Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x86) Wersja:21-02-2016 01 Uruchomiony przez Brim (administrator) YOUR-D5684CA5B2 (23-02-2016 17:56:54) Uruchomiony z C:\Documents and Settings\Brim\Moje dokumenty\Downloads\avir Załadowane profile: Brim (Dostępne profile: Brim & Administrator) Platform: Microsoft Windows XP Home Edition Dodatek Service Pack 3 (X86) Język: Polski Internet Explorer Wersja 8 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe () C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe (Oracle Corporation) C:\Program Files\Java\jre7\bin\jqs.exe (Hewlett-Packard Company) C:\Program Files\Common Files\LightScribe\LSSrvc.exe (McAfee, Inc.) C:\Program Files\McAfee\SiteAdvisor\McSACore.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc.) C:\WINDOWS\system32\mfevtps.exe (McAfee, Inc.) C:\Program Files\McAfee\MSC\McAPExe.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe (Microsoft Corporation) C:\WINDOWS\system32\rundll32.exe (Analog Devices, Inc.) C:\Program Files\Analog Devices\Core\smax4pnp.exe (Sonic Solutions) C:\WINDOWS\system32\DLA\DLACTRLW.EXE (Synaptics, Inc.) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Intel Corporation) C:\WINDOWS\system32\igfxtray.exe (Intel Corporation) C:\WINDOWS\system32\hkcmd.exe (Intel Corporation) C:\WINDOWS\system32\igfxpers.exe (Intel Corporation) C:\WINDOWS\system32\igfxsrvc.exe (Hewlett-Packard Development Company, L.P.) C:\Program Files\HPQ\HP Wireless Assistant\HP Wireless Assistant.exe ( Hewlett-Packard Development Company, L.P.) C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QLBCTRL.exe () C:\WINDOWS\SMINST\Scheduler.exe (HP) C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe (Huawei Technologies Co., Ltd.) C:\Program Files\blueconnect\DataCardMonitor.exe (Hewlett-Packard) C:\Program Files\Hp\HP Software Update\hpwuschd2.exe (McAfee, Inc.) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (Huawei Technologies Co., Ltd.) C:\Documents and Settings\Brim\Dane aplikacji\blueconnect\ouc.exe () C:\PROGRA~1\HPQ\Shared\HPQTOA~1.EXE (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SoundMAXPnP] => C:\Program Files\Analog Devices\Core\smax4pnp.exe [925696 2005-05-20] (Analog Devices, Inc.) HKLM\...\Run: [SoundMAX] => C:\Program Files\Analog Devices\SoundMAX\Smax4.exe [716800 2005-05-06] (Analog Devices, Inc.) HKLM\...\Run: [DLA] => C:\WINDOWS\System32\DLA\DLACTRLW.EXE [122940 2005-08-31] (Sonic Solutions) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [761945 2005-11-10] (Synaptics, Inc.) HKLM\...\Run: [igfxhkcmd] => C:\WINDOWS\system32\hkcmd.exe [77824 2006-03-23] (Intel Corporation) HKLM\...\Run: [igfxpers] => C:\WINDOWS\system32\igfxpers.exe [118784 2006-03-23] (Intel Corporation) HKLM\...\Run: [hpWirelessAssistant] => C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe [454656 2006-02-14] (Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [QlbCtrl] => C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe [131072 2006-03-02] ( Hewlett-Packard Development Company, L.P.) HKLM\...\Run: [Cpqset] => C:\Program Files\HPQ\Default Settings\cpqset.exe [40960 2006-02-22] () HKLM\...\Run: [Recguard] => C:\WINDOWS\Sminst\Recguard.exe [1187840 2005-12-20] () HKLM\...\Run: [Reminder] => C:\WINDOWS\Creator\Remind_XP.exe [802816 2006-01-23] () HKLM\...\Run: [Scheduler] => C:\WINDOWS\SMINST\Scheduler.exe [892928 2006-02-15] () HKLM\...\Run: [HPDJ Taskbar Utility] => C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb07.exe [188416 2002-12-10] (HP) HKLM\...\Run: [DataCardMonitor] => C:\Program Files\blueconnect\DataCardMonitor.exe [259424 2011-11-29] (Huawei Technologies Co., Ltd.) HKLM\...\Run: [APSDaemon] => C:\Program Files\Common Files\Apple\Apple Application Support\APSDaemon.exe [60712 2015-03-20] (Apple Inc.) HKLM\...