Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21-08-2016 01 Uruchomiony przez k.krupa (administrator) GIAXIT01 (23-08-2016 09:40:21) Uruchomiony z C:\Users\k.krupa\Downloads Załadowane profile: k.krupa & MSSQL$ENOVA (Dostępne profile: k.krupa & MSSQL$ENOVA & Classic .NET AppPool & Soneta Web Test & .NET v4.5 & DefaultAppPool & .NET v2.0 & .NET v4.5 Classic & .NET v2.0 Classic) Platform: Windows 10 Pro Wersja 1607 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (CobianSoft, Luis Cobian) C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe (ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe () C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\sqlservr.exe (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpn.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Luis Cobian, CobianSoft) C:\Program Files (x86)\Cobian Backup 11\cbService.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\sqlservr.exe (ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (ownCloud) C:\Program Files\OwnCloud\owncloud.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Soneta) C:\Program Files\Soneta\enova 11.4.6025\SonetaExplorer.exe (Dominik Reichl) C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\rundll32.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\mstsc.exe (Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated) HKLM\...\Run: [tvncontrol] => C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC.) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2779136 2016-06-11] (Dominik Reichl) HKLM-x32\...\Run: [SunJavaUpdateSched] => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23375200 2016-07-29] (Google) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [ownCloud] => C:\Program Files\ownCloud\owncloud.exe [2026510 2016-08-08] (ownCloud) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [owncloud-dysk] => subst O: C:\Users\k.krupa\ownCloud HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\RunOnce: [Uninstall C:\Users\k.krupa\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\k.krupa\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64" HKU\S-1-5-80-2909360683-993700205-2603473673-144821520-3220573649\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) GroupPolicyScripts: Ograniczenia <======= UWAGA GroupPolicyScripts\User: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\Parameters: [DhcpNameServer] 192.168.69.1 192.168.69.20 192.168.69.1 8.8.8.8 Tcpip\..\Interfaces\{17a3d2d6-42d4-4be5-b0f4-d9de612b9e0c}: [DhcpNameServer] 192.168.69.1 192.168.69.20 192.168.69.1 8.8.8.8 Tcpip\..\Interfaces\{bd2856a1-d3e0-4a95-87ba-3f94bc7b82d0}: [DhcpNameServer] 192.168.69.1 192.168.69.20 192.168.69.1 8.8.8.8 Tcpip\..\Interfaces\{bede1785-9501-4c8e-b030-e406afce60f1}: [DhcpNameServer] 172.16.0.2 172.16.1.2 8.8.8.8 Tcpip\..\Interfaces\{c9a06725-a6d2-449d-9091-75bf0a81952a}: [DhcpNameServer] 192.168.16.3 Internet Explorer: ================== BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-02] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-02] (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-02] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-21] (Oracle Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-02] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-21] (Oracle Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-02] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-02] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-02] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-02] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\k.krupa\AppData\Roaming\Mozilla\Firefox\Profiles\znb1h4uk.default FF Homepage: google.pl FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-13] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] () FF Plugin-x32: @IPC/npmedia3.0.0.1,version=3.0.0.1 -> C:\Program Files\webrec\Torch\3.0.0.1\npmedia3.0.0.1.dll [2013-11-16] () FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-21] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-02] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-02] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) FF Extension: Adblock Plus - C:\Users\k.krupa\AppData\Roaming\Mozilla\Firefox\Profiles\znb1h4uk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-24] Chrome: ======= CHR Profile: C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-10] CHR Extension: (Google Drive) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-10] CHR Extension: (YouTube) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-10] CHR Extension: (Google Sheets) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-10] CHR Extension: (Google Docs Offline) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-10] CHR Extension: (What's your name?) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-07-31] CHR Extension: (Chrome Web Store Payments) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-10] CHR Extension: (Gmail) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-10] CHR Extension: (Chrome Media Router) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-18] CHR HKU\S-1-5-21-947326178-1816697417-1494526646-1611\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AktualizujPP; C:\Program Files (x86)\Asseco Poland SA\Płatnik\ASSECO.AKTUALIZUJ.PP.exe [32096 2016-04-06] (Asseco Poland S.A.) R2 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2950856 2016-07-25] (Microsoft Corporation) R2 CobianBackup11; C:\Program Files (x86)\Cobian Backup 11\cbService.exe [1131008 2013-03-07] (Luis Cobian, CobianSoft) [Brak podpisu cyfrowego] S2 debugregsvc; C:\Windows\System32\debugregsvc.dll [29184 2016-07-15] (Microsoft Corporation) S3 DeveloperToolsService; C:\WINDOWS\System32\DeveloperToolsSvc.exe [104448 2016-07-15] (Microsoft Corporation) S3 EHttpSrv; C:\Program Files\ESET\ESET Endpoint Antivirus\ehttpsrv.exe [43208 2015-11-27] (ESET) R2 ekrn; C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe [1612000 2015-11-27] (ESET) S3 eshasrv; C:\Program Files\ESET\ESET Endpoint Antivirus\eshasrv.exe [185032 2015-11-27] (ESET) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2015-11-20] (Microsoft Corporation) S3 LxssManager; C:\Windows\system32\lxss\LxssManager.dll [327168 2016-08-03] (Microsoft Corporation) R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [93560 2016-03-09] (Microsoft Corporation) R2 MSSQL$ENOVA; C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\sqlservr.exe [370368 2016-05-27] (Microsoft Corporation) R2 MSSQL$SQL2008; c:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\sqlservr.exe [57820696 2008-07-11] (Microsoft Corporation) R2 MySQL57; C:\Program Files\MySQL\MySQL Server 5.7\bin\mysqld.exe [39695360 2016-03-28] () [Brak podpisu cyfrowego] R2 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38240 2016-02-01] (The OpenVPN Project) S3 ose; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [200240 2016-07-23] (Microsoft Corporation) [Brak podpisu cyfrowego] S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-07-17] (Microsoft Corporation) S3 Soneta Service Test; C:\Soneta Services\Soneta Service Test\SonetaServer.exe [24992 2016-06-30] (Soneta) S4 SQLAgent$ENOVA; C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\SQLAGENT.EXE [613056 2016-05-27] (Microsoft Corporation) S4 SQLAgent$SQL2008; c:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\SQLAGENT.EXE [430616 2008-07-11] (Microsoft Corporation) R3 SshBroker; C:\Windows\System32\SshBroker.dll [360960 2016-07-15] (Microsoft Corporation) R3 SshProxy; C:\Windows\System32\SshProxy.dll [275456 2016-07-15] (Microsoft Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [137216 2015-11-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC.) S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-07-17] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S4 WebManagement; C:\Windows\system32\WebManagement.exe [1000448 2016-07-15] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11758840 2015-11-30] (Broadcom Corp) R3 BCMWL63A; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11758840 2015-11-30] (Broadcom Corp) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [253752 2015-11-11] (ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186272 2015-11-11] (ESET) R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [169744 2015-11-11] (ESET) S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [181160 2016-04-07] (ESET) S3 huawei_enumerator; C:\Windows\System32\drivers\ew_jubusenum.sys [83456 2010-05-22] (Huawei Technologies Co., Ltd.) [Brak podpisu cyfrowego] S3 hwdatacard; C:\Windows\system32\DRIVERS\ewusbmdm.sys [120704 2010-03-25] (Huawei Technologies Co., Ltd.) [Brak podpisu cyfrowego] R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) R0 lxss; C:\Windows\System32\drivers\lxss.sys [15712 2016-08-03] (Microsoft Corporation) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S4 RsFx0301; C:\Windows\System32\DRIVERS\RsFx0301.sys [249024 2016-05-27] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [936192 2016-04-21] (Realtek ) R3 SensorsSimulatorDriver; C:\Windows\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation) R1 VBoxNetAdp; C:\Windows\System32\drivers\VBoxNetAdp6.sys [119712 2016-07-18] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [192864 2016-07-18] (Oracle Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) NETSVC: debugregsvc -> C:\Windows\System32\debugregsvc.dll (Microsoft Corporation) NETSVC: LxssManager -> C:\Windows\system32\lxss\LxssManager.dll (Microsoft Corporation) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-23 09:40 - 2016-08-23 09:40 - 00021106 _____ C:\Users\k.krupa\Downloads\FRST.txt 2016-08-23 09:40 - 2016-08-23 09:40 - 00000000 ____D C:\FRST 2016-08-23 09:39 - 2016-08-23 09:39 - 02396672 _____ (Farbar) C:\Users\k.krupa\Downloads\FRST64.exe 2016-08-23 08:33 - 2016-08-23 08:33 - 00003332 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task 2016-08-23 08:26 - 2016-08-23 08:26 - 00000000 ___HD C:\OneDriveTemp 2016-08-22 15:27 - 2016-08-22 15:27 - 00047266 _____ C:\Users\k.krupa\Documents\Dokument sprzedaży_FV0816021.pdf 2016-08-22 15:24 - 2016-08-22 15:24 - 00076188 _____ C:\Users\k.krupa\Downloads\Faktura_0350_08_16.pdf 2016-08-22 14:05 - 2016-08-22 14:05 - 00000000 ____D C:\Users\k.krupa\Downloads\PSS PldEng IS V4.06.6.R.130415 2016-08-22 14:05 - 2016-08-22 14:05 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PSS 2016-08-22 14:05 - 2016-08-22 14:05 - 00000000 ____D C:\Program Files (x86)\Pro Surveillance System 2016-08-22 14:03 - 2016-08-22 14:04 - 56627868 _____ C:\Users\k.krupa\Downloads\PSS PldEng IS V4.06.6.R.130415.zip 2016-08-22 