Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 09-01-2021 Uruchomiony przez Pilarkosmax (administrator) DESKTOP-1O8D2D1 (Dell Inc. Vostro 15-3568) (16-01-2021 05:08:45) Uruchomiony z C:\Users\Pilarkosmax\Downloads Załadowane profile: Pilarkosmax Platform: Windows 10 Pro Wersja 20H2 19042.746 (X64) Język: Polski (Polska) Domyślna przeglądarka: FF Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0320070.inf_amd64_836aef5d167483e2\atiesrxx.exe (CYBERLINK CORPORATION.) C:\Program Files\WindowsApps\DB6EA5DB.Power2GoforDell_11.0.3920.0_x86__mcezb6ze687jp\Power2Go11\CLMLSvc_P2G11.exe (Globalhop Ltd -> Gomberto Muraca) C:\Users\Pilarkosmax\AppData\Roaming\Gomberto Muraca\Decacopy clipboard manager\decacopy.exe <3> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\dptf_helper.exe (Intel Corporation -> Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_ffc75848a6342fdf\jhi_service.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k127153.inf_amd64_3f3936d8dec668b8\igfxCUIService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k127153.inf_amd64_3f3936d8dec668b8\igfxEM.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k127153.inf_amd64_3f3936d8dec668b8\IntelCpHDCPSvc.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\k127153.inf_amd64_3f3936d8dec668b8\IntelCpHeciSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel(R) Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft SQL Server\90\Shared\sqlbrowser.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL12.INSERTGT\MSSQL\Binn\sqlservr.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.740_none_e752aa59261f271f\TiWorker.exe (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2> (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Synaptics Incorporated) [Brak podpisu cyfrowego] C:\Windows\System32\valWBFPolicyService.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe (Waves Inc -> Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSysSvc64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [320568 2016-09-20] (Intel(R) Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269328 2019-01-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_PushButton] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1506384 2019-01-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor) HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [1213736 2018-11-04] (Waves Inc -> Waves Audio Ltd.) HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <==== UWAGA HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Run: [decacopy] => C:\Users\Pilarkosmax\AppData\Roaming\Gomberto Muraca\Decacopy clipboard manager\decacopy.exe [84828184 2019-09-25] (Globalhop Ltd -> Gomberto Muraca) HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Run: [JREUpdate] => "C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Protect\SETUP\mscaps.exe" /s /n /i:U shell32.dll HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Policies\Explorer: [NoWinkeys] 0 HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Policies\Explorer: [NoTrayContextMenu] 0 HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Policies\Explorer: [NoSetTaskbar] 0 HKU\S-1-5-21-2601381620-2211264571-1085269511-1001\...\Policies\Explorer: [NoViewContextMenu] 0 HKLM\...\Windows x64\Print Processors\XeroxV5Print: C:\Windows\System32\spool\prtprocs\x64\x5print.dll [11264 2016-05-11] (Microsoft Windows Hardware Compatibility Publisher -> Xerox Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.141\Installer\chrmstp.exe [2021-01-12] (Google LLC -> Google LLC) HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Google: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {29A30E78-8039-41AC-AF16-09B6895C8225} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2601381620-2211264571-1085269511-500 => C:\Users\Pilarkosmax\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe Task: {38318349-1642-43EC-84F5-DA113500A7D2} - System32\Tasks\Xerox\Xerox PowerENGAGE Update => C:\Program Files (x86)\Xerox PowerENGAGE\xeroxreg.exe [117984 2016-09-13] (Aviata Inc -> Aviata Inc) Task: {412063BA-7AF1-4D4F-BD9D-3D5421485086} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-10-04] (Google