\Run: [mcpltui_exe] => C:\Program Files\McAfee.com\Agent\mcagent.exe [517392 2014-04-25] (McAfee, Inc.) HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard) HKLM\...\Policies\Explorer: [NoCDBurning] 0 HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\Run: [Polar Sync] => [X] HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\Run: [HW_OPENEYE_OUC_blueconnect] => C:\Program Files\blueconnect\UpdateDog\ouc.exe [116064 2011-03-26] (Huawei Technologies Co., Ltd.) HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: E - C:\WINDOWS\system32\RunDLL32.EXE Shell32.DLL,ShellExec_RunDLL Info.exe protect.ed 480 480 HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: H - H:\LaunchU3.exe -a HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {7902a3a4-056d-11dc-b5aa-0019d262359f} - F:\EXPLORER.EXE HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {8b3deaa4-ddf1-11e0-83c6-0019d262359f} - F:\AutoRun.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {8b3deaa7-ddf1-11e0-83c6-0019d262359f} - F:\AutoRun.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {96d20a4e-37f0-11e2-8730-0017a4d8405e} - H:\LaunchU3.exe -a HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {cde3b834-c0e4-11dd-ba26-0019d262359f} - F:\vfjc8mxm.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {cde3b83a-c0e4-11dd-ba26-0019d262359f} - cqxj.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {d63153c3-db70-11df-80de-0019d262359f} - F:\Launcher.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {dbc152d6-1a69-11e1-8470-0019d262359f} - F:\AutoRun.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {dbc152d9-1a69-11e1-8470-0019d262359f} - F:\AutoRun.exe HKU\S-1-5-21-4124746199-4171654727-105604383-1006\...\MountPoints2: {f4bbfa24-dded-11e0-83c5-0019d262359f} - F:\AutoRun.exe SecurityProviders: msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll, mcenspc.dll Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\BTTray.lnk [2007-03-28] ShortcutTarget: BTTray.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\McAfee Security Scan Plus.lnk [2016-02-16] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.292\SSScheduler.exe (McAfee, Inc.) Startup: C:\Documents and Settings\All Users\Menu Start\Programy\Autostart\Microsoft Office.lnk [2007-03-28] ShortcutTarget: Microsoft Office.lnk -> C:\Program Files\Microsoft Office\Office\OSA9.EXE (Microsoft Corporation) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) ProxyEnable: [.DEFAULT] => Proxy [funkcja włączona] Winsock: Catalog5 04 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{3735CB26-0837-4A75-AC06-D5D8231F4443}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-4124746199-4171654727-105604383-1006\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank HKU\S-1-5-21-4124746199-4171654727-105604383-1006\Software\Microsoft\Internet Explorer\Main,Search Bar = hxxp://www.google.com/ie HKU\S-1-5-21-4124746199-4171654727-105604383-1006\Software\Microsoft\Internet Explorer\Main,SearchMigratedDefaultURL = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:en-US&ie=utf8&oe=utf8 SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\.DEFAULT -> {6A1806CD-94D4-4689-BA73-E35EA1EA9990} URL = SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = SearchScopes: HKU\S-1-5-21-4124746199-4171654727-105604383-1006 -> DefaultScope {BF0364B4-A5B9-4437-B0DA-E3C43B152063} URL = hxxp://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7HPNN_enPL310 SearchScopes: HKU\S-1-5-21-4124746199-4171654727-105604383-1006 -> {BF0364B4-A5B9-4437-B0DA-E3C43B152063} URL = hxxp://www.google.pl/search?q={searchTerms}&rls=com.microsoft:{language}:{referrer:source?