\AppCenter\ApCent.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Microsoft) C:\Program Files (x86)\GIGABYTE\CloudStation_Server\HomeCloud\HCLOUD.exe (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngineStarter.exe (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\SIV\thermald.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (BitTorrent Inc.) C:\Users\Tomek\AppData\Roaming\uTorrent\uTorrent.exe (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe (BitTorrent Inc.) C:\Users\Tomek\AppData\Roaming\uTorrent\updates\3.5.5_44954\utorrentie.exe (BitTorrent Inc.) C:\Users\Tomek\AppData\Roaming\uTorrent\updates\3.5.5_44954\utorrentie.exe (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSS.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe () C:\Program Files (x86)\RivaTuner Statistics Server\EncoderServer.exe () C:\Program Files (x86)\RivaTuner Statistics Server\RTSSHooksLoader64.exe () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngine.exe (GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe (Nokia) C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe (Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclMSBTSrvEx.exe (Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (COMODO) C:\Program Files (x86)\Comodo\Internet Security Essentials\vkise.exe (Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (TODO: ) C:\Program Files (x86)\ASUS\GPU TweakII\GPUTweakII.exe (ASUSTek) C:\Program Files (x86)\ASUS\GPU TweakII\ASUSGPUFanService.exe (TODO: ) C:\Program Files (x86)\ASUS\GPU TweakII\Monitor.exe (Microsoft Corporation) C:\Windows\System32\mfpmp.exe (Microsoft Corporation) C:\Windows\System32\SpatialAudioLicenseSrv.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11810.1001.12.0_x64__8wekyb3d8bbwe\WinStore.App.exe (GOG.com) C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe (GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe (GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe (GOG.com) C:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe (GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe (Gigabyte Technology CO., LTD.) C:\Program Files (x86)\GIGABYTE\Smart TimeLock\AlarmClock.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1811.3241.0_x64__8wekyb3d8bbwe\Calculator.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2208448 2018-03-13] (COMODO) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320584 2018-02-13] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274304 2018-05-30] (Realtek Semiconductor) HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [4072376 2018-01-17] (COMODO) HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [455816 2017-02-02] (Power Software Ltd) HKLM-x32\...\Run: [P17RunE] => RunDll32 P17RunE.dll,RunDLLEntry HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-10-06] (Oracle Corporation) HKLM-x32\...\RunOnce: [DualBiosRescue] => C:\Program Files (x86)\GIGABYTE\GigabyteFirmwareUpdateUtility\dbrro.exe [12096 2015-08-19] () HKLM-x32\...\RunOnce: [PreRun] => C:\Program Files (x86)\GIGABYTE\AppCenter\PreRun.exe [14632 2016-02-26] () HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2018-09-15] (Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2018-09-15] (Microsoft Corporation) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [uTorrent] => C:\Users\Tomek\AppData\Roaming\uTorrent\uTorrent.exe [1739960 2018-12-22] (BitTorrent Inc.) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3133216 2019-01-05] (Valve Corporation) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3990528 2017-10-04] (Napisy24.pl) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [ALLUpdate] => C:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [Napisy24.pl] => C:\Program Files (x86)\Napisy24\Napisy24.exe [6706688 2017-11-27] (Napisy24.pl) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [OSDownloaderUpdate] => C:\Program Files (x86)\OSDownloader\OSDownloaderUpdate.exe [3921920 2017-03-22] (Opensubtitles.org) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [OSDownloader] => C:\Program Files (x86)\OSDownloader\OSDownloader.exe [5652992 2017-04-12] (OpenSubtitles.org) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [7381576 2018-11-29] (GOG.com) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1092448 2014-11-19] (Nokia) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19589208 2018-12-10] (Piriform Software Ltd) HKU\S-1-5-21-1177734181-163601610-57667068-1001\...\MountPoints2: G - "G:\OriginSetup.exe" HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () HKLM\...\Drivers32-x32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () HKLM\Software\...\Authentication\Credential Providers: [{5EF9A232-5B5B-4768-95F2-3F601FB184E3}] -> C:\Windows\system32\AutoGreenCP.dll [2017-03-14] () Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{3d560073-21d1-4f4b-bd16-cf526693df4d}: [DhcpNameServer] 192.168.1.254 Tcpip\..