Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 24-11-2019 Uruchomiony przez Agata (administrator) AGATA-KOMPUTER (SAMSUNG ELECTRONICS CO., LTD. R540/SA41/E452) (25-11-2019 10:54:07) Uruchomiony z D:\Bierzące dok\Fixitpc temat Załadowane profile: Agata (Dostępne profile: Agata) Platform: Windows 7 Home Premium Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\atwtusb.exe () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\atwtusb.exe () [Brak podpisu cyfrowego] C:\Windows\SysWOW64\Rezip.exe (Adobe Systems, Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BluetoothHeadsetProxy.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\BrUtilities\BrLogRx.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe (Brother Industries, Ltd.) [Brak podpisu cyfrowego] C:\Program Files (x86)\Browny02\BrYNSvc.exe (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corporation -> Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\OFFICE11\WINWORD.EXE (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msdt.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\sdiagnhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wisptis.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wisptis.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Microsoft) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe (Microsoft) [Brak podpisu cyfrowego] C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe (Nuance Communications, Inc. -> Nuance Communications, Inc.) C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe (Protexis Inc. -> Protexis Inc.) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [10144288 2010-04-06] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKLM\...\Run: [CTFmon] => C:\Windows\System32\ctfmon.exe [9728 2009-07-14] (Microsoft Windows -> Microsoft Corporation) HKLM-x32\...\Run: [C17A] => C:\Windows\twain_32\Brimc17a\Common\TwDsUiLaunch.exe [77312 2017-11-30] (Microsoft Windows Hardware Compatibility Publisher -> ) HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [146584 2017-11-07] (Brother Industries, Ltd. -> Brother Industries, Ltd.) HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [2976256 2018-01-19] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [BrotherSoftwareUpdateNotification] => C:\Program Files (x86)\Brother\SoftwareUpdateNotification\SoftwareUpdateNotificationService.exe [3581952 2017-04-05] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] HKLM-x32\...\Run: [ISUSPM] => C:\ProgramData\FLEXnet\Connect\11\\isuspm.exe [2075480 2013-06-24] (Flexera Software LLC -> Flexera Software LLC.) HKLM-x32\...\Run: [PaperPort PTD] => C:\Program Files (x86)\Nuance\PaperPort\pptd40nt.exe [35648 2015-01-19] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKLM-x32\...\Run: [IndexSearch] => C:\Program Files (x86)\Nuance\PaperPort\IndexSearch.exe [17600 2015-01-19] (Nuance Communications, Inc. -> Nuance Communications, Inc.) HKU\S-1-5-21-233006258-18527085-3623643150-1000\...\MountPoints2: {79226059-fcd7-11e2-b934-001bb11349d0} - F:\LGAutoRun.exe HKLM\Software\Microsoft\Active Setup\Installed Components: [{2D46B6DC-2207-486B-B523-A557E6D54B47}] -> C:\Windows\system32\cmd.exe /D /C start C:\Windows\system32\ie4uinit.exe -ClearIconCache HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{73FA19D0-2D75-11D2-995D-00C04F98BBC9}] -> HKLM\Software\...\Authentication\Credential Providers: [{50968FF7-10C1-4fb3-98B0-CD654D6CB97E}] -> C:\Program Files\WIDCOMM\Bluetooth Software\\BtwCP.dll [2011-08-25] (Broadcom Corporation -> Broadcom Corporation.) HKLM\Software\...\Authentication\Credential Providers: [{F8A0B131-5F68-486c-8040-7E8FC3C85BB6}] -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDCREDPROV.DLL [2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2018-06-15] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation -> Broadcom Corporation.) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {01893C33-2821-460A-AD0C-BC9E1C8A6692} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1} Task: {03087A19-204A-49DE-9658-9A60F26A5204} - System32\Tasks\{A42B2110-2447-4DEC-8AA0-A96696234CAA} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {0EDBB0DE-F879-4DF5-82F4-DE68A0AB0BE2} - System32\Tasks\{6D57F10C-7C6F-47E9-AA40-25FA5112970E} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {1110BEC6-03EB-476F-AED1-AB363D9EF47A} - System32\Tasks\{502EDDC4-8358-4606-9FF6-7D8EF3B4A2CB} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {1E73184A-49CD-4339-98D5-DEC6025EB182} - System32\Tasks\WifiManager => C:\Program Files (x86)\Samsung\Easy Display Manager\WifiManager.exe [7053168 2010-11-28] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {21A9FD56-5FA3-4564-9FAE-068A55177FF5} - System32\Tasks\{1B205510-0FC7-4854-A639-2277CA1D3BAF} => C:\Program Files (x86)\Skype\Phone\Skype.exe Task: {2CFFFC88-23A5-4017-81DF-01754998AA12} - System32\Tasks\AdwCleaner_onReboot => C:\Users\Agata\Downloads\adwcleaner_7.2.7.0.exe Task: {3054BBB5-76F7-413B-9A6B-6486C25BC762} - System32\Tasks\SAgent => C:\Program Files\Samsung\S Agent\CommonAgent.exe [2975056 2014-10-29] (Samsung Electronics CO., LTD. -> Samsung Electronics CO., LTD.) Task: {353AD8BE-E507-4982-BBB0-27DABD21E0EE} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-14] (Piriform Software Ltd -> Piriform Software Ltd) Task: {38498DCC-8DE5-4FBC-B931-93C29662D975} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-07-21] (Adobe Inc. -> Adobe) Task: {424CA60A-2587-4BE4-B091-0399A26DBA40} - System32\Tasks\{34883709-96A0-4266-A8B1-36FF487DDA53} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {4AF7A391-BDBA-41E5-BF82-AB27C1588403} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_223_Plugin.exe [1457208 2019-07-21] (Adobe Inc. -> Adobe) Task: {4C617067-C474-4A6D-A1DD-F0F59CE6F555} - System32\Tasks\{FF520B28-D09C-4329-9B51-8517F7A15021} => C:\Program Files (x86)\Microsoft Office\OFFICE11\POWERPNT.EXE [6421848 2011-04-20] (Microsoft Corporation -> Microsoft