Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja:30-10-2015 Uruchomiony przez Michał (administrator) MICHAL-PC (03-10-2015 12:00:01) Uruchomiony z C:\Users\Michał\KOMPUTER_PRZYDANTE\Program FRST do usuwania szkodliwego oprogramowania\FRST-OlderVersion Załadowane profile: Michał (Dostępne profile: Michał) Platform: Microsoft® Windows Vista™ Home Premium Service Pack 1 (X86) Język: Polski (Polska) Internet Explorer Wersja 8 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (Microsoft Corporation) C:\Windows\System32\SLsvc.exe (Realtek Semiconductor) C:\Windows\RTKAUDIOSERVICE.EXE (ATI Technologies Inc.) C:\Windows\System32\Ati2evxx.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSANHost.exe (Sony Corporation) C:\Program Files\Sony\Network Utility\NSUService.exe (Panda Security, S.L.) C:\Program Files\Panda Security\Panda Devices Agent\AgentSvc.exe (pdfforge GmbH) C:\Program Files\PDF Architect 2\creator-ws.exe (Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSUAService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Conexant Systems, Inc.) C:\Windows\System32\drivers\XAudio.exe (Advanced Micro Devices Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jusched.exe (Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe (Panda Security, S.L.) C:\Program Files\Panda Security\Panda Security Protection\PSUAMain.exe (Sony Corporation) C:\Program Files\Sony\VAIO Update 4\VAIOUpdt.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Corporation) C:\Program Files\Windows Media Player\wmpnscfg.exe (ALLPlayer Group Ltd.) C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe (Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe (ATI Technologies Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CCC.exe (Oracle Corporation) C:\Program Files\Common Files\Java\Java Update\jucheck.exe (Microsoft Corporation) C:\Windows\System32\conime.exe () C:\32788R22FWJFW\pev.3XE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [StartCCC] => c:\Program Files\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [61440 2008-01-21] (Advanced Micro Devices, Inc.) HKLM\...\Run: [RtHDVCpl] => C:\Windows\RtHDVCpl.exe [6295552 2008-07-18] (Realtek Semiconductor) HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [335232 2015-02-10] (Oracle Corporation) HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [157480 2015-04-07] (Apple Inc.) HKLM\...\Run: [PSUAMain] => C:\Program Files\Panda Security\Panda Security Protection\PSUAMain.exe [40184 2015-02-27] (Panda Security, S.L.) Winlogon\Notify\VESWinlogon: C:\Windows\system32\VESWinlogon.dll [2008-07-16] (Sony Corporation) HKLM\...\Policies\Explorer: [RestrictRun] 0 HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [5489944 2014-12-12] (Piriform Ltd) HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Run: [WMPNSCFG] => C:\Program Files\Windows Media Player\WMPNSCFG.exe [202240 2008-01-21] (Microsoft Corporation) HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Run: [ALLUpdate] => C:\Program Files\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.) HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Run: [Napisy24Update] => "C:\Program Files\Napisy24\Napisy24Update.exe" "sleep" HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Run: [ALLPlayer WiFi Remote] => C:\Program Files\ALLPlayer Remote\ALLPlayerRemoteControl.exe [5182896 2014-07-23] (ALLPlayer Group Ltd.) HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1 HKU\S-1-5-21-509397886-1678132260-2415722295-1000\...\Policies\Explorer: [RestrictRun] 0 ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => Brak pliku GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{E2006A13-4E1E-4CBC-AAFB-7D24489BD458}: [DhcpNameServer] 192.168.1.1 Internet Explorer: ================== HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA HKU\S-1-5-21-509397886-1678132260-2415722295-1000\SOFTWARE\Policies\Microsoft\Internet Explorer: Ograniczenia <======= UWAGA HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome HKU\S-1-5-21-509397886-1678132260-2415722295-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch HKU\S-1-5-21-509397886-1678132260-2415722295-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=183 HKU\S-1-5-21-509397886-1678132260-2415722295-1000\Software\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://www.sonystyle-europe.com hxxp://www.club-vaio.com/vbc/ebay/index.html hxxp://www.club-vaio.com/vbc SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = BHO: Adobe PDF Reader Link Helper -> {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll [2011-06-06] (Adobe Systems Incorporated) BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2011-06-06] (Adobe Systems Incorporated) BHO: PDF Architect Helper -> {691B33B0-B86E-47F3-81C7-56E4FE3B929C} -> C:\Program Files\PDF Architect 2\creator-ie-helper.dll [2014-10-10] (pdfforge GmbH) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_40\bin\ssv.dll [2015-05-13] (Oracle Corporation) BHO: Adobe PDF Conversion Toolbar Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23] (Adobe Systems Incorporated) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation) BHO: CBrowserHelperObject Object -> {CA6319C0-31B7-401E-A518-A07C3DB8F777} -> C:\Program Files\Google BAE\BAE.dll [2006-06-23] (Your Company Name) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_40\bin\jp2ssv.dll [2015-05-13] (Oracle Corporation) BHO: JQSIEStartDetectorImpl Class -> {E7E6F031-17CE-4C07-BC86-EABFE594F69C} -> C:\Program Files\PZU SA\Klient IPE\jre6\lib\deploy\jqs\ie\jqs_plugin.dll [2012-09-10] (Sun Microsystems, Inc.) Toolbar: HKLM - Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23] (Adobe Systems Incorporated) Toolbar: HKU\S-1-5-21-509397886-1678132260-2415722295-1000 -> Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Acrobat 8.0\Acrobat\AcroIEFavClient.dll [2006-10-23] (Adobe Systems Incorporated) DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab DPF: {A6C87DA6-158A-42A6-BC9E-8842A91DD3F8} hxxps://portal.warta.pl/cc/documentassistant/GuidewireDocumentAssistant.CAB DPF: {CAFEEFAC-0016-0000-0006-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_06-windows-i586.cab Handler: ms-itss - {0A9007C0-4076-11D3-8789-0000F8105754} - c:\Program Files\Common Files\Microsoft Shared\Information Retrieval\msitss.dll [2008-02-20] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\Michał\AppData\Roaming\Mozilla\Firefox\Profiles\pudynw2h.default FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] () FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2014-10-30] () FF Plugin: @divx.com/DivX Player Plugin,version=1.0.0 -> C:\Program Files\DivX\DivX Player\npDivxPlayerPlugin.dll [2007-09-12] (DivX, Inc) FF Plugin: @java.com/DTPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\dtplugin\npDeployJava1.dll [2015-05-13] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.40.2 -> C:\Program Files\Java\jre1.8.0_40\bin\plugin2\npjp2.dll [2015-05-13] (Oracle Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-15] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-03-15] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 10.0\Reader\AIR\nppdf32.dll [2011-06-06] (Adobe Systems Inc.) FF Plugin: PDF Architect 2 -> C:\Program Files\PDF Architect 2\np-previewer.dll [2014-10-10] (pdfforge GmbH) FF Extension: Brak nazwy - C:\Users\Michał\AppData\Roaming\Mozilla\Firefox\Profiles\pudynw2h.default\Extensions\trash [2015-10-01] FF Extension: Better-Fox - C:\Users\Michał\AppData\Roaming\Mozilla\Firefox\Profiles\pudynw2h.default\Extensions\{9ee1c043-893a-4b68-a804-54db7cc4de3b} [2014-12-28] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF Extension: Microsoft .NET Framework Assistant - c:\Windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2014-12-23] FF Extension: Brak nazwy - C:\Users\MichaĹ‚\AppData\Roaming\Mozilla\Firefox\Profiles\pudynw2h.default\extensions\4zffxtbr@www.videodownloadconverter.com [nie znaleziono] FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\itms.js [2015-04-03] Chrome: ======= CHR HomePage: Default -> hxxp://www.gazeta.allplayer.org/ CHR Profile: C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-03-16] CHR Extension: (Dokumenty Google) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-03-16] CHR Extension: (Dysk Google) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-03-16] CHR Extension: (YouTube) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-03-16] CHR Extension: (Google Search) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-03-16] CHR Extension: (Gazeta.pl) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\efhdjkbfpoohkmfaldijcpbnmbpefpkb [2015-10-01] CHR Extension: (Arkusze Google) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-03-16] CHR Extension: (AdBlock) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-10-03] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2014-12-28] CHR Extension: (Gmail) - C:\Users\Michał\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-16] CHR HKLM\...