Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja:09-12-2015 Uruchomiony przez agula adomus (administrator) AGULA (10-12-2015 13:29:49) Uruchomiony z C:\Users\agula adomus\Downloads Załadowane profile: agula adomus (Dostępne profile: agula adomus) Platform: Microsoft Windows 10 Home Wersja 1511 (X86) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Edge) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Softex Inc.) C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe (Intel Corporation) C:\Windows\System32\SET65.tmp (Intel Corporation) C:\Windows\System32\SETB4A.tmp (Microsoft Corporation) C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe (Microsoft Corporation) C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe (Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP System Event\HPWMISVC.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfemms.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\IIS\RtkI2SAudioService.exe () C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\IIS\RtI2SBgProc.exe (McAfee, Inc.) C:\Windows\System32\mfevtps.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\McAfee\msc\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\systemcore\mfefire.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v3.0\WPF\PresentationFontCache.exe () C:\Program Files\WindowsApps\Microsoft.Messaging_1.11.19004.0_x86__8wekyb3d8bbwe\SkypeHost.exe (Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe (Intel Corporation) C:\Windows\System32\SET390.tmp (Intel Corporation) C:\Windows\System32\SETCF6.tmp (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDOSD.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe () C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe (Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\CSP\1.6.1180.0\McCSPServiceHost.exe (Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Framework\HPSA_Service.exe (Intel Corporation) C:\Program Files\Intel\TXE Components\DAL\jhi_service.exe (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_2015.23.23.0_x86__8wekyb3d8bbwe\WinStore.Mobile.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\platform\McUICnt.exe (McAfee, Inc.) C:\Program Files\McAfee\virusscan\mcods.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\NetworkUXBroker.exe (Microsoft Corporation) C:\Windows\System32\AtBroker.exe (Skype Technologies S.A.) C:\Program Files\Skype\Phone\Skype.exe (tsvr.com) C:\Users\agula adomus\AppData\Roaming\TSv\TSvr.exe (TFuns LIMITED) C:\ProgramData\JWdMJ\WdMan.exe (TODO: <公司名>) C:\Program Files\SFK\SSFK.exe (TODO: <公司名>) C:\Program Files\SFK\SSFK.exe (Taiwan Shui Mu Chih Ching Technology Limited) C:\Program Files\Picexa\picexasvc.exe () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_15.1208.10480.0_x86__8wekyb3d8bbwe\Microsoft.Photos.exe () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1512.34020.0_x86__8wekyb3d8bbwe\Calculator.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2277376 2015-09-20] (ELAN Microelectronics Corp.) HKLM\...\Run: [VolumeControl] => C:\Program Files\Elantech\VolumeControl.exe [3285808 2015-09-20] (ELAN MICROELECTRONICS CORP.) HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [83048 2015-05-15] (Intel Corporation) HKLM\...\Run: [RtkNGUI] => C:\Program Files\Realtek\Audio\AP\RtkNGUI.exe [8520192 2015-04-23] (Realtek Semiconductor) HKU\S-1-5-21-782002170-3124842165-2239911744-1001\...\Run: [Skype] => C:\Program Files\Skype\Phone\Skype.exe [50264704 2015-11-05] (Skype Technologies S.A.) HKU\S-1-5-21-782002170-3124842165-2239911744-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner.exe [6602152 2015-11-16] (Piriform Ltd) HKU\S-1-5-21-782002170-3124842165-2239911744-1001\...\MountPoints2: {1c282e4d-93c1-11e5-973a-28c2dd93207c} - "D:\LaunchU3.exe" -a HKU\S-1-5-21-782002170-3124842165-2239911744-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\GPhotos.scr [4587520 2015-10-13] (Google Inc.) GroupPolicy: Ograniczenia - Chrome <======= UWAGA CHR HKLM\SOFTWARE\Policies\Google: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Winsock: Catalog5 08 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{bf81a9e4-2bf7-4513-bd33-1d99df2c959e}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06&q={searchTerms} HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06 HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06&q={searchTerms} HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp13.msn.com HKU\S-1-5-21-782002170-3124842165-2239911744-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.yoursites123.com/?type=hp&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06 SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06&q={searchTerms} SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06&q={searchTerms} SearchScopes: HKLM -> {6F7FEF4A-63A1-484C-849E-38B1D296233C} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} SearchScopes: HKU\S-1-5-21-782002170-3124842165-2239911744-1001 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.yoursites123.com/web/?type=ds&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06&q={searchTerms} SearchScopes: HKU\S-1-5-21-782002170-3124842165-2239911744-1001 -> {6F7FEF4A-63A1-484C-849E-38B1D296233C} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie=UTF-8&tag=hp-uk3-vsb-21&link%5Fcode=qs&index=aps&field-keywords={searchTerms} BHO: Adobe PDF Link Helper -> {18DF081C-E8AD-4283-A596-FA578C2EBDC3} -> C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2012-09-23] (Adobe Systems Incorporated) BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard) Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2015-11-15] (Microsoft Corporation) Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2015-11-15] (Microsoft Corporation) Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2015-11-15] (Microsoft Corporation) Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2015-11-15] (Microsoft Corporation) Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-10-12] (Microsoft Corporation) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\msc\McSnIePl.dll [2015-09-28] (McAfee, Inc.) StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.yoursites123.com/?type=sc&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06 Edge: ====== Edge HomeButtonPage: HKU\S-1-5-21-782002170-3124842165-2239911744-1001 -> hxxp://www.yoursites123.com/?type=hp&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06 FireFox: ======== FF ProfilePath: C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default FF NewTab: hxxp://www.istartsurf.com/newtab/?type=nt&ts=1447617483&z=7b81f392d8ff9b49cff27beg9zdzcm5q3g2m8g4b2z&from=cor&uid=3219913727_198264_3036AA06 FF DefaultSearchEngine: istartsurf FF SelectedSearchEngine: istartsurf FF Homepage: onet.pl FF Plugin: @adobe.com/ShockwavePlayer -> C:\windows\system32\Adobe\Director\np32dsw_1217157.dll [2015-02-05] (Adobe Systems, Inc.) FF Plugin: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.) FF Plugin: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files\Intel\TXE Components\IPT\npIntelWebAPIIPT.dll [2013-07-12] (Intel Corporation) FF Plugin: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files\Intel\TXE Components\IPT\npIntelWebAPIUpdater.dll [2013-07-12] (Intel Corporation) FF Plugin: @mcafee.com/MSC,version=10 -> C:\PROGRA~1\McAfee\msc\npMcSnFFPl.dll [2015-09-28] () FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2015-11-15] (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-10] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.1\npGoogleUpdate3.dll [2015-12-10] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.) FF SearchPlugin: C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\searchplugins\istartsurf.xml [2015-11-16] FF Extension: Default SearchProtected - C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\extensions\defsearchp@gmail.com [2015-11-15] [Brak podpisu cyfrowego] FF Extension: Brak nazwy - C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\extensions\deskCutv2@gmail.com [nie znaleziono] FF Extension: Discovery App - C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\Extensions\{840511ae-cad8-4e4c-adba-9eacc5ed5ed4}.xpi [2015-11-15] [Brak podpisu cyfrowego] FF Extension: Skype Click to Call - C:\Program Files\Mozilla Firefox\browser\extensions\{82AF8DCA-6DE9-405D-BD5E-43525BDAD38A}.xpi [2015-10-08] FF HKLM\...\Firefox\Extensions: [firefox@bho.com] - C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt FF Extension: HP SimplePass - C:\Program Files\Hewlett-Packard\SimplePass\FFBHOExt [2015-11-25] [Brak podpisu cyfrowego] FF HKLM\...\Firefox\Extensions: [defsearchp@gmail.com] - C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\extensions\defsearchp@gmail.com FF HKLM\...\Firefox\Extensions: [deskCutv2@gmail.com] - C:\Users\agula adomus\AppData\Roaming\Mozilla\Firefox\Profiles\l4qb32qe.default\extensions\deskCutv2@gmail.com => nie znaleziono FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2015-11-25] [Brak podpisu cyfrowego] Chrome: ======= CHR HomePage: Default -> hxxp://www.google.pl/ CHR StartupUrls: Default -> "hxxp://www.yoursites123.com/?type=hp&ts=1449740318&z=8b3258ebfef3107cc47c4e9g3z7z5t1mbzde2cdg4e&from=ient07021&uid=3219913727_198264_3036AA06" CHR Profile: C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Prezentacje Google) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-11-16] CHR Extension: (Dokumenty Google) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-11-16] CHR Extension: (Dysk Google) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-16] CHR Extension: (YouTube) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-16] CHR Extension: (Google Search) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-16] CHR Extension: (Arkusze Google) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-11-16] CHR Extension: (Dokumenty Google offline) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2015-11-16] CHR Extension: (Discovery App) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\jmobdpmcncgnlbipmooabihbphbcgpbn [2015-11-16] [UpdateUrl: hxxp://cdn.ratediscoverymarket.com/update] <==== UWAGA CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-11-16] CHR Extension: (Gmail) - C:\Users\agula adomus\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-11-16] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 c2cautoupdatesvc; C:\Program Files\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2015-10-12] (Microsoft Corporation) R2 c2cpnrsvc; C:\Program Files\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2015-10-12] (Microsoft Corporation) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [1835192 2015-11-01] (Microsoft Corporation) R2 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [290224 2015-08-27] (Intel Corporation) R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [85096 2015-05-15] (Intel Corporation) R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [98920 2015-05-15] (Intel Corporation) R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [92264 2015-05-15] (Intel Corporation) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [96768 2015-09-20] (ELAN Microelectronics Corp.) R2 HomeNetSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R2 HPWMISVC; c:\Program Files\Hewlett-Packard\HP System Event\HPWMISVC.exe [569096 2014-10-01] (Hewlett-Packard Development Company, L.P.) R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [283568 2015-08-27] (Intel Corporation) R2 IhPul; C:\Users\agula adomus\AppData\Roaming\TSv\TSvr.exe [580752 2015-12-08] (tsvr.com) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [686528 2013-12-24] (Intel(R) Corporation) R2 jhi_service; C:\Program Files\Intel\TXE Components\DAL\jhi_service.exe [161280 2014-08-19] (Intel Corporation) [Brak podpisu cyfrowego] R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [711032 2015-09-28] (McAfee, Inc.) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [286136 2014-03-12] (McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\1.6.1180.0\McCSPServiceHost.exe [1251264 2015-09-01] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [502936 2015-08-11] (McAfee, Inc.) S4 McOobeSv2; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [196600 2015-07-31] (McAfee, Inc.) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\\mfemms.exe [338696 2015-08-10] (McAfee, Inc.) R2 mfevtp; C:\Windows\system32\mfevtps.exe [242408 2015-07-31] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [315512 2015-09-01] (McAfee, Inc.) R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [76288 2015-01-30] (Softex Inc.) [Brak podpisu cyfrowego] R2 PicexaService; C:\Program Files\Picexa\PicexaSvc.exe [731784 2015-12-09] (Taiwan Shui Mu Chih Ching Technology Limited) R2 RtkI2SCodec; C:\Program Files\Realtek\Audio\IIS\RtkI2SAudioService.exe [130264 2015-04-23] (Realtek Semiconductor) R2 SecureLine; C:\Program Files\AVAST Software\SecureLine\VpnSvc.exe [451432 2015-03-09] () R2 SSFK; C:\Program Files\SFK\SSFK.exe [170144 2015-11-27] (TODO: <公司名>) R2 WdMan; C:\ProgramData\JWdMJ\WdMan.exe [333312 2015-12-04] (TFuns LIMITED) [Brak podpisu cyfrowego] S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 BoschSensorCollectionDriver; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation) R3 BthMini; C:\WINDOWS\system32\DRIVERS\BTHMINI.sys [23040 2015-10-30] (Microsoft Corporation) R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [462848 2015-05-15] (Intel Corporation) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [73080 2015-08-10] (McAfee, Inc.) R3 CM3218x; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation) R3 CPLMACPI; C:\WINDOWS\system32\DRIVERS\CPLMACPI.sys [16488 2015-04-07] (Capella Microsystems, Inc.) S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [44472 2015-05-15] (Intel Corporation) S3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [25528 2015-05-15] (Intel Corporation) S3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [28088 2015-05-15] (Intel Corporation) R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [36280 2015-05-15] (Intel Corporation) R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [80824 2015-05-15] (Intel Corporation) R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [182200 2015-05-15] (Intel Corporation) R3 ETDHIDUSB; C:\WINDOWS\System32\drivers\ETDHIDUSB.sys [205648 2015-09-20] (ELAN Microelectronic Corp.) R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [23552 2015-05-15] (Intel Corporation) R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [16896 2015-05-15] (Intel Corporation) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [157288 2015-05-19] (McAfee, Inc.) R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [62464 2015-05-15] (Intel Corporation) R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [87552 2015-05-15] (Intel Corporation) S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44096 2015-07-20] (Intel Corporation) R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [264704 2015-05-15] (Intel(R) Corporation) R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35392 2015-07-20] (Intel Corporation) R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [21968 2015-05-15] (Intel Corporation) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [319168 2015-08-10] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [271304 2015-08-10] (McAfee, Inc.) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [72840 2015-08-10] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [381520 2015-08-10] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [646800 2015-08-10] (McAfee, Inc.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [425968 2015-08-12] (McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [89552 2015-08-12] (McAfee, Inc.) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [201288 2015-08-10] (McAfee, Inc.) R3 MT9M114; C:\WINDOWS\System32\drivers\MT9M114.sys [40960 2015-05-15] (Intel Corporation) R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [66560 2015-05-15] (Intel Corporation) R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [293080 2015-09-15] (Realtek Semiconductor Corp.) R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [533208 2015-01-21] (Realtek Semiconductor Corporation) R3 RtlWlans; C:\WINDOWS\system32\DRIVERS\rtwlans.sys [3090944 2015-10-30] (Realtek Semiconductor Corporation ) R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [75792 2014-01-09] (Intel Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-10 13:29 - 2015-12-10 13:29 - 00000000 ____D C:\FRST 2015-12-10 13:28 - 2015-12-10 13:29 - 01720320 _____ (Farbar) C:\Users\agula adomus\Downloads\FRST.exe 2015-12-10 13:15 - 2015-12-10 13:15 - 00001041 _____ C:\Users\Public\Desktop\CCleaner.lnk 2015-12-10 13:15 - 2015-12-10 13:15 - 00000000 ____D C:\Program Files\CCleaner 2015-12-10 13:13 - 2015-12-10 13:14 - 06801752 _____ (Piriform Ltd) C:\Users\agula adomus\Downloads\ccsetup512.exe 2015-12-10 13:05 - 2015-12-10 13:31 - 00025343 _____ C:\Users\agula adomus\Downloads\FRST.txt 2015-12-10 11:00 - 2015-12-10 11:00 - 00002291 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2015-12-10 11:00 - 2015-12-10 11:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome 2015-12-10 10:59 - 2015-12-10 13:04 - 00001060 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2015-12-10 10:59 - 2015-12-10 11:04 - 00001056 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2015-12-10 10:59 - 2015-12-10 10:59 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Deployment 2015-12-10 10:41 - 2015-12-10 10:41 - 00001823 _____ C:\Users\Public\Desktop\Picexa.lnk 2015-12-10 10:41 - 2015-12-10 10:41 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Picexa Viewer 2015-12-10 10:41 - 2015-12-10 10:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picexa 2015-12-10 10:41 - 2015-12-10 10:41 - 00000000 ____D C:\Program Files\Picexa 2015-12-10 10:40 - 2015-12-10 10:42 - 00000000 ____D C:\Program Files\SFK 2015-12-10 10:40 - 2015-12-10 10:41 - 00000000 ____D C:\ProgramData\JWdMJ 2015-12-10 10:40 - 2015-12-10 10:40 - 00000001 _____ C:\WINDOWS\system32\pl.html 2015-12-10 10:39 - 2015-12-10 10:39 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\TSv 2015-12-10 10:38 - 2015-12-10 10:39 - 00000000 ____D C:\ProgramData\8WdM8 2015-12-10 10:38 - 2015-12-10 10:38 - 00000354 _____ C:\WINDOWS\system32\data.bin 2015-12-09 20:20 - 2015-12-09 20:20 - 00000000 ___RD C:\Users\agula adomus\3D Objects 2015-12-04 22:46 - 2015-12-04 22:47 - 00000000 ____D C:\Users\agula adomus\Desktop\Dokumenty firmowe 2015-12-04 22:38 - 2015-12-04 22:46 - 00000000 ____D C:\Users\agula adomus\Desktop\zdjęcia firmowe 2015-12-02 19:58 - 2015-12-02 19:58 - 01550347 _____ C:\Users\agula adomus\Downloads\Andrzej Wiśniowski - Oferta.pdf 2015-12-02 10:16 - 2015-12-02 10:16 - 00000832 _____ C:\Users\agula adomus\Desktop\Pobrane — skrót.lnk 2015-12-02 10:13 - 2015-12-02 10:13 - 00274211 _____ C:\Users\agula adomus\Downloads\RyanairBoardingPass-FR74WK_KRK-STN.pdf 2015-12-01 11:34 - 2015-12-01 11:34 - 00012265 _____ C:\Users\agula adomus\Downloads\potwierdzenie.pdf 2015-11-26 21:11 - 2015-11-26 21:27 - 00000000 ____D C:\Users\agula adomus\AppData\Local\MicrosoftEdge 2015-11-25 23:05 - 2015-11-25 23:05 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Publishers 2015-11-25 23:04 - 2015-11-25 23:04 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat 2015-11-25 22:55 - 2015-11-25 22:55 - 00002442 _____ C:\Users\agula adomus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2015-11-25 22:55 - 2015-11-25 22:55 - 00000000 ____D C:\Users\agula adomus\AppData\Local\NetworkTiles 2015-11-25 22:55 - 2015-11-25 22:55 - 00000000 ____D C:\ProgramData\USOShared 2015-11-25 22:54 - 2015-11-25 22:54 - 00000000 ____D C:\Users\agula adomus\AppData\Local\ActiveSync 2015-11-25 22:52 - 2015-11-25 22:52 - 00000020 ___SH C:\Users\agula adomus\ntuser.ini 2015-11-25 22:52 - 2015-11-25 22:52 - 00000000 ____D C:\Users\agula adomus\AppData\Local\TileDataLayer 2015-11-25 22:52 - 2015-11-25 22:52 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Comms 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Szablony 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Menu Start 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2015-11-25 22:45 - 2015-11-25 