14:02 - 2016-08-22 15:36 - 00000000 ____D C:\Program Files (x86)\BCS 2016-08-22 14:02 - 2016-08-22 14:02 - 00000000 ____D C:\Users\k.krupa\AppData\Local\CrashRpt 2016-08-22 14:01 - 2016-02-01 11:51 - 51231576 _____ (BCS) C:\Users\k.krupa\Downloads\BCS_Manager_pl.exe 2016-08-22 10:15 - 2016-08-22 10:15 - 00059779 _____ C:\Users\k.krupa\Documents\Materialy.xml 2016-08-22 10:08 - 2016-08-22 10:10 - 00000515 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2016-08-22 08:56 - 2016-08-22 08:55 - 00005164 _____ C:\Users\k.krupa\Documents\server.wsm1.zip 2016-08-19 10:52 - 2016-08-19 15:16 - 00000000 ____D C:\Users\k.krupa\Documents\Procedura archiwizacji 2016-08-18 21:15 - 2016-08-18 21:23 - 160393848 _____ (Soneta Sp. z o. o. ) C:\Users\k.krupa\Downloads\enova365_11.4.6068_instalator_standard.exe 2016-08-18 21:15 - 2016-08-18 21:22 - 160964608 _____ C:\Users\k.krupa\Downloads\enova365_11.4.6068_instalator_standard.msi 2016-08-18 21:15 - 2016-08-18 21:22 - 147688802 _____ C:\Users\k.krupa\Downloads\enova365_11.4.6068_instalator_multi.zip 2016-08-18 12:20 - 2016-08-18 12:20 - 00000000 ____D C:\Users\k.krupa\Downloads\(34840002) 2016-08-18 12:19 - 2016-08-18 12:19 - 00000000 ____D C:\Users\k.krupa\Downloads\(45180005) 2016-08-18 12:06 - 2016-08-18 12:06 - 00082504 _____ C:\Users\k.krupa\Downloads\Faktura_0315_08_16.pdf 2016-08-17 14:40 - 2016-08-17 14:41 - 08985296 _____ (Martin Prikryl ) C:\Users\k.krupa\Downloads\WinSCP-5.9.1-Setup.exe 2016-08-17 14:01 - 2016-08-17 14:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cobian Backup 11 2016-08-16 11:41 - 2016-08-16 11:41 - 01011704 ____N C:\Users\k.krupa\Documents\Kopia 16. prognozy 10.08.2016.xlsx 2016-08-16 09:56 - 2016-08-16 09:56 - 00084479 ____N C:\Users\k.krupa\Downloads\Faktura_0270_08_16.pdf 2016-08-16 09:15 - 2016-08-16 10:22 - 00000000 ____D C:\Users\k.krupa\Documents\faktury 2016-08-16 08:54 - 2016-08-16 08:54 - 00080952 ____N C:\Users\k.krupa\Downloads\Faktura_0223_08_16.pdf 2016-08-12 16:23 - 2016-08-12 16:23 - 00000104 ____N C:\Users\k.krupa\Desktop\dagma.txt 2016-08-12 15:06 - 2016-08-12 15:06 - 01086353 ____N C:\Users\k.krupa\Documents\Kopia 16. prognozy 10.08.2016 (3).xlsx 2016-08-12 11:47 - 2016-08-12 11:46 - 00045680 ____N C:\Users\k.krupa\Downloads\Dokument sprzedaży_FV0816015.pdf 2016-08-11 13:56 - 2016-08-11 13:56 - 00088521 ____N C:\Users\k.krupa\Downloads\2862506.pdf 2016-08-11 08:33 - 2016-08-11 08:33 - 00000000 ____D C:\Users\k.krupa\Documents\stopka 2016-08-10 17:10 - 2016-08-10 17:10 - 00000000 ____D C:\WINDOWS\Panther 2016-08-10 15:04 - 2016-08-10 16:19 - 00000000 ____D C:\Users\k.krupa\Documents\rko 2016-08-10 10:07 - 2016-08-02 10:48 - 22219328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-08-10 10:07 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2016-08-10 10:07 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-08-10 10:07 - 2016-08-02 09:58 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-08-10 10:07 - 2016-08-02 09:55 - 03617280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-08-10 10:07 - 2016-08-02 06:51 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-08-10 10:07 - 2016-08-02 06:37 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-08-10 10:07 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-08-10 10:07 - 2016-08-02 06:27 - 07623168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-08-10 10:07 - 2016-08-02 06:25 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2016-08-10 10:07 - 2016-08-02 06:25 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-08-10 10:07 - 2016-08-02 06:23 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-08-10 10:07 - 2016-08-02 06:13 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-08-10 10:07 - 2016-08-02 06:09 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2016-08-10 10:06 - 2016-08-02 11:00 - 00791392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxcore.sys 2016-08-10 10:06 - 2016-08-02 10:58 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-08-10 10:06 - 2016-08-02 10:53 - 02745224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-08-10 10:06 - 2016-08-02 10:52 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-08-10 10:06 - 2016-08-02 10:48 - 00241496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-08-10 10:06 - 2016-08-02 10:44 - 00151232 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-08-10 10:06 - 2016-08-02 10:23 - 22572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-08-10 10:06 - 2016-08-02 10:21 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2016-08-10 10:06 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2016-08-10 10:06 - 2016-08-02 10:20 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-08-10 10:06 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2016-08-10 10:06 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-08-10 10:06 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-08-10 10:06 - 2016-08-02 10:12 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-08-10 10:06 - 2016-08-02 10:11 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:11 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-08-10 10:06 - 2016-08-02 10:10 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-08-10 10:06 - 2016-08-02 10:09 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:07 - 