Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21-08-2016 01 Uruchomiony przez k.krupa (administrator) GIAXIT01 (25-08-2016 10:20:16) Uruchomiony z C:\Users\k.krupa\Downloads Załadowane profile: k.krupa & MSSQL$ENOVA (Dostępne profile: k.krupa & MSSQL$ENOVA & Classic .NET AppPool & .NET v4.5 & DefaultAppPool & .NET v2.0 & .NET v4.5 Classic & .NET v2.0 Classic) Platform: Windows 10 Pro Wersja 1607 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Hewlett-Packard Company) C:\Windows\System32\hpservice.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe (CobianSoft, Luis Cobian) C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe (Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\sqlservr.exe (Microsoft Corporation) C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe (Skype Technologies) C:\Program Files (x86)\Skype\Updater\Updater.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpn.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\sqlservr.exe (Luis Cobian, CobianSoft) C:\Program Files (x86)\Cobian Backup 11\cbService.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe (ESET) C:\Program Files\ESET\ESET Endpoint Antivirus\egui.exe (Microsoft Corporation) C:\Windows\System32\mobsync.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\OUTLOOK.EXE (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (ownCloud) C:\Program Files\OwnCloud\owncloud.exe (Google) C:\Program Files (x86)\Google\Drive\googledrivesync.exe (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\CSISYNCCLIENT.EXE (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSYNC.EXE (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2174760 2010-06-04] (Synaptics Incorporated) HKLM\...\Run: [tvncontrol] => C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC.) HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2779136 2016-06-11] (Dominik Reichl) HKLM-x32\...\Run: [SunJavaUpdateSched] => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe" Winlogon\Notify\igfxcui: C:\WINDOWS\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [GoogleDriveSync] => C:\Program Files (x86)\Google\Drive\googledrivesync.exe [23375200 2016-07-29] (Google) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [ownCloud] => C:\Program Files\ownCloud\owncloud.exe [2026510 2016-08-08] (ownCloud) HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\Run: [owncloud-dysk] => subst O: C:\Users\k.krupa\ownCloud HKU\S-1-5-21-947326178-1816697417-1494526646-1611\...\RunOnce: [Uninstall C:\Users\k.krupa\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64] => C:\WINDOWS\system32\cmd.exe /q /c rmdir /s /q "C:\Users\k.krupa\AppData\Local\Microsoft\OneDrive\17.3.6390.0509_1\amd64" HKU\S-1-5-80-2909360683-993700205-2603473673-144821520-3220573649\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [516608 2016-07-16] (Microsoft Corporation) ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files (x86)\Google\Drive\googledrivesync64.dll [2016-07-29] (Google) ShellIconOverlayIdentifiers: [ OCError] -> {0960F090-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCOK] -> {0960F092-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCOKShared] -> {0960F093-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCSync] -> {0960F094-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) ShellIconOverlayIdentifiers: [ OCWarning] -> {0960F096-F328-48A3-B746-276B1E3C3722} => C:\Program Files\ownCloud\shellext\OCOverlays_x64.dll [2016-08-03] (ownCloud Inc.) GroupPolicyScripts: Ograniczenia <======= UWAGA GroupPolicyScripts\User: Ograniczenia <======= UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 172.16.0.2 172.16.1.2 8.8.8.8 Tcpip\..\Interfaces\{17a3d2d6-42d4-4be5-b0f4-d9de612b9e0c}: [NameServer] 192.168.116.1,8.8.8.8 Tcpip\..\Interfaces\{bd2856a1-d3e0-4a95-87ba-3f94bc7b82d0}: [DhcpNameServer] 192.168.69.1 192.168.69.20 192.168.69.1 8.8.8.8 Tcpip\..\Interfaces\{bede1785-9501-4c8e-b030-e406afce60f1}: [DhcpNameServer] 172.16.0.2 172.16.1.2 8.8.8.8 Tcpip\..\Interfaces\{c9a06725-a6d2-449d-9091-75bf0a81952a}: [DhcpNameServer] 192.168.16.3 Internet Explorer: ================== BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation) BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation) BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2016-08-24] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-07-21] (Oracle Corporation) BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2016-08-24] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-07-21] (Oracle Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2016-08-24] (Microsoft Corporation) FireFox: ======== FF ProfilePath: C:\Users\k.krupa\AppData\Roaming\Mozilla\Firefox\Profiles\znb1h4uk.default FF Homepage: google.pl FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_22_0_0_209.dll [2016-07-13] () FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_22_0_0_209.dll [2016-07-13] () FF Plugin-x32: @DVR/npmedia,version=3.1.0.5 -> C:\Program Files\webrec\WEB30\DVR32\3.1.0.5\npmedia.dll [2014-07-08] () FF Plugin-x32: @DVR/npTimeGrid,version=3.1.0.5 -> C:\Program Files\webrec\WEB30\DVR32\3.1.0.5\npTimeGrid.dll [2014-07-08] (Unauthorized copy) FF Plugin-x32: @IPC/npmedia3.0.0.1,version=3.0.0.1 -> C:\Program Files\webrec\Torch\3.0.0.1\npmedia3.0.0.1.dll [2013-11-16] () FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-07-21] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-07-21] (Oracle Corporation) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-08-24] (Microsoft Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50428.0\npctrl.dll [2016-04-27] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2016-08-24] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-06-30] (Adobe Systems Inc.) FF Extension: Adblock Plus - C:\Users\k.krupa\AppData\Roaming\Mozilla\Firefox\Profiles\znb1h4uk.