\Interfaces\{8a3e926a-3c4e-4ba5-9c23-7df8cb376293}: [DhcpNameServer] 192.168.1.254 Internet Explorer: ================== SearchScopes: HKLM-x32 -> DefaultScope - brak wartości BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\Windows\system32\mscoree.dll [2018-09-15] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\ssv.dll [2018-10-21] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\jp2ssv.dll [2018-10-21] (Oracle Corporation) Toolbar: HKLM - Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\Windows\system32\mscoree.dll [2018-09-15] (Microsoft Corporation) DPF: HKLM-x32 {D4B68B83-8710-488B-A692-D74B50BA558E} hxxp://files.creative.com/Web/softwareupdate/ocx/15113/CTPIDPDE.cab DPF: HKLM-x32 {E705A591-DA3C-4228-B0D5-A356DBA42FBF} hxxp://files.creative.com/Web/softwareupdate/su2/ocx/20015/CTSUEng.cab DPF: HKLM-x32 {F6ACF75C-C32C-447B-9BEF-46B766368D29} hxxp://files.creative.com/Web/softwareupdate/ocx/150323/CTPID.cab Edge: ====== Edge Session Restore: HKU\S-1-5-21-1177734181-163601610-57667068-1001 -> [funkcja włączona] Edge Extension: (Adblock Plus) -> 10_EyeoGmbHAdblockPlus_d55gg7py3s0m0 => C:\Program Files\WindowsApps\EyeoGmbH.AdblockPlus_0.9.11.0_neutral__d55gg7py3s0m0 [2018-06-05] Edge Extension: (LastPass: Free Password Manager) -> hdokiejnpimakedhajhdlcegeplioahd_LastPassLastPassFreePasswordManager_qq0fmhteeht3j => C:\Program Files\WindowsApps\LastPass.LastPassFreePasswordManager_4.19.0.0_neutral__qq0fmhteeht3j [2018-11-04] FireFox: ======== FF DefaultProfile: rm7tb51n.default-1489774386214-1523978532264 FF ProfilePath: C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\rm7tb51n.default-1489774386214-1523978532264 [2019-01-10] FF Extension: (Firefox DevTools ADB Extension) - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\rm7tb51n.default-1489774386214-1523978532264\Extensions\adb@mozilla.org.xpi [2018-12-16] FF Extension: (AdBlock) - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\rm7tb51n.default-1489774386214-1523978532264\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2018-12-06] FF Extension: (LastPass: Free Password Manager) - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\rm7tb51n.default-1489774386214-1523978532264\Extensions\support@lastpass.com.xpi [2018-12-13] FF Extension: (YouTube High Definition) - C:\Users\Tomek\AppData\Roaming\Mozilla\Firefox\Profiles\rm7tb51n.default-1489774386214-1523978532264\Extensions\{7b1bf0b6-a1b9-42b0-b75d-252036438bdc}.xpi [2018-11-16] FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_114.dll [2019-01-08] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-08] () FF Plugin-x32: @java.com/DTPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\dtplugin\npDeployJava1.dll [2018-10-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.191.2 -> C:\Program Files (x86)\Java\jre1.8.0_191\bin\plugin2\npjp2.dll [2018-10-21] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2014-11-19] ( ) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-17] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.) Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2017-10-11] (Apple Inc.) S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] () R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11395096 2018-03-13] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2876096 2018-03-13] (COMODO) S3 Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [79360 2019-01-09] (Creative Labs) [Brak podpisu cyfrowego] R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [307200 2008-11-18] (Creative Technology Ltd) [Brak podpisu cyfrowego] R2 EasyTuneEngineService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\EasyTuneEngineService.exe [142792 2018-10-19] (GIGA-BYTE TECHNOLOGY CO., LTD.) R2 gadjservice; C:\Program Files (x86)\GIGABYTE\AppCenter\AdjustService.exe [17920 2015-06-25] () [Brak podpisu cyfrowego] S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [707144 2018-11-29] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7172680 2018-11-29] (GOG.com) R2 Gservice; C:\Program Files (x86)\GIGABYTE\GService\GCloud.exe [19888 2016-11-16] (Microsoft) S3 HwmRecordService; C:\Program Files (x86)\GIGABYTE\SIV\HwmRecordService.exe [128944 2018-09-18] (GIGA-BYTE TECHNOLOGY CO., LTD.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17992 2018-02-13] (Intel Corporation) R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [506368 2017-11-10] (Intel Corporation) [Brak podpisu cyfrowego] R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1199544 2018-01-17] (COMODO) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-12-21] (Intel Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787440 2018-12-06] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787440 2018-12-06] (NVIDIA Corporation) S2 OcButtonService; C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\OcButtonService.exe [123824 2018-09-10] (GIGA-BYTE TECHNOLOGY CO., LTD.) R2 Smart TimeLock; C:\Program Files (x86)\GIGABYTE\Smart TimeLock\TimeMgmtDaemon.exe [102400 2013-02-22] (Gigabyte Technology CO., LTD.) [Brak podpisu cyfrowego] S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] () S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2018-12-09] () S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [289280 2018-11-23] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830488 2018-09-15] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation) R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18232 2016-08-25] (Intel(R) Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] () R3 athur; C:\WINDOWS\System32\drivers\athuwbx.sys [2702336 2013-11-20] (Qualcomm Atheros