23682048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-08-10 10:06 - 2016-08-02 10:07 - 09125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-08-10 10:06 - 2016-08-02 10:03 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-08-10 10:06 - 2016-08-02 10:00 - 05511168 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2016-08-10 10:06 - 2016-08-02 09:59 - 08124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-08-10 10:06 - 2016-08-02 09:57 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-08-10 10:06 - 2016-08-02 09:56 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-08-10 10:06 - 2016-08-02 09:56 - 01785856 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-08-10 10:06 - 2016-08-02 09:56 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-08-10 10:06 - 2016-08-02 09:55 - 01508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-08-10 10:06 - 2016-08-02 09:52 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2016-08-10 10:06 - 2016-08-02 06:56 - 02251440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-08-10 10:06 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2016-08-10 10:06 - 2016-08-02 06:39 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2016-08-10 10:06 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2016-08-10 10:06 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-08-10 10:06 - 2016-08-02 06:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-08-10 10:06 - 2016-08-02 06:28 - 19423232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-08-10 10:06 - 2016-08-02 06:26 - 19417600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-08-10 10:06 - 2016-08-02 06:26 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-08-10 10:06 - 2016-08-02 06:16 - 06044672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-08-10 10:06 - 2016-08-02 06:13 - 01600512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-08-10 10:06 - 2016-08-02 06:12 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-08-09 18:39 - 2015-11-30 21:31 - 11758840 _____ (Broadcom Corp) C:\WINDOWS\system32\Drivers\bcmwl63a.sys 2016-08-09 18:39 - 2015-11-30 21:31 - 04134912 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv64.dll 2016-08-09 18:39 - 2015-11-30 21:31 - 03779584 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui64.dll 2016-08-09 16:09 - 2016-08-09 16:09 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 9.0 2016-08-09 16:09 - 2016-08-09 16:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 9.0 2016-08-09 16:09 - 2008-07-11 06:54 - 00111640 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf-MSSQL$SQL2008-sqlctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00079896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQL$SQL2008-sqlctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00078872 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf-SQLAgent$SQL2008-sqlagtctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00050200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-SQLAgent$SQL2008-sqlagtctr10.0.1600.22.dll 2016-08-09 13:03 - 2016-08-09 13:24 - 00000000 ____D C:\Users\k.krupa\Downloads\wsi_cert 2016-08-04 12:30 - 2016-08-04 12:28 - 00268765 ____N C:\Users\k.krupa\Downloads\formularz.pdf 2016-08-04 09:30 - 2016-08-04 09:30 - 00000000 ___RD C:\Users\k.krupa\AppData\Roaming\Brother 2016-08-04 09:30 - 2016-08-04 09:30 - 00000000 ____D C:\Users\k.krupa\AppData\LocalLow\Brother 2016-08-03 20:20 - 2016-08-03 20:20 - 00001852 _____ C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bash on Ubuntu on Windows.lnk 2016-08-03 20:14 - 2016-08-22 15:43 - 00000000 __SHD C:\Users\k.krupa\AppData\Local\lxss 2016-08-03 20:12 - 2016-08-03 20:12 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 01708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01265424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01260384 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00843104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ___SD C:\WINDOWS\system32\lxss 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ____D C:\Program Files\CMAK 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ____D C:\Program Files (x86)\CMAK 2016-08-03 20:12 - 2016-07-15 20:58 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll 2016-08-03 20:12 - 2016-07-15 20:28 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll 2016-08-03 20:12 - 2016-07-15 20:28 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARP12Debug.dll 2016-08-03 20:12 - 2016-07-15 20:26 - 00376320 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe 2016-08-03 20:12 - 2016-07-15 20:26 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll 2016-08-03 20:12 - 2016-07-15 20:25 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll 2016-08-03 20:12 - 2016-07-15 20:23 - 14388224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll 2016-08-03 20:12 - 2016-07-15 20:22 - 00429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll 2016-08-03 20:12 - 2016-07-15 20:22 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll 2016-08-03 20:12 - 2016-07-15 20:19 - 01323520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 20:16 - 05850624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe 2016-08-03 20:12 - 2016-07-15 20:16 - 04969472 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe 2016-08-03 