\Chrome\Extension: [efhdjkbfpoohkmfaldijcpbnmbpefpkb] - C:\Program Files\ALLPlayer\AllPlayer.crx [2015-10-01] CHR HKU\S-1-5-21-509397886-1678132260-2415722295-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efhdjkbfpoohkmfaldijcpbnmbpefpkb] - C:\Program Files\ALLPlayer\AllPlayer.crx [2015-10-01] Opera: ======= OPR StartupUrls: "hxxp://www.gazeta.pl/0,0.html?p=183" ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeActiveFileMonitor6.0; c:\Program Files\Adobe\Photoshop Elements 6.0\PhotoshopElementsFileAgent.exe [124832 2007-09-11] () S4 BrYNSvc; C:\Program Files\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [Brak podpisu cyfrowego] R2 EvtEng; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [815104 2008-05-01] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 FLEXnet Licensing Service; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [654848 2008-08-08] (Macrovision Europe Ltd.) [Brak podpisu cyfrowego] S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1080120 2015-04-14] (Malwarebytes Corporation) S3 MSCSPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe [53248 2008-05-20] (Sony Corporation) [Brak podpisu cyfrowego] R2 NanoServiceMain; C:\Program Files\Panda Security\Panda Security Protection\PSANHost.exe [142584 2015-02-27] (Panda Security, S.L.) R2 NSUService; C:\Program Files\Sony\Network Utility\NSUService.exe [299008 2008-07-31] (Sony Corporation) [Brak podpisu cyfrowego] S3 PACSPTISVR; C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe [53248 2008-05-20] (Sony Corporation) [Brak podpisu cyfrowego] R2 PandaAgent; C:\Program Files\Panda Security\Panda Devices Agent\AgentSvc.exe [66808 2014-10-09] (Panda Security, S.L.) S3 PDF Architect 2; C:\Program Files\PDF Architect 2\ws.exe [1771560 2014-10-10] (pdfforge GmbH) R2 PDF Architect 2 Creator; C:\Program Files\PDF Architect 2\creator-ws.exe [738856 2014-10-10] (pdfforge GmbH) S3 pdfforge CrashHandler; C:\Program Files\PDF Architect 2\crash-handler-ws.exe [861736 2014-10-10] (pdfforge GmbH) R2 PSUAService; C:\Program Files\Panda Security\Panda Security Protection\PSUAService.exe [38136 2015-02-27] (Panda Security, S.L.) R2 RegSrvc; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [466944 2008-05-01] (Intel(R) Corporation) [Brak podpisu cyfrowego] S4 SOHCImp; C:\Program Files\Sony\VAIO Media plus\SOHCImp.exe [103712 2008-05-21] (Sony Corporation) S4 SOHDms; C:\Program Files\Sony\VAIO Media plus\SOHDms.exe [353568 2008-05-21] (Sony Corporation) S4 SOHDs; C:\Program Files\Sony\VAIO Media plus\SOHDs.exe [62752 2008-05-21] (Sony Corporation) S4 SPTISRV; C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe [77824 2008-05-20] (Sony Corporation) [Brak podpisu cyfrowego] S4 VAIO Entertainment TV Device Arbitration Service; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzHardwareResourceManager\VzHardwareResourceManager\VzHardwareResourceManager.exe [73728 2008-05-23] (Sony Corporation) [Brak podpisu cyfrowego] S4 VAIO Event Service; C:\Program Files\Sony\VAIO Event Service\VESMgr.exe [182112 2008-07-16] (Sony Corporation) S4 VAIO Power Management; C:\Program Files\Sony\VAIO Power Management\SPMService.exe [411488 2008-06-20] (Sony Corporation) S4 VCFw; C:\Program Files\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe [415744 2008-06-20] (Sony Corporation) [Brak podpisu cyfrowego] S4 VcmIAlzMgr; C:\Program Files\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe [337184 2008-06-12] (Sony Corporation) S4 Vcsw; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VCSW\VCSW.exe [279848 2008-06-19] (Sony Corporation) S4 VzCdbSvc; C:\Program Files\Common Files\Sony Shared\VAIO Entertainment Platform\VzCdb\VzCdbSvc.exe [192512 2008-05-23] (Sony Corporation) [Brak podpisu cyfrowego] S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [272952 2008-01-21] (Microsoft Corporation) S3 WMZuneComm; C:\Program Files\WMZuneComm.exe [268512 2011-08-05] (Microsoft Corporation) S3 ZuneNetworkSvc; C:\Program Files\ZuneNss.exe [6363872 2011-08-05] (Microsoft Corporation) S3 ZuneWlanCfgSvc; C:\Program Files\ZuneWlanCfgSvc.exe [444640 2011-08-05] (Microsoft Corporation) S2 HWDeviceService.exe; C:\ProgramData\DatacardService\HWDeviceService.exe -/service [X] ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 akshasp; C:\Windows\System32\DRIVERS\akshasp.sys [327168 2006-11-22] (Aladdin Knowledge Systems Ltd.) S3 aksusb; C:\Windows\System32\DRIVERS\aksusb.sys [100096 2006-11-22] (Aladdin Knowledge Systems Ltd.) R2 Hardlock; C:\Windows\system32\drivers\hardlock.sys [693760 2006-11-22] (Aladdin Knowledge Systems Ltd.) R2 Haspnt; C:\Windows\system32\drivers\Haspnt.sys [47616 2014-12-31] (Aladdin Knowledge Systems) [Brak podpisu