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-06-24] Chrome: ======= CHR Profile: C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default CHR Extension: (Google Docs) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-05-10] CHR Extension: (Google Drive) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-05-10] CHR Extension: (YouTube) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-05-10] CHR Extension: (Google Sheets) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-05-10] CHR Extension: (Google Docs Offline) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-05-10] CHR Extension: (What's your name?) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-08-24] CHR Extension: (Chrome Web Store Payments) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-05-10] CHR Extension: (Gmail) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-05-10] CHR Extension: (Chrome Media Router) - C:\Users\k.krupa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-08-18] CHR HKU\S-1-5-21-947326178-1816697417-1494526646-1611\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ======================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 AktualizujPP; C:\Program Files (x86)\Asseco Poland SA\Płatnik\ASSECO.AKTUALIZUJ.PP.exe [32096 2016-04-06] (Asseco Poland S.A.) R2 cbVSCService11; C:\Program Files (x86)\Cobian Backup 11\cbVSCService11.exe [67584 2013-03-07] (CobianSoft, Luis Cobian) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2981056 2016-08-11] (Microsoft Corporation) R2 CobianBackup11; C:\Program Files (x86)\Cobian Backup 11\cbService.exe [1131008 2013-03-07] (Luis Cobian, CobianSoft) [Brak podpisu cyfrowego] S2 debugregsvc; C:\Windows\System32\debugregsvc.dll [29184 2016-07-15] (Microsoft Corporation) S3 DeveloperToolsService; C:\WINDOWS\System32\DeveloperToolsSvc.exe [104448 2016-07-15] (Microsoft Corporation) S3 EHttpSrv; C:\Program Files\ESET\ESET Endpoint Antivirus\ehttpsrv.exe [43208 2015-11-27] (ESET) R2 ekrn; C:\Program Files\ESET\ESET Endpoint Antivirus\x86\ekrn.exe [1612000 2015-11-27] (ESET) S3 eshasrv; C:\Program Files\ESET\ESET Endpoint Antivirus\eshasrv.exe [185032 2015-11-27] (ESET) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21184 2015-11-20] (Microsoft Corporation) S3 LxssManager; C:\Windows\system32\lxss\LxssManager.dll [327168 2016-08-03] (Microsoft Corporation) R2 MsDepSvc; C:\Program Files\IIS\Microsoft Web Deploy\MsDepSvc.exe [93560 2016-03-09] (Microsoft Corporation) R2 MSSQL$ENOVA; C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\sqlservr.exe [370368 2016-05-27] (Microsoft Corporation) R2 MSSQL$SQL2008; c:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\sqlservr.exe [57820696 2008-07-11] (Microsoft Corporation) R2 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv.exe [38240 2016-02-01] (The OpenVPN Project) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [2889896 2016-07-17] (Microsoft Corporation) S4 SQLAgent$ENOVA; C:\Program Files\Microsoft SQL Server\MSSQL12.ENOVA\MSSQL\Binn\SQLAGENT.EXE [613056 2016-05-27] (Microsoft Corporation) S4 SQLAgent$SQL2008; c:\Program Files\Microsoft SQL Server\MSSQL10.SQL2008\MSSQL\Binn\SQLAGENT.EXE [430616 2008-07-11] (Microsoft Corporation) R3 SshBroker; C:\Windows\System32\SshBroker.dll [360960 2016-07-15] (Microsoft Corporation) R3 SshProxy; C:\Windows\System32\SshProxy.dll [275456 2016-07-15] (Microsoft Corporation) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [137216 2015-11-19] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [2179056 2013-07-19] (GlavSoft LLC.) S3 VSStandardCollectorService140; C:\Program Files (x86)\Microsoft Visual Studio 14.0\Team Tools\DiagnosticsHub\Collector\StandardCollector.Service.exe [108776 2016-07-17] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347328 2016-07-16] (Microsoft Corporation) S4 WebManagement; C:\Windows\system32\WebManagement.exe [1000448 2016-07-15] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103720 2016-07-16] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ========================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BCM43XX; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11758840 2015-11-30] (Broadcom Corp) R3 BCMWL63A; C:\Windows\system32\DRIVERS\bcmwl63a.sys [11758840 2015-11-30] (Broadcom Corp) R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [253752 2015-11-11] (ESET) R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [186272 2015-11-11] (ESET) R2 epfwwfpr; C:\Windows\system32\DRIVERS\epfwwfpr.sys [169744 2015-11-11] (ESET) S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [181160 2016-04-07] (ESET) S3 huawei_enumerator; C:\Windows\System32\drivers\ew_jubusenum.sys [83456 2010-05-22] (Huawei Technologies Co., Ltd.) [Brak podpisu cyfrowego] S3 hwdatacard; C:\Windows\system32\DRIVERS\ewusbmdm.sys [120704 2010-03-25] (Huawei Technologies Co., Ltd.) [Brak podpisu cyfrowego] R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) R0 lxss; C:\Windows\System32\drivers\lxss.sys [15712 2016-08-03] (Microsoft Corporation) S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] () S4 RsFx0301; C:\Windows\System32\DRIVERS\RsFx0301.sys [249024 2016-05-27] (Microsoft Corporation) R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [936192 2016-04-21] (Realtek ) R3 SensorsSimulatorDriver; C:\Windows\System32\drivers\WUDFRd.sys [216064 2016-07-16] (Microsoft Corporation) R1 VBoxNetAdp; C:\Windows\System32\drivers\VBoxNetAdp6.sys [119712 2016-07-18] (Oracle Corporation) R1 VBoxNetLwf; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [192864 2016-07-18] (Oracle Corporation) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44056 2016-07-16] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [290144 2016-07-16] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123232 2016-07-16] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) NETSVC: debugregsvc -> C:\Windows\System32\debugregsvc.dll (Microsoft Corporation) NETSVC: LxssManager -> C:\Windows\system32\lxss\LxssManager.dll (Microsoft Corporation) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-25 10:20 - 2016-08-25 10:20 - 00020153 _____ C:\Users\k.krupa\Downloads\FRST.txt 2016-08-25 10:17 - 2016-08-25 10:17 - 00001346 _____ C:\Users\k.krupa\Desktop\fix.reg 2016-08-24 17:58 - 2016-08-24 17:58 - 00000000 ____D C:\ProgramData\Mozilla 2016-08-24 