Inc -> Google LLC) Task: {716D60D8-69DE-483F-8D6C-8741BC72DFB3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-10-04] (Google Inc -> Google LLC) Task: {C1817BC4-1830-42F6-9BAD-6C98B3533841} - System32\Tasks\Mozilla\Firefox Default Browser Agent A866091AE77C09B3 => C:\Users\Pilarkosmax\AppData\Local\Mozilla Firefox\default-browser-agent.exe [693216 2021-01-07] (Mozilla Corporation -> Mozilla Foundation) Task: {C814DD27-F6A4-4822-9E87-11FCF61A2C88} - System32\Tasks\Xerox\Xerox PowerENGAGE => C:\Program Files (x86)\Xerox PowerENGAGE\xeroxreg.exe [117984 2016-09-13] (Aviata Inc -> Aviata Inc) Task: {EEC49EC1-6D68-4C34-B6CB-AB1C016A57AC} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [49032 2017-10-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) Task: {FF35BF6F-7D9C-4BD3-9707-3E7AA3BF1F25} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 10.10.80.1 Tcpip\..\Interfaces\{8c2a463b-303d-4069-86df-154f78a33c4e}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{93e066a4-ce21-4f5c-822c-307cefa0aefc}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{ba441d78-b001-48ad-ba33-76062146045c}: [DhcpNameServer] 10.10.80.1 Tcpip\..\Interfaces\{ea732041-9d8d-4d0f-b21c-43c48cc07e46}: [DhcpNameServer] 192.168.1.1 Edge: ====== Edge DefaultProfile: Default Edge Profile: C:\Users\Pilarkosmax\AppData\Local\Microsoft\Edge\User Data\Default [2021-01-16] Edge StartupUrls: Default -> "hxxp://www.web-pl.com/" Edge DefaultSearchURL: Default -> hxxp://www.web-pl.com/search?q={searchTerms} Edge DefaultSearchKeyword: Default -> web-pl.com FireFox: ======== FF DefaultProfile: noattuhn.default FF ProfilePath: C:\Users\Pilarkosmax\AppData\Roaming\Mozilla\Firefox\Profiles\noattuhn.default [2021-01-16] FF Homepage: Mozilla\Firefox\Profiles\noattuhn.default -> hxxp://www.web-pl.com/ FF Notifications: Mozilla\Firefox\Profiles\noattuhn.default -> hxxps://www.dobreprogramy.pl FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default [2021-01-16] CHR HomePage: Default -> hxxp://www.web-pl.com/ CHR StartupUrls: Default -> "hxxp://www.web-pl.com/" CHR DefaultSearchURL: Default -> hxxp://www.web-pl.com/search?q={searchTerms} CHR DefaultSearchKeyword: Default -> szukaj CHR Extension: (Prezentacje) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-10-04] CHR Extension: (Dokumenty) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-10-04] CHR Extension: (Dysk Google) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-21] CHR Extension: (YouTube) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-10-04] CHR Extension: (Arkusze) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-10-04] CHR Extension: (Dokumenty Google offline) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-12-21] CHR Extension: (Avast Online Security) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-06-04] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04] CHR Extension: (Gmail) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-21] CHR Extension: (Chrome Media Router) - C:\Users\Pilarkosmax\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-21] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.) R2 MSSQL$INSERTGT; C:\Program Files\Microsoft SQL Server\MSSQL12.INSERTGT\MSSQL\Binn\sqlservr.exe [372416 2016-06-18] (Microsoft Corporation -> Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5198064 2021-01-16] (Microsoft Windows Publisher -> Microsoft Corporation) S4 SQLAgent$INSERTGT; C:\Program Files\Microsoft SQL Server\MSSQL12.INSERTGT\MSSQL\Binn\SQLAGENT.EXE [613056 2016-06-18] (Microsoft Corporation -> Microsoft Corporation) R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12757520 2020-12-14] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) R2 valWBFPolicyService; C:\Windows\system32\valWBFPolicyService.exe [44544 2015-03-03] (Synaptics Incorporated) [Brak podpisu cyfrowego] R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation) S3 XeroxProdRegManager; C:\Program Files (x86)\Xerox PowerENGAGE\EngageService.exe [293608 2016-09-13] (Aviata Inc -> Aviata, Inc.) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [41208 2018-05-08] (Techporch Incorporated -> Dell Computer Corporation) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [218336 2017-10-10] (McAfee, Inc. -> McAfee, Inc.) R1 RsFx0320; C:\WINDOWS\System32\DRIVERS\RsFx0320.sys [250048 2016-06-18] (Microsoft Corporation -> Microsoft Corporation) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-16 05:08 - 2021-01-16 05:09 - 000016127 _____ C:\Users\Pilarkosmax\Downloads\FRST.txt 2021-01-16 03:50 - 2021-01-16 03:50 - 000000064 _____ C:\Users\Pilarkosmax\Downloads\xxxxxx.txt 2021-01-16 03:23 - 2021-01-16 05:09 - 000000000 ____D C:\FRST 2021-01-16 03:19 - 2021-01-16 03:19 - 002281472 _____ (Farbar) C:\Users\Pilarkosmax\Downloads\FRST64.exe 2021-01-16 00:39 - 2021-01-16 00:39 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-01-16 00:38 - 2021-01-16 00:38 - 000000000 ____D C:\AdwCleaner 2021-01-16 00:27 - 2021-01-16 04:22 - 001915822 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2021-01-16 00:25 - 2021-01-16 00:25 - 000007623 _____ C:\WINDOWS\diagwrn.xml 2021-01-16 00:25 - 2021-01-16 00:25 - 000007623 _____ C:\WINDOWS\diagerr.xml 2021-01-16 00:25 - 2021-01-16 00:25 - 000003496 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2021-01-16 00:25 - 2021-01-16 00:25 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task 2021-01-16 00:25 - 2021-01-16 00:25 - 000003380 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D17E8165-9C20-4BD8-B4A1-775C1B346417} 2021-01-16 00:25 - 2021-01-16 00:25 - 000003272 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2021-01-16 00:25 - 2021-01-16 00:25 - 000002858 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2601381620-2211264571-1085269511-500 2021-01-16 00:25 - 2021-01-16 00:25 - 000002146 _____ C:\WINDOWS\system32\Tasks\StartCN 2021-01-16 00:25 - 2021-01-16 00:25 - 000000020 ___SH C:\Users\Pilarkosmax\ntuser.ini 2021-01-16 00:25 - 2021-01-16 00:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Xerox 2021-01-16 00:25 - 2021-01-16 00:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-2601381620-2211264571-1085269511-1001 2021-01-16 00:25 - 2021-01-16 00:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla 2021-01-16 00:25 - 2021-01-16 00:25 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2021-01-16 00:19 - 2021-01-16 00:25 - 000000000 ____D C:\Users\Pilarkosmax 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Ustawienia lokalne 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Szablony 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Moje dokumenty 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Menu Start 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Documents\Moje wideo 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Documents\Moje obrazy 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Documents\Moja muzyka 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\Dane aplikacji 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\AppData\Local\Tymczasowe pliki internetowe 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\AppData\Local\Historia 2021-01-16 00:19 - 2021-01-16 00:19 - 000000000 _SHDL C:\Users\Pilarkosmax\AppData\Local\Dane aplikacji 2021-01-16 00:19 - 2019-12-07 10:10 - 000001105 _____ C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-01-16 00:18 - 2021-01-16 00:18 - 000001119 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Waves MaxxAudioPro.lnk 2021-01-16 00:18 - 2021-01-16 00:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings 2021-01-16 00:18 - 2021-01-16 00:18 - 000000000 ____D C:\Program Files\Waves 2021-01-16 00:17 - 2021-01-16 00:17 - 000000000 ____D C:\Program Files (x86)\AMD 2021-01-16 00:16 - 2021-01-16 05:06 - 000008192 ___SH C:\DumpStack.log.tmp 2021-01-16 00:15 - 2021-01-16 00:25 - 000000000 ____D C:\Windows.old 2021-01-16 00:13 - 2021-01-16 00:16 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate 2021-01-16 00:12 - 2021-01-16 00:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2021-01-16 00:08 - 2021-01-16 00:08 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2021-01-16 00:08 - 2021-01-16 00:08 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2021-01-16 00:08 - 2021-01-16 00:08 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2021-01-16 00:08 - 2021-01-16 00:08 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr 2021-01-16 00:08 - 2021-01-16 00:08 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2021-01-16 00:08 - 2021-01-16 00:08 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr 2021-01-16 00:08 - 2021-01-16 00:08 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000467968 _____ C:\WINDOWS\system32\AssignedAccessCsp.