cyfrowego] R3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [23256 2015-04-14] (Malwarebytes Corporation) S3 MBAMSwissArmy; C:\Windows\system32\drivers\MBAMSwissArmy.sys [119512 2015-08-25] (Malwarebytes Corporation) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [51928 2015-04-14] (Malwarebytes Corporation) R1 NNSALPC; C:\Windows\System32\DRIVERS\NNSAlpc.sys [86800 2015-02-09] (Panda Security, S.L.) R1 NNSHTTP; C:\Windows\System32\DRIVERS\NNSHttp.sys [202128 2015-02-09] (Panda Security, S.L.) R1 NNSHTTPS; C:\Windows\System32\DRIVERS\NNSHttps.sys [109584 2015-02-09] (Panda Security, S.L.) R1 NNSIDS; C:\Windows\System32\DRIVERS\NNSIds.sys [126480 2015-02-09] (Panda Security, S.L.) R1 NNSNAHSL; C:\Windows\System32\DRIVERS\NNSNAHSL.sys [41744 2014-12-31] (Panda Security, S.L.) R1 NNSPICC; C:\Windows\System32\DRIVERS\NNSPicc.sys [99856 2015-02-09] (Panda Security, S.L.) R1 NNSPIHSW; C:\Windows\System32\DRIVERS\NNSPihsw.sys [61712 2015-02-09] (Panda Security, S.L.) R1 NNSPOP3; C:\Windows\System32\DRIVERS\NNSPop3.sys [120592 2015-02-09] (Panda Security, S.L.) R1 NNSPROT; C:\Windows\System32\DRIVERS\NNSProt.sys [281232 2015-02-09] (Panda Security, S.L.) R1 NNSPRV; C:\Windows\System32\DRIVERS\NNSPrv.sys [205456 2015-02-09] (Panda Security, S.L.) R1 NNSSMTP; C:\Windows\System32\DRIVERS\NNSSmtp.sys [108432 2015-02-09] (Panda Security, S.L.) R1 NNSSTRM; C:\Windows\System32\DRIVERS\NNSStrm.sys [239888 2015-02-09] (Panda Security, S.L.) R1 NNSTLSC; C:\Windows\System32\DRIVERS\NNSTlsc.sys [94864 2015-02-09] (Panda Security, S.L.) R2 PSINAflt; C:\Windows\System32\DRIVERS\PSINAflt.sys [140048 2015-04-21] (Panda Security, S.L.) R2 PSINFile; C:\Windows\System32\DRIVERS\PSINFile.sys [105232 2015-02-25] (Panda Security, S.L.) R1 PSINKNC; C:\Windows\System32\DRIVERS\psinknc.sys [168208 2015-02-25] (Panda Security, S.L.) R2 PSINProc; C:\Windows\System32\DRIVERS\PSINProc.sys [113936 2015-02-25] (Panda Security, S.L.) R2 PSINProt; C:\Windows\System32\DRIVERS\PSINProt.sys [124688 2015-02-25] (Panda Security, S.L.) R2 PSINReg; C:\Windows\System32\DRIVERS\PSINReg.sys [100624 2015-02-25] (Panda Security, S.L.) R3 PSKMAD; C:\Windows\System32\DRIVERS\PSKMAD.sys [50320 2015-01-29] (Panda Security, S.L.) R3 RTHDMIAzAudService; C:\Windows\System32\drivers\RtHDMIV.sys [143328 2008-06-28] (Realtek Semiconductor Corp.) R0 sptd; C:\Windows\System32\Drivers\sptd.sys [329384 2015-04-19] (Duplex Secure Ltd.) U5 AppMgmt; C:\Windows\system32\svchost.exe [21504 2008-01-21] (Microsoft Corporation) S3 catchme; \??\C:\Users\MICHA~1\AppData\Local\Temp\catchme.sys [X] S3 eapihdrv; \??\C:\Users\MICHA~1\AppData\Local\Temp\ehdrv.sys [X] U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [116736 2010-08-27] (Huawei Technologies Co., Ltd.) U5 ew_hwusbdev; C:\Windows\System32\Drivers\ew_hwusbdev.sys [102784 2010-07-27] (Huawei Technologies Co., Ltd.) S3 IpInIp; system32\DRIVERS\ipinip.sys [X] S3 NwlnkFlt; system32\DRIVERS\nwlnkflt.sys [X] S3 NwlnkFwd; system32\DRIVERS\nwlnkfwd.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-10-03 11:46 - 2015-10-03 11:47 - 00038396 _____ C:\Users\Michał\Downloads\Addition.txt 2015-10-03 11:44 - 2015-10-03 11:47 - 00043297 _____ C:\Users\Michał\Downloads\FRST.txt 2015-10-03 11:44 - 2015-10-03 11:44 - 01697280 _____ (Farbar) C:\Users\Michał\Downloads\FRST.exe 2015-10-03 11:26 - 2015-10-03 11:41 - 00000000 ____D C:\32788R22FWJFW 2015-10-03 11:13 - 2015-10-03 11:13 - 01670656 _____ C:\Users\Michał\Downloads\AdwCleaner.pl 5.009.exe 2015-10-03 10:57 - 2015-01-29 19:21 - 00050320 _____ (Panda Security, S.L.) C:\Windows\system32\Drivers\PSKMAD.sys 2015-10-02 13:20 - 2015-10-02 13:21 - 28036515 _____ C:\Users\Michał\Downloads\Lista wyposażenia_protokół.zip 2015-10-02 13:16 - 2015-10-02 13:16 - 20193439 _____ C:\Users\Michał\Downloads\dokumenty.zip 2015-10-02 13:14 - 2015-10-02 13:15 - 30861975 _____ C:\Users\Michał\Downloads\zdjęcia z 28.09 cz 1.zip 2015-10-02 13:05 - 2015-10-02 13:06 - 32571747 _____ C:\Users\Michał\Downloads\dokumentacja.zip 2015-10-01 13:50 - 2015-10-01 13:50 - 00001831 _____ C:\Users\Michał\AppData\Local\recently-used.xbel 2015-10-01 13:37 - 2015-10-01 13:37 - 12289453 _____ C:\Users\Michał\Downloads\FW 2156120.eml 2015-10-01 12:17 - 2015-10-01 12:17 - 00000930 _____ C:\Users\Public\Desktop\ALLPlayer Pilot.lnk 2015-10-01 12:17 - 2015-10-01 12:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer Pilot 2015-10-01 12:17 - 2015-10-01 12:17 - 00000000 ____D C:\ProgramData\ALLPlayerRemote 2015-10-01 12:17 - 2015-10-01 12:17 - 00000000 ____D C:\Program Files\ALLPlayer Remote 2015-10-01 12:16 - 