Communications, Inc.) R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [44056 2018-02-02] (COMODO) R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [830448 2018-02-02] (COMODO) R1 cmdhlp; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [50768 2018-02-02] (COMODO) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31816 2018-07-01] (ELAN Microelectronic Corp.) R3 gdrv; C:\Windows\gdrv.sys [26792 2018-05-06] (GIGA-BYTE TECHNOLOGY CO., LTD.) R3 gdrv2; C:\WINDOWS\gdrv2.sys [32720 2018-12-05] (GIGA-BYTE TECHNOLOGY CO., LTD.) S3 GenericMount; C:\WINDOWS\System32\drivers\GenericMount.sys [54320 2009-09-21] (Symantec Corporation) R1 HWiNFO; C:\WINDOWS\system32\drivers\HWiNFO64A.SYS [55960 2018-07-08] (REALiX(tm)) R1 HWiNFO; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-03-14] (REALiX(tm)) R1 HWiNFO32; C:\Windows\SysWoW64\drivers\HWiNFO64A.SYS [27552 2017-03-14] (REALiX(tm)) R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [942128 2018-02-13] (Intel Corporation) R1 inspect; C:\WINDOWS\system32\DRIVERS\inspect.sys [133384 2017-12-29] (COMODO) R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37064 2016-08-24] (Intel Corporation) R3 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [35352 2017-01-11] (ASUSTeK Computer Inc.) R1 isedrv; C:\WINDOWS\system32\drivers\isedrv.sys [63200 2017-12-13] (COMODO) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_01c064f3d89f92be\nvlddmkm.sys [20424640 2018-12-12] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2018-10-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [74576 2018-10-01] (NVIDIA Corporation) S3 OSFMount; C:\Program Files\OSFMount\OSFMount.sys [1299384 2014-02-07] (PassMark Software) R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2013-09-30] () S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2013-09-30] () R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] () S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] () S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (MBB) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-01-10 20:32 - 2019-01-10 20:32 - 000070253 _____ C:\Users\Tomek\Desktop\Addition.txt 2019-01-10 20:31 - 2019-01-10 20:33 - 000023903 _____ C:\Users\Tomek\Desktop\FRST.txt 2019-01-10 20:25 - 2019-01-10 20:29 - 000011274 _____ C:\Users\Tomek\Desktop\Fixlog.txt 2019-01-10 20:24 - 2019-01-10 20:33 - 000000000 ____D C:\FRST 2019-01-10 20:24 - 2019-01-10 20:24 - 002425856 _____ (Farbar) C:\Users\Tomek\Desktop\FRST64.exe 2019-01-10 20:24 - 2019-01-10 20:24 - 000000002 _____ C:\Users\Tomek\Desktop\qubmgiwyvkffyile.txt 2019-01-10 20:24 - 2019-01-10 20:24 - 000000000 ____D C:\Users\Tomek\Desktop\FRST-OlderVersion 2019-01-09 22:15 - 2019-01-10 20:30 - 000000000 ____D C:\Users\Tomek\AppData\LocalLow\uTorrent 2019-01-09 21:18 - 2019-01-09 21:18 - 000766608 _____ C:\Users\Tomek\Documents\cc_20190109_211759.reg 2019-01-09 21:15 - 2019-01-09 21:15 - 000003936 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2019-01-09 21:15 - 2019-01-09 21:15 - 000002860 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2019-01-09 21:15 - 2019-01-09 21:15 - 000000863 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-01-09 21:15 - 2019-01-09 21:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2019-01-09 21:15 - 2019-01-09 21:15 - 000000000 ____D C:\Program Files\CCleaner 2019-01-09 07:04 - 2019-01-09 07:04 - 026806784 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 020811776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 019024384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 012858368 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 012151808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 006057984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 005440016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 003952952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 003550592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 002986352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 002469648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 002323696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 001309696 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 001201136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000870400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000833536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000663040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000662528 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Pipeline.