22:45 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2015-11-25 22:43 - 2015-12-02 23:02 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2015-11-25 22:43 - 2015-11-25 22:43 - 00021616 _____ C:\WINDOWS\system32\emptyregdb.dat 2015-11-25 22:27 - 2015-11-25 22:27 - 00000000 ____D C:\Users\Default\Documents\hp.system.package.metadata 2015-11-25 22:27 - 2015-11-25 22:27 - 00000000 ____D C:\Users\Default\Documents\hp.applications.package.appdata 2015-11-25 22:27 - 2015-11-25 22:27 - 00000000 ____D C:\Users\Default User\Documents\hp.system.package.metadata 2015-11-25 22:27 - 2015-11-25 22:27 - 00000000 ____D C:\Users\Default User\Documents\hp.applications.package.appdata 2015-11-25 22:26 - 2015-11-25 22:26 - 00001487 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2015-11-25 22:14 - 2015-11-25 22:27 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2015-11-25 22:13 - 2015-12-09 20:33 - 00000000 ____D C:\Users\agula adomus 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Ustawienia lokalne 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Szablony 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Moje dokumenty 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Menu Start 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Documents\Moje wideo 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Documents\Moje obrazy 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Documents\Moja muzyka 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\Dane aplikacji 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\AppData\Local\Historia 2015-11-25 22:13 - 2015-11-25 22:13 - 00000000 _SHDL C:\Users\agula adomus\AppData\Local\Dane aplikacji 2015-11-25 22:10 - 2015-12-10 12:57 - 02000232 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2015-11-25 22:07 - 2015-12-10 12:54 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2015-11-25 22:07 - 2015-11-25 22:18 - 00000000 ____D C:\Program Files\Realtek 2015-11-25 22:07 - 2015-11-25 22:07 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_CM3218x_01_11_00.Wdf 2015-11-25 22:07 - 2015-11-25 22:07 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_BoschSensorCollectionDriver_01_11_00.Wdf 2015-11-25 22:06 - 2015-11-26 00:09 - 00000000 ___DC C:\WINDOWS\Panther 2015-11-25 22:06 - 2015-11-25 23:03 - 00338296 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2015-11-25 22:03 - 2015-11-25 22:29 - 00000000 ____D C:\Windows.old 2015-11-25 22:02 - 2015-11-25 22:02 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2015-11-25 22:01 - 2015-12-02 23:02 - 00000000 ____D C:\Program Files\Elantech 2015-11-25 22:00 - 2015-11-25 22:00 - 00000000 ____D C:\WINDOWS\system32\XPSViewer 2015-11-25 22:00 - 2015-11-25 22:00 - 00000000 ____D C:\Program Files\Reference Assemblies 2015-11-25 22:00 - 2015-11-25 22:00 - 00000000 ____D C:\Program Files\MSBuild 2015-11-25 22:00 - 2015-11-25 22:00 - 00000000 ____D C:\inetpub 2015-11-25 21:59 - 2015-10-23 17:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2015-11-25 21:59 - 2015-10-23 17:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2015-11-25 21:59 - 2015-10-23 17:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2015-11-25 21:40 - 2015-11-25 22:45 - 00009528 _____ C:\WINDOWS\diagwrn.xml 2015-11-25 21:40 - 2015-11-25 22:45 - 00009528 _____ C:\WINDOWS\diagerr.xml 2015-11-25 19:34 - 2015-11-25 19:41 - 00000000 ____D C:\Users\agula adomus\Desktop\rzeszów 2015-11-25 19:31 - 2015-11-25 19:31 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2015-11-22 12:56 - 2015-11-22 13:00 - 00000000 ____D C:\WINDOWS\system32\MRT 2015-11-22 12:55 - 2015-10-27 18:44 - 143250520 ____N (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2015-11-18 18:57 - 2015-11-18 18:57 - 00000000 ____D C:\$Windows.~WS 2015-11-17 21:56 - 2015-11-25 22:52 - 00000266 __RSH C:\ProgramData\ntuser.pol 2015-11-17 21:18 - 2015-11-17 21:43 - 00000000 ____D C:\Users\agula adomus\Desktop\z dysku usb pysia 2015-11-16 21:32 - 2015-11-16 21:32 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Apps\2.0 2015-11-15 21:02 - 2015-11-16 20:19 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Opera Software 2015-11-15 21:02 - 2015-11-16 20:19 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Opera Software 2015-11-15 20:59 - 2015-11-25 22:27 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\IrfanView 2015-11-15 20:59 - 2015-11-15 20:59 - 00001867 _____ C:\Users\agula adomus\Desktop\IrfanView Thumbnails.lnk 2015-11-15 20:59 - 2015-11-15 20:59 - 00000987 _____ C:\Users\agula adomus\Desktop\IrfanView.lnk 2015-11-15 20:59 - 2015-11-15 20:59 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\IrfanView 2015-11-15 20:59 - 2015-11-15 20:59 - 00000000 ____D C:\Program Files\IrfanView 2015-11-15 20:58 - 2015-12-10 10:40 - 00000074 _____ C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat 2015-11-15 20:58 - 2015-12-10 10:38 - 00000000 ____D C:\ProgramData\8WMiniPro8 2015-11-15 20:58 - 2015-11-16 22:41 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\istartsurf 2015-11-15 20:57 - 2015-11-17 21:52 - 