}&ie={inputEncoding}&oe={outputEncoding}&sourceid=ie7&rlz=1I7HPNN_enPL310 BHO: DriveLetterAccess -> {5CA3D70E-1895-11CF-8E15-001234567890} -> C:\WINDOWS\System32\DLA\DLASHX_W.DLL [2005-08-31] (Sonic Solutions) BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-07-25] (Oracle Corporation) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-29] (Google Inc.) BHO: McAfee SiteAdvisor BHO -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-07-25] (Oracle Corporation) Toolbar: HKLM - McAfee SiteAdvisor Toolbar - {0EBBBE48-BAD4-4B4C-8E5A-516ABECAE064} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-29] (Google Inc.) Toolbar: HKU\S-1-5-21-4124746199-4171654727-105604383-1006 -> Google Toolbar - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll [2015-12-29] (Google Inc.) Toolbar: HKU\S-1-5-21-4124746199-4171654727-105604383-1006 -> Brak nazwy - {A13C2648-91D4-4BF3-BC6D-0079707C4389} - Brak pliku DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab Handler: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.) Handler: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\Program Files\McAfee\SiteAdvisor\McIEPlg.dll [2015-09-15] (McAfee, Inc.) Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\Program Files\McAfee\MSC\McSnIePl.dll [2014-04-25] (McAfee, Inc.) FireFox: ======== FF Plugin: @Apple.com/iTunes,version=1.0 -> C:\Program Files\iTunes\Mozilla Plugins\npitunes.dll [2015-09-04] () FF Plugin: @Google.com/GoogleEarthPlugin -> C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll [2013-10-07] (Google) FF Plugin: @java.com/DTPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-07-25] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=10.65.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-07-25] (Oracle Corporation) FF Plugin: @mcafee.com/MSC,version=10 -> c:\PROGRA~1\mcafee\msc\NPMCSN~1.DLL [2014-04-25] () FF Plugin: @microsoft.com/WPF,version=3.5 -> c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\NPWPF.dll [2008-07-29] (Microsoft Corporation) FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-04] (Google Inc.) FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-04] (Google Inc.) FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-08-05] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-4124746199-4171654727-105604383-1006: anvisoft.com/AdblockPlugin -> C:\Documents and Settings\All Users\Dane aplikacji\Anvisoft\Anvi Smart Defender 2\extensions\npAdblockPlugin.dll [2014-04-30] (Anvisoft) FF HKLM\...\Firefox\Extensions: [{4ED1F68A-5463-4931-9384-8FFF5ED91D92}] - C:\Program Files\McAfee\SiteAdvisor\saffplg.xpi FF Extension: McAfee WebAdvisor - C:\Program Files\McAfee\SiteAdvisor\saffplg.xpi [2015-12-10] FF HKLM\...\Firefox\Extensions: [{20a82645-c095-46ed-80e3-08825760534b}] - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension FF Extension: Microsoft .NET Framework Assistant - c:\WINDOWS\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension [2013-10-18] [Brak podpisu cyfrowego] FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: McAfee Anti-Spam Thunderbird Extension - C:\Program Files\McAfee\MSK [2016-01-25] [Brak podpisu cyfrowego] Chrome: ======= CHR HomePage: Default -> hxxps://www.google.pl/ CHR StartupUrls: Default -> "hxxps://www.google.pl/" CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\gcswf32.dll => Brak pliku CHR Plugin: (Windows Media Player Plug-in Dynamic Link Library) - C:\Program Files\Windows Media Player\npdsplay.dll (Microsoft Corporation (written by Digital Renaissance Inc.)) CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\ppGoogleNaClPluginChrome.dll => Brak pliku CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\48.0.2564.116\pdf.dll => Brak pliku CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat 7.0\Reader\Browser\nppdf32.dll => Brak pliku CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npdrmv2.dll (Microsoft Corporation) CHR Plugin: (Microsoft® DRM) - C:\Program Files\Windows Media Player\npwmsdrm.dll (Microsoft Corporation) CHR Plugin: (Google Earth Plugin) - C:\Program Files\Google\Google Earth\plugin\npgeplugin.dll (Google) CHR Plugin: (Google Update) - C:\Program Files\Google\Update\1.3.21.69\npGoogleUpdate3.dll => Brak pliku CHR Profile: C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default CHR Extension: (YouTube) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-24] CHR Extension: (Google Search) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-08] CHR Extension: (SiteAdvisor) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2015-07-21] CHR Extension: (AdBlock) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-02-22] CHR Extension: (AnviAdblock) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\lhmiofmipcpmhgihiecmpiekcacigpgb [2016-02-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-08-08] CHR Extension: (Gmail) - C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-31] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] - C:\Program Files\McAfee\SiteAdvisor\McChPlg.crx [2015-09-15] CHR HKLM\...\Chrome\Extension: [lhmiofmipcpmhgihiecmpiekcacigpgb] - C:\Documents and Settings\All Users\Dane aplikacji\Anvisoft\Anvi Smart Defender 2\extensions\chrome.crx [2014-04-30] ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 ASD2Svc; C:\Program Files\Anvisoft\Anvi Smart Defender\ASD2_Service.exe [1125000 2015-09-17] (Anvisoft) R2 btwdins; C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe [258103 2006-02-15] (Broadcom Corporation.) [Brak podpisu cyfrowego] R2 HomeNetSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 hpqwmiex; C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe [98304 2006-01-12] (Hewlett-Packard Development Company, L.P.) [Brak podpisu cyfrowego] R2 HWDeviceService.exe; C:\Documents and Settings\All Users\Dane aplikacji\DatacardService\HWDeviceService.exe [271712 2011-03-14] () S3 IDriverT; c:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [73728 2004-10-22] (Macrovision Corporation) [Brak podpisu cyfrowego] R2 JavaQuickStarterService; C:\Program Files\Java\jre7\bin\jqs.exe [182696 2014-07-25] (Oracle Corporation) R2 LightScribeService; C:\Program Files\Common Files\LightScribe\LSSrvc.exe [49152 2006-06-20] (Hewlett-Packard Company) [Brak podpisu cyfrowego] S4 MBAMScheduler; C:\Program Files\Malwarebytes Anti-Malware\mbamscheduler.exe [1513784 2015-10-05] (Malwarebytes) S2 MBAMService; C:\Program Files\Malwarebytes Anti-Malware\mbamservice.exe [1135416 2015-10-05] (Malwarebytes) R2 McAfee SiteAdvisor Service; C:\Program Files\McAfee\SiteAdvisor\McSACore.exe [132160 2015-09-28] (McAfee, Inc.) R2 McAPExe; C:\Program Files\McAfee\MSC\McAPExe.exe [145568 2014-04-25] (McAfee, Inc.) U2 mcbootdelaystartsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.292\McCHSvc.exe [239880 2016-02-05] (McAfee, Inc.) R2 McMPFSvc; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 McNaiAnn; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) S3 McODS; C:\Program Files\McAfee\VirusScan\mcods.exe [472072 2014-09-04] (McAfee, Inc.) R2 mcpltsvc; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 McProxy; C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) R2 mfecore; C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe [655936 2014-08-20] (McAfee, Inc.) R2 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\\mfefire.exe [169800 2014-06-20] (McAfee, Inc.) R2 mfevtp; C:\WINDOWS\system32\mfevtps.exe [179600 2014-06-20] (McAfee, Inc.) R2 MSK80Service; C:\Program Files\Common Files\Mcafee\Platform\McSvcHost\McSvHost.exe [281560 2013-07-30] (McAfee, Inc.) S2 PCA; C:\WINDOWS\SMINST\PCAngel.exe [294912 2006-01-12] (SoftThinks) [Brak podpisu cyfrowego] S3 WmcCds; c:\program files\windows media connect\mswmccds.exe [483328 2004-08-10] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 WmcCdsLs; C:\Program Files\Windows Media Connect\mswmcls.exe [28160 2004-08-10] (Microsoft Corporation) [Brak podpisu cyfrowego] ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AEAudioService; C:\WINDOWS\System32\drivers\AEAudio.sys [152960 2005-06-07] (Andrea Electronics Corporation) R1 asd2fsm; C:\WINDOWS\System32\DRIVERS\asd2fsm.sys [38400 2015-09-17] (Anvisoft) [Brak podpisu cyfrowego] S3 asdids; C:\WINDOWS\System32\DRIVERS\asdids.sys [32256 2015-09-17] (Anvisoft) [Brak podpisu cyfrowego] R3 asdidsmp; C:\WINDOWS\System32\DRIVERS\asdids.sys [32256 2015-09-17] (Anvisoft) [Brak podpisu cyfrowego] S3 BTDriver; C:\WINDOWS\System32\DRIVERS\btport.sys [30363 2006-02-15] (Broadcom Corporation.) [Brak podpisu cyfrowego] R3 BTKRNL; C:\WINDOWS\System32\DRIVERS\btkrnl.sys [1342570 2006-02-15] (Broadcom Corporation.) [Brak podpisu cyfrowego] S3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [57096 2006-02-15] (Broadcom Corporation.) [Brak podpisu cyfrowego] R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [62832 2014-06-20] (McAfee, Inc.) R2 DLABOIOM; C:\WINDOWS\System32\DLA\DLABOIOM.SYS [25628 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R1 DLACDBHM; C:\WINDOWS\System32\Drivers\DLACDBHM.SYS [5628 2005-08-25] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLADResN; C:\WINDOWS\System32\DLA\DLADResN.SYS [2496 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLAIFS_M; C:\WINDOWS\System32\DLA\DLAIFS_M.SYS [86524 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLAOPIOM; C:\WINDOWS\System32\DLA\DLAOPIOM.SYS [14684 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLAPoolM; C:\WINDOWS\System32\DLA\DLAPoolM.SYS [6364 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R1 DLARTL_N; C:\WINDOWS\System32\Drivers\DLARTL_N.SYS [22684 2005-08-25] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLAUDFAM; C:\WINDOWS\System32\DLA\DLAUDFAM.SYS [94332 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DLAUDF_M; C:\WINDOWS\System32\DLA\DLAUDF_M.SYS [87036 2005-08-31] (Sonic Solutions) [Brak podpisu cyfrowego] R0 DRVMCDB; C:\WINDOWS\System32\Drivers\DRVMCDB.SYS [88752 2005-08-30] (Sonic Solutions) [Brak podpisu cyfrowego] R2 DRVNDDM; C:\WINDOWS\System32\Drivers\DRVNDDM.SYS [40544 2005-08-12] (Sonic Solutions) [Brak podpisu cyfrowego] R1 eabfiltr; C:\WINDOWS\System32\DRIVERS\eabfiltr.sys [7808 2005-09-19] (Hewlett-Packard Development Company, L.P.) S3 eabusb; C:\WINDOWS\System32\DRIVERS\eabusb.sys [5760 2005-09-19] (Hewlett-Packard Development Company, L.P.) S3 filtertdidriver; C:\WINDOWS\System32\drivers\ewfiltertdidriver.sys [13024 2010-11-24] (Huawei Technologies Co., Ltd.) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [147912 2013-09-23] (McAfee, Inc.) S3 huawei_cdcacm; C:\WINDOWS\System32\DRIVERS\ew_jucdcacm.sys [90368 2011-02-25] (Huawei Technologies Co., Ltd.) S3 KS-959; C:\WINDOWS\System32\DRIVERS\KS-959.sys [19034 2005-09-05] (Kingsun Corporation) [Brak podpisu cyfrowego] R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [23256 2015-10-05] (Malwarebytes) R3 mfeapfk; C:\WINDOWS\System32\drivers\mfeapfk.sys [135968 2014-06-20] (McAfee, Inc.) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [238176 2014-06-20] (McAfee, Inc.) S3 mfebopk; C:\WINDOWS\System32\drivers\mfebopk.sys [67816 2014-06-20] (McAfee, Inc.) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [369248 2014-06-20] (McAfee, Inc.) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [576048 2014-06-20] (McAfee, Inc.) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [350240 2014-08-20] (McAfee, Inc.