Corporation) Task: {60DF9B01-EA62-4C92-B377-889DB93B9CA0} - System32\Tasks\JetCleanLoginCheckUpdate => D:\JetCleanPortable_1.5.0.129 program do czyszczenia\AutoUpdate.exe [1050928 2016-06-23] (BlueSprig, Inc. -> BlueSprig) Task: {7105A300-27A0-46CE-9955-AA9820E31DF6} - System32\Tasks\{CD6345FD-ACE9-4A8D-AF8C-A2419552B51F} => C:\Program Files (x86)\Corel\Corel Graphics 12\Programs\CorelPP.exe [155648 2004-06-10] (Corel Corporation) [Brak podpisu cyfrowego] Task: {7A4E0893-DA89-43D6-8E0A-ED44B1016E4E} - System32\Tasks\EasyBatteryManager => C:\Program Files (x86)\Samsung\EasyBatteryManager\EasyBatteryMgr4.exe [356352 2010-03-29] (SAMSUNG Electronics co., LTD.) [Brak podpisu cyfrowego] Task: {7DFF0858-6550-49BD-AC24-B7F7774D9A0F} - System32\Tasks\{DD28E022-F582-4FE4-9201-DAB6427BC1B7} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {813DE74B-BD1F-481D-A889-BF37B008C798} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1165920 2017-07-19] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {82A03798-CC53-41FD-9DEE-7BC81EC9C476} - System32\Tasks\{5DA41BDA-2967-4AA0-A634-9A16BEB82369} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {8E5E464B-C465-405C-95D8-2482ADB87EDD} - System32\Tasks\{EED0292C-518C-4293-84E2-EAAED2BB3C80} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {90443662-86C8-4261-86BA-25CDBFBEA3F8} - System32\Tasks\{D2DDAA20-2561-4625-851C-CFF1BB87F5C3} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {A8351280-B4B1-4B3E-86D8-82EB8BAD9710} - System32\Tasks\SamsungSupportCenter => C:\Program Files (x86)\Samsung\Samsung Support Center\SSCKbdHk.exe [1749504 2010-05-06] (SAMSUNG Electronics) [Brak podpisu cyfrowego] Task: {B347DF20-30CD-4F68-B440-EACD840E63C4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-14] (Piriform Software Ltd -> Piriform Ltd) Task: {BA404A94-0207-4466-B7AA-9733A601BB76} - System32\Tasks\{5B2AEA1E-C42D-4DBB-A265-B36CE63A0BC8} => C:\Program Files (x86)\Microsoft Office\OFFICE11\POWERPNT.EXE [6421848 2011-04-20] (Microsoft Corporation -> Microsoft Corporation) Task: {BCE4A354-1627-425F-90A5-30899DBAC62F} - System32\Tasks\EasyDisplayMgr => C:\Program Files (x86)\Samsung\Easy Display Manager\dmhkcore.exe [943984 2010-11-28] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.) Task: {CAE70837-7676-43DC-B63C-5F7363C5271D} - System32\Tasks\Microsoft\Microsoft Antimalware\Microsoft Antimalware Scheduled Scan => C:\Program Files\Microsoft Security Client\\MpCmdRun.exe [410784 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) Task: {D1D7DC3F-DDA3-4170-AED0-C67B2CE827CF} - System32\Tasks\EasySpeedUpManager => Command(1): "%programfiles(x86)%\Samsung\EasySpeedUpManager\EasySpeedUpManager2.exe" -> /s Task: {D1D7DC3F-DDA3-4170-AED0-C67B2CE827CF} - System32\Tasks\EasySpeedUpManager => Command(2): C:\Program Files (x86)\SAMSUNG\EasySpeedUpManager\EasySpeedUpManager.exe [719360 [719360 2010-02-10]] (Samsung Electronics Co., Ltd.) [Brak podpisu cyfrowego] Task: {D49EAEC8-24C8-4FD6-954D-A9316F962C0B} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1179648 2018-05-31] () [Brak podpisu cyfrowego] Task: {DC1C396E-85AC-45A8-848A-89F723AD9623} - System32\Tasks\BatteryLifeExtender => C:\Program Files (x86)\Samsung\BatteryLifeExtender\BatteryLifeExtender.exe [6624768 2010-04-17] (Samsung Electronics. Co. Ltd.) [Brak podpisu cyfrowego] Task: {EAF1649C-8C9F-4688-83F8-39831ADA17F0} - System32\Tasks\{F0E04983-07AF-44DB-ADCB-B3AAACF7E1CB} => C:\Program Files\Malwarebytes Anti-Malware\mbam.exe Task: {ED2DF751-B92E-4298-B757-CCDB92B25565} - System32\Tasks\{1D31D6CB-A908-40CF-9AAE-AF2AACD0947C} => C:\Program Files (x86)\Nufsoft\NatureStudio\NatureStudio.exe [3473408 2010-05-20] (Nufsoft) [Brak podpisu cyfrowego] Task: {F2370A0C-928B-4257-9AC5-FB31851337F0} - System32\Tasks\{4800CCAB-66F4-48BD-BAF4-4553B3192C18} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {F262112D-53AD-43BC-AEBC-D1D1D40B93DC} - System32\Tasks\{F78A2664-E1A9-4B7E-8F72-CFF719347989} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe Task: {FEA84312-C5C3-400E-BCA2-8436BFB67093} - System32\Tasks\advSRS4 => C:\Program Files (x86)\Samsung\Samsung Recovery Solution 4\WCScheduler.exe [2201192 2010-01-19] (Samsung Electronics CO., LTD. -> SEC) [Brak podpisu cyfrowego] Task: {FF6554B1-DAA2-4D59-B45E-28835F1548C4} - System32\Tasks\{D74CF746-1014-4D2F-816B-CD2162E30EFD} => C:\Program Files (x86)\HP\Digital Imaging\bin\Hpqdirec.exe (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5 09 C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [145648 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 08 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Winsock: Catalog5-x64 09 C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL [171760 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\Parameters: [NameServer] 8.8.8.8,8.8.8.4 Tcpip\..\Interfaces\{A8A3C5F9-E5DC-43E3-821F-22660015189D}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=131219898028734845&GUID=EF824AA4-C6FA-2914-6BC7-7654B827F3A0 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617911&ResetID=131219898028734845&GUID=EF824AA4-C6FA-2914-6BC7-7654B827F3A0 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page = HKU\S-1-5-21-233006258-18527085-3623643150-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.pl/ SearchScopes: HKU\S-1-5-21-233006258-18527085-3623643150-1000 -> {ADFCCAFC-8B85-47A9-4531-42A369A8DD30} URL = hxxps://www.google.com/search?q={searchTerms} BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.) BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corporation -> Microsoft Corp.) DPF: HKLM-x32 {C345E174-3E87-4F41-A01C-B066A90A49B4} hxxp://trial.trymicrosoftoffice.com/trialoaa/buymsoffice_assets/framework//microsoft/wrc32.ocx FireFox: ======== FF DefaultProfile: 2tg2krhh.AGACIK-1507937948806 FF ProfilePath: C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806 [2019-11-25] FF DownloadDir: C:\Users\Agata\Downloads FF