00000000 ____D C:\ProgramData\653ac11b-b606-42c5-b357-bca0fd28d1cd 2015-11-15 20:53 - 2015-11-15 20:53 - 00000000 ____D C:\Users\agula adomus\AppData\LocalLow\Adobe 2015-11-15 20:53 - 2015-11-15 20:53 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Adobe 2015-11-15 20:36 - 2015-11-15 20:36 - 00000000 ____D C:\Users\agula adomus\Tracing 2015-11-15 20:16 - 2015-12-10 13:09 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Skype 2015-11-15 20:16 - 2015-11-25 22:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2015-11-15 20:16 - 2015-11-15 20:21 - 00000000 ___RD C:\Program Files\Skype 2015-11-15 20:16 - 2015-11-15 20:16 - 00002703 _____ C:\Users\Public\Desktop\Skype.lnk 2015-11-15 20:16 - 2015-11-15 20:16 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Skype 2015-11-15 20:16 - 2015-11-15 20:16 - 00000000 ____D C:\ProgramData\Skype 2015-11-15 20:16 - 2015-11-15 20:16 - 00000000 ____D C:\Program Files\Common Files\Skype 2015-11-15 20:13 - 2015-11-15 20:13 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk 2015-11-15 20:13 - 2015-11-15 20:13 - 00002016 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk 2015-11-15 20:13 - 2015-11-15 20:13 - 00000000 ____D C:\Program Files\Common Files\Adobe 2015-11-15 20:13 - 2015-11-15 20:13 - 00000000 ____D C:\Program Files\Adobe 2015-11-15 20:12 - 2015-11-16 20:19 - 00000000 ____D C:\Program Files\Opera 2015-11-15 20:12 - 2015-11-15 20:13 - 00000000 ____D C:\ProgramData\Adobe 2015-11-15 20:10 - 2015-11-15 20:10 - 00001087 _____ C:\Users\Public\Desktop\Picasa 3.lnk 2015-11-15 20:09 - 2015-12-10 11:00 - 00000000 ____D C:\Program Files\Google 2015-11-15 20:09 - 2015-11-25 22:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picasa 3 2015-11-15 20:09 - 2015-11-25 19:39 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Google 2015-11-15 19:55 - 2015-11-25 22:55 - 00000000 ___RD C:\Users\agula adomus\OneDrive 2015-11-15 19:55 - 2015-11-15 19:55 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2015-11-15 19:54 - 2015-07-17 14:47 - 00066400 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00022368 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00019808 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00017760 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00016224 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00014176 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00013664 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012640 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll 2015-11-15 19:54 - 2015-07-17 14:47 - 00012128 _____ (Microsoft Corporation) C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll 2015-11-15 19:53 - 2015-11-15 19:53 - 00000000 ____D C:\Program Files\Common Files\DESIGNER 2015-11-15 19:48 - 2015-11-25 22:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016 2015-11-15 19:48 - 2015-11-15 19:48 - 00002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002409 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002394 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002391 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002388 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002355 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel 2016.lnk 2015-11-15 19:48 - 2015-11-15 19:48 - 00002345 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher 2016.lnk 2015-11-15 19:44 - 2015-11-15 19:44 - 00000000 ____D C:\Program Files\Microsoft Office 15 2015-11-15 19:15 - 2015-07-22 15:15 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcResources.dll 2015-11-15 19:05 - 2015-11-16 20:19 - 00000000 ____D C:\Program Files\Mozilla Firefox 2015-11-15 19:05 - 2015-11-15 19:27 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Mozilla 2015-11-15 19:05 - 2015-11-15 19:06 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Mozilla 2015-11-15 19:01 - 2015-12-10 11:20 - 00000000 __SHD C:\Users\agula adomus\AppData\LocalLow\EmieUserList 2015-11-15 19:01 - 2015-11-15 19:01 - 00000000 __SHD C:\Users\agula adomus\AppData\LocalLow\EmieBrowserModeList 2015-11-15 19:00 - 2015-12-10 11:20 - 00000000 __SHD C:\Users\agula adomus\AppData\LocalLow\EmieSiteList 2015-11-15 19:00 - 2015-12-10 10:58 - 00000000 __SHD C:\Users\agula adomus\AppData\Local\EmieUserList 2015-11-15 19:00 - 2015-12-10 10:58 - 00000000 __SHD C:\Users\agula adomus\AppData\Local\EmieSiteList 2015-11-15 19:00 - 2015-11-16 21:59 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\DropboxOEM 2015-11-15 19:00 - 2015-11-15 19:00 - 00000000 __SHD C:\Users\agula adomus\AppData\Local\EmieBrowserModeList 2015-11-15 18:57 - 2015-11-15 18:57 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_LocationProvider_01_11_00.Wdf 2015-11-15 18:54 - 2015-11-15 18:54 - 00000000 ____D C:\Users\agula adomus\AppData\Local\GWX 2015-11-15 15:33 - 2015-05-19 13:59 - 00157288 _____ (McAfee, Inc.) C:\WINDOWS\system32\Drivers\HipShieldK.sys 2015-11-15 15:28 - 2015-11-15 15:28 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Macromedia 2015-11-15 15:28 - 2015-11-15 15:28 - 00000000 ____D C:\Program Files\Common