20:12 - 2016-07-15 20:15 - 06582784 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12warp.dll 2016-08-03 20:12 - 2016-07-15 20:14 - 02485760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 20:13 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll 2016-08-03 20:12 - 2016-07-15 20:13 - 01198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe 2016-08-03 20:12 - 2016-07-15 20:13 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll 2016-08-03 20:12 - 2016-07-15 20:12 - 00297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll 2016-08-03 20:12 - 2016-07-15 20:12 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll 2016-08-03 20:12 - 2016-07-15 20:11 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll 2016-08-03 20:12 - 2016-07-15 19:58 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll 2016-08-03 20:12 - 2016-07-15 19:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll 2016-08-03 20:12 - 2016-07-15 19:43 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARP12Debug.dll 2016-08-03 20:12 - 2016-07-15 19:42 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll 2016-08-03 20:12 - 2016-07-15 19:41 - 00355840 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe 2016-08-03 20:12 - 2016-07-15 19:41 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll 2016-08-03 20:12 - 2016-07-15 19:39 - 11670528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll 2016-08-03 20:12 - 2016-07-15 19:38 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll 2016-08-03 20:12 - 2016-07-15 19:37 - 01935360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 19:37 - 01074176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 19:35 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll 2016-08-03 20:12 - 2016-07-15 19:32 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe 2016-08-03 20:12 - 2016-07-15 19:32 - 03701248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe 2016-08-03 20:12 - 2016-07-15 19:31 - 04977664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12warp.dll 2016-08-03 20:12 - 2016-07-15 19:29 - 00953344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe 2016-08-03 20:12 - 2016-07-15 19:29 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll 2016-08-03 20:12 - 2016-07-15 19:29 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll 2016-08-03 20:11 - 2016-08-03 20:11 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-08-03 20:11 - 2016-08-03 20:11 - 00000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal 2016-08-03 20:11 - 2016-08-03 20:11 - 00000000 ___RD C:\WINDOWS\WebManagement 2016-08-03 20:11 - 2016-08-03 19:15 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2016-08-03 20:11 - 2016-07-15 19:28 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe 2016-08-03 20:11 - 2016-07-15 19:28 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll 2016-08-03 20:11 - 2016-07-15 19:28 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll 2016-08-03 20:11 - 2016-07-15 19:27 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshProxy.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe 2016-08-03 20:11 - 2016-07-15 19:26 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSession.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSftp.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshBroker.dll 2016-08-03 20:11 - 2016-07-15 19:17 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe 2016-08-03 20:10 - 2016-08-03 20:10 - 00000000 ____D C:\ProgramData\USOShared 2016-08-03 20:07 - 2016-08-03 20:07 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files\MSBuild 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\inetpub 2016-08-03 20:06 - 2016-08-03 19:41 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-08-03 20:05 - 2016-08-04 08:02 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ConnectedDevicesPlatform 2016-08-03 20:05 - 2016-08-03 20:05 - 00000020 ___SH C:\Users\k.krupa\ntuser.ini 2016-08-03 20:05 - 2016-05-25 15:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 15:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 15:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-08-03 20:05 - 2016-05-25 12:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 12:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 12:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Szablony 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Menu Start 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2016-08-03 20:03 - 2016-08-03 20:03 - 00038103 _____ C:\WINDOWS\diagwrn.xml 2016-08-03 20:03 - 2016-08-03 20:03 - 00038103 _____ C:\WINDOWS\diagerr.xml 2016-08-03 20:01 - 2016-08-23 08:25 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-08-03 20:01 - 2016-08-03 20:01 - 00023044 _____ C:\WINDOWS\system32\emptyregdb.dat 2016-08-03 20:01 - 2016-08-03 20:01 - 00003580 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-08-03 20:01 - 2016-08-03 20:01 - 00003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-08-03 20:01 - 2016-08-03 20:01 - 00003356 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-08-03 20:01 - 2016-08-03 20:01 - 00003144 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-08-03 20:01 - 2016-08-03 20:01 - 00000000 ____D C:\WINDOWS\System32\Tasks\MySQL 2016-08-03 19:55 - 2016-08-03 19:55 - 00000020 ___SH