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax 2021-01-16 00:08 - 2021-01-16 00:08 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax 2021-01-16 00:08 - 2021-01-16 00:08 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax 2021-01-16 00:08 - 2021-01-16 00:08 - 000157184 _____ C:\WINDOWS\system32\uwfcsp.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000138056 _____ C:\WINDOWS\system32\HvsiManagementApi.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax 2021-01-16 00:08 - 2021-01-16 00:08 - 000101704 _____ C:\WINDOWS\SysWOW64\HvsiManagementApi.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx 2021-01-16 00:08 - 2021-01-16 00:08 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx 2021-01-16 00:08 - 2021-01-16 00:08 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl 2021-01-16 00:08 - 2021-01-16 00:08 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll 2021-01-16 00:08 - 2021-01-16 00:08 - 000010894 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim 2021-01-16 00:07 - 2021-01-16 00:07 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2021-01-16 00:07 - 2021-01-16 00:07 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2021-01-16 00:07 - 2021-01-16 00:07 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 001162240 _____ C:\WINDOWS\system32\MBR2GPT.EXE 2021-01-16 00:07 - 2021-01-16 00:07 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2021-01-16 00:07 - 2021-01-16 00:07 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2021-01-16 00:07 - 2021-01-16 00:07 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe 2021-01-16 00:07 - 2021-01-16 00:07 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe 2021-01-16 00:07 - 2021-01-16 00:07 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl 2021-01-16 00:07 - 2021-01-16 00:07 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe 2021-01-16 00:07 - 2021-01-16 00:07 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2021-01-16 00:07 - 2021-01-16 00:07 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe 2021-01-16 00:07 - 2021-01-16 00:07 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe 2021-01-16 00:07 - 2021-01-16 00:07 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt 2021-01-16 00:02 - 2019-10-15 13:53 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml 2021-01-16 00:02 - 2019-04-18 18:49 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml 2021-01-15 23:57 - 2021-01-15 23:57 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2021-01-15 23:57 - 2021-01-15 23:57 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-01-15 23:57 - 2021-01-15 23:57 - 000000000 ____D C:\Program Files\MSBuild 2021-01-15 23:57 - 2021-01-15 23:57 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-01-15 23:57 - 2021-01-15 23:57 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-01-15 23:43 - 2021-01-16 00:25 - 000000000 ___DC C:\WINDOWS\Panther 2021-01-15 23:27 - 2021-01-15 23:43 - 000000000 ____D C:\ESD 2021-01-15 23:22 - 2021-01-15 23:22 - 000000000 ___HD C:\$Windows.~WS 2021-01-15 14:25 - 2021-01-15 14:25 - 000049638 _____ C:\Users\Pilarkosmax\Desktop\FV AGRICOLE 2021.pdf 2021-01-15 14:22 - 2021-01-15 14:22 - 000000000 _____ C:\Users\Pilarkosmax\Desktop\FV AGRICOLE.pdf 2021-01-07 09:24 - 2021-01-07 09:24 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Local\Mozilla Firefox 2021-01-01 12:38 - 2021-01-01 12:48 - 000000000 ____D C:\Users\Pilarkosmax\Desktop\przyczepka boro 2021-01-01 12:16 - 2021-01-01 12:06 - 000112560 _____ C:\Users\Pilarkosmax\Desktop\POJAZD.pdf 2021-01-01 12:16 - 2021-01-01 12:06 - 000030275 _____ C:\Users\Pilarkosmax\Desktop\POJAZD2.pdf 2021-01-01 12:06 - 2021-01-01 12:06 - 000112560 _____ C:\Users\Pilarkosmax\Downloads\23150310965.pdf 2021-01-01 12:06 - 2021-01-01 12:06 - 000030275 _____ C:\Users\Pilarkosmax\Downloads\potwierdzenie_nadania_2021-01-01-12-06.pdf 2020-12-22 17:33 - 2020-12-22 17:33 - 000050288 _____ C:\Users\Pilarkosmax\Desktop\FV PILA.pdf 2020-12-22 17:30 - 2020-12-22 17:30 - 000000000 _____ C:\Users\Pilarkosmax\Desktop\FV PIŁA.pdf 2020-12-22 13:49 - 2020-12-22 13:48 - 000903654 _____ C:\Users\Pilarkosmax\Desktop\SKAN DOWODU MZ 2.jpeg 2020-12-22 13:47 - 2020-12-23 13:19 - 000000000 ____D C:\Users\Pilarkosmax\Desktop\SKANY DOWODU MOTOCYKLE 2020-12-21 16:20 - 2020-12-21 16:20 - 000002820 _____ C:\Users\Pilarkosmax\AppData\Local\recently-used.xbel 2020-12-21 16:15 - 2020-12-21 16:27 - 000123510 _____ C:\Users\Pilarkosmax\Desktop\Eksport.pdf 2020-12-21 16:00 - 2020-12-21 16:31 - 000000000 ____D C:\Users\Pilarkosmax\Desktop\sims czerwo 2020-12-21 13:41 - 2020-12-21 13:41 - 000049615 _____ C:\Users\Pilarkosmax\Desktop\FV PŁUG.pdf 2020-12-20 16:08 - 2020-12-20 16:14 - 000000000 ____D C:\Users\Pilarkosmax\Desktop\KEMPING KUNÓW ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-01-16 05:06 - 2020-11-19 00:39 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2021-01-16 05:06 - 2020-05-21 07:28 - 000000000 ____D C:\Program Files (x86)\TeamViewer 2021-01-16 05:06 - 2020-02-17 12:51 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\decacopy 2021-01-16 05:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState 2021-01-16 05:06 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-01-16 05:06 - 2018-08-30 16:34 - 000000000 __SHD C:\Users\Pilarkosmax\IntelGraphicsProfiles 2021-01-16 05:06 - 2018-01-12 05:48 - 000000000 ____D C:\ProgramData\Validity 2021-01-16 05:05 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2021-01-16 05:04 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2021-01-16 05:00 - 2019-01-31 22:08 - 000000000 ____D C:\ProgramData\Mozilla 2021-01-16 04:59 - 2018-08-30 17:28 - 000000000 ____D C:\Users\Pilarkosmax\AppData\LocalLow\Mozilla 2021-01-16 04:52 - 2020-01-19 16:28 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\InsERT Sello 2021-01-16 04:52 - 2019-06-07 09:47 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Local\CrashDumps 2021-01-16 04:41 - 2018-08-30 16:34 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Local\Packages 2021-01-16 04:40 - 2020-11-19 00:41 - 000002450 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-01-16 04:40 - 2020-11-19 00:41 - 000002288 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-01-16 04:40 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps 2021-01-16 04:22 - 2019-12-07 16:09 - 000787066 _____ C:\WINDOWS\system32\perfh015.dat 2021-01-16 04:22 - 2019-12-07 16:09 - 000152910 _____ C:\WINDOWS\system32\perfc015.dat 2021-01-16 04:22 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF 2021-01-16 04:05 - 2020-11-19 00:41 - 000003510 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-01-16 04:05 - 2020-11-19 00:41 - 000003386 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-01-16 03:55 - 2019-12-07 10:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2021-01-16 03:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2021-01-16 03:32 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Macromed 2021-01-16 03:30 - 2020-01-19 16:35 - 000000000 ____D C:\Program Files (x86)\bookingDesktopApp 2021-01-16 03:17 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2021-01-16 03:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat 2021-01-16 03:01 - 2020-11-18 23:38 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2021-01-16 01:24 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2021-01-16 00:42 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog 2021-01-16 00:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Registration 2021-01-16 00:27 - 2018-08-30 17:36 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Local\PlaceholderTileLogoFolder 2021-01-16 00:26 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate 2021-01-16 00:25 - 2020-11-19 00:43 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-01-16 00:25 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe 2021-01-16 00:25 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT 2021-01-16 00:25 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender 2021-01-16 00:25 - 2018-08-30 16:34 - 000000000 ___RD C:\Users\Pilarkosmax\3D Objects 2021-01-16 00:24 - 2018-10-18 13:19 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat 2021-01-16 00:23 - 2019-10-04 10:16 - 000002311 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-01-16 00:23 - 2019-10-04 10:16 - 000002270 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-01-16 00:20 - 2020-11-18 23:38 - 000308728 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2021-01-16 00:19 - 2020-02-17 12:51 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Decacopy clipboard manager 2021-01-16 00:19 - 2019-11-19 14:21 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Goodgame Empire 2021-01-16 00:19 - 2019-05-28 08:35 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-01-16 00:18 - 2018-01-12 05:50 - 000000000 ____D C:\Program Files\AMD 2021-01-16 00:18 - 2018-01-12 05:49 - 000000000 ____D C:\WINDOWS\system32\RTCOM 2021-01-16 00:18 - 2018-01-12 05:48 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2021-01-16 00:18 - 2018-01-12 05:40 - 000000000 ____D C:\WINDOWS\SysWOW64\sda 2021-01-16 00:17 - 2019-09-30 09:05 - 000000000 ____D C:\AMD 2021-01-16 00:16 - 2020-11-19 00:43 - 000000000 ____D C:\ProgramData\Packages 2021-01-16 00:16 - 2020-11-19 00:39 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2021-01-16 00:16 - 2020-07-10 18:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google 2021-01-16 00:16 - 2020-01-26 13:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zebra Setup Utilities 2021-01-16 00:16 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2021-01-16 00:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2021-01-16 00:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF 2021-01-16 00:16 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2021-01-16 00:16 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-01-16 00:16 - 2019-06-21 10:44 - 000000000 ____D C:\Program Files\UNP 2021-01-16 00:16 - 2019-05-28 08:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-01-16 00:16 - 2019-05-25 22:03 - 000000000 ____D C:\WINDOWS\system32\ihvmanager 2021-01-16 00:16 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2021-01-16 00:16 - 2019-02-14 13:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartPSS 2021-01-16 00:16 - 2018-09-05 09:07 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2021-01-16 00:16 - 2018-09-05 09:07 - 000000000 ____D C:\WINDOWS\system32\1033 2021-01-16 00:16 - 2018-09-05 09:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014 2021-01-16 00:16 - 2018-08-30 18:24 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.5 2021-01-16 00:16 - 2018-08-30 18:03 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xerox Printers 2021-01-16 00:16 - 2018-08-30 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xerox PowerENGAGE 2021-01-16 00:16 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\system32\MsDtc 2021-01-16 00:16 - 2018-01-12 05:48 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2021-01-16 00:16 - 2018-01-12 05:47 - 000000000 ____D C:\Program Files\Synaptics 2021-01-16 00:16 - 2018-01-12 05:46 - 000000000 ____D C:\Program Files\Intel 2021-01-16 00:15 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup 2021-01-16 00:15 - 2019-12-07 10:14 - 000000000 __RHD C:\Users\Public\Libraries 2021-01-16 00:15 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2021-01-16 00:14 - 2018-01-12 05:47 - 000000000 ____D C:\WINDOWS\system32\Intel 2021-01-16 00:13 - 2020-07-28 08:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOFIN 2021-01-16 00:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Resources 2021-01-16 00:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help 2021-01-16 00:13 - 2018-10-18 13:15 - 000000000 ____D C:\WINDOWS\Firmware 2021-01-16 00:13 - 2018-10-07 16:22 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies 2021-01-16 00:13 - 2018-09-05 09:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\InsERT 2021-01-16 00:13 - 2018-09-05 09:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2021-01-16 00:13 - 2018-08-30 17:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xerox Office Printing 2021-01-16 00:13 - 2018-01-12 05:48 - 000000000 ____D C:\Program Files\Realtek 2021-01-16 00:13 - 2018-01-12 05:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell 2021-01-16 00:11 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-01-16 00:11 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection 2021-01-16 00:11 - 2019-12-07 16:12 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr 2021-01-16 00:11 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-01-16 00:11 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp 2021-01-16 00:07 - 2020-11-19 00:41 - 002877952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\et-EE 2021-01-16 00:02 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\system32\winrm 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\system32\WCN 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\system32\slmgr 2021-01-16 00:01 - 2019-12-07 16:09 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2021-01-16 00:01 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing 2021-01-15 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2021-01-15 23:57 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI 2021-01-15 20:36 - 2018-09-05 09:36 - 000000000 ____D C:\ARCHIWUM GT 2021-01-15 20:36 - 2018-09-05 09:27 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Roaming\InsERT GT 2021-01-13 22:39 - 2018-08-30 17:26 - 135062968 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2021-01-13 22:39 - 2018-08-30 17:26 - 000000000 ____D C:\WINDOWS\system32\MRT 2021-01-11 18:50 - 2018-08-30 17:28 - 000001297 _____ C:\Users\Pilarkosmax\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-01-07 15:04 - 2019-02-14 13:49 - 000000000 ____D C:\Users\Public\SmartPSS 2020-12-28 17:03 - 2018-08-30 17:52 - 000000000 ___RD C:\Users\Pilarkosmax\Documents\Scanned Documents 2020-12-21 16:22 - 2019-11-19 16:05 - 000000000 ____D C:\Users\Pilarkosmax\AppData\Local\babl-0.1 ==================== Pliki w katalogu głównym wybranych folderów ======== 2019-06-06 09:51 - 2020-05-19 08:08 - 000000038 _____ () C:\Users\Pilarkosmax\AppData\Roaming\WB.CFG 2019-12-07 10:02 - 2019-12-07 10:02 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\BITEA46.tmp 2019-12-07 10:02 - 2019-12-07 10:02 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\BITEA57.tmp 2020-03-20 16:40 - 2020-03-20 16:40 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\BITF592.tmp 2020-03-20 16:40 - 2020-03-20 16:40 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\BITF5B3.tmp 2020-12-21 16:20 - 2020-12-21 16:20 - 000002820 _____ () C:\Users\Pilarkosmax\AppData\Local\recently-used.xbel 2020-01-26 15:39 - 2020-01-26 15:39 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{0E9975CB-B142-4ED0-9146-B135C7193690} 2020-03-24 22:13 - 2020-03-24 22:13 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{17B2FCB7-968C-417F-9A44-7E96200D1B0F} 2019-12-20 09:12 - 2019-12-20 09:12 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{4CA606AA-C5C9-43F6-B7A4-B715F7B8C8DA} 2020-05-04 20:50 - 2020-05-04 20:50 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{4E8B7879-BCE4-4F69-BA54-6BBB2E91B654} 2020-02-21 21:31 - 2020-02-21 21:31 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{5EF1811F-CDA1-43D5-B87C-4E4159E78E95} 2020-04-12 15:40 - 2020-04-12 15:40 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{63A2639E-D061-4D4C-A9EE-E7A0FDCC4EE6} 2020-05-10 15:40 - 2020-05-10 15:40 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{6636A15F-40D5-4FFA-8750-F178C77D8BD3} 2020-04-11 08:51 - 2020-04-11 08:51 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{D74FAFDF-577A-4F8F-9D99-1B71E3761AFD} 2020-04-06 20:53 - 2020-04-06 20:53 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{E107DAF0-DA9E-47E2-8A29-E5FBF1311FDC} 2019-12-29 17:43 - 2019-12-29 17:43 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{EA4475FF-BAAA-4670-A0C1-464CB69F02C1} 2020-03-11 13:33 - 2020-03-11 13:33 - 000000000 _____ () C:\Users\Pilarkosmax\AppData\Local\{F27DA654-7FB9-410C-9E7E-83880B879818} ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================