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-01-09 07:04 - 2019-01-09 07:04 - 000098816 ____R (Microsoft Corporation) C:\WINDOWS\system32\MixedRealityCapture.Broker.dll 2019-01-09 07:03 - 2019-01-09 07:04 - 007857152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 023440384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 009677352 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 006544800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 004588544 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 003380224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 003338328 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 003270144 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002929152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002777432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002626360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-01-09 07:03 - 2019-01-09 07:03 - 002594872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002437552 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002275896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002186752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 002021584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001641616 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001616384 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001255736 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 001212416 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 001058848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 001050936 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 000998912 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000773120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000570368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000463672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000387384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000312832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000178696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-01-09 07:03 - 2019-01-09 07:03 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000140808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2019-01-09 07:03 - 2019-01-09 07:03 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintWorkflowService.dll 2019-01-09 07:03 - 2019-01-09 07:03 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2019-01-09 07:03 - 2019-01-09 07:03 - 000047112 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin 2019-01-09 07:03 - 2019-01-09 07:03 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin 2019-01-08 19:08 - 2019-01-08 19:08 - 000000000 ____D C:\Users\Tomek\AppData\LocalLow\Terapoly 2019-01-05 12:21 - 2019-01-05 12:21 - 000001030 _____ C:\Users\Tomek\Desktop\bfv — skrót .lnk 2019-01-02 15:33 - 2019-01-02 15:33 - 000000000 ____D C:\Users\Tomek\Desktop\zdjęcia 2019-01-02 15:09 - 2019-01-02 15:09 - 000000222 _____ C:\Users\Tomek\Desktop\Cities Skylines.url 2019-01-01 13:58 - 2019-01-01 13:59 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\Opera Software 2019-01-01 13:58 - 2019-01-01 13:59 - 000000000 ____D C:\Users\Tomek\AppData\Local\Opera Software 2019-01-01 13:58 - 2019-01-01 13:58 - 000004168 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1546347523 2019-01-01 13:58 - 2019-01-01 13:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.8.2 2019-01-01 13:58 - 2019-01-01 13:58 - 000000000 ____D C:\Program Files (x86)\Cheat Engine 6.8.2 2018-12-23 10:19 - 2018-12-23 10:19 - 000000000 ____D C:\Users\Tomek\Desktop\rufus_files 2018-12-23 10:06 - 2018-12-23 10:06 - 004832256 _____ (Geza Kovacs) C:\Users\Tomek\Desktop\unetbootin-windows-661.exe 2018-12-23 09:59 - 2018-12-23 09:59 - 001032248 _____ (Akeo Consulting) C:\Users\Tomek\Desktop\rufus-3.4.exe 2018-12-20 10:33 - 2018-12-20 10:33 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-12-20 10:33 - 2018-12-20 10:33 - 000684032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-12-15 22:07 - 2018-12-15 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.8.1 2018-12-15 22:07 - 2018-12-15 22:07 - 000000000 ____D C:\Program Files (x86)\Cheat Engine 6.8.1 2018-12-15 13:56 - 2018-12-15 13:56 - 024617472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 019284992 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 011724288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 003983360 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 003662336 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 003556352 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 003379000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 002721792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 001994768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001715712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001699840 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001696216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-12-15 13:56 - 2018-12-15 13:56 - 001674688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001672056 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001671680 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001496064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001483264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001467344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001466872 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-12-15 13:56 - 2018-12-15 13:56 - 001341376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-12-15 13:56 - 2018-12-15 13:56 - 001315840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001259000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2018-12-15 13:56 - 2018-12-15 13:56 - 001180760 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001177632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-12-15 13:56 - 2018-12-15 13:56 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001064448 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001057976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000918304 