Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 29-03-2020 Uruchomiony przez Karolek (administrator) DESKTOP-OK3RLEP (01-04-2020 10:35:21) Uruchomiony z D:\Pobrane Załadowane profile: Karolek (Dostępne profile: Karolek) Platform: Windows 10 Enterprise Wersja 1909 18363.720 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (BitTorrent Inc -> BitTorrent Inc.) C:\Users\Karolek\AppData\Roaming\uTorrent Web\helper.exe (Datpol Janusz Siemienowicz -> Datpol) D:\Program Files (x86)\SpyShelter Firewall\SpyShelter.exe (Datpol Janusz Siemienowicz -> Datpol) D:\Program Files (x86)\SpyShelter Firewall\SpyShelterSrv.exe (Electronic Arts, Inc. -> Electronic Arts) D:\Program Files (x86)\Origin\OriginWebHelperService.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.35.452\GoogleCrashHandler64.exe (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Brak podpisu cyfrowego] C:\Users\Karolek\AppData\Roaming\uTorrent Web\utweb.exe (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe (Logitech Inc -> Logitech Inc.) C:\Program Files\Logitech Gaming Software\LCore.exe (Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech Gaming Software\LAClient\laclient.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1910.0.0_x64__8wekyb3d8bbwe\Calculator.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.20022.82.0_x64__8wekyb3d8bbwe\YourPhoneServer\YourPhoneServer.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20022.11011.0_x64__8wekyb3d8bbwe\Video.UI.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe (Valve -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) D:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation) D:\Program Files (x86)\Steam\steam.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16696840 2016-09-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [185648 2020-03-20] (ESET, spol. s r.o. -> ESET) HKLM\...\Run: [Launch LCore] => C:\Program Files\Logitech Gaming Software\LCore.exe [18727048 2018-10-05] (Logitech Inc -> Logitech Inc.) HKLM\...\Run: [SpyShelter] => d:\Program Files (x86)\SpyShelter Firewall\SpyShelter.exe [4011200 2019-10-21] (Datpol Janusz Siemienowicz -> Datpol) HKU\S-1-5-21-3057649688-3422532804-1612139087-1001\...\Run: [Steam] => D:\Program Files (x86)\Steam\steam.exe [3370272 2020-03-27] (Valve -> Valve Corporation) HKU\S-1-5-21-3057649688-3422532804-1612139087-1001\...\Run: [Discord] => C:\Users\Karolek\AppData\Local\Discord\app-0.0.306\Discord.exe [90950968 2020-02-24] (Discord Inc. -> Discord Inc.) HKU\S-1-5-21-3057649688-3422532804-1612139087-1001\...\Run: [utweb] => C:\Users\Karolek\AppData\Roaming\uTorrent Web\utweb.exe [5415128 2019-12-20] (Jenkins Win Client Build SPC -> BitTorrent Inc.) [Brak podpisu cyfrowego] HKU\S-1-5-21-3057649688-3422532804-1612139087-1001\...\Run: [GoogleChromeAutoLaunch_AAB2426C90B8B1FEC1B23B38CC4E8613] => "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --no-startup-window /prefetch:5 HKU\S-1-5-21-3057649688-3422532804-1612139087-1001\...\RunOnce: [Application Restart #1] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe --no-startup-window /prefetch:5 --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --flag-switches-begin --flag-switc (dane wartości zawierają 61 znaków więcej). HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.149\Installer\chrmstp.exe [2020-03-19] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {0568D9DF-2112-42F8-9A4E-ADD62FC1B1B2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4369824 2020-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {0D55020C-55EA-47C0-925D-9B1CBEEB7FDC} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-23] (Google Inc -> Google LLC) Task: {10E0E3E8-3D0B-4A09-849E-27B78890778D} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {13A9A5EA-938F-45C5-B0C4-59C7AA19DC8C} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1799E84B-611F-4C16-AC36-94F75FDCCF2C} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-23] (Google Inc -> Google LLC) Task: {18EA81AC-6D70-4C11-8A9B-16B033BF5AD2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-17] (Microsoft Corporation -> Microsoft Corporation) Task: {1D052DDC-BF77-4DC3-AF22-53FBFC417EE5} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {250E109E-2DAB-43CD-872F-6AF25856C987} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3302880 2019-12-09] (NVIDIA Corporation -> NVIDIA Corporation) Task: {355D9F12-C541-487B-8C2A-45779159DAB5} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {499B9DC9-4297-46E9-B32A-F72CC5681139} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24600440 2020-03-05] (Microsoft Corporation -> Microsoft Corporation) Task: {8F85FDD4-6AD2-4A4E-A8B2-D3F8F24E28BB} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {94932E4D-7DBF-4321-A694-F98D6F0536B1} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4369824 2020-03-07] (Microsoft Corporation -> Microsoft Corporation) Task: {A225B563-8884-4059-8E93-FC11D6B4D6E3} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {AE69A42F-045B-4A9C-95B4-34B2A9478D03} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [914456 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BBDAF7F8-24B7-4729-8D47-326E99748E04} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) Task: {BF7F58A6-8A62-4C12-857F-DCFD3B0F8E53} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653848 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) Task: {E30476F9-A5DC-4EC0-AB84-B0729EB2F1F5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115032 2020-03-17] (Microsoft Corporation -> Microsoft Corporation) Task: {E8CC9205-14CF-4D99-A048-A7184511E11C} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1134104 2019-12-08] (NVIDIA Corporation -> NVIDIA Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{aa92e44d-8524-4bbb-9f0a-0d1da5544055}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-03-07] (Microsoft Corporation -> Microsoft Corporation) FireFox: ======== FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-07] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default [2020-04-01] CHR DownloadDir: D:\Pobrane CHR Notifications: Default -> hxxps://www.facebook.com CHR Extension: (Prezentacje) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-08-23] CHR Extension: (Dokumenty) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-08-23] CHR Extension: (Dysk Google) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-08-23] CHR Extension: (YouTube) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-08-23] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2020-04-01] CHR Extension: (Steam Inventory Helper) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2020-03-20] CHR Extension: (minerBlock) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\emikbbbebcdfohonlaifafnoanocnebl [2020-04-01] CHR Extension: (uBlock) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\epcnnfbjfcgphgdmggkamkmgojdagdnn [2019-12-19] CHR Extension: (Arkusze) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-08-23] CHR Extension: (Don't track me Google) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gdbofhhdmcladcmmfjolgndfkpobecpg [2020-04-01] CHR Extension: (Dokumenty Google offline) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-12] CHR Extension: (FACEIT Enhancer) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2020-01-29] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-05] CHR Extension: (Gmail) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-08-23] CHR Extension: (Chrome Media Router) - C:\Users\Karolek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-03-20] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11091224 2020-03-05] (Microsoft Corporation -> Microsoft Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [802432 2020-03-10] (EasyAntiCheat Oy -> EasyAntiCheat Ltd) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-03-20] (ESET, spol. s r.o. -> ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2358784 2020-03-20] (ESET, spol. s r.o. -> ESET) S3 FACEITService; D:\Program Files\FACEIT AC\FACEITService.exe [20265824 2020-03-19] (FACE IT LIMITED -> ) R2 LogiRegistryService; C:\Program Files\Logitech Gaming Software\Drivers\APOService\LogiRegistryService.exe [206472 2018-10-05] (Logitech Inc -> Logitech Inc.) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-12-05] (NVIDIA Corporation -> NVIDIA Corporation) S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2495280 2020-03-16] (Electronic Arts, Inc. -> Electronic Arts) R2 Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [3445552 2020-03-16] (Electronic Arts, Inc. -> Electronic Arts) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5929920 2020-03-01] (Microsoft Windows Publisher -> Microsoft Corporation) R2 SpyShelterSrv; d:\Program Files (x86)\SpyShelter Firewall\SpyShelterSrv.exe [61120 2019-10-21] (Datpol Janusz Siemienowicz -> Datpol) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-11-17] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-11-17] (Microsoft Windows Publisher -> Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [231936 2019-10-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-10-27] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-10-27] (AVB Disc Soft, SIA -> Disc Soft Ltd) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [154328 2020-03-20] (ESET, spol. s r.o. -> ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-05-31] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188872 2020-03-20] (ESET, spol. s r.o. -> ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [115960 2020-03-20] (ESET, spol. s r.o. -> ESET) R1 ESEADriver2; C:\Users\Karolek\AppData\Local\Temp\ESEADriver2.sys [3363856 2020-03-17] (Microsoft Windows Hardware Compatibility Publisher -> ) <==== UWAGA S3 ESEADriver3; D:\Program Files\ESEA\ESEA Client\eseadriver3z.sys [2943504 2019-02-11] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) R0 FACEIT; C:\WINDOWS\System32\Drivers\FACEIT.sys [20297080 2020-03-30] (FACE IT LIMITED -> ) S3 fiddrv64; Brak ImagePath R2 LGCoreTemp; C:\Program Files\Logitech Gaming Software\Drivers\LgCoreTemp\lgcoretemp.sys [14184 2015-06-21] (Logitech -> Logitech) R3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore.sys [67736 2018-10-05] (Logitech Inc -> Logitech Inc.) S3 mt7612US; C:\WINDOWS\System32\drivers\mt7612US.sys [400392 2017-07-14] (Microsoft Windows Hardware Compatibility Publisher -> MediaTek Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_63268710a2dc3648\nvlddmkm.sys [23439080 2020-03-19] (NVIDIA Corporation -> NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-12-07] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-08-22] (NVIDIA Corporation -> NVIDIA Corporation) R2 speedfan; C:\WINDOWS\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) R1 Spyshelter; d:\Program Files (x86)\SpyShelter Firewall\SpyShelter.sys [1909672 2019-10-21] (Datpol Janusz Siemienowicz -> SpyShelter) R2 SpyshelterFw; d:\Program Files (x86)\SpyShelter Firewall\SpyshelterWFP.sys [128728 2019-09-17] (Datpol Janusz Siemienowicz -> SpyShelter) R1 SpyshelterKb; d:\Program Files (x86)\SpyShelter Firewall\SpyshelterKb.sys [897240 2019-09-17] (Datpol Janusz Siemienowicz -> SpyShelter) S3 tap0901cn; C:\WINDOWS\System32\drivers\tap0901cn.sys [45576 2019-11-25] (Connectify (Connectify, Inc.) -> The OpenVPN Project) S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [46472 2019-11-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [351968 2019-11-17] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-11-17] (Microsoft Windows -> Microsoft Corporation) R2 WinRing0_1_2_0; C:\Program Files (x86)\EVGA\Precision XOC\WinRing0\WinRing0x64.sys [14536 2015-10-20] (EVGA -> OpenLibSys.org) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-01 10:32 - 2020-04-01 10:35 - 000000000 ____D C:\FRST 2020-04-01 10:27 - 2020-04-01 10:27 - 000000000 _____ C:\WINDOWS\cd_127 2020-04-01 10:07 - 2020-04-01 10:17 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\SpyShelter 2020-04-01 10:07 - 2020-04-01 10:07 - 000000836 _____ C:\Users\Public\Desktop\SpyShelter Firewall.lnk 2020-04-01 10:07 - 2020-04-01 10:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyShelter 2020-04-01 10:07 - 2017-08-29 11:04 - 000052992 _____ (Datpol) C:\WINDOWS\system32\SpyShelterShellExt.dll 2020-04-01 10:07 - 2017-08-29 11:04 - 000045824 _____ (Datpol) C:\WINDOWS\SysWOW64\SpyShelterShellExt.dll 2020-03-30 14:48 - 2020-03-30 16:18 - 000000000 ____D C:\Users\Karolek\Documents\ProfileCache 2020-03-30 14:48 - 2020-03-30 16:09 - 000000000 ____D C:\Users\Karolek\Documents\The Crew 2020-03-30 14:48 - 2020-03-30 14:48 - 000000000 ____D C:\Users\Karolek\AppData\Local\Ubisoft 2020-03-30 10:42 - 2020-03-30 10:43 - 020297080 _____ C:\WINDOWS\system32\Drivers\FACEIT.sys 2020-03-25 15:55 - 2020-03-25 15:56 - 000000000 ____D C:\WINDOWS\LastGood 2020-03-25 15:54 - 2020-03-19 07:11 - 001729232 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe 2020-03-25 15:54 - 2020-03-19 07:11 - 001729232 _____ C:\WINDOWS\system32\vulkaninfo.exe 2020-03-25 15:54 - 2020-03-19 07:11 - 001329360 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2020-03-25 15:54 - 2020-03-19 07:11 - 001329360 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2020-03-25 15:54 - 2020-03-19 07:11 - 001078992 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll 2020-03-25 15:54 - 2020-03-19 07:11 - 001078992 _____ C:\WINDOWS\system32\vulkan-1.dll 2020-03-25 15:54 - 2020-03-19 07:11 - 000937680 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll 2020-03-25 15:54 - 2020-03-19 07:11 - 000937680 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2020-03-25 15:54 - 2020-03-19 07:11 - 000450464 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2020-03-25 15:54 - 2020-03-19 07:11 - 000348048 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2020-03-25 15:54 - 2020-03-19 07:10 - 011945072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2020-03-25 15:54 - 2020-03-19 07:10 - 010285680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2020-03-25 15:54 - 2020-03-19 07:10 - 000817056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2020-03-25 15:54 - 2020-03-19 07:10 - 000676448 _____ C:\WINDOWS\system32\nvofapi64.dll 2020-03-25 15:54 - 2020-03-19 07:10 - 000544352 _____ C:\WINDOWS\SysWOW64\nvofapi.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 017600912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 015157664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 005856656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 005158304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 002072992 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001723280 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444575.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001564904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001483168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444575.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001480936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001351568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001142176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 001049488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 000811424 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 000679840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 000655264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2020-03-25 15:54 - 2020-03-19 07:09 - 000546720 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2020-03-25 15:54 - 2020-03-18 09:51 - 000039824 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2020-03-22 13:08 - 2020-03-22 13:35 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\obs-studio 2020-03-22 13:08 - 2020-03-22 13:08 - 000000910 _____ C:\Users\Public\Desktop\OBS Studio.lnk 2020-03-22 13:08 - 2020-03-22 