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [81296 2014-08-20] (McAfee, Inc.) S3 mfendisk; C:\WINDOWS\System32\DRIVERS\mfendisk.sys [87520 2014-06-20] (McAfee, Inc.) R3 mfendiskmp; C:\WINDOWS\System32\DRIVERS\mfendisk.sys [87520 2014-06-20] (McAfee, Inc.) R1 mfetdi2k; C:\WINDOWS\System32\drivers\mfetdi2k.sys [93624 2014-06-20] (McAfee, Inc.) R0 PxHelp20; C:\WINDOWS\System32\Drivers\PxHelp20.sys [20640 2005-04-25] (Sonic Solutions) [Brak podpisu cyfrowego] R3 Rasirda; C:\WINDOWS\System32\DRIVERS\rasirda.sys [19584 2001-08-17] (Microsoft Corporation) S3 SMCIRDA; C:\WINDOWS\System32\DRIVERS\smcirda.sys [36425 2001-10-26] (SMC) R3 w39n51; C:\WINDOWS\System32\DRIVERS\w39n51.sys [1428096 2006-01-19] (Intel® Corporation) U5 ewusbnet; C:\Windows\System32\Drivers\ewusbnet.sys [235392 2010-12-24] (Huawei Technologies Co., Ltd.) U0 mfewfpk; Brak ImagePath U5 ScsiPort; C:\WINDOWS\system32\drivers\scsiport.sys [96384 2008-04-13] (Microsoft Corporation) U5 Sdbus; C:\Windows\System32\Drivers\Sdbus.sys [79232 2008-04-13] (Microsoft Corporation) U1 WS2IFSL; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Trzy miesiące - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-02-23 17:20 - 2016-02-23 17:20 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\McAfee 2016-02-22 23:55 - 2016-02-23 16:49 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\boost_interprocess 2016-02-22 23:55 - 2016-02-22 23:55 - 00000844 _____ C:\Documents and Settings\All Users\Pulpit\Anvi Smart Defender.lnk 2016-02-22 23:55 - 2016-02-22 23:55 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Anvisoft 2016-02-22 23:54 - 2016-02-22 23:54 - 00000000 ____D C:\Program Files\Anvisoft 2016-02-22 23:54 - 2016-02-22 23:54 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Anvisoft 2016-02-22 23:54 - 2015-09-17 03:25 - 00038400 _____ (Anvisoft) C:\WINDOWS\system32\Drivers\asd2fsm.sys 2016-02-22 23:30 - 2016-02-23 17:56 - 00000000 ____D C:\FRST 2016-02-22 22:54 - 2016-02-22 22:55 - 101990228 _____ C:\rejestr_20160222_01.reg 2016-02-22 21:46 - 2016-02-22 21:46 - 00000168 _____ C:\Documents and Settings\Brim\Moje dokumenty\cc_20160222_214651.reg 2016-02-22 21:33 - 2016-02-22 21:33 - 00000000 ____D C:\Avenger 2016-02-22 20:39 - 2016-02-22 20:39 - 00023498 _____ C:\Documents and Settings\Brim\Moje dokumenty\cc_20160222_203938.reg 2016-02-16 20:38 - 2016-02-16 20:38 - 00001812 _____ C:\Documents and Settings\All Users\Pulpit\McAfee Security Scan Plus.lnk 2016-02-16 20:38 - 2016-02-16 20:38 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\McAfee Security Scan Plus 2016-02-14 22:33 - 2016-02-14 22:33 - 00000000 __SHD C:\Documents and Settings\NetworkService\PrivacIE 2016-02-14 22:32 - 2016-02-14 22:32 - 00000000 ___RD C:\Documents and Settings\NetworkService\Ulubione 2016-02-09 09:24 - 2016-02-09 09:24 - 00000000 ____D C:\Documents and Settings\Brim\Dane aplikacji\MAGIX 2016-02-09 09:24 - 2016-02-09 09:24 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\MAGIX 2016-02-05 21:58 - 2016-02-06 10:58 - 00000066 _____ C:\Documents and Settings\Brim\Dane aplikacji\WB.CFG 2016-02-04 12:58 - 2016-02-22 10:03 - 00000092 _____ C:\Documents and Settings\NetworkService\Dane aplikacji\WB.CFG 2016-02-02 22:16 - 2016-02-22 21:31 - 00000000 ____D C:\Program Files\OneSystemCare 2016-02-02 22:09 - 2016-02-22 20:42 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\simplitec 2016-02-02 22:09 - 2016-02-02 22:09 - 00000522 _____ C:\Documents and Settings\Brim\Pulpit\KMPlayer.lnk 2016-02-02 22:09 - 2016-02-02 22:09 - 00000000 ____D C:\Documents and Settings\Brim\Menu Start\Programy\The KMPlayer 2016-02-02 22:09 - 2015-05-06 16:54 - 00120200 _____ () C:\WINDOWS\system32\DLLDEV32i.dll 2016-02-02 22:07 - 2016-02-23 17:12 - 00000000 ____D C:\KMPlayer 2016-02-02 22:07 - 2016-02-04 12:55 - 00000000 ____D C:\Documents and Settings\All Users\Dane aplikacji\Package Cache 2016-02-02 21:58 - 2016-02-23 17:58 - 00000424 _____ C:\WINDOWS\Tasks\At1.job 