C:\Users\MSSQL$ENOVA\ntuser.ini 2016-08-03 19:54 - 2016-08-03 19:54 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2010 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default\AppData\Local\Google 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2010 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default User\AppData\Local\Google 2016-08-03 19:23 - 2016-08-03 19:54 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2016-08-03 19:20 - 2016-08-23 08:25 - 00000000 ____D C:\Users\MSSQL$ENOVA 2016-08-03 19:20 - 2016-08-17 07:58 - 00000000 ____D C:\Users\k.krupa 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\Soneta Web Test 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\DefaultAppPool 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\.NET v4.5 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\.NET v2.0 Classic 2016-08-03 19:20 - 2016-08-03 20:00 - 00000000 ____D C:\Users\.NET v4.5 Classic 2016-08-03 19:20 - 2016-08-03 20:00 - 00000000 ____D C:\Users\.NET v2.0 2016-08-03 19:20 - 2016-08-03 19:59 - 00000000 ____D C:\Users\Classic .NET AppPool 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Soneta Web Test\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Dane aplikacji 2016-08-03 19:18 - 2016-07-16 13:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2016-08-03 19:17 - 2016-08-23 08:30 - 02275600 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-08-03 19:17 - 2016-08-03 19:17 - 01539412 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2016-08-03 19:16 - 2016-08-03 19:16 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf 2016-08-03 19:16 - 2016-08-03 19:16 - 00000000 ____D C:\Program Files\Synaptics 2016-08-03 19:15 - 2016-08-23 08:25 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-08-03 19:15 - 2016-08-10 17:10 - 00342088 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-08-02 14:55 - 2016-08-02 08:37 - 00237016 ____N C:\Users\k.krupa\Downloads\faktura.pdf 2016-08-02 14:14 - 2016-08-02 14:14 - 05447607 ____N C:\Users\k.krupa\Downloads\instalator_enova365_helper_1.2.53.zip 2016-08-02 13:52 - 2016-08-02 13:52 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\NPS 2016-08-01 14:22 - 2016-08-08 11:01 - 00000144 ____N C:\Users\k.krupa\Desktop\kamery kartmap.txt 2016-08-01 12:23 - 2016-08-01 12:23 - 00227566 ____T C:\Users\k.krupa\Documents\polonia-kadry.pdf 2016-08-01 12:22 - 2016-08-01 12:22 - 00000000 ____D C:\Users\k.krupa\AppData\LocalLow\Temp 2016-08-01 12:18 - 2016-08-01 12:29 - 00033723 ____N C:\Users\k.krupa\Documents\Kopia Plik do importu umowy o dzieło-3-przykladowe.xlsx 2016-08-01 09:49 - 2016-08-23 08:39 - 00000076 _____ C:\Users\k.krupa\Desktop\crm.txt 2016-07-26 15:12 - 2016-07-26 15:12 - 00001044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vbsedit 32-bit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Htaedit 32-bit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vbsedit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Htaedit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Adersoft 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\ProgramData\Vbsedit 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Program Files\Vbsedit 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Program Files (x86)\Vbsedit 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\ProgramData\Apple 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\Program Files\Bonjour 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-07-26 13:47 - 2016-07-26 14:21 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Andy 2016-07-25 09:52 - 2016-08-03 19:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2016-07-25 09:52 - 2016-07-25 09:52 - 00000000 ____D C:\Program Files\Oracle ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-23 09:41 - 2016-03-18 12:37 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ownCloud 2016-08-23 09:40 - 2016-03-10 21:01 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Skype 2016-08-23 08:54 - 2016-03-10 21:00 - 00002290 ____H C:\Users\k.krupa\Documents\Default.rdp 2016-08-23 08:51 - 2016-03-10 20:35 - 00000256 _____ C:\WINDOWS\system32\config\netlogon.ftl 2016-08-23 08:49 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-08-23 08:49 - 2016-03-18 12:38 - 00000000 ___RD C:\Users\k.krupa\OwnCloud 2016-08-23 08:33 - 2016-06-27 14:07 - 00002425 _____ C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-08-23 08:33 - 2016-03-10 20:39 - 00000000 ___RD C:\Users\k.krupa\OneDrive 2016-08-23 08:31 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-23 08:31 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-08-23 08:30 - 2016-07-17 00:05 - 00778832 _____ C:\WINDOWS\system32\perfh015.dat 2016-08-23 08:30 - 2016-07-17 00:05 - 00200850 _____ C:\WINDOWS\system32\perfc015.dat 2016-08-23 08:25 - 2016-05-16 15:28 - 00000000 ___RD C:\Users\k.krupa\Dysk Google 2016-08-22 16:00 - 2016-03-11 09:09 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Soneta 2016-08-22 15:59 - 2016-03-10 20:48 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\KeePass 2016-08-22 15:52 - 2016-03-10 20:39 - 00000000 ____D C:\Users\k.krupa\Documents\KeePass 2016-08-22 15:31 - 2016-03-11 09:08 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Soneta 2016-08-22 15:24 - 2016-03-10 20:39 - 00000000 ____D C:\Users\k.krupa\Documents\enova 