Files\AV 2015-11-15 15:22 - 2015-11-15 18:53 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Hewlett-Packard 2015-11-15 15:22 - 2015-11-15 15:22 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\hpqlog 2015-11-15 15:22 - 2015-11-15 15:22 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Hewlett-Packard 2015-11-15 15:20 - 2015-11-15 15:20 - 00000000 ____D C:\Users\agula adomus\AppData\Local\DropboxOEM 2015-11-15 15:19 - 2015-12-04 07:59 - 00000000 ____D C:\Users\agula adomus\AppData\Local\Packages 2015-11-15 15:19 - 2015-12-02 23:02 - 00000000 __SHD C:\Users\agula adomus\IntelGraphicsProfiles 2015-11-15 15:19 - 2015-11-15 20:53 - 00000000 ____D C:\Users\agula adomus\AppData\Roaming\Adobe 2015-11-15 15:19 - 2015-11-15 19:00 - 00000000 ____D C:\Users\agula adomus\AppData\Local\VirtualStore 2015-11-15 15:19 - 2015-11-15 15:19 - 00000190 _____ C:\WINDOWS\insFileSpec 2015-11-15 15:19 - 2015-11-15 15:19 - 00000144 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2015-11-15 15:19 - 2015-07-22 11:42 - 00001366 _____ C:\Users\Public\Desktop\Booking.com.lnk 2015-11-15 15:19 - 2015-06-01 04:47 - 00000000 ___HD C:\Users\agula adomus\Documents\hp.system.package.metadata 2015-11-15 15:19 - 2015-06-01 04:47 - 00000000 ___HD C:\Users\agula adomus\Documents\hp.applications.package.appdata 2015-11-15 15:16 - 2015-03-14 02:11 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2015-11-15 14:11 - 2015-11-25 22:52 - 00000000 __RHD C:\Users\Public\AccountPictures 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Public\Documents\Moje wideo 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Ustawienia lokalne 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Szablony 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Moje dokumenty 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Menu Start 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Moje wideo 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Moje obrazy 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Documents\Moja muzyka 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\Dane aplikacji 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Historia 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\Users\Default.migrated\AppData\Local\Dane aplikacji 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Szablony 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Pulpit 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Menu Start 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Dokumenty 2015-11-15 14:08 - 2015-11-15 14:08 - 00000000 _SHDL C:\ProgramData\Dane aplikacji ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2015-12-10 13:29 - 2015-10-30 06:13 - 00000000 ____D C:\Windows 2015-12-10 12:57 - 2015-10-30 16:12 - 00874766 _____ C:\WINDOWS\system32\perfh015.dat 2015-12-10 12:57 - 2015-10-30 16:12 - 00185770 _____ C:\WINDOWS\system32\perfc015.dat 2015-12-10 12:57 - 2015-10-30 06:47 - 00000000 ____D C:\WINDOWS\INF 2015-12-10 11:17 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\AppReadiness 2015-12-10 07:18 - 2015-10-30 06:48 - 00000000 ___HD C:\Program Files\WindowsApps 2015-12-08 22:32 - 2015-10-30 06:39 - 00000000 ____D C:\WINDOWS\CbsTemp 2015-12-08 18:50 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2015-12-02 23:02 - 2015-10-30 06:13 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM 2015-12-02 23:01 - 2015-10-30 06:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI 2015-12-01 01:33 - 2015-10-30 06:49 - 00826872 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2015-12-01 01:33 - 2015-10-30 06:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2015-11-30 07:47 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\NDF 2015-11-26 06:38 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\AppCompat 2015-11-25 23:04 - 2015-10-30 06:48 - 00000000 ___RD C:\WINDOWS\DevicesFlow 2015-11-25 22:55 - 2015-10-30 06:48 - 00000000 ____D C:\ProgramData\USOPrivate 2015-11-25 22:53 - 2015-10-30 06:48 - 00000000 ___RD C:\WINDOWS\PurchaseDialog 2015-11-25 22:53 - 2015-10-30 06:48 - 00000000 ___RD C:\WINDOWS\PrintDialog 2015-11-25 22:53 - 2015-10-30 06:48 - 00000000 ___RD C:\WINDOWS\MiracastView 2015-11-25 22:52 - 2015-10-30 06:48 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2015-11-25 22:51 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\oobe 2015-11-25 22:46 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\rescache 2015-11-25 22:45 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2015-11-25 22:45 - 2015-10-30 06:48 - 00000000 ____D C:\Program Files\Windows NT 2015-11-25 22:43 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\Registration 2015-11-25 22:35 - 2015-10-30 06:48 - 00000000 __RHD C:\Users\Public\Libraries 2015-11-25 22:29 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2015-11-25 22:28 - 2015-04-13 20:39 - 00000000 ___HD C:\SYSTEM.SAV 2015-11-25 22:27 - 2015-10-30 06:48 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2015-11-25 22:27 - 2015-07-22 11:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 25 GB 2015-11-25 22:27 - 