2015-10-01 12:16 - 00001710 _____ C:\Users\Michał\Desktop\ALLPlayer.Radio.lnk 2015-10-01 12:16 - 2015-10-01 12:16 - 00001702 _____ C:\Users\Michał\Desktop\ALLPlayer.VOD.lnk 2015-10-01 12:16 - 2015-10-01 12:16 - 00000816 _____ C:\Users\Michał\Desktop\ALLPlayer.lnk 2015-10-01 12:16 - 2015-10-01 12:16 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer 2015-10-01 12:16 - 2013-11-15 21:02 - 02023808 _____ (ALLPlayer Group Ltd.) C:\Users\Michał\Desktop\CatzillaDownloader.exe 2015-10-01 12:16 - 2013-04-05 21:26 - 02106368 _____ C:\Windows\system32\ac3filter.ax 2015-10-01 12:16 - 2013-04-05 21:26 - 00276992 _____ (IntelleSoft) C:\Windows\system32\BugTrap.dll 2015-10-01 12:16 - 2011-06-02 02:10 - 00644608 _____ C:\Windows\system32\xvidcore.dll 2015-10-01 12:16 - 2007-10-07 15:36 - 00258048 _____ C:\Windows\system32\libFLAC.dll 2015-10-01 12:15 - 2015-10-01 12:16 - 00000000 ____D C:\ProgramData\ALLPlayer 2015-10-01 12:15 - 2015-10-01 12:16 - 00000000 ____D C:\Program Files\ALLPlayer 2015-10-01 12:15 - 2015-10-01 12:15 - 43549840 _____ (ALLPlayer ) C:\Users\Michał\Downloads\ALLPlayerPL [1].exe 2015-10-01 12:13 - 2015-10-01 12:13 - 01309074 _____ C:\Users\Michał\Downloads\installer (1).zip 2015-10-01 12:11 - 2015-10-01 12:11 - 01309074 _____ C:\Users\Michał\Downloads\installer.zip 2015-10-01 12:04 - 2015-10-01 12:05 - 08223344 _____ (Jacek Pazera ) C:\Users\Michał\Downloads\Pazera_Free_3GP_to_AVI_Converter.exe 2015-09-30 15:07 - 2015-09-30 15:07 - 16901071 _____ C:\Users\Michał\Downloads\1053-15-33-14.zip 2015-09-30 12:25 - 2015-09-30 12:25 - 00350208 _____ C:\Users\Michał\Downloads\Na_szczescie (1) (1).pps 2015-09-27 14:42 - 2015-09-27 14:42 - 00124849 _____ C:\Users\Michał\Downloads\DDL Polanka Przedmiar robót z koszt. nakładczym.xml 2015-09-25 16:44 - 2015-09-25 16:49 - 00000000 ____D C:\Users\Michał\AppData\Local\DICOMViewer 2015-09-24 00:10 - 2015-09-24 00:10 - 00350208 _____ C:\Users\Michał\Downloads\Na_szczescie (1).pps 2015-09-23 11:05 - 2015-09-23 11:05 - 00013494 _____ C:\Users\Michał\Documents\Uratowany dokument 3.txt 2015-09-11 11:21 - 2015-09-11 11:21 - 00000000 ____D C:\Program Files\ESET 2015-09-11 09:07 - 2015-09-11 09:07 - 00000782 _____ C:\Users\Michał\Desktop\SetFileDate.lnk 2015-09-11 09:07 - 2015-09-11 09:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SetFileDate 2015-09-11 09:07 - 2015-09-11 09:07 - 00000000 ____D C:\Program Files\SetFileDate 2015-09-05 19:25 - 2015-09-05 19:25 - 00000857 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk 2015-09-05 19:25 - 2015-09-05 19:25 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2015-09-05 19:25 - 2015-09-05 19:25 - 00000000 ____D C:\Program Files\CPUID ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-10-03 12:00 - 2015-03-14 23:09 - 00000000 ____D C:\FRST 2015-10-03 11:32 - 2015-02-01 14:19 - 00000000 ____D C:\Users\Michał\KOMPUTER_PRZYDANTE 2015-10-03 11:21 - 2014-12-23 23:54 - 01691258 _____ C:\Windows\WindowsUpdate.log 2015-10-03 11:18 - 2006-11-02 15:01 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2015-10-03 11:18 - 2006-11-02 14:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-1.C7483456-A289-439d-8115-601632D005A0 2015-10-03 11:18 - 2006-11-02 14:47 - 00003616 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-2P-0.C7483456-A289-439d-8115-601632D005A0 2015-10-03 11:16 - 2008-08-08 05:43 - 00000012 _____ C:\Windows\bthservsdp.dat 2015-10-03 11:16 - 2006-11-02 15:01 - 00032562 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2015-10-03 11:15 - 2015-03-04 22:55 - 00000000 ____D C:\AdwCleaner 2015-10-02 09:57 - 2015-03-05 11:07 - 00000000 ____D C:\Users\Michał\AppData\Roaming\XnView 2015-10-02 09:56 - 2015-01-11 21:57 - 00000000 ____D C:\Program Files\Advanced Renamer 2015-10-02 09:55 - 2015-03-15 20:55 - 00001977 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-10-02 09:55 - 2014-12-23 21:58 - 00000846 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk 2015-10-02 09:55 - 2014-12-23 16:28 - 00000949 _____ C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2015-10-01 15:52 - 2015-01-19 14:26 - 00002605 _____ C:\Users\Michał\Desktop\Microsoft Excel 2010.lnk 2015-10-01 13:50 - 2015-03-23 19:39 - 00000000 ____D C:\Users\Michał\AppData\Local\gtk-2.0 2015-10-01 13:50 - 2015-03-23 00:34 - 00000000 ____D C:\Users\Michał\.gimp-2.8 2015-10-01 13:43 - 2015-01-19 14:26 - 00002611 _____ C:\Users\Michał\Desktop\Microsoft Word 2010.lnk 2015-10-01 13:20 - 2015-01-01 18:58 - 00023040 _____ C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-10-01 12:54 - 2008-08-08 05:31 - 00714160 _____ C:\Windows\system32\perfh015.dat 2015-10-01 12:54 - 2008-08-08 05:31 - 00151000 _____ C:\Windows\system32\perfc015.dat 2015-10-01 12:54 - 2006-11-02 12:33 - 01613794 _____ C:\Windows\system32\PerfStringBackup.INI 2015-09-18 08:12 - 2014-12-23 21:58 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service 2015-09-18 08:12 - 2014-12-23 21:58 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-09-17 09:35 - 2015-01-02 21:00 - 00000000 ____D C:\Users\Michał\Documents\Pliki programu Outlook 2015-09-15 08:56 - 2015-07-23 09:21 - 00000098 _____ C:\Users\Michał\.sls_ipe.cfg 2015-09-11 14:23 - 2015-03-05 10:52 - 00000000 ____D C:\Users\Michał\Documents\KOMPUTER_PRZYDANTE 2015-09-04 10:54 - 2015-07-24 18:26 - 00000000 ____D C:\ogledziny ==================== Pliki w katalogu głównym wybranych folderów ======= 2011-06-06 14:50 - 2011-06-06 14:50 - 0000054 _____ () C:\Program Files\Arrow.gif 2015-03-12 14:57 - 2015-03-12 15:06 - 50063360 _____ () C:\Program Files\GUTC3CC.tmp 2011-08-05 13:19 - 2011-08-05 13:19 - 0222720 _____ (Fraunhofer Institut Integrierte Schaltungen IIS) C:\Program Files\l3codecp.acm 2011-06-21 19:33 - 2011-06-21 19:33 - 9532452 _____ () C:\Program Files\Meiryoz.ttc 2011-06-06 14:48 - 2011-06-06 14:48 - 0001857 _____ () C:\Program Files\Microsoft.VC90.CRT.manifest 2007-08-27 16:56 - 2007-08-27 16:56 - 1089440 _____ (Microsoft Corporation) C:\Program Files\msidcrl40.dll 2011-06-06 14:48 - 2011-06-06 14:48 - 0225280 _____ (Microsoft Corporation) C:\Program Files\msvcm90.dll 2011-06-06 14:48 - 2011-06-06 14:48 - 0572928 _____ (Microsoft Corporation) C:\Program Files\msvcp90.dll 2011-06-06 14:48 - 2011-06-06 14:48 - 0655872 _____ (Microsoft Corporation) C:\Program Files\msvcr90.dll 2011-06-06 14:50 - 2011-06-06 14:50 - 0122458 _____ () C:\Program Files\quickplaymap.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121358 _____ () C:\Program Files\quickplaymap_chs.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121162 _____ () C:\Program Files\quickplaymap_cht.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122068 _____ () C:\Program Files\quickplaymap_csy.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121489 _____ () C:\Program Files\quickplaymap_dan.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121837 _____ () C:\Program Files\quickplaymap_deu.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122620 _____ () C:\Program Files\quickplaymap_ell.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121952 _____ () C:\Program Files\quickplaymap_esp.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121257 _____ () C:\Program Files\quickplaymap_fin.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121403 _____ () C:\Program Files\quickplaymap_fra.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121834 _____ () C:\Program Files\quickplaymap_hun.png 2011-06-21 19:33 - 2011-06-21 19:33 - 0122210 _____ () C:\Program Files\quickplaymap_ind.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121621 _____ () C:\Program Files\quickplaymap_ita.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122060 _____ () C:\Program Files\quickplaymap_jpn.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0120995 _____ () C:\Program Files\quickplaymap_kor.png 2011-06-21 19:33 - 2011-06-21 19:33 - 0122484 _____ () C:\Program Files\quickplaymap_msl.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122053 _____ () C:\Program Files\quickplaymap_nld.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121155 _____ () C:\Program Files\quickplaymap_nor.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122414 _____ () C:\Program Files\quickplaymap_plk.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122134 _____ () C:\Program Files\quickplaymap_ptb.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121635 _____ () C:\Program Files\quickplaymap_ptg.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0122790 _____ () C:\Program Files\quickplaymap_rus.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0121558 _____ () C:\Program Files\quickplaymap_sve.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0251333 _____ () C:\Program Files\softwaremap.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0095912 _____ () C:\Program Files\softwaremap_chs.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096751 _____ () C:\Program Files\softwaremap_cht.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0097298 _____ () C:\Program Files\softwaremap_csy.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096323 _____ () C:\Program Files\softwaremap_dan.