2016-08-22 14:05 - 2016-03-10 20:37 - 00000000 ____D C:\Users\k.krupa\AppData\Local\VirtualStore 2016-08-22 08:56 - 2016-03-11 11:33 - 00000600 _____ C:\Users\k.krupa\AppData\Roaming\winscp.rnd 2016-08-22 08:55 - 2016-03-11 10:44 - 00000600 _____ C:\Users\k.krupa\AppData\Local\PUTTY.RND 2016-08-22 07:59 - 2016-03-14 10:06 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\TeamViewer 2016-08-19 14:52 - 2016-03-10 20:36 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Packages 2016-08-19 13:02 - 2016-04-26 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2016-08-19 13:02 - 2016-04-26 14:00 - 00000000 ____D C:\Program Files (x86)\UltraISO 2016-08-19 08:15 - 2016-03-10 20:27 - 00000000 ____D C:\DodatkiEnova 2016-08-19 08:11 - 2016-06-06 12:06 - 00000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk 2016-08-19 08:11 - 2016-03-21 16:55 - 00000000 ____D C:\Program Files\OwnCloud 2016-08-19 08:11 - 2016-03-17 19:31 - 00000000 ____D C:\ProgramData\Package Cache 2016-08-18 21:24 - 2016-03-10 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Soneta 2016-08-18 21:24 - 2016-03-10 20:12 - 00000000 ____D C:\Program Files\Soneta 2016-08-18 21:19 - 2016-05-16 15:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2016-08-18 10:00 - 2016-03-14 13:28 - 00000000 ____D C:\Users\k.krupa\.VirtualBox 2016-08-17 14:41 - 2016-03-10 20:19 - 00001150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2016-08-17 14:41 - 2016-03-10 20:19 - 00000000 ____D C:\Program Files (x86)\WinSCP 2016-08-17 14:01 - 2016-04-26 09:25 - 00000000 ____D C:\Program Files (x86)\Cobian Backup 11 2016-08-17 11:57 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-08-16 11:01 - 2016-06-13 15:01 - 00001024 ____H C:\AMTAG.BIN 2016-08-12 13:08 - 2016-07-06 13:55 - 00000000 ____D C:\Users\k.krupa\Documents\enova.integrator 2016-08-12 08:59 - 2016-03-31 08:22 - 00000000 ____D C:\Users\k.krupa\Documents\Visual Studio 2015 2016-08-11 18:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-08-11 14:23 - 2016-03-18 09:19 - 00000000 ____D C:\Users\k.krupa\Documents\SQL Server Management Studio 2016-08-11 08:00 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-08-10 17:10 - 2016-03-10 19:51 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-08-10 16:20 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-08-10 16:20 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2016-08-10 11:59 - 2016-03-10 20:01 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-08-10 11:51 - 2016-03-10 20:01 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-08-09 16:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2016-08-09 16:09 - 2016-03-18 09:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2016-08-09 16:09 - 2016-03-18 09:08 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2016-08-09 16:08 - 2016-03-18 09:13 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2016-08-09 16:08 - 2016-03-18 09:12 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2016-08-09 16:08 - 2016-03-18 09:11 - 00000000 ____D C:\WINDOWS\system32\1033 2016-08-08 22:28 - 2016-03-10 20:14 - 00002290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-08-08 12:46 - 2016-07-01 11:27 - 00020046 ____N C:\Users\k.krupa\Desktop\aktualizacja.xlsx 2016-08-05 08:33 - 2016-03-10 20:28 - 00000000 ___DX C:\Tools 2016-08-04 08:16 - 2016-03-10 20:10 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-08-04 08:05 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\appcompat 2016-08-04 08:03 - 2016-03-10 20:22 - 00002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2016-08-03 20:15 - 2016-07-16 13:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-08-03 20:11 - 2016-07-16 13:42 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\LxRun.exe 2016-08-03 20:11 - 2016-07-16 13:42 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\bash.exe 2016-08-03 20:11 - 2016-07-16 13:42 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxss.sys 2016-08-03 20:10 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\USOPrivate 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-08-03 20:06 - 2016-07-16 13:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2016-08-03 20:06 - 2016-07-16 13:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2016-08-03 20:06 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2016-08-03 20:06 - 2016-07-16 13:43 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2016-08-03 20:05 - 2016-05-12 14:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0 2016-08-03 20:05 - 2016-03-31 08:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0 2016-08-03 20:05 - 2016-03-31 07:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0 2016-08-03 20:04 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows NT 2016-08-03 20:04 - 2016-03-10 20:36 - 00008072 __RSH C:\ProgramData\ntuser.pol 2016-08-03 20:03 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-08-03 20:03 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Registration 2016-08-03 20:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2016-08-03 20:01 - 2016-07-16 13:47 - 00000000 __RHD C:\Users\Public\Libraries 2016-08-03 19:54 - 2016-07-22 12:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\webplugin.exe 2016-08-03 19:54 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-08-03 19:54 