2016-02-02 21:58 - 2016-02-02 21:58 - 00000000 ____D C:\Program Files\Winsere 2015-12-02 19:53 - 2015-12-02 19:53 - 00022528 _____ C:\Documents and Settings\Brim\Moje dokumenty\BONII.doc 2015-11-28 16:56 - 2015-11-28 16:56 - 07823721 _____ C:\Documents and Settings\Brim\Moje dokumenty\Kalkulator.zip ==================== Trzy miesiące - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-02-23 18:00 - 2007-03-28 09:46 - 00000000 ____D C:\Documents and Settings\Brim\Ustawienia lokalne\Temp 2016-02-23 17:54 - 2010-02-07 00:05 - 00001036 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-02-23 17:44 - 2012-04-06 07:42 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-02-23 17:20 - 2013-10-16 08:14 - 00001611 _____ C:\Documents and Settings\All Users\Pulpit\McAfee Internet Security.lnk 2016-02-23 17:20 - 2007-03-28 18:36 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy 2016-02-23 17:20 - 2007-03-28 18:36 - 00000000 ____D C:\Documents and Settings\All Users\Pulpit 2016-02-23 16:52 - 2014-03-14 15:39 - 00000220 _____ C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — logowanie.job 2016-02-23 16:52 - 2010-02-07 00:05 - 00001032 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-02-23 16:52 - 2007-03-28 18:36 - 00000000 ____D C:\WINDOWS\SMINST 2016-02-23 16:52 - 2004-09-20 09:31 - 00001158 _____ C:\WINDOWS\system32\wpa.dbl 2016-02-23 16:49 - 2004-09-20 09:31 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-02-23 16:48 - 2004-09-20 09:31 - 00032486 _____ C:\WINDOWS\SchedLgU.Txt 2016-02-23 16:47 - 2007-03-28 09:46 - 00000188 ___SH C:\Documents and Settings\Brim\ntuser.ini 2016-02-23 16:46 - 2007-03-28 18:36 - 00000000 _RSHD C:\WINDOWS\system32\dllcache 2016-02-23 13:51 - 2007-03-28 09:46 - 00000000 ___HD C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji 2016-02-23 07:42 - 2007-03-28 18:36 - 00000000 ___HD C:\WINDOWS\$hf_mig$ 2016-02-22 23:55 - 2007-03-28 18:36 - 00000000 __RHD C:\Documents and Settings\All Users\Dane aplikacji 2016-02-22 23:55 - 2007-03-28 18:36 - 00000000 ___HD C:\WINDOWS\inf 2016-02-22 21:46 - 2007-03-28 09:46 - 00000000 ___RD C:\Documents and Settings\Brim\Moje dokumenty 2016-02-22 21:46 - 2007-03-28 09:46 - 00000000 ____D C:\Documents and Settings\Brim 2016-02-22 21:33 - 2004-09-20 09:22 - 00159544 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-02-22 21:31 - 2007-03-28 09:46 - 00000000 __RHD C:\Documents and Settings\Brim\Dane aplikacji 2016-02-22 20:50 - 2015-02-17 20:15 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys 2016-02-22 20:45 - 2015-02-17 20:10 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware 2016-02-22 20:45 - 2015-02-17 20:10 - 00000000 ____D C:\Documents and Settings\All Users\Menu Start\Programy\Malwarebytes Anti-Malware 2016-02-22 20:36 - 2010-04-04 20:37 - 00000000 ____D C:\WINDOWS\Minidump 2016-02-22 20:16 - 2008-08-19 22:25 - 00000000 ____D C:\WINDOWS\pss 2016-02-22 20:16 - 2004-09-21 02:31 - 00000211 __RSH C:\boot.ini 2016-02-22 20:16 - 2004-09-20 11:09 - 00000227 _____ C:\WINDOWS\system.ini 2016-02-22 20:16 - 2004-09-20 09:18 - 00000573 _____ C:\WINDOWS\win.ini 2016-02-22 20:03 - 2012-03-19 21:30 - 00000460 ____H C:\WINDOWS\Tasks\User_Feed_Synchronization-{6444262C-E22C-4141-A118-8F037E1A3A61}.job 2016-02-22 17:51 - 2007-07-31 19:09 - 00025713 _____ C:\WINDOWS\CSTBox.INI 2016-02-22 17:51 - 2007-07-25 21:52 - 00000000 ____D C:\Documents and Settings\Brim\Dane aplikacji\Canon 2016-02-22 17:51 - 2007-03-28 09:46 - 00000000 ___RD C:\Documents and Settings\Brim\Moje dokumenty\Moje obrazy 2016-02-22 16:51 - 2014-03-31 20:40 - 00000000 ____D C:\Program Files\Mozilla Thunderbird 2016-02-20 22:20 - 2015-06-04 10:33 - 00023880 ____H C:\WINDOWS\system32\mlfcache.dat 2016-02-20 22:09 - 2007-03-28 09:46 - 00000000 ____D C:\Documents and