17:57 - 2016-08-24 17:58 - 34759912 _____ (Mozilla) C:\Users\k.krupa\Downloads\Thunderbird Setup 38.0.1.exe 2016-08-24 17:54 - 2016-08-24 17:54 - 36582424 _____ (Mozilla) C:\Users\k.krupa\Downloads\Thunderbird Setup 47.0b2.exe 2016-08-24 17:51 - 2016-08-24 17:52 - 35160584 _____ (Mozilla) C:\Users\k.krupa\Downloads\Thunderbird Setup 44.0b1.exe 2016-08-24 13:49 - 2016-08-25 07:59 - 00004210 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{01267D6D-889C-46AE-ADCB-E7C0A587813A} 2016-08-24 13:48 - 2016-08-24 13:48 - 01086016 _____ ( ) C:\Users\k.krupa\Downloads\webplugin(1).exe 2016-08-24 13:47 - 2016-08-24 13:47 - 01086016 _____ ( ) C:\Users\k.krupa\Downloads\webplugin.exe 2016-08-24 12:31 - 2016-08-24 12:31 - 00002667 _____ C:\Users\Public\Desktop\PSS.lnk 2016-08-24 12:31 - 2016-08-24 12:31 - 00000000 ____D C:\PSS 2016-08-24 12:31 - 2016-08-24 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PSS 2016-08-24 12:30 - 2016-08-24 12:31 - 00000000 ____D C:\Program Files (x86)\Pro Surveillance System 2016-08-24 09:51 - 2016-08-24 09:50 - 00021844 _____ C:\Users\k.krupa\Desktop\fonts.reg 2016-08-24 09:40 - 2016-08-24 09:40 - 00059779 _____ C:\Users\k.krupa\Documents\Materialy.xml 2016-08-24 08:33 - 2016-08-06 06:33 - 00354264 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe 2016-08-24 08:33 - 2016-08-06 06:32 - 01046976 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2016-08-24 08:33 - 2016-08-06 06:32 - 00885832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2016-08-24 08:33 - 2016-08-06 06:31 - 00041824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe 2016-08-24 08:33 - 2016-08-06 06:30 - 01883784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2016-08-24 08:33 - 2016-08-06 06:30 - 01349128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2016-08-24 08:33 - 2016-08-06 06:30 - 01163696 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2016-08-24 08:33 - 2016-08-06 06:29 - 00128352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys 2016-08-24 08:33 - 2016-08-06 06:26 - 01176664 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2016-08-24 08:33 - 2016-08-06 06:26 - 00409944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2016-08-24 08:33 - 2016-08-06 06:18 - 01260384 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll 2016-08-24 08:33 - 2016-08-06 06:18 - 00584032 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2016-08-24 08:33 - 2016-08-06 06:18 - 00396168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll 2016-08-24 08:33 - 2016-08-06 06:17 - 00790760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2016-08-24 08:33 - 2016-08-06 06:17 - 00450400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys 2016-08-24 08:33 - 2016-08-06 06:17 - 00224096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys 2016-08-24 08:33 - 2016-08-06 06:16 - 01099104 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2016-08-24 08:33 - 2016-08-06 06:16 - 00987488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2016-08-24 08:33 - 2016-08-06 06:16 - 00942432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.efi 2016-08-24 08:33 - 2016-08-06 06:16 - 00807776 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.exe 2016-08-24 08:33 - 2016-08-06 06:16 - 00435040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2016-08-24 08:33 - 2016-08-06 06:16 - 00073568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2016-08-24 08:33 - 2016-08-06 06:16 - 00020320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2016-08-24 08:33 - 2016-08-06 06:15 - 00408600 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2016-08-24 08:33 - 2016-08-06 06:13 - 01847048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2016-08-24 08:33 - 2016-08-06 06:13 - 01453992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll 2016-08-24 08:33 - 2016-08-06 06:13 - 01071728 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll 2016-08-24 08:33 - 2016-08-06 06:13 - 01066096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll 2016-08-24 08:33 - 2016-08-06 06:13 - 00381760 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe 2016-08-24 08:33 - 2016-08-06 06:09 - 00151224 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll 2016-08-24 08:33 - 2016-08-06 06:08 - 02537816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2016-08-24 08:33 - 2016-08-06 06:08 - 02251432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2016-08-24 08:33 - 2016-08-06 06:08 - 01430208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll 2016-08-24 08:33 - 2016-08-06 06:08 - 00843104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll 2016-08-24 08:33 - 2016-08-06 06:08 - 00509784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2016-08-24 08:33 - 2016-08-06 06:04 - 00361096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 20965240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 01557296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winmde.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 01360456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 01343928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 00980824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 00955008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 00529928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2016-08-24 08:33 - 2016-08-06 06:03 - 00036168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe 2016-08-24 08:33 - 2016-08-06 05:48 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll 2016-08-24 08:33 - 2016-08-06 05:48 - 00015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll 2016-08-24 08:33 - 2016-08-06 05:48 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe 2016-08-24 08:33 - 2016-08-06 05:47 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe 2016-08-24 08:33 - 2016-08-06 05:47 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll 2016-08-24 08:33 - 2016-08-06 05:47 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll 2016-08-24 08:33 - 2016-08-06 05:46 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll 2016-08-24 08:33 - 2016-08-06 