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000897848 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000854784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000836096 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000756640 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2018-12-15 13:56 - 2018-12-15 13:56 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000650040 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-12-15 13:56 - 2018-12-15 13:56 - 000609792 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000593920 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000582240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2018-12-15 13:56 - 2018-12-15 13:56 - 000566584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000506408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000473616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2018-12-15 13:56 - 2018-12-15 13:56 - 000454160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000424960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000402576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000398416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000306704 _____ (Microsoft Corporation) C:\WINDOWS\system32\computestorage.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000303616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000301096 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpeffects.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000297984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000275768 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000241680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpeffects.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000218624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpdxm.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000175104 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000167424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpdxm.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000164288 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000151872 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000125440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000114344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000102392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000095544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000094224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000083472 _____ (Microsoft Corporation) C:\WINDOWS\system32\vid.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2018-12-15 13:56 - 2018-12-15 13:56 - 000055608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys 2018-12-15 13:56 - 2018-12-15 13:56 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll 2018-12-15 13:55 - 2018-12-15 13:56 - 001219584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2018-12-15 13:55 - 2018-12-15 13:55 - 000752128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-12-15 13:55 - 2018-12-15 13:55 - 000519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2018-12-15 00:01 - 2018-12-12 02:45 - 000978336 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000978336 _____ C:\WINDOWS\system32\vulkan-1.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000845216 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000845216 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000552248 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000457016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2018-12-15 00:01 - 2018-12-12 02:45 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2018-12-15 00:01 - 2018-12-12 02:45 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo.exe 2018-12-15 00:01 - 2018-12-12 02:45 - 000243616 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2018-12-15 00:01 - 2018-12-12 02:45 - 000243616 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2018-12-15 00:01 - 2018-12-12 02:44 - 001461024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2018-12-15 00:01 - 2018-12-12 02:44 - 001126144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2018-12-15 00:01 - 2018-12-12 02:44 - 000631232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2018-12-15 00:01 - 2018-12-12 02:44 - 000521472 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 040261208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 035157080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 015909552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 013204144 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 004946336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 004316760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 002017536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6441735.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 002003392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 001511872 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 001468296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6441735.