NetworkProxy: Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806 -> type", 0 FF Session Restore: Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806 -> [funkcja włączona] FF Notifications: Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806 -> hxxps://book.lufthansa.com; hxxps://player.pl; hxxps://www.mediaexpert.pl; hxxps://www.fixitpc.pl; hxxps://a.mp3pro.xyz FF Extension: (Brief) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\brief@mozdev.org.xpi [2019-06-30] FF Extension: (File Converter - By Online-Convert.com) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\firefox@online-convert.com.xpi [2019-09-24] FF Extension: (Auto High Quality for YouTube™) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\jid0-RjdrEcWS3Ggt4xydeqVS8WQk1Lu@jetpack.xpi [2019-10-05] FF Extension: (Użyj Google Translate) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\jid1-93WyvpgvxzGATw@jetpack.xpi [2019-11-25] FF Extension: (translator-lite) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\jid1-f3mYMbCpz2AZYl@jetpack.xpi [2019-03-11] FF Extension: (h264ify) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\jid1-TSgSxBhncsPBWQ@jetpack.xpi [2019-09-09] FF Extension: (Deutsch (DE) Language Pack) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\langpack-de@firefox.mozilla.org.xpi [2019-10-24] FF Extension: (English (GB) Language Pack) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2019-10-24] FF Extension: (Google Translator for Firefox) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\translator@zoli.bod.xpi [2018-12-03] FF Extension: (uBlock Origin) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\uBlock0@raymondhill.net.xpi [2019-11-25] FF Extension: (Spring Melody by M♥Donna) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{217c1bd9-5fa8-4536-b0d3-3e0411d4f067}.xpi [2019-06-13] FF Extension: (Cookie Editor) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{48df221a-8316-4d17-9191-7fc5ea5f14c0}.xpi [2019-06-13] FF Extension: (EPUBReader) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{5384767E-00D9-40E9-B72F-9CC39D655D6F}.xpi [2019-06-29] FF Extension: (Opening Daisy Field) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{66cd2370-b747-476b-8fce-0bc4adc58926}.xpi [2019-06-13] FF Extension: (Sakura Blossoms & Birds by MaDonna) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{82f753d5-3a7c-4b9e-9bd3-675331e8250f}.xpi [2019-06-13] FF Extension: (Birds 323) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{8d026387-06ce-465d-88b2-e384bbb040ae}.xpi [2019-06-13] FF Extension: (Little Red Beret Owl by candelora) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{9be1cee2-76ce-4459-8a73-207649efc0d5}.xpi [2019-06-13] FF Extension: (orchidea-naglowek) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{9d1e4d9e-bb70-4e69-95f6-627b95f573f5}.xpi [2019-06-13] FF Extension: (Finches on a Wire) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{b016935e-df27-4736-a077-8987c170e216}.xpi [2019-06-13] FF Extension: (Easy Youtube Video Downloader Express) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{b9acf540-acba-11e1-8ccb-001fd0e08bd4}.xpi [2019-09-12] FF Extension: (Video DownloadHelper) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2019-07-08] FF Extension: (Lonely polar bear by CP) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{d8c48df5-94db-407e-a86f-96dd3b24d213}.xpi [2019-05-14] FF Extension: (Motyleczki) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{d9c0c0b5-841a-4401-86e0-2a4885313d54}.xpi [2019-06-13] FF Extension: (YouTube mp3 Downloader) - C:\Users\Agata\AppData\Roaming\Mozilla\Firefox\Profiles\2tg2krhh.AGACIK-1507937948806\Extensions\{defe5404-0b6f-4cce-a119-ee0df858e5f9}.xpi [2019-06-23] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_223.dll [2019-07-21] (Adobe Inc. -> ) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_223.dll [2019-07-21] (Adobe Inc. -> ) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeLive,version=1.5 -> C:\Program Files (x86)\Microsoft\Office Live\npOLW.dll [2010-04-26] (Microsoft Corporation -> Microsoft Corp.) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3538.0513 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-12-23] (Adobe Systems, Incorporated -> Adobe Systems Inc.) [Brak podpisu cyfrowego] StartMenuInternet: Firefox-BBF35AF5F081D115 - C:\Users\Agata\AppData\Local\Mozilla Firefox\firefox.exe Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [202752 2010-05-05] (Microsoft Windows Hardware Compatibility Publisher -> AMD) R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [314368 2018-01-18] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4355024 2017-01-20] (Malwarebytes Corporation -> Malwarebytes) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) S4 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2008-12-03] (Hewlett-Packard) [Brak podpisu cyfrowego] R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation -> Microsoft Corporation) R2 PDFProFiltSrvPP; C:\Program Files (x86)\Nuance\PaperPort\PDFProFiltSrvPP.exe [77336 2015-01-19] (Nuance Communications, Inc. -> Nuance Communications, Inc.) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2008-12-03] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 Rezip; C:\Windows\SysWOW64\Rezip.exe [311296 2009-03-05] () [Brak podpisu cyfrowego] S3 Sony PC Companion; C:\Program Files (x86)\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Sony Mobile Communications -> Avanquest Software) [Brak podpisu cyfrowego] R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [10942704 2017-11-03] (TeamViewer GmbH -> TeamViewer GmbH) R2 USBAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\USBAppControl.exe [12288 2019-08-09] (Microsoft) [Brak podpisu cyfrowego] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation) R2 wlidsvc; C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE [2292480 2012-07-17] (Microsoft Corporation -> Microsoft Corp.) R2 WorkflowAppControl; C:\Program Files (x86)\Brother\iPrint&Scan\WorkflowAppControl.exe [20480 2019-08-09] (Microsoft) [Brak podpisu cyfrowego] S3 WsAppService; C:\Program Files (x86)\Wondershare\WAF\WsAppService.exe [252816 2015-04-23] (Shenzhen Wondershare Information Technology Co., Ltd. -> Wondershare) R2 WTService; C:\Windows\SysWOW64\atwtusb.exe [861696 2010-06-15] () [Brak podpisu cyfrowego] ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 amdkmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [6789632 2010-05-05] (Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies Inc.) R3 amdkmdap; C:\Windows\System32\DRIVERS\atikmpag.sys [221184 2010-05-05] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [104976 2016-04-01] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices) S3 AtiHdmiService; C:\Windows\System32\drivers\AtiHdmi.sys [116736 2010-01-29] (Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies, Inc.) S3 atikmdag; C:\Windows\System32\DRIVERS\atikmdag.sys [6789632 2010-05-05] (Microsoft Windows Hardware Compatibility Publisher -> ATI Technologies Inc.) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [77416 2017-01-18] (Malwarebytes Corporation -> ) R3 ETD; C:\Windows\System32\DRIVERS\ETD.sys [136192 2010-04-01] (Microsoft Windows Hardware Compatibility Publisher -> ELAN Microelectronics Corp.) R2 KMDFMEMIO; C:\Windows\System32\DRIVERS\kmdfmemio.sys [18960 2008-08-12] (Self Root CA -> SAMSUNG ELECTRONICS CO., LTD.) R0 MBAMChameleon; C:\Windows\System32\drivers\MBAMChameleon.sys [186304 2019-11-25] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMFarflt; C:\Windows\system32\drivers\farflt.sys [110536 2019-11-25] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMProtection; C:\Windows\system32\drivers\mbam.sys [43968 2019-11-25] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [251832 2019-11-25] (Malwarebytes Corporation -> Malwarebytes) S3 MBAMWebProtection; C:\Windows\system32\drivers\mwac.sys [81696 2019-11-19] (Malwarebytes Corporation -> Malwarebytes) R3 moufiltr; C:\Windows\System32\DRIVERS\moufiltr.sys [7680 2009-03-08] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation -> Microsoft Corporation) S3 RTL8167; C:\Windows\System32\DRIVERS\Rt64win7.sys [187392 2009-06-10] (Microsoft Windows -> Realtek Corporation ) S3 rtport; C:\Windows\SysWOW64\drivers\rtport.sys [15144 2010-07-14] (Realtek Semiconductor Corp -> Windows (R) 2003 DDK 3790 provider) R1 SABI; C:\Windows\system32\Drivers\SABI.sys [13824 2010-03-31] (Microsoft Windows Hardware Compatibility Publisher -> SAMSUNG ELECTRONICS) S2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [19016 2019-05-31] (HP Inc. -> ) S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [31232 2013-03-06] (OpenVPN Technologies, Inc. -> The OpenVPN Project) R3 vhidmini; C:\Windows\System32\DRIVERS\walvhid.sys [7552 2009-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R3 yukonw7; C:\Windows\System32\DRIVERS\yk62x64.sys [395264 2009-09-28] (Microsoft Windows Hardware Compatibility Publisher -> ) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-11-23 19:31 - 2019-11-24 21:13 - 000057344 ____H C:\Users\Agata\Desktop\~WRL2324.tmp 2019-11-21 16:26 - 2019-11-21 16:26 - 000003182 _____ C:\Windows\system32\Tasks\JetCleanLoginCheckUpdate 2019-11-21 16:25 - 2019-11-21 16:25 - 000000000 ____D C:\Users\Agata\AppData\Roaming\BlueSprig 2019-11-21 14:02 - 2019-11-21 14:02 - 000072328 _____ C:\Users\Agata\Downloads\20191121_DEBSKA.pdf 2019-11-19 20:49 - 2019-11-21 10:17 - 000000000 ____D C:\Users\Agata\AppData\Local\Brother 2019-11-19 20:14 - 2019-11-19 20:14 - 000000000 ____D C:\Users\Agata\AppData\Roaming\FLEXnet 2019-11-19 20:04 - 2019-11-19 20:04 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Zeon 2019-11-19 20:03 - 2019-11-19 20:03 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Nuance 2019-11-19 20:02 - 2019-11-19 20:03 - 000000000 ____D C:\Users\Agata\Documents\Moje dokumenty programu PaperPort 2019-11-18 18:55 - 2019-11-18 18:55 - 000000000 ____D C:\Users\Agata\AppData\Roaming\PC-FAX TX 2019-11-18 17:32 - 2019-11-18 17:32 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Brother 2019-11-18 17:22 - 2019-11-21 11:48 - 000000000 ____D C:\Users\Agata\AppData\Roaming\ControlCenter4 2019-11-18 16:47 - 2019-11-21 10:17 - 000000000 ____D C:\Users\Agata\AppData\Local\Nuance 2019-11-18 16:46 - 2019-11-18 16:47 - 000000000 ____D C:\ProgramData\ScanSoft 2019-11-18 16:46 - 2019-11-18 16:46 - 000001866 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Software Updates.lnk 2019-11-18 16:46 - 2019-11-18 16:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nuance PaperPort 14 2019-11-18 16:45 - 2019-11-21 10:17 - 000000000 ____D C:\ProgramData\Nuance 2019-11-18 16:45 - 2019-11-18 16:45 - 000000000 ____D C:\Users\Agata\Documents\MojeStronySieciWeb 2019-11-18 16:45 - 2019-11-18 16:45 - 000000000 ____D C:\ProgramData\Macrovision 2019-11-18 16:45 - 2019-11-18 16:45 - 000000000 ____D C:\ProgramData\FLEXnet 2019-11-18 16:45 - 2019-11-18 16:45 - 000000000 ____D C:\Program Files (x86)\Nuance 2019-11-18 16:39 - 2019-11-18 16:39 - 000002044 _____ C:\Users\Public\Desktop\Brother Creative Center.lnk 2019-11-18 16:39 - 2019-11-18 16:39 - 000002044 _____ C:\ProgramData\Desktop\Brother Creative Center.lnk 2019-11-18 16:38 - 2019-11-18 16:38 - 000001676 _____ C:\Users\Public\Desktop\Brother Utilities.lnk 2019-11-18 16:38 - 2019-11-18 16:38 - 000001676 _____ C:\ProgramData\Desktop\Brother Utilities.lnk 2019-11-18 16:28 - 2019-11-21 11:52 - 000000000 ____D C:\ProgramData\PCFaxTx 2019-11-18 16:28 - 2019-11-18 18:55 - 000000086 _____ C:\Windows\Brpfx04a.ini 2019-11-18 16:28 - 2019-11-18 16:56 - 000000000 ____D C:\Program Files (x86)\Browny02 2019-11-18 16:28 - 2019-11-18 16:55 - 000000000 ____D C:\Program Files (x86)\PC-FAXReceive 2019-11-18 16:28 - 2019-11-18 16:28 - 000000000 ____D C:\ProgramData\PCFaxRx 2019-11-18 16:28 - 2019-11-18 16:28 - 000000000 ____D C:\Program Files (x86)\RemoteSetup 2019-11-18 