05:45 - 00327680 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll 2016-08-24 08:33 - 2016-08-06 05:45 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll 2016-08-24 08:33 - 2016-08-06 05:45 - 00049664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll 2016-08-24 08:33 - 2016-08-06 05:45 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\netiougc.exe 2016-08-24 08:33 - 2016-08-06 05:45 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll 2016-08-24 08:33 - 2016-08-06 05:45 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netiougc.exe 2016-08-24 08:33 - 2016-08-06 05:44 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll 2016-08-24 08:33 - 2016-08-06 05:44 - 00035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceassociation.dll 2016-08-24 08:33 - 2016-08-06 05:43 - 00280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_WorkAccess.dll 2016-08-24 08:33 - 2016-08-06 05:43 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipboardServer.dll 2016-08-24 08:33 - 2016-08-06 05:43 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll 2016-08-24 08:33 - 2016-08-06 05:42 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe 2016-08-24 08:33 - 2016-08-06 05:42 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe 2016-08-24 08:33 - 2016-08-06 05:42 - 00179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe 2016-08-24 08:33 - 2016-08-06 05:42 - 00171520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ClipboardServer.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 13867520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00743424 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2016-08-24 08:33 - 2016-08-06 05:41 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncPolicy.dll 2016-08-24 08:33 - 2016-08-06 05:40 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2016-08-24 08:33 - 2016-08-06 05:40 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2016-08-24 08:33 - 2016-08-06 05:40 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe 2016-08-24 08:33 - 2016-08-06 05:40 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafpos.dll 2016-08-24 08:33 - 2016-08-06 05:40 - 00234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcpipcfg.dll 2016-08-24 08:33 - 2016-08-06 05:40 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe 2016-08-24 08:33 - 2016-08-06 05:39 - 00431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpAXHolder.dll 2016-08-24 08:33 - 2016-08-06 05:39 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll 2016-08-24 08:33 - 2016-08-06 05:39 - 00181760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tcpipcfg.dll 2016-08-24 08:33 - 2016-08-06 05:38 - 17187328 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll 2016-08-24 08:33 - 2016-08-06 05:38 - 00526848 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2016-08-24 08:33 - 2016-08-06 05:38 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll 2016-08-24 08:33 - 2016-08-06 05:37 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2016-08-24 08:33 - 2016-08-06 05:37 - 00253952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll 2016-08-24 08:33 - 2016-08-06 05:35 - 00471552 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll 2016-08-24 08:33 - 2016-08-06 05:34 - 01883648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll 2016-08-24 08:33 - 2016-08-06 05:34 - 01545728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll 2016-08-24 08:33 - 2016-08-06 05:34 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CastLaunch.dll 2016-08-24 08:33 - 2016-08-06 05:33 - 01304576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll 2016-08-24 08:33 - 2016-08-06 05:33 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll 2016-08-24 08:33 - 2016-08-06 05:33 - 01082368 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll 2016-08-24 08:33 - 2016-08-06 05:33 - 00396800 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2016-08-24 08:33 - 2016-08-06 05:31 - 12174336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2016-08-24 08:33 - 2016-08-06 05:31 - 00884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll 2016-08-24 08:33 - 2016-08-06 05:31 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll 2016-08-24 08:33 - 2016-08-06 05:31 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll 2016-08-24 08:33 - 2016-08-06 05:30 - 13080576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2016-08-24 08:33 - 2016-08-06 05:29 - 00298496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll 2016-08-24 08:33 - 2016-08-06 05:29 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll 2016-08-24 08:33 - 2016-08-06 05:28 - 00936960 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll 2016-08-24 08:33 - 2016-08-06 05:28 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinesam.dll 2016-08-24 08:33 - 2016-08-06 05:28 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\samlib.dll 2016-08-24 08:33 - 2016-08-06 05:26 - 02422784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAJApi.dll 2016-08-24 08:33 - 2016-08-06 05:26 - 00758784 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2016-08-24 08:33 - 2016-08-06 05:26 - 00691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2016-08-24 08:33 - 2016-08-06 05:25 - 03116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAJApi.dll 2016-08-24 08:33 - 2016-08-06 05:24 - 02680832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll 2016-08-24 08:33 - 2016-08-06 05:24 - 02095616 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2016-08-24 08:33 - 2016-08-06 05:24 - 02026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2016-08-24 08:33 - 2016-08-06 05:24 - 01875456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll 2016-08-24 08:33 - 2016-08-06 05:23 - 02370048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2016-08-24 08:33 - 2016-08-06 05:23 - 01231872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2016-08-24 08:33 - 2016-08-06 05:23 - 01062400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2016-08-24 08:33 - 2016-08-06 05:23 - 