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-08-03 19:54 - 2016-07-15 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-08-03 19:54 - 2016-06-23 14:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2016 2016-08-03 19:54 - 2016-05-13 16:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework 2.1 ENU 2016-08-03 19:54 - 2016-05-12 14:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Python 2.7 2016-08-03 19:54 - 2016-05-12 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MySQL 2016-08-03 19:54 - 2016-04-12 08:57 - 00000000 ____D C:\WINDOWS\SysWOW64\FFU Loader Driver 2016-08-03 19:54 - 2016-03-18 09:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014 2016-08-03 19:54 - 2016-03-17 09:03 - 00000000 ____D C:\WINDOWS\pl 2016-08-03 19:54 - 2016-03-16 09:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-08-03 19:54 - 2016-03-15 13:24 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft WSE 3.0 2016-08-03 19:54 - 2016-03-15 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Płatnik 10.01.001 2016-08-03 19:54 - 2016-03-11 09:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-08-03 19:54 - 2016-03-10 21:04 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2 2016-08-03 19:54 - 2016-03-10 20:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2016-08-03 19:54 - 2016-03-10 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016 2016-08-03 19:54 - 2016-03-10 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightVNC 2016-08-03 19:54 - 2016-03-10 20:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN 2016-08-03 19:54 - 2015-10-30 08:28 - 00000000 ____D C:\Users\Default.migrated 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\spool 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-08-03 19:41 - 2016-07-14 10:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression 2016-08-03 19:41 - 2016-07-14 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015 2016-08-03 19:41 - 2016-05-10 11:17 - 00000000 ____D C:\Program Files\IIS 2016-08-03 19:41 - 2016-03-31 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2016-08-03 19:41 - 2016-03-21 16:59 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2016-08-03 19:41 - 2016-03-15 13:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asseco Poland SA 2016-08-03 19:41 - 2016-03-10 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-08-03 19:41 - 2016-03-10 20:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows 2016-08-03 19:41 - 2016-03-10 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soneta 2016-08-03 19:41 - 2016-03-10 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2016-08-03 19:23 - 2015-10-30 09:24 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2016-08-03 19:17 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-08-03 19:16 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\PrintDialog 2016-08-03 19:16 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\MiracastView 2016-08-03 18:12 - 2016-04-05 18:36 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-08-03 18:07 - 2016-03-10 20:14 - 00001068 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-08-03 17:20 - 2016-03-10 20:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-08-03 17:20 - 2016-03-10 20:14 - 00001064 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-08-03 15:28 - 2016-07-18 10:24 - 00000000 ____D C:\Wirtualki 2016-08-03 15:00 - 2016-03-31 08:31 - 00000000 ____D C:\VS 2016-08-03 13:59 - 2016-03-10 20:45 - 00000000 ____D C:\Users\k.krupa\Desktop\Nagrania 2016-08-01 11:02 - 2016-07-19 15:00 - 19709440 ____N (Luis Cobian, CobianSoft) C:\Users\k.krupa\Downloads\cbSetup.exe 2016-07-29 12:19 - 2016-04-22 08:07 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ElevatedDiagnostics 2016-07-28 08:11 - 2016-03-10 20:17 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-07-28 08:11 - 2016-03-10 20:16 - 00000000 ____D C:\ProgramData\Skype ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-04-20 10:16 - 2016-04-20 10:16 - 0054272 _____ () C:\Users\k.krupa\AppData\Roaming\ApplicationHosting.dat 2016-04-20 10:16 - 2016-04-20 10:16 - 0128763 _____ () C:\Users\k.krupa\AppData\Roaming\inst.lat 2016-04-20 10:16 - 2016-04-20 10:16 - 0015840 _____ () C:\Users\k.krupa\AppData\Roaming\InstallationConfiguration.xml 2016-04-20 10:16 - 2016-04-20 10:16 - 0127488 _____ () C:\Users\k.krupa\AppData\Roaming\Installer.dat 2016-04-20 10:16 - 2016-04-20 10:16 - 0126464 _____ () C:\Users\k.krupa\AppData\Roaming\lobby.dat 2016-04-20 10:16 - 2016-04-20 10:16 - 0002880 _____ () C:\Users\k.krupa\AppData\Roaming\md.xml 2016-04-20 10:16 - 2016-04-20 10:16 - 0848437 _____ () C:\Users\k.krupa\AppData\Roaming\Medtouch.bin 2016-04-20 10:16 - 2016-04-20 10:16 - 0072717 _____ () C:\Users\k.krupa\AppData\Roaming\Voltfan.tst 2016-06-29 13:03 - 2016-06-29 13:08 - 0038430 _____ () C:\Users\k.krupa\AppData\Roaming\Wartości oddzielone przecinkami.ADR 2016-03-11 11:33 - 2016-08-22 08:56 - 0000600 _____ () C:\Users\k.krupa\AppData\Roaming\winscp.rnd 2016-03-11 10:44 - 2016-08-22 08:55 - 0000600 _____ () C:\Users\k.krupa\AppData\Local\PUTTY.RND 2016-03-29 08:15 - 2016-03-29 08:15 - 0000017 _____ () C:\Users\k.krupa\AppData\Local\resmon.resmoncfg ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2016-08-22 11:26 ==================== Koniec FRST.txt ============================