16:28 - 2017-07-25 15:52 - 000318464 _____ ( ) C:\Windows\system32\BrFaxTxAppRunA64.dll 2019-11-18 16:27 - 2019-11-18 16:27 - 000000000 ____D C:\Program Files (x86)\ControlCenter4 CSDK 2019-11-18 16:25 - 2019-11-18 17:26 - 000000000 ____D C:\ProgramData\ControlCenter4 2019-11-18 16:25 - 2019-11-18 16:25 - 000000000 ____D C:\Program Files (x86)\ControlCenter4 2019-11-18 16:24 - 2019-11-18 16:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother 2019-11-18 16:24 - 2019-11-18 16:24 - 000000948 _____ C:\Users\Public\Desktop\Brother iPrint&Scan.lnk 2019-11-18 16:24 - 2019-11-18 16:24 - 000000948 _____ C:\ProgramData\Desktop\Brother iPrint&Scan.lnk 2019-11-18 16:17 - 2017-06-20 14:32 - 000065024 _____ () C:\Windows\system32\Brnsplg.dll 2019-11-18 16:17 - 2017-06-20 14:30 - 000072192 _____ () C:\Windows\system32\BrWiaNCp.dll 2019-11-18 16:17 - 2017-06-20 14:17 - 000089600 _____ () C:\Windows\system32\BrNetSti.dll 2019-11-18 16:17 - 2017-06-12 15:26 - 000252928 _____ () C:\Windows\system32\NSSRH64.dll 2019-11-18 16:17 - 2005-04-22 13:36 - 000143360 _____ C:\Windows\system32\BrSNMP64.dll 2019-11-18 16:16 - 2019-11-18 16:56 - 000000000 ____D C:\ProgramData\Brother 2019-11-18 16:16 - 2019-11-18 16:49 - 000000000 ____D C:\Program Files (x86)\Brother 2019-11-16 20:58 - 2019-11-18 16:03 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Samsung 2019-11-16 20:58 - 2019-11-16 20:58 - 000000000 ____D C:\Users\Agata\Documents\Scan 2019-11-16 20:53 - 2019-11-16 20:53 - 000000000 ____D C:\ProgramData\boost_interprocess 2019-11-16 20:43 - 2017-11-12 14:49 - 000473600 _____ (Hewlett-Packard Software Center) C:\Windows\prinst.exe 2019-11-16 20:41 - 2019-01-20 21:47 - 000160840 _____ C:\Windows\Wiainst64.exe 2019-11-16 20:41 - 2018-08-29 13:00 - 000420352 _____ C:\Windows\system32\SaMinDrv.dll 2019-11-16 20:41 - 2018-08-29 13:00 - 000151040 _____ C:\Windows\system32\SaImgFlt.dll 2019-11-16 20:41 - 2018-08-29 13:00 - 000068096 _____ C:\Windows\system32\SaErHdlr.dll 2019-11-16 20:40 - 2019-07-21 14:19 - 000193656 _____ (SS) C:\Windows\system32\sht13cci.exe 2019-11-16 20:40 - 2019-07-21 14:19 - 000124408 _____ (SS) C:\Windows\system32\sht13cci.dll 2019-11-16 20:40 - 2019-07-21 14:19 - 000061840 _____ () C:\Windows\system32\sht13clm.dll 2019-11-16 20:40 - 2019-01-07 19:16 - 000102984 _____ C:\Windows\SysWOW64\Ssdevm.dll 2019-11-16 20:40 - 2019-01-07 19:16 - 000096328 _____ C:\Windows\system32\Ssdevm64.dll 2019-11-16 20:40 - 2019-01-07 19:16 - 000062032 _____ C:\Windows\SysWOW64\Ssusbpn.dll 2019-11-16 20:40 - 2019-01-07 19:16 - 000057936 _____ C:\Windows\system32\Ssusbp64.dll 2019-11-16 20:35 - 2019-05-31 05:36 - 000019016 ____N ( ) C:\Windows\system32\Drivers\SSPORT.SYS 2019-11-16 20:35 - 2018-10-22 04:11 - 002094592 ____N C:\Windows\SysWOW64\DlgSearchEngine.dll 2019-11-13 12:15 - 2019-11-05 22:29 - 004061624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe 2019-11-13 12:15 - 2019-11-05 22:29 - 003967416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe 2019-11-13 12:15 - 2019-11-05 22:29 - 000311008 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll 2019-11-13 12:15 - 2019-11-05 22:27 - 001320248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 002368000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000834048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000628224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\usp10.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000573440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000555520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msihnd.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000266752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000261632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000175104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netcorehc.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000083968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimsg.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll 2019-11-13 12:15 - 2019-11-05 22:25 - 000004608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msimg32.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 001005056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000627640 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi 2019-11-13 12:15 - 2019-11-05 22:24 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:24 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:23 - 005553888 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe 2019-11-13 12:15 - 2019-11-05 22:23 - 000709856 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi 2019-11-13 12:15 - 2019-11-05 22:23 - 000385248 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll 2019-11-13 12:15 - 2019-11-05 22:23 - 000368352 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys 2019-11-13 12:15 - 2019-11-05 22:23 - 000155360 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2019-11-13 12:15 - 2019-11-05 22:23 - 000096992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2019-11-13 12:15 - 2019-11-05 22:22 - 000263904 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll 2019-11-13 12:15 - 2019-11-05 22:22 - 000115936 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe 2019-11-13 12:15 - 2019-11-05 22:21 - 001671296 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 003247616 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 001472512 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 001211392 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 001162752 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 001068544 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 001010176 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000806400 _____ (Microsoft Corporation) C:\Windows\system32\usp10.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000733184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000706560 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000572416 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000504320 _____ (Microsoft Corporation) C:\Windows\system32\msihnd.