00860672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2016-08-24 08:33 - 2016-08-06 05:23 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll 2016-08-24 08:33 - 2016-08-06 05:21 - 00102400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll 2016-08-24 08:33 - 2016-08-06 05:19 - 01812480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll 2016-08-24 08:33 - 2016-08-05 11:14 - 01066328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2016-08-24 08:33 - 2016-08-05 11:12 - 05622600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2016-08-24 08:33 - 2016-08-05 11:10 - 00939872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pidgenx.dll 2016-08-24 08:33 - 2016-08-05 11:05 - 00665768 _____ (Microsoft Corporation) C:\WINDOWS\system32\GenValObj.exe 2016-08-24 08:33 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.UXRes.dll 2016-08-24 08:33 - 2016-08-05 10:29 - 00019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll 2016-08-24 08:33 - 2016-08-05 10:28 - 00022016 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll 2016-08-24 08:33 - 2016-08-05 10:22 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll 2016-08-24 08:33 - 2016-08-05 10:20 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2016-08-24 08:33 - 2016-08-05 10:20 - 00466432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll 2016-08-24 08:33 - 2016-08-05 10:08 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll 2016-08-24 08:33 - 2016-08-05 10:07 - 01170944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Speech.dll 2016-08-24 08:32 - 2016-08-06 06:31 - 00077664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys 2016-08-24 08:32 - 2016-08-06 06:30 - 07814496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2016-08-24 08:32 - 2016-08-06 06:29 - 00199008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys 2016-08-24 08:32 - 2016-08-06 06:24 - 01570680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2016-08-24 08:32 - 2016-08-06 06:23 - 00168800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2016-08-24 08:32 - 2016-08-06 06:18 - 02745224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2016-08-24 08:32 - 2016-08-06 06:18 - 01859264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll 2016-08-24 08:32 - 2016-08-06 06:17 - 00619368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2016-08-24 08:32 - 2016-08-06 06:16 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2016-08-24 08:32 - 2016-08-06 06:13 - 22218808 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2016-08-24 08:32 - 2016-08-06 06:13 - 01694200 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll 2016-08-24 08:32 - 2016-08-06 06:13 - 00595488 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2016-08-24 08:32 - 2016-08-06 06:13 - 00044472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe 2016-08-24 08:32 - 2016-08-06 06:08 - 01469120 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll 2016-08-24 08:32 - 2016-08-06 06:08 - 00587968 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll 2016-08-24 08:32 - 2016-08-06 06:08 - 00313560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanapi.dll 2016-08-24 08:32 - 2016-08-06 06:08 - 00050880 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe 2016-08-24 08:32 - 2016-08-06 06:02 - 00321280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LockAppHost.exe 2016-08-24 08:32 - 2016-08-06 05:50 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb 2016-08-24 08:32 - 2016-08-06 05:49 - 22570496 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb 2016-08-24 08:32 - 2016-08-06 05:48 - 01631232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe 2016-08-24 08:32 - 2016-08-06 05:48 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlanhlp.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 00010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwmp.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll 2016-08-24 08:32 - 2016-08-06 05:48 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx 2016-08-24 08:32 - 2016-08-06 05:48 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll 2016-08-24 08:32 - 2016-08-06 05:47 - 00038400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidusb.sys 2016-08-24 08:32 - 2016-08-06 05:47 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdxm.ocx 2016-08-24 08:32 - 2016-08-06 05:47 - 00006656 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxmasf.dll 2016-08-24 08:32 - 2016-08-06 05:46 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL 2016-08-24 08:32 - 2016-08-06 05:46 - 09260032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL 2016-08-24 08:32 - 2016-08-06 05:46 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dasHost.exe 2016-08-24 08:32 - 2016-08-06 05:46 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModelOOBE.exe 2016-08-24 08:32 - 2016-08-06 05:46 - 00040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidparse.sys 2016-08-24 08:32 - 2016-08-06 05:45 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll 2016-08-24 08:32 - 2016-08-06 05:45 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfdprov.dll 2016-08-24 08:32 - 2016-08-06 05:44 - 00226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbvideo.sys 2016-08-24 08:32 - 2016-08-06 05:44 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceassociation.dll 2016-08-24 08:32 - 2016-08-06 05:43 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe 2016-08-24 08:32 - 2016-08-06 05:43 - 00156672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidclass.sys 2016-08-24 08:32 - 2016-08-06 05:41 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll 2016-08-24 08:32 - 2016-08-06 05:41 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll 2016-08-24 08:32 - 2016-08-06 05:41 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudBackupSettings.dll 2016-08-24 08:32 - 2016-08-06 05:40 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncPolicy.dll 2016-08-24 08:32 - 2016-08-06 05:39 - 00295424 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudBackupSettings.dll 2016-08-24 08:32 - 2016-08-06 05:39 - 00261120 