13:08 - 000000000 ____D C:\ProgramData\obs-studio-hook 2020-03-22 13:08 - 2020-03-22 13:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio 2020-03-21 18:55 - 2020-03-21 18:55 - 000000044 _____ C:\Users\Karolek\Documents\ts.txt 2020-03-21 13:18 - 2020-03-21 13:18 - 000000000 ____D C:\WINDOWS\LastGood.Tmp 2020-03-21 13:17 - 2020-03-16 12:11 - 001720208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444274.dll 2020-03-21 13:17 - 2020-03-16 12:11 - 001482984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444274.dll 2020-03-21 13:17 - 2020-03-16 12:10 - 040502384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2020-03-21 13:17 - 2020-03-16 12:10 - 035371632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2020-03-20 13:38 - 2020-03-20 13:38 - 000182115 _____ C:\Users\Karolek\Desktop\wypowiedzenie.pdf 2020-03-19 16:29 - 2020-03-19 16:29 - 000000000 ____D C:\ProgramData\Ubisoft 2020-03-19 16:28 - 2020-03-30 14:06 - 000000000 ____D C:\Users\Karolek\AppData\Local\Ubisoft Game Launcher 2020-03-19 16:28 - 2020-03-19 16:28 - 000000937 _____ C:\Users\Karolek\Desktop\Uplay.lnk 2020-03-19 16:28 - 2020-03-19 16:28 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2020-03-17 21:44 - 2020-03-17 21:44 - 000002344 _____ C:\Users\Public\Desktop\Intel(R) Processor Identification Utility.lnk 2020-03-17 21:44 - 2020-03-17 21:44 - 000000000 ____D C:\ProgramData\Caphyon 2020-03-17 21:44 - 2020-03-17 21:44 - 000000000 ____D C:\Program Files (x86)\Intel Corporation 2020-03-15 14:18 - 2020-03-15 14:18 - 000000763 _____ C:\Users\Karolek\Desktop\SpeedFan.lnk 2020-03-15 14:18 - 2020-03-15 14:18 - 000000045 _____ C:\WINDOWS\SysWOW64\initdebug.nfo 2020-03-15 14:18 - 2020-03-15 14:18 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SpeedFan 2020-03-15 01:49 - 2020-03-15 01:49 - 000000017 _____ C:\WINDOWS\PrecisionX_x64.INI 2020-03-13 00:58 - 2020-03-13 00:58 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-03-13 00:58 - 2020-03-13 00:58 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-03-13 00:58 - 2020-03-13 00:58 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-03-13 00:58 - 2020-03-13 00:58 - 006520776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-03-13 00:58 - 2020-03-13 00:58 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-03-13 00:58 - 2020-03-13 00:58 - 001398584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-03-13 00:58 - 2020-03-13 00:58 - 001077048 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-03-13 00:58 - 2020-03-13 00:58 - 000772096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2020-03-13 00:58 - 2020-03-13 00:58 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2020-03-13 00:58 - 2020-03-13 00:58 - 000561464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2020-03-13 00:57 - 2020-03-13 00:58 - 004563416 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2020-03-12 22:26 - 2020-03-12 22:26 - 000000000 ____D C:\Users\Karolek\AppData\Local\id Software 2020-03-11 17:15 - 2020-03-11 17:15 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 019850240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 019812352 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 011607552 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 007905784 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 007755776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 006084344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 005911040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 004855808 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 004580352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003977216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003819520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003728896 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003587896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 003488768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002956688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002870272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 002768440 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002715648 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 002698040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002289152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002224952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002180408 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002087376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002072664 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 002031104 _____ C:\WINDOWS\system32\rdpnano.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001999952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001867816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001770552 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001764336 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001751040 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001697792 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001665416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001657120 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001581056 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001555904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001490640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001484600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001413632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001284096 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001282944 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001153024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowsperformancerecordercontrol.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 001108040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001088000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000908504 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000898048 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000877232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowsperformancerecordercontrol.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000851968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000835584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkfoldersControl.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000757632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\cscsvc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000734720 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetup.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000680448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsecedit.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000668296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000636848 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000613888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000562176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000551824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000525312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsecedit.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000379904 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000328192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacEncoder.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\scecli.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\netman.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000239616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacEncoder.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000232960 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFoldersShell.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000214016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scecli.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000165504 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000146712 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceMetadataRetrievalClient.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000131896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DTUHandler.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000130112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000120560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys 2020-03-11 17:15 - 2020-03-11 17:15 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WorkFolders.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000089568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvSysprep.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpremove.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf3216.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf3216.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000042296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sxstrace.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sxstrace.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe 2020-03-11 17:15 - 2020-03-11 17:15 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000016384 _____ (Microsoft Corporation) C:\WINDOWS\system32\MUILanguageCleanup.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LangCleanupSysprepAction.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpksetupproxyserv.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000008192 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimg32.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2020-03-11 17:15 - 2020-03-11 17:15 - 000007168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimg32.dll 2020-03-11 17:11 - 2020-03-11 17:11 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe 2020-03-11 17:11 - 2020-03-11 17:11 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe 2020-03-10 22:32 - 2020-03-10 22:32 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\EasyAntiCheat 2020-03-10 22:32 - 2020-03-10 22:32 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat 2020-03-06 13:05 - 2019-11-25 21:01 - 000045576 _____ (The OpenVPN Project) C:\WINDOWS\system32\Drivers\tap0901cn.sys ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-04-01 10:33 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF 2020-04-01 10:31 - 2019-11-03 02:08 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\uTorrent Web 2020-04-01 10:30 - 2019-08-23 17:33 - 000000000 ____D C:\ProgramData\NVIDIA 2020-04-01 10:28 - 2020-01-23 20:58 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-04-01 10:28 - 2019-10-27 13:03 - 000000000 ____D C:\Users\Karolek\AppData\Local\BitTorrentHelper 2020-04-01 10:28 - 2019-09-10 20:30 