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 000822784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 000750280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll 2018-12-15 00:01 - 2018-12-12 02:43 - 000609392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 019714448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 016990032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 001471816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 001462232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 001167608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 001152192 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 001145744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 000914608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 000794840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2018-12-15 00:01 - 2018-12-12 02:42 - 000637696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-01-10 20:32 - 2017-04-17 21:09 - 000000000 ____D C:\ProgramData\NVIDIA 2019-01-10 20:32 - 2017-03-14 18:12 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\uTorrent 2019-01-10 20:30 - 2018-10-04 19:33 - 000003238 _____ C:\WINDOWS\System32\Tasks\GPU Tweak II 2019-01-10 20:30 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-01-10 20:30 - 2017-03-15 19:01 - 000000000 ____D C:\Program Files (x86)\Steam 2019-01-10 20:30 - 2017-03-14 16:55 - 000000000 ____D C:\Users\Tomek\AppData\LocalLow\Mozilla 2019-01-10 20:29 - 2018-10-04 19:33 - 000003114 _____ C:\WINDOWS\System32\Tasks\MSIAfterburner 2019-01-10 20:29 - 2018-10-04 19:33 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-01-10 20:29 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-01-10 20:29 - 2018-06-10 17:13 - 000000008 __RSH C:\ProgramData\ntuser.pol 2019-01-10 20:29 - 2017-04-08 22:51 - 001474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat 2019-01-10 20:25 - 2018-10-03 20:29 - 000000000 ____D C:\Users\Tomek 2019-01-10 20:25 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2019-01-10 20:25 - 2017-04-18 19:23 - 000000000 ____D C:\Users\Tomek\AppData\LocalLow\Temp 2019-01-10 20:25 - 2016-07-16 12:47 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy 2019-01-10 20:24 - 2017-03-14 16:53 - 000000000 ____D C:\Users\Tomek\AppData\Local\CrashDumps 2019-01-10 20:07 - 2018-02-27 20:58 - 000000038 _____ C:\Users\Tomek\Desktop\konto.txt 2019-01-10 07:05 - 2018-10-04 19:36 - 001770296 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-01-10 07:05 - 2018-09-15 17:43 - 000784346 _____ C:\WINDOWS\system32\perfh015.dat 2019-01-10 07:05 - 2018-09-15 17:43 - 000152144 _____ C:\WINDOWS\system32\perfc015.dat 2019-01-10 07:05 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF 2019-01-10 06:59 - 2018-10-04 19:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-01-09 22:15 - 2018-10-04 19:17 - 000394640 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-01-09 22:15 - 2018-02-18 18:21 - 000000000 ____D C:\ProgramData\OSDownloader 2019-01-09 22:15 - 2017-03-15 19:54 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2019-01-09 22:15 - 2017-03-15 19:54 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner 2019-01-09 22:14 - 2017-03-14 16:54 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-01-09 22:05 - 2018-02-11 21:01 - 000000907 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2019-01-09 22:05 - 2018-02-11 21:01 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-01-09 22:01 - 2017-03-14 17:04 - 132790320 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-01-09 21:33 - 2017-12-26 20:31 - 000000000 ____D C:\Users\Tomek\Documents\Paradox Interactive 2019-01-09 21:33 - 2016-07-26 11:49 - 000000000 ____D C:\Users\Tomek\Documents\My Games 2019-01-09 21:30 - 2017-04-17 21:10 - 000000000 ____D C:\ProgramData\Creative 2019-01-09 21:30 - 2017-03-14 18:36 - 000000000 ___HD C:\Program Files (x86)\Creative Installation Information 2019-01-09 21:30 - 2017-03-14 18:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2019-01-09 21:30 - 2017-03-14 18:36 - 000000000 ____D C:\Program Files\Creative 2019-01-09 21:30 - 2017-03-14 18:36 - 000000000 ____D C:\Program Files (x86)\Creative 2019-01-09 21:30 - 2017-03-14 17:09 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2019-01-09 21:17 - 2018-10-13 11:31 - 000000000 ____D C:\WINDOWS\Minidump 2019-01-09 21:17 - 2018-10-03 19:49 - 000000000 ___DC C:\WINDOWS\Panther 2019-01-09 21:17 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ModemLogs 2019-01-09 21:17 - 2017-07-03 20:52 - 000000000 ____D C:\Program Files\PDFCreator 2019-01-09 21:17 - 2017-03-16 21:30 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\MPC-HC 2019-01-09 19:25 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps 2019-01-09 19:25 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-01-09 07:36 - 2018-09-15 17:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2019-01-09 07:36 - 2018-09-15 17:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2019-01-09 07:36 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-01-09 07:04 - 2018-09-15 08:36 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-01-09 07:04 - 2018-09-15 08:36 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2019-01-09 07:04 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-01-08 15:26 - 2018-05-06 11:46 - 000000000 ____D C:\Users\Tomek\AppData\Local\D3DSCache 2019-01-08 15:11 - 2018-10-04 19:33 - 000004660 