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0097580 _____ () C:\Program Files\softwaremap_deu.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0100499 _____ () C:\Program Files\softwaremap_ell.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0097782 _____ () C:\Program Files\softwaremap_esp.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096441 _____ () C:\Program Files\softwaremap_fin.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0097435 _____ () C:\Program Files\softwaremap_fra.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096737 _____ () C:\Program Files\softwaremap_hun.png 2011-06-21 19:33 - 2011-06-21 19:33 - 0092713 _____ () C:\Program Files\softwaremap_ind.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0098431 _____ () C:\Program Files\softwaremap_ita.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096603 _____ () C:\Program Files\softwaremap_jpn.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0093267 _____ () C:\Program Files\softwaremap_kor.png 2011-06-21 19:33 - 2011-06-21 19:33 - 0093248 _____ () C:\Program Files\softwaremap_msl.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0096513 _____ () C:\Program Files\softwaremap_nld.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0094750 _____ () C:\Program Files\softwaremap_nor.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0098663 _____ () C:\Program Files\softwaremap_plk.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0098102 _____ () C:\Program Files\softwaremap_ptb.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0097716 _____ () C:\Program Files\softwaremap_ptg.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0099979 _____ () C:\Program Files\softwaremap_rus.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0094597 _____ () C:\Program Files\softwaremap_sve.png 2011-06-06 14:50 - 2011-06-06 14:50 - 0001922 _____ () C:\Program Files\TopBar.gif 2011-08-05 13:34 - 2011-08-05 13:34 - 1534688 _____ (Microsoft Corporation) C:\Program Files\UIX.dll 2011-08-05 13:34 - 2011-08-05 13:34 - 0645856 _____ (Microsoft Corporation) C:\Program Files\UIX.renderapi.dll 2011-08-05 13:34 - 2011-08-05 13:34 - 1293024 _____ (Microsoft Corporation) C:\Program Files\UIXcontrols.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 1359584 _____ (Microsoft Corporation) C:\Program Files\UIXrender.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0030944 _____ (Microsoft Corporation) C:\Program Files\UIXsup.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0268512 _____ (Microsoft Corporation) C:\Program Files\WMZuneComm.exe 2011-08-05 13:30 - 2011-08-05 13:30 - 0017120 _____ (Microsoft Corporation) C:\Program Files\WMZuneCommProxyStub.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0019680 _____ (Microsoft Corporation) C:\Program Files\WMZuneDTPTDNS.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0026336 _____ (Microsoft Corporation) C:\Program Files\WMZuneTCP2UDP.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0207072 _____ (Microsoft Corporation) C:\Program Files\Zune.exe 2011-06-06 14:50 - 2011-06-06 14:50 - 0000659 _____ () C:\Program Files\Zune.exe.config 2011-08-05 13:29 - 2011-08-05 13:29 - 0110304 _____ (Microsoft Corporation) C:\Program Files\ZuneAACDec.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0050912 _____ (Microsoft Corporation) C:\Program Files\ZuneCfg.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0044256 _____ (Microsoft Corporation) C:\Program Files\ZuneConfig.exe 2011-08-05 13:29 - 2011-08-05 13:29 - 1040096 _____ (Microsoft Corporation) C:\Program Files\ZuneCore.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0173280 _____ (Microsoft Corporation) C:\Program Files\ZuneDB.dll 2011-08-05 13:34 - 2011-08-05 13:34 - 1072864 _____ (Microsoft Corporation) C:\Program Files\ZuneDBApi.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0056544 _____ (Microsoft Corporation) C:\Program Files\ZuneDXVA2.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0111840 _____ (Microsoft Corporation) C:\Program Files\ZuneEffects.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0036064 _____ (Microsoft Corporation) C:\Program Files\ZuneEnc.exe 2011-08-05 13:29 - 2011-08-05 13:29 - 1716960 _____ (Microsoft Corporation) C:\Program Files\ZuneEncEng.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0298720 _____ (Microsoft Corporation) C:\Program Files\ZuneEvr.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 1001184 _____ (Microsoft Corporation) C:\Program Files\ZuneH264Dec.