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\Discord 2020-04-01 10:28 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps 2020-04-01 10:28 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-04-01 10:28 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-04-01 10:27 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-04-01 10:25 - 2020-01-23 21:02 - 001768484 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-04-01 10:25 - 2019-03-19 14:24 - 000784514 _____ C:\WINDOWS\system32\perfh015.dat 2020-04-01 10:25 - 2019-03-19 14:24 - 000152312 _____ C:\WINDOWS\system32\perfc015.dat 2020-04-01 10:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-04-01 10:07 - 2019-08-24 06:06 - 000000000 ____D C:\Users\Public\Logi 2020-04-01 07:16 - 2020-01-23 20:51 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-03-30 18:23 - 2019-11-12 14:59 - 000000000 ____D C:\Users\Karolek\AppData\LocalLow\Mozilla 2020-03-25 15:56 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Help 2020-03-24 17:49 - 2019-08-24 06:14 - 000000000 ____D C:\Users\Karolek\AppData\Local\D3DSCache 2020-03-22 19:27 - 2020-01-23 20:58 - 000003384 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3057649688-3422532804-1612139087-1001 2020-03-22 19:27 - 2020-01-23 20:54 - 000002417 _____ C:\Users\Karolek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-03-22 19:27 - 2019-08-23 17:06 - 000000000 ___RD C:\Users\Karolek\OneDrive 2020-03-21 13:19 - 2019-08-23 18:09 - 000000000 ____D C:\Users\Karolek\AppData\Local\NVIDIA 2020-03-21 09:49 - 2019-11-05 16:42 - 000000000 ____D C:\Users\Karolek\Documents\Assassin's Creed Odyssey 2020-03-21 05:04 - 2020-01-23 20:58 - 000003570 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-03-21 05:04 - 2020-01-23 20:58 - 000003446 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-03-20 13:32 - 2019-08-23 17:04 - 000000000 ____D C:\Users\Karolek\AppData\Local\Packages 2020-03-20 01:20 - 2019-06-20 03:34 - 000188872 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys 2020-03-20 01:20 - 2019-06-20 03:34 - 000154328 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys 2020-03-20 01:20 - 2019-06-20 03:34 - 000115960 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys 2020-03-19 21:04 - 2019-08-23 17:59 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-03-19 21:04 - 2019-08-23 17:59 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2020-03-19 04:06 - 2020-01-11 19:48 - 004927048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2020-03-19 04:05 - 2020-02-21 13:47 - 004196160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2020-03-18 09:51 - 2020-01-11 19:48 - 001682368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdagenco6420103.dll 2020-03-18 09:51 - 2020-01-11 19:48 - 000223120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2020-03-18 09:51 - 2020-01-11 19:48 - 000056618 _____ C:\WINDOWS\system32\nvinfo.pb 2020-03-18 06:00 - 2019-08-23 17:33 - 005581800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 002632680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 001759216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 001172464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 000446264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 000121144 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2020-03-18 06:00 - 2019-08-23 17:33 - 000074736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2020-03-17 08:37 - 2019-11-29 13:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-03-16 08:39 - 2019-08-23 17:33 - 008997147 _____ C:\WINDOWS\system32\nvcoproc.bin 2020-03-15 14:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-03-15 14:21 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-03-14 12:38 - 2019-08-24 06:21 - 000000000 ____D C:\Users\Karolek\AppData\Local\ElevatedDiagnostics 2020-03-13 16:17 - 2019-11-29 13:26 - 000000000 ____D C:\Users\Karolek\AppData\Local\MSfree Inc 2020-03-13 00:58 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-03-12 20:39 - 2019-08-23 17:04 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-03-12 20:39 - 2019-08-23 17:04 - 000000000 ___RD C:\Users\Karolek\3D Objects 2020-03-12 20:38 - 2020-01-23 20:54 - 000000000 ____D C:\Users\Karolek 2020-03-12 20:38 - 2020-01-23 20:51 - 000446008 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-03-12 20:38 - 2019-03-19 06:52 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-03-12 20:38 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-03-12 20:38 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources 2020-03-12 20:38 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-03-12 20:38 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-03-12 20:38 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\servicing 2020-03-11 17:17 - 2019-08-23 17:43 - 000000000 ____D C:\WINDOWS\system32\MRT 2020-03-11 17:16 - 2019-08-23 17:43 - 121542864 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2020-03-11 15:01 - 2019-09-17 20:58 - 000000000 ____D C:\Users\Karolek\AppData\Roaming\Origin 2020-03-11 15:01 - 2019-09-17 20:58 - 000000000 ____D C:\ProgramData\Origin 2020-03-10 14:54 - 2019-09-17 20:58 - 000000000 ____D C:\Users\Karolek\AppData\Local\Origin ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================