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000408576 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000354816 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000246272 _____ (Microsoft Corporation) C:\Windows\system32\netcorehc.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000236032 _____ (Microsoft Corporation) C:\Windows\system32\srvsvc.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000110592 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\msimsg.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\sscore.dll 2019-11-13 12:15 - 2019-11-05 22:20 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\msimg32.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000114688 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000007168 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:19 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 22:12 - 001312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll 2019-11-13 12:15 - 2019-11-05 22:03 - 000045056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll 2019-11-13 12:15 - 2019-11-05 22:03 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe 2019-11-13 12:15 - 2019-11-05 21:58 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sscore.dll 2019-11-13 12:15 - 2019-11-05 21:57 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe 2019-11-13 12:15 - 2019-11-05 21:57 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2019-11-13 12:15 - 2019-11-05 21:57 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe 2019-11-13 12:15 - 2019-11-05 21:55 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2019-11-13 12:15 - 2019-11-05 21:52 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe 2019-11-13 12:15 - 2019-11-05 21:52 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll 2019-11-13 12:15 - 2019-11-05 21:52 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe 2019-11-13 12:15 - 2019-11-05 21:52 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe 2019-11-13 12:15 - 2019-11-05 21:51 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe 2019-11-13 12:15 - 2019-11-05 21:51 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2019-11-13 12:15 - 2019-11-05 21:51 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys 2019-11-13 12:15 - 2019-11-05 21:51 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\AxInstUI.exe 2019-11-13 12:15 - 2019-11-05 21:51 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2019-11-13 12:15 - 2019-11-05 21:51 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe 2019-11-13 12:15 - 2019-11-05 21:51 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 21:51 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 21:51 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 21:51 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll 2019-11-13 12:15 - 2019-11-05 21:50 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe 2019-11-13 12:15 - 2019-11-05 21:49 - 003232256 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys 2019-11-13 12:15 - 2019-11-05 21:48 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe 2019-11-13 12:15 - 2019-11-05 21:47 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe 2019-11-13 12:15 - 2019-11-05 21:47 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys 2019-11-13 12:15 - 2019-11-05 21:44 - 000464384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys 2019-11-13 12:15 - 2019-11-05 21:44 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys 2019-11-13 12:15 - 2019-11-05 21:44 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2019-11-13 12:15 - 2019-11-05 21:43 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2019-11-13 12:15 - 2019-11-05 21:43 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys 2019-11-13 12:15 - 2019-11-05 21:43 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe 2019-11-13 12:15 - 2019-11-05 21:42 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000044544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys 2019-11-13 12:15 - 2019-11-05 21:42 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2019-11-13 12:15 - 2019-11-05 20:43 - 001251840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll 2019-11-13 12:15 - 2019-10-26 08:31 - 000390752 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll 2019-11-13 12:15 - 2019-10-26 07:40 - 000341896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll 2019-11-13 12:15 - 2019-10-24 05:07 - 025753088 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll 2019-11-13 12:15 - 2019-10-24 04:56 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb 2019-11-13 12:15 - 2019-10-24 04:55 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll 2019-11-13 12:15 - 2019-10-24 04:43 - 002910720 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll 2019-11-13 12:15 - 2019-10-24 04:42 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll 2019-11-13 12:15 - 2019-10-24 04:41 - 000580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll 2019-11-13 12:15 - 2019-10-24 04:41 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec 2019-11-13 12:15 - 2019-10-24 04:41 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll 2019-11-13 12:15 - 2019-10-24 04:40 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll 2019-11-13 12:15 - 2019-10-24 04:34 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll 2019-11-13 12:15 - 2019-10-24 04:33 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll 2019-11-13 12:15 - 2019-10-24 04:31 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll 2019-11-13 12:15 - 2019-10-24 04:30 - 000797184 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll 2019-11-13 12:15 - 2019-10-24 04:30 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe 2019-11-13 12:15 - 2019-10-24 04:30 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe 2019-11-13 12:15 - 2019-10-24 04:29 - 005500928 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll 2019-11-13 12:15 - 2019-10-24 04:29 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll 2019-11-13 12:15 - 2019-10-24 04:23 - 020290048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll 2019-11-13 12:15 - 2019-10-24 04:22 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe 2019-11-13 12:15 - 2019-10-24 04:19 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb 2019-11-13 12:15 - 2019-10-24 04:19 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll 2019-11-13 12:15 - 2019-10-24 04:12 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx 2019-11-13 12:15 - 2019-10-24 04:12 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll 2019-11-13 12:15 - 2019-10-24 04:11 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll 2019-11-13 12:15 - 2019-10-24 04:08 - 000496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll 2019-11-13 12:15 - 2019-10-24 04:08 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll 2019-11-13 12:15 - 2019-10-24 04:08 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll 2019-11-13 12:15 - 2019-10-24 04:08 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll 2019-11-13 12:15 - 2019-10-24 04:07 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec 2019-11-13 12:15 - 2019-10-24 04:07 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll 2019-11-13 12:15 - 2019-10-24 04:06 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll 2019-11-13 12:15 - 2019-10-24 04:06 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll 2019-11-13 12:15 - 2019-10-24 04:04 - 002304000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll 2019-11-13 12:15 - 2019-10-24 04:04 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll 2019-11-13 12:15 - 2019-10-24 04:01 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll 2019-11-13 12:15 - 2019-10-24 04:01 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll 2019-11-13 12:15 - 2019-10-24 03:59 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll 2019-11-13 12:15 - 2019-10-24 03:58 - 000662528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll 2019-11-13 12:15 - 2019-10-24 03:58 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe 2019-11-13 12:15 - 2019-10-24 03:57 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll 2019-11-13 12:15 - 2019-10-24 03:55 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll 2019-11-13 12:15 - 2019-10-24 03:53 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll 2019-11-13 12:15 - 2019-10-24 03:53 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe 2019-11-13 12:15 - 2019-10-24 03:51 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl 2019-11-13 12:15 - 2019-10-24 03:51 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll 2019-11-13 12:15 - 2019-10-24 03:49 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll 2019-11-13 12:15 - 2019-10-24 03:47 - 015445504 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll 2019-11-13 12:15 - 2019-10-24 03:45 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx 2019-11-13 12:15 - 2019-10-24 03:45 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll 2019-11-13 12:15 - 2019-10-24 03:44 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll 2019-11-13 12:15 - 2019-10-24 03:42 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll 2019-11-13 12:15 - 2019-10-24 03:41 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll 2019-11-13 12:15 - 2019-10-24 03:40 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll 2019-11-13 12:15 - 2019-10-24 03:39 - 004859392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll 2019-11-13 12:15 - 2019-10-24 03:39 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll 2019-11-13 12:15 - 2019-10-24 03:35 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll 2019-11-13 12:15 - 2019-10-24 03:33 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll 2019-11-13 12:15 - 2019-10-24 03:32 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl 2019-11-13 12:15 - 2019-10-24 03:32 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll 2019-11-13 12:15 - 2019-10-24 03:31 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll 2019-11-13 12:15 - 2019-10-24 03:28 - 001566720 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll 2019-11-13 12:15 - 2019-10-24 03:27 - 013838336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll 2019-11-13 12:15 - 2019-10-24 03:17 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll 2019-11-13 12:15 - 2019-10-24 03:13 - 004387840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll 2019-11-13 12:15 - 2019-10-24 03:10 - 001331712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll 2019-11-13 12:15 - 2019-10-24 03:09 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll 2019-11-13 12:15 - 2019-10-15 00:58 - 001650176 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll 2019-11-13 12:15 - 2019-10-15 00:58 - 001182208 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll 2019-11-13 12:12 - 2019-11-05 21:54 - 000123904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe 2019-11-13 12:12 - 2019-11-05 21:46 - 000142336 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe 2019-11-03 14:18 - 2019-11-03 14:18 - 000000000 ____D C:\Users\Agata\AppData\Local\CEF 2019-11-03 14:16 - 2019-11-03 14:18 - 000000000 ____D C:\Users\Agata\AppData\Local\Adobe 2019-11-02 15:59 - 2019-11-02 15:59 - 007622344 _____ (Malwarebytes) C:\Users\Agata\Downloads\adwcleaner_7.4.2.exe 2019-10-28 21:35 - 2019-10-28 21:35 - 001911735 _____ C:\Users\Agata\Downloads\Bluetooth_Auto_Connect-4.6.2.apk 2019-10-28 16:28 - 2019-10-28 16:28 - 000001819 _____ C:\Users\Public\Desktop\CDBurnerXP.lnk 2019-10-28 16:28 - 2019-10-28 16:28 - 000001819 _____ C:\ProgramData\Desktop\CDBurnerXP.lnk 2019-10-28 16:28 - 2019-10-28 16:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CDBurnerXP 2019-10-28 16:28 - 2019-10-28 16:28 - 000000000 ____D C:\Program