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0176864 _____ (Microsoft Corporation) C:\Program Files\ZuneHost.exe 2011-08-05 13:29 - 2011-08-05 13:29 - 0159456 _____ (Microsoft Corporation) C:\Program Files\ZuneLauncher.exe 2011-06-06 14:50 - 2011-06-06 14:50 - 0000988 _____ () C:\Program Files\ZuneLogo.gif 2011-08-05 13:29 - 2011-08-05 13:29 - 1096928 _____ (Microsoft Corporation) C:\Program Files\ZuneMarketplaceResources.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0627424 _____ (Microsoft Corporation) C:\Program Files\ZuneMBR.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0816864 _____ (Microsoft Corporation) C:\Program Files\ZuneMde.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0628960 _____ (Microsoft Corporation) C:\Program Files\ZUNEMP4SDECD.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 7459552 _____ (Microsoft Corporation) C:\Program Files\ZuneNativeLib.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 6363872 _____ (Microsoft Corporation) C:\Program Files\ZuneNss.exe 2011-08-05 13:29 - 2011-08-05 13:29 - 0268000 _____ (Microsoft Corporation) C:\Program Files\ZuneNssci.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0121568 _____ (Microsoft Corporation) C:\Program Files\ZunePresenter.dll 2011-08-05 13:29 - 2011-08-05 13:29 - 0018656 _____ (Microsoft Corporation) C:\Program Files\ZunePS.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0679648 _____ (Microsoft Corporation) C:\Program Files\ZuneQP.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 3889376 _____ (Microsoft Corporation) C:\Program Files\ZuneResources.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0123104 _____ (Microsoft Corporation) C:\Program Files\ZuneSA.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0376544 _____ (Microsoft Corporation) C:\Program Files\ZuneSE.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0850144 _____ (Microsoft Corporation) C:\Program Files\ZuneService.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 3945696 _____ (Microsoft Corporation) C:\Program Files\ZuneSetup.exe 2011-08-05 13:30 - 2011-08-05 13:30 - 0609504 _____ (Microsoft Corporation) C:\Program Files\ZuneSH.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0016608 _____ (Microsoft Corporation) C:\Program Files\ZuneShare.exe 2011-08-05 13:34 - 2011-08-05 13:34 - 1424096 _____ (Microsoft Corporation) C:\Program Files\ZuneShell.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0059616 _____ (Microsoft Corporation) C:\Program Files\ZuneShellExt.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 16921312 _____ (Microsoft Corporation) C:\Program Files\ZuneShellResources.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0406240 _____ (Microsoft Corporation) C:\Program Files\ZuneSP.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0301280 _____ (Microsoft Corporation) C:\Program Files\ZuneSrcWrp.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0084704 _____ (Microsoft Corporation) C:\Program Files\ZuneTaskbar.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0444640 _____ (Microsoft Corporation) C:\Program Files\ZuneWlanCfgSvc.exe 2011-08-05 13:30 - 2011-08-05 13:30 - 0653024 _____ (Microsoft Corporation) C:\Program Files\ZuneWmdu.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0009440 _____ (Microsoft Corporation) C:\Program Files\ZuneWmduResources.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0126176 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Classic.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0131808 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Library.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0157408 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.Mobile.dll 2011-08-05 13:30 - 2011-08-05 13:30 - 0130784 _____ (Microsoft Corporation) C:\Program Files\ZuneZMDB.ZuneHD.dll 2014-12-23 16:28 - 2015-08-19 18:52 - 0002032 _____ () C:\Users\Michał\AppData\Local\d3d9caps.dat 2015-01-01 18:58 - 2015-10-01 13:20 - 0023040 _____ () C:\Users\Michał\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2015-10-01 13:50 - 2015-10-01 13:50 - 0001831 _____ () C:\Users\Michał\AppData\Local\recently-used.xbel 2014-12-31 14:29 - 2014-12-31 14:29 - 0098304 _____ () C:\Users\Michał\AppData\Local\Tempbazacen20141231_132957_464.mdb 2015-01-17 12:20 - 2015-01-17 12:20 - 0000057 _____ () C:\ProgramData\Ament.ini Niektóre pliki w TEMP: ==================== C:\Users\Michał\AppData\Local\temp\Napisy24.exe C:\Users\Michał\AppData\Local\temp\sqlite3.dll ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-10-03 11:24 ==================== Koniec FRST.txt ============================