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2016-08-24 08:32 - 2016-08-06 05:38 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll 2016-08-24 08:32 - 2016-08-06 05:37 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\indexeddbserver.dll 2016-08-24 08:32 - 2016-08-06 05:36 - 19422720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2016-08-24 08:32 - 2016-08-06 05:36 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\das.dll 2016-08-24 08:32 - 2016-08-06 05:35 - 09127936 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2016-08-24 08:32 - 2016-08-06 05:35 - 07624192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2016-08-24 08:32 - 2016-08-06 05:34 - 19418624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2016-08-24 08:32 - 2016-08-06 05:34 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\smphost.dll 2016-08-24 08:32 - 2016-08-06 05:33 - 23682560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2016-08-24 08:32 - 2016-08-06 05:33 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\smphost.dll 2016-08-24 08:32 - 2016-08-06 05:32 - 00715264 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll 2016-08-24 08:32 - 2016-08-06 05:31 - 03244032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll 2016-08-24 08:32 - 2016-08-06 05:31 - 02710528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll 2016-08-24 08:32 - 2016-08-06 05:31 - 01908224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2016-08-24 08:32 - 2016-08-06 05:31 - 01052672 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll 2016-08-24 08:32 - 2016-08-06 05:30 - 12345344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2016-08-24 08:32 - 2016-08-06 05:30 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2016-08-24 08:32 - 2016-08-06 05:30 - 00374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll 2016-08-24 08:32 - 2016-08-06 05:29 - 13433856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2016-08-24 08:32 - 2016-08-06 05:29 - 04749312 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll 2016-08-24 08:32 - 2016-08-06 05:29 - 00627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll 2016-08-24 08:32 - 2016-08-06 05:29 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll 2016-08-24 08:32 - 2016-08-06 05:28 - 00544768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll 2016-08-24 08:32 - 2016-08-06 05:27 - 02510848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll 2016-08-24 08:32 - 2016-08-06 05:27 - 00640000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll 2016-08-24 08:32 - 2016-08-06 05:25 - 01595904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2016-08-24 08:32 - 2016-08-06 05:24 - 02314752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2016-08-24 08:32 - 2016-08-06 05:23 - 01780736 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2016-08-24 08:32 - 2016-08-06 05:23 - 01508864 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2016-08-24 08:32 - 2016-08-06 05:23 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2016-08-24 08:32 - 2016-08-06 05:23 - 00520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\w32time.dll 2016-08-24 08:32 - 2016-08-06 05:19 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll 2016-08-24 08:32 - 2016-08-05 10:29 - 00568832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.UXRes.dll 2016-08-24 08:32 - 2016-08-05 10:23 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll 2016-08-24 08:32 - 2016-08-05 10:18 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll 2016-08-24 08:32 - 2016-08-05 10:07 - 01643008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll 2016-08-23 16:01 - 2016-08-23 16:04 - 08906667 _____ C:\Users\k.krupa\Downloads\pstwalker.zip 2016-08-23 15:57 - 2016-08-24 17:58 - 00001290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2016-08-23 15:57 - 2016-08-24 17:58 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2016-08-23 15:55 - 2016-08-23 15:56 - 35735536 _____ (Mozilla) C:\Users\k.krupa\Downloads\Thunderbird Setup 45.2.0.exe 2016-08-23 15:22 - 2016-08-23 15:22 - 00000590 _____ C:\Users\k.krupa\Downloads\ProduKey.cfg 2016-08-23 15:18 - 2016-08-23 15:18 - 00000000 ____D C:\Program Files\Common Files\Soneta 2016-08-23 14:44 - 2016-08-23 14:44 - 00000000 ____D C:\Users\k.krupa\Downloads\(51620010) 2016-08-23 14:43 - 2016-08-23 14:44 - 00000939 _____ C:\Users\k.krupa\Downloads\(51620010).zip 2016-08-23 13:29 - 2016-08-23 13:29 - 00086495 _____ C:\Users\k.krupa\Downloads\2875948.pdf 2016-08-23 12:59 - 2016-08-23 12:59 - 00085662 _____ C:\Users\k.krupa\Downloads\2890229.pdf 2016-08-23 10:43 - 2016-08-23 10:43 - 00000000 ___HD C:\OneDriveTemp 2016-08-23 10:42 - 2016-08-23 10:42 - 00301527 ____H C:\Users\k.krupa\AppData\Local\IconCache.old.db 2016-08-23 09:40 - 2016-08-25 10:20 - 00000000 ____D C:\FRST 2016-08-23 09:39 - 2016-08-23 09:39 - 02396672 ____N (Farbar) C:\Users\k.krupa\Downloads\FRST64.exe 2016-08-23 08:33 - 2016-08-23 08:33 - 00003332 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task 2016-08-22 15:27 - 2016-08-22 15:27 - 00047266 ____N C:\Users\k.krupa\Documents\Dokument sprzedaży_FV0816021.pdf 2016-08-22 15:24 - 2016-08-22 15:24 - 00076188 ____N C:\Users\k.krupa\Downloads\Faktura_0350_08_16.pdf 2016-08-22 14:02 - 2016-08-22 15:36 - 00000000 ____D C:\Program Files (x86)\BCS 2016-08-22 14:02 - 2016-08-22 14:02 - 00000000 ____D C:\Users\k.krupa\AppData\Local\CrashRpt 2016-08-22 10:08 - 2016-08-22 10:10 - 00000515 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2016-08-22 08:56 - 2016-08-22 08:55 - 00005164 ____N C:\Users\k.krupa\Documents\server.wsm1.zip 2016-08-19 10:52 - 2016-08-19 15:16 - 00000000 ____D C:\Users\k.krupa\Documents\Procedura archiwizacji 2016-08-18 12:06 - 2016-08-18 12:06 - 00082504 ____N C:\Users\k.krupa\Downloads\Faktura_0315_08_16.pdf 2016-08-17 14:40 - 2016-08-17 14:41 - 08985296 ____N (Martin Prikryl ) C:\Users\k.krupa\Downloads\WinSCP-5.9.1-Setup.exe 2016-08-17 14:01 - 2016-08-17 14:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cobian Backup 11 2016-08-16 11:41 - 2016-08-16 11:41 - 01011704 ____N C:\Users\k.krupa\Documents\Kopia 