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2019-01-08 15:11 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2019-01-08 15:11 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\Macromed 2019-01-08 06:48 - 2017-12-06 16:46 - 000000000 ____D C:\Users\Tomek\AppData\Local\PlaceholderTileLogoFolder 2019-01-08 06:48 - 2017-11-17 07:06 - 000000000 ____D C:\Users\Tomek\AppData\Local\Packages 2019-01-06 10:17 - 2018-02-13 20:29 - 000000000 ____D C:\Program Files\Malwarebytes 2019-01-05 21:18 - 2017-03-14 18:43 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-01-05 15:42 - 2017-03-14 16:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2019-01-04 23:38 - 2017-03-14 16:56 - 000001274 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2019-01-04 19:42 - 2018-01-23 20:27 - 000014409 _____ C:\Users\Tomek\Desktop\paliwo.ods 2019-01-03 19:02 - 2017-07-16 08:33 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller 2019-01-03 07:02 - 2017-07-05 16:44 - 000000991 _____ C:\Users\Tomek\Desktop\HD Tune.lnk 2019-01-03 07:02 - 2017-07-05 16:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2019-01-03 07:02 - 2017-07-05 16:44 - 000000000 ____D C:\Program Files (x86)\HD Tune 2019-01-02 21:23 - 2017-03-15 17:31 - 000057344 _____ C:\Users\Tomek\Desktop\mieszkanie.xls 2019-01-02 15:09 - 2017-12-26 19:53 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2019-01-01 19:17 - 2017-03-15 19:31 - 000000000 ____D C:\ProgramData\Napisy24 2019-01-01 16:17 - 2017-12-29 17:07 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\The Creative Assembly 2019-01-01 13:58 - 2018-01-17 19:53 - 000001164 _____ C:\Users\Tomek\Desktop\Cheat Engine.lnk 2018-12-22 11:36 - 2017-03-14 20:06 - 000000000 ____D C:\Users\Tomek\AppData\Roaming\Thunderbird 2018-12-17 21:14 - 2018-10-04 19:33 - 000003568 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2018-12-17 21:14 - 2018-10-04 19:33 - 000003444 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-12-15 22:19 - 2018-03-22 06:57 - 000014800 _____ C:\WINDOWS\system32\Drivers\fvstore.dat 2018-12-15 22:04 - 2018-03-22 06:57 - 000000000 ___HD C:\VTRoot 2018-12-15 15:16 - 2017-04-17 21:09 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-12-15 15:15 - 2018-09-15 08:33 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2018-12-15 15:15 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\appraiser 2018-12-15 15:15 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ShellExperiences 2018-12-15 00:02 - 2017-06-20 20:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-12-15 00:01 - 2017-04-17 21:09 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-12-14 23:35 - 2018-10-04 19:33 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2018-10-04 19:33 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-12-14 23:35 - 2017-06-20 20:24 - 000001439 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2018-12-14 23:35 - 2017-04-17 21:09 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-12-14 20:53 - 2017-06-20 20:24 - 000000000 ____D C:\Users\Tomek\AppData\Local\NVIDIA 2018-12-12 21:25 - 2018-10-04 19:33 - 000003344 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1177734181-163601610-57667068-1001 2018-12-12 21:25 - 2018-10-03 20:29 - 000002403 _____ C:\Users\Tomek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-12-12 21:25 - 2017-03-14 16:50 - 000000000 ___RD C:\Users\Tomek\OneDrive 2018-12-12 02:42 - 2018-11-15 17:06 - 004258768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2018-12-12 02:42 - 2018-09-28 19:51 - 004999880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2018-12-11 12:00 - 2018-12-10 19:27 - 000048148 _____ C:\WINDOWS\system32\nvinfo.pb 2018-12-11 08:08 - 2017-06-20 20:22 - 005338320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 002620456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 001767920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 000651248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 000450600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 000124968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2018-12-11 08:08 - 2017-06-20 20:22 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2018-12-11 03:57 - 2017-06-20 20:22 - 008459772 _____ C:\WINDOWS\system32\nvcoproc.bin ==================== Pliki w katalogu głównym wybranych folderów ======= 2018-01-20 23:34 - 2018-01-09 01:12 - 005163432 _____ (COMODO) C:\ProgramData\cis1479.exe 2018-01-20 23:34 - 2018-01-09 01:17 - 000437160 _____ (COMODO) C:\ProgramData\cmdres.dll 2018-05-25 23:23 - 2018-05-25 23:23 - 000140800 _____ () C:\Users\Tomek\AppData\Local\installer.dat 2017-03-16 16:17 - 2018-08-19 18:07 - 000007590 _____ () C:\Users\Tomek\AppData\Local\resmon.resmoncfg 2017-04-18 18:54 - 2017-04-18 18:54 - 000003228 _____ () C:\Users\Tomek\AppData\Local\unins000.dat 2017-04-18 18:54 - 2017-04-18 18:54 - 000711640 _____ () C:\Users\Tomek\AppData\Local\unins000.exe 2017-04-18 18:54 - 2017-04-18 18:54 - 000011761 _____ () C:\Users\Tomek\AppData\Local\unins000.msg Niektóre pliki w TEMP: ==================== 2019-01-10 20:30 - 2019-01-10 20:30 - 000001536 _____ () C:\Users\Tomek\AppData\Local\Temp\NOSEventMessages.dll ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo ==================== Koniec FRST.txt ============================