Settings\Brim\Pulpit 2016-02-20 18:23 - 2012-02-01 18:43 - 00000284 _____ C:\WINDOWS\Tasks\AppleSoftwareUpdate.job 2016-02-20 17:06 - 2014-05-12 22:04 - 00001819 _____ C:\Documents and Settings\All Users\Pulpit\Google Chrome.lnk 2016-02-20 17:06 - 2011-06-14 15:20 - 00001825 _____ C:\Documents and Settings\All Users\Menu Start\Programy\Google Chrome.lnk 2016-02-16 20:37 - 2015-11-10 21:26 - 00000000 ____D C:\Program Files\McAfee Security Scan 2016-02-16 20:37 - 2007-03-28 18:36 - 00000000 ___RD C:\Documents and Settings\All Users\Menu Start\Programy\Autostart 2016-02-14 22:33 - 2007-03-28 18:36 - 00000000 __SHD C:\Documents and Settings\NetworkService 2016-02-13 16:25 - 2007-04-05 21:27 - 00002851 _____ C:\Documents and Settings\Brim\Menu Start\Program Updates.lnk 2016-02-12 11:31 - 2010-02-07 00:10 - 00000000 ____D C:\Documents and Settings\NetworkService\Ustawienia lokalne\Dane aplikacji\Google 2016-02-10 18:19 - 2015-11-19 11:42 - 00020480 _____ C:\Documents and Settings\Brim\Moje dokumenty\KSERO.xls 2016-02-10 16:50 - 2015-11-19 11:25 - 00022016 _____ C:\Documents and Settings\Brim\Moje dokumenty\WPŁATY NA BASEN.xls 2016-02-10 16:50 - 2015-11-19 10:43 - 00020992 _____ C:\Documents and Settings\Brim\Moje dokumenty\WPŁATY NA F.KLASOWY HO.xls 2016-02-10 07:44 - 2012-04-06 07:42 - 00796864 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe 2016-02-10 07:44 - 2012-03-26 11:14 - 00142528 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl 2016-02-10 07:31 - 2007-04-05 21:50 - 144254680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-02-08 15:49 - 2014-03-14 15:39 - 00000214 _____ C:\WINDOWS\Tasks\Powiadomienie o zakończeniu obsługi systemu Microsoft Windows XP — co miesiąc.job 2016-02-04 12:58 - 2007-03-28 18:36 - 00000000 ____D C:\Documents and Settings\NetworkService\Dane aplikacji 2016-02-02 22:12 - 2007-04-05 21:32 - 00032136 ____C C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\GDIPFONTCACHEV1.DAT 2016-02-02 22:09 - 2007-03-28 09:46 - 00000000 ___RD C:\Documents and Settings\Brim\Menu Start\Programy 2016-02-02 21:58 - 2007-03-28 18:36 - 00000000 ___RD C:\Documents and Settings\All Users\Dokumenty 2016-02-02 21:53 - 2007-05-18 19:28 - 00024064 ____C C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2016-01-27 23:21 - 2004-09-20 09:26 - 01266866 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-01-27 23:21 - 2004-09-20 09:26 - 00559492 _____ C:\WINDOWS\system32\perfh015.dat 2016-01-27 23:21 - 2004-09-20 09:26 - 00107180 _____ C:\WINDOWS\system32\perfc015.dat ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-02-05 21:58 - 2016-02-06 10:58 - 0000066 _____ () C:\Documents and Settings\Brim\Dane aplikacji\WB.CFG 2007-03-28 09:46 - 2006-08-20 19:14 - 0000000 ____C () C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\AtStart.txt 2007-05-18 19:28 - 2016-02-02 21:53 - 0024064 ____C () C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2007-03-28 09:46 - 2006-08-20 19:14 - 0000000 ____C () C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\DSwitch.txt 2007-03-28 09:46 - 2006-08-20 18:44 - 0000135 ____C () C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\fusioncache.dat 2007-03-28 09:46 - 2006-08-20 19:14 - 0000000 ____C () C:\Documents and Settings\Brim\Ustawienia lokalne\Dane aplikacji\QSwitch.txt 2015-10-10 20:55 - 2015-10-10 20:55 - 0001750 _____ () C:\Documents and Settings\All Users\Dane aplikacji\QTSBandwidthCache Pliki do przeniesienia lub usunięcia: ==================== C:\Windows\Tasks\At1.job ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe [2010-10-24 23:06] - [2001-08-17 15:00] - 0021504 ____A (Microsoft Corporation) 585398603F570F9705774D65D292E5D1 C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo ==================== Koniec FRST.txt ============================