2015-07-22 11:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Realtek 2015-11-25 22:27 - 2015-07-22 11:23 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support 2015-11-25 22:27 - 2015-06-01 04:48 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection 2015-11-25 22:27 - 2015-06-01 04:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools 2015-11-25 22:27 - 2013-08-22 07:21 - 00000000 ____D C:\Users\Default.migrated 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\spool 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\InputMethod 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\et-EE 2015-11-25 22:20 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\en-GB 2015-11-25 22:20 - 2014-11-21 03:22 - 00000000 ____D C:\WINDOWS\system32\gl-es 2015-11-25 22:20 - 2014-11-21 03:22 - 00000000 ____D C:\WINDOWS\system32\eu-es 2015-11-25 22:20 - 2013-08-22 09:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared 2015-11-25 22:20 - 2013-08-22 09:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared 2015-11-25 22:19 - 2015-06-01 04:47 - 00000000 ____D C:\WINDOWS\system32\Adobe 2015-11-25 22:19 - 2014-11-21 03:22 - 00000000 ____D C:\WINDOWS\system32\ca-es-valencia 2015-11-25 22:19 - 2014-11-21 03:22 - 00000000 ____D C:\WINDOWS\system32\ca-es 2015-11-25 22:19 - 2013-08-22 09:17 - 00000000 ____D C:\WINDOWS\MediaViewer 2015-11-25 22:18 - 2015-10-30 06:48 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2015-11-25 22:18 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\InputMethod 2015-11-25 22:18 - 2015-07-22 11:45 - 00000000 ____D C:\WINDOWS\Hewlett-Packard 2015-11-25 22:18 - 2015-07-22 11:42 - 00000000 ____D C:\ProgramData\Temp 2015-11-25 22:18 - 2015-07-22 11:40 - 00000000 ____D C:\ProgramData\McAfee 2015-11-25 22:18 - 2015-07-22 11:40 - 00000000 ____D C:\Program Files\McAfee 2015-11-25 22:18 - 2015-07-22 11:38 - 00000000 ____D C:\ProgramData\Apple 2015-11-25 22:18 - 2015-07-22 11:26 - 00000000 ____D C:\ProgramData\CapellaMicro 2015-11-25 22:18 - 2015-07-22 11:24 - 00000000 ____D C:\ProgramData\Intel 2015-11-25 22:18 - 2015-07-22 11:24 - 00000000 ____D C:\Program Files\Intel 2015-11-25 22:18 - 2015-07-22 11:21 - 00000000 ____D C:\ProgramData\Hewlett-Packard 2015-11-25 22:18 - 2015-07-22 11:21 - 00000000 ____D C:\ProgramData\{65AB91D4-DDD0-48D4-804D-C24E1FC90D44} 2015-11-25 22:18 - 2015-06-01 04:48 - 00000000 ___HD C:\Program Files\InstallShield Installation Information 2015-11-25 22:18 - 2015-06-01 04:47 - 00000000 ___RD C:\Program Files\Online Services 2015-11-25 22:17 - 2015-07-22 11:38 - 00000000 ____D C:\Program Files\Dropbox 2015-11-25 22:17 - 2015-06-01 04:47 - 00000000 ____D C:\Program Files\Hewlett-Packard 2015-11-25 22:16 - 2015-10-30 06:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2015-11-25 22:16 - 2015-07-22 11:43 - 00000000 ____D C:\Program Files\AVAST Software 2015-11-25 22:16 - 2015-07-22 11:42 - 00000000 ____D C:\Program Files\CyberLink 2015-11-25 22:16 - 2015-07-22 11:40 - 00000000 ____D C:\Program Files\Common Files\McAfee 2015-11-25 22:16 - 2015-07-22 11:38 - 00000000 ____D C:\Program Files\Bonjour 2015-11-25 22:16 - 2015-07-22 11:27 - 00000000 ____D C:\Program Files\Cisco 2015-11-25 22:16 - 2015-07-22 11:25 - 00000000 ____D C:\Program Files\Common Files\Intel 2015-11-25 22:16 - 2015-06-01 04:47 - 00000000 ____D C:\Program Files\7-Zip 2015-11-25 22:14 - 2013-08-22 09:17 - 00000000 ____D C:\WINDOWS\system32\GroupPolicy 2015-11-25 22:09 - 2015-10-30 06:13 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2015-11-25 22:07 - 2015-10-30 16:21 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2015-11-25 22:06 - 2015-10-30 06:48 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2015-11-25 22:00 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\MUI 2015-11-25 22:00 - 2015-10-30 06:48 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2015-11-25 22:00 - 2015-10-30 06:45 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2015-11-25 22:00 - 2015-10-30 06:45 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2015-11-25 22:00 - 2015-10-30 06:45 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2015-11-25 22:00 - 2015-10-30 06:45 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2015-11-25 22:00 - 2015-10-30 06:45 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2015-11-25 22:00 - 2015-10-30 06:45 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2015-11-25 21:41 - 2015-10-30 16:41 - 00000000 ___HD C:\$WINDOWS.~BT 2015-11-22 13:01 - 2013-08-22 09:17 - 00000000 ___RD C:\WINDOWS\ToastData 2015-11-16 23:38 - 2015-07-22 11:46 - 00000000 ____D C:\Program Files\Microsoft Office ==================== Pliki w katalogu głównym wybranych folderów ======= 2015-11-15 20:58 - 2015-12-10 10:40 - 0000074 _____ () C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat Pliki do przeniesienia lub usunięcia: ==================== C:\ProgramData\{262E20B8-6E20-4CEF-B1FD-D022AB1085F5}.dat ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2015-12-07 12:50 ==================== Koniec FRST.txt ============================