Files (x86)\CDBurnerXP 2019-10-28 16:23 - 2019-10-28 16:23 - 006393919 _____ C:\Users\Agata\Downloads\cdburnerxp-portable-4-5-8-7042.zip 2019-10-28 16:17 - 2019-10-28 16:17 - 000000000 ____D C:\Program Files (x86)\Free Easy CD DVD Burner 2019-10-28 16:13 - 2019-10-28 16:13 - 000000000 ____D C:\Program Files\FreeEasyCD DVD Burner ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-11-25 10:57 - 2018-05-07 16:06 - 000000000 ____D C:\FRST 2019-11-25 10:53 - 2016-11-16 13:17 - 000000000 ____D C:\Users\Agata\AppData\LocalLow\Mozilla 2019-11-25 10:28 - 2009-07-14 05:45 - 000022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2019-11-25 10:28 - 2009-07-14 05:45 - 000022976 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2019-11-25 10:19 - 2009-07-14 03:34 - 000000717 _____ C:\Windows\win.ini 2019-11-25 10:16 - 2013-07-22 23:37 - 000065536 _____ C:\Windows\system32\Ikeext.etl 2019-11-25 10:16 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2019-11-25 10:13 - 2018-01-14 12:14 - 000186304 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMChameleon.sys 2019-11-25 10:12 - 2018-01-14 12:14 - 000110536 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2019-11-25 10:12 - 2018-01-14 12:10 - 000251832 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys 2019-11-25 10:12 - 2018-01-14 12:10 - 000043968 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2019-11-25 10:12 - 2014-05-17 23:04 - 000000000 ____D C:\Users\Agata\AppData\Roaming\MPC-HC 2019-11-24 23:48 - 2010-08-31 12:35 - 000000000 ____D C:\Users\Agata\AppData\Roaming\ipla 2019-11-23 20:12 - 2013-06-13 22:49 - 018562048 ___SH C:\Users\Agata\Desktop\Thumbs.db 2019-11-22 21:10 - 2011-09-06 00:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CorelDRAW Graphics Suite 12 2019-11-22 20:05 - 2015-05-17 10:38 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task 2019-11-22 20:03 - 2015-08-05 10:24 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2019-11-22 20:03 - 2015-08-05 10:24 - 000002047 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk 2019-11-22 20:03 - 2015-08-05 10:24 - 000002047 _____ C:\ProgramData\Desktop\Acrobat Reader DC.lnk 2019-11-22 19:34 - 2012-09-23 15:38 - 000000000 ____D C:\Users\Agata\AppData\Roaming\GG 2019-11-21 12:52 - 2010-08-30 16:43 - 000214712 _____ C:\Users\Agata\AppData\Local\GDIPFONTCACHEV1.DAT 2019-11-21 10:32 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\NDF 2019-11-19 22:15 - 2009-07-14 05:45 - 000700312 _____ C:\Windows\system32\FNTCACHE.DAT 2019-11-19 22:09 - 2019-03-24 23:19 - 000000000 ____D C:\Users\Agata\Desktop\lit 2019-11-19 22:08 - 2019-03-25 01:42 - 000000000 ____D C:\Users\Agata\AppData\Roaming\FontForge 2019-11-19 19:50 - 2018-01-14 12:14 - 000081696 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2019-11-18 16:56 - 2010-10-26 19:05 - 000000000 ____D C:\ProgramData\InstallShield 2019-11-18 16:37 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf 2019-11-18 16:24 - 2015-12-19 11:39 - 000000000 ____D C:\ProgramData\Package Cache 2019-11-17 14:32 - 2011-01-18 22:44 - 008393728 ___SH C:\Users\Agata\Thumbs.db 2019-11-16 20:47 - 2011-04-16 20:57 - 000000000 ____D C:\ProgramData\HP 2019-11-16 20:43 - 2017-11-03 15:17 - 000000000 ____D C:\Users\Agata\AppData\Local\Hewlett-Packard 2019-11-16 20:42 - 2017-11-03 15:22 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Hewlett-Packard 2019-11-16 20:41 - 2011-04-16 21:08 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2019-11-13 15:26 - 2010-06-01 22:43 - 000740688 _____ C:\Windows\system32\perfh015.dat 2019-11-13 15:26 - 2010-06-01 22:43 - 000156230 _____ C:\Windows\system32\perfc015.dat 2019-11-13 15:26 - 2009-07-14 06:13 - 001670590 _____ C:\Windows\system32\PerfStringBackup.INI 2019-11-13 15:11 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\PolicyDefinitions 2019-11-12 22:03 - 2010-08-31 11:23 - 000748816 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2019-11-09 14:11 - 2018-01-15 21:29 - 000000000 ____D C:\ProgramData\TEMP 2019-11-03 23:56 - 2016-05-19 18:41 - 000000000 ____D C:\Users\Agata\Documents\Moje skanowanie 2019-11-02 09:00 - 2016-10-27 14:48 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-11-02 02:36 - 2019-04-01 20:02 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-11-01 21:27 - 2010-09-04 17:23 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Audacity 2019-10-28 20:45 - 2012-08-25 15:26 - 000000000 ____D C:\Users\Agata\AppData\Roaming\Mp3tag 2019-10-28 16:00 - 2010-09-26 23:58 - 000000000 ____D C:\Users\Agata\AppData\Roaming\TeamViewer 2019-10-28 15:57 - 2011-05-31 09:58 - 000000000 ____D C:\Program Files\CDBurnerXP 2019-10-28 15:56 - 2010-09-13 15:00 - 000000000 ____D C:\TEMP 2019-10-28 15:48 - 2019-03-17 12:56 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update 2019-10-28 15:48 - 2019-03-17 12:56 - 000000822 _____ C:\Users\Public\Desktop\CCleaner.lnk 2019-10-28 15:48 - 2019-03-17 12:56 - 000000822 _____ C:\ProgramData\Desktop\CCleaner.lnk 2019-10-26 10:08 - 2019-05-20 20:27 - 000000000 ____D C:\Users\Agata\UPOWAŻNIENIA MAMA IWONKA ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-07-10 00:38 - 2019-07-16 23:11 - 000000333 _____ () C:\Users\Agata\AppData\Roaming\FotoSketcher.ini 2016-06-05 11:32 - 2016-06-05 11:32 - 000000042 _____ () C:\Users\Agata\AppData\Roaming\WB.CFG 2014-06-24 23:03 - 2014-06-28 22:50 - 000002954 _____ () C:\Users\Agata\AppData\Roaming\wklnhst.dat 2018-08-07 11:11 - 2018-08-07 11:11 - 000003584 _____ () C:\Users\Agata\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-02-28 13:16 - 2017-02-28 13:16 - 000004096 ____H () C:\Users\Agata\AppData\Local\keyfile3.drm 2018-02-24 21:21 - 2018-02-24 21:21 - 000002363 _____ () C:\Users\Agata\AppData\Local\recently-used.xbel 2012-05-02 00:02 - 2017-12-04 17:45 - 000007614 _____ () C:\Users\Agata\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) LastRegBack: 2017-12-09 00:26 ==================== Koniec FRST.txt ========================