16. prognozy 10.08.2016.xlsx 2016-08-16 09:56 - 2016-08-16 09:56 - 00084479 ____N C:\Users\k.krupa\Downloads\Faktura_0270_08_16.pdf 2016-08-16 09:15 - 2016-08-24 08:28 - 00000000 ____D C:\Users\k.krupa\Documents\faktury 2016-08-16 08:54 - 2016-08-16 08:54 - 00080952 ____N C:\Users\k.krupa\Downloads\Faktura_0223_08_16.pdf 2016-08-12 16:23 - 2016-08-12 16:23 - 00000104 ____N C:\Users\k.krupa\Desktop\da.txt 2016-08-12 15:06 - 2016-08-12 15:06 - 01086353 ____N C:\Users\k.krupa\Documents\Kopia 16. prognozy 10.08.2016 (3).xlsx 2016-08-12 11:47 - 2016-08-12 11:46 - 00045680 ____N C:\Users\k.krupa\Downloads\Dokument sprzedaży_FV0816015.pdf 2016-08-11 13:56 - 2016-08-11 13:56 - 00088521 ____N C:\Users\k.krupa\Downloads\2862506.pdf 2016-08-11 08:33 - 2016-08-11 08:33 - 00000000 ____D C:\Users\k.krupa\Documents\stopka 2016-08-10 17:10 - 2016-08-10 17:10 - 00000000 ____D C:\WINDOWS\Panther 2016-08-10 15:04 - 2016-08-10 16:19 - 00000000 ____D C:\Users\k.krupa\Documents\marko 2016-08-10 10:07 - 2016-08-02 10:44 - 00114192 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2016-08-10 10:07 - 2016-08-02 10:20 - 00210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2016-08-10 10:07 - 2016-08-02 09:58 - 01656320 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2016-08-10 10:07 - 2016-08-02 09:55 - 03617280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2016-08-10 10:07 - 2016-08-02 06:33 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Shell.Search.UriHandler.dll 2016-08-10 10:07 - 2016-08-02 06:25 - 05398016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aclui.dll 2016-08-10 10:07 - 2016-08-02 06:25 - 01456640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2016-08-10 10:07 - 2016-08-02 06:23 - 06474752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspaint.exe 2016-08-10 10:07 - 2016-08-02 06:13 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll 2016-08-10 10:06 - 2016-08-02 11:00 - 00791392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxcore.sys 2016-08-10 10:06 - 2016-08-02 10:48 - 00241496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHost.dll 2016-08-10 10:06 - 2016-08-02 10:21 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2016-08-10 10:06 - 2016-08-02 10:15 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll 2016-08-10 10:06 - 2016-08-02 10:15 - 00058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.Search.UriHandler.dll 2016-08-10 10:06 - 2016-08-02 10:14 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:13 - 01081856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2016-08-10 10:06 - 2016-08-02 10:11 - 00495104 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataSenseHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:10 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Bluetooth.dll 2016-08-10 10:06 - 2016-08-02 10:09 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.UserAccountsHandlers.dll 2016-08-10 10:06 - 2016-08-02 10:00 - 05511168 _____ (Microsoft Corporation) C:\WINDOWS\system32\aclui.dll 2016-08-10 10:06 - 2016-08-02 09:59 - 08124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2016-08-10 10:06 - 2016-08-02 09:56 - 06664192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mspaint.exe 2016-08-10 10:06 - 2016-08-02 09:56 - 00909312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll 2016-08-10 10:06 - 2016-08-02 06:47 - 00079536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2016-08-10 10:06 - 2016-08-02 06:37 - 00121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2016-08-10 10:06 - 2016-08-02 06:36 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2016-08-10 10:06 - 2016-08-02 06:30 - 00822784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2016-08-10 10:06 - 2016-08-02 06:16 - 06044672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2016-08-10 10:06 - 2016-08-02 06:12 - 02999296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2016-08-09 18:39 - 2015-11-30 21:31 - 11758840 _____ (Broadcom Corp) C:\WINDOWS\system32\Drivers\bcmwl63a.sys 2016-08-09 18:39 - 2015-11-30 21:31 - 04134912 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvsrv64.dll 2016-08-09 18:39 - 2015-11-30 21:31 - 03779584 _____ (Broadcom Corporation) C:\WINDOWS\system32\bcmihvui64.dll 2016-08-09 16:09 - 2016-08-09 16:09 - 00000000 ____D C:\Program Files\Microsoft Visual Studio 9.0 2016-08-09 16:09 - 2016-08-09 16:09 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 9.0 2016-08-09 16:09 - 2008-07-11 06:54 - 00111640 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf-MSSQL$SQL2008-sqlctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00079896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-MSSQL$SQL2008-sqlctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00078872 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf-SQLAgent$SQL2008-sqlagtctr10.0.1600.22.dll 2016-08-09 16:09 - 2008-07-11 06:54 - 00050200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf-SQLAgent$SQL2008-sqlagtctr10.0.1600.22.dll 2016-08-09 13:03 - 2016-08-09 13:24 - 00000000 ____D C:\Users\k.krupa\Downloads\cert 2016-08-04 12:30 - 2016-08-04 12:28 - 00268765 ____N C:\Users\k.krupa\Downloads\formularz.pdf 2016-08-04 09:30 - 2016-08-04 09:30 - 00000000 ___RD C:\Users\k.krupa\AppData\Roaming\Brother 2016-08-04 09:30 - 2016-08-04 09:30 - 00000000 ____D C:\Users\k.krupa\AppData\LocalLow\Brother 2016-08-03 20:20 - 2016-08-03 20:20 - 00001852 _____ C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Bash on Ubuntu on Windows.lnk 2016-08-03 20:14 - 2016-08-23 12:36 - 00000000 __SHD C:\Users\k.krupa\AppData\Local\lxss 2016-08-03 20:12 - 2016-08-03 20:12 - 02190688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 01708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01461200 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01435896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01418304 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 01265424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00658784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00402272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00389000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtapi.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00297552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wevtapi.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll 2016-08-03 20:12 - 2016-08-03 20:12 - 00062816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ___SD C:\WINDOWS\system32\lxss 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ____D C:\Program Files\CMAK 2016-08-03 20:12 - 2016-08-03 20:12 - 00000000 ____D C:\Program Files (x86)\CMAK 2016-08-03 20:12 - 2016-07-15 20:58 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DxToolsReportGenerator.dll 2016-08-03 20:12 - 2016-07-15 20:28 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsProxyStub.dll 2016-08-03 20:12 - 2016-07-15 20:28 - 00082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARP12Debug.dll 2016-08-03 20:12 - 2016-07-15 20:26 - 00376320 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\DXCpl.exe 2016-08-03 20:12 - 2016-07-15 20:26 - 00061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\VSD3DWARPDebug.dll 2016-08-03 20:12 - 2016-07-15 20:25 - 00337408 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXGIDebug.dll 2016-08-03 20:12 - 2016-07-15 20:23 - 14388224 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCaptureReplay.dll 2016-08-03 20:12 - 2016-07-15 20:22 - 00429056 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1debug3.dll 2016-08-03 20:12 - 2016-07-15 20:22 - 00355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\perf_gputiming.dll 2016-08-03 20:12 - 2016-07-15 20:19 - 01323520 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11_3SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 20:16 - 05850624 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsDesktopEngine.exe 2016-08-03 20:12 - 2016-07-15 20:16 - 04969472 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsRemoteEngine.exe 2016-08-03 20:12 - 2016-07-15 20:15 - 06582784 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12warp.dll 2016-08-03 20:12 - 2016-07-15 20:14 - 02485760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d12SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 20:13 - 02005504 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsOfflineAnalysis.dll 2016-08-03 20:12 - 2016-07-15 20:13 - 01198592 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXCap.exe 2016-08-03 20:12 - 2016-07-15 20:13 - 00176128 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsCapture.dll 2016-08-03 20:12 - 2016-07-15 20:12 - 00297984 _____ (Microsoft Corporation) C:\WINDOWS\system32\VsGraphicsExperiment.dll 2016-08-03 20:12 - 2016-07-15 20:12 - 00198656 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsMonitor.dll 2016-08-03 20:12 - 2016-07-15 20:11 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\DXToolsReporting.dll 2016-08-03 20:12 - 2016-07-15 19:58 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DxToolsReportGenerator.dll 2016-08-03 20:12 - 2016-07-15 19:44 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsProxyStub.dll 2016-08-03 20:12 - 2016-07-15 19:43 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARP12Debug.dll 2016-08-03 20:12 - 2016-07-15 19:42 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VSD3DWARPDebug.dll 2016-08-03 20:12 - 2016-07-15 19:41 - 00355840 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\DXCpl.exe 2016-08-03 20:12 - 2016-07-15 19:41 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXGIDebug.dll 2016-08-03 20:12 - 2016-07-15 19:39 - 11670528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCaptureReplay.dll 2016-08-03 20:12 - 2016-07-15 19:38 - 00371712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1debug3.dll 2016-08-03 20:12 - 2016-07-15 19:37 - 01935360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 19:37 - 01074176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11_3SDKLayers.dll 2016-08-03 20:12 - 2016-07-15 19:35 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perf_gputiming.dll 2016-08-03 20:12 - 2016-07-15 19:32 - 04596224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsDesktopEngine.exe 2016-08-03 20:12 - 2016-07-15 19:32 - 03701248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsRemoteEngine.exe 2016-08-03 20:12 - 2016-07-15 19:31 - 04977664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d12warp.dll 2016-08-03 20:12 - 2016-07-15 19:29 - 00953344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXCap.exe 2016-08-03 20:12 - 2016-07-15 19:29 - 00231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsExperiment.dll 2016-08-03 20:12 - 2016-07-15 19:29 - 00134144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VsGraphicsCapture.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 01509888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsOfflineAnalysis.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 00155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsMonitor.dll 2016-08-03 20:12 - 2016-07-15 19:28 - 00127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DXToolsReporting.dll 2016-08-03 20:11 - 2016-08-03 20:11 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2016-08-03 20:11 - 2016-08-03 20:11 - 00000000 __RSD C:\WINDOWS\system32\WindowsDevicePortal 2016-08-03 20:11 - 2016-08-03 20:11 - 00000000 ___RD C:\WINDOWS\WebManagement 2016-08-03 20:11 - 2016-08-03 19:15 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2016-08-03 20:11 - 2016-07-15 19:28 - 00070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevToolsLauncher.exe 2016-08-03 20:11 - 2016-07-15 19:28 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvcapi.dll 2016-08-03 20:11 - 2016-07-15 19:28 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperTools.ProxyStub.dll 2016-08-03 20:11 - 2016-07-15 19:27 - 00029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\debugregsvc.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshProxy.dll 2016-08-03 20:11 - 2016-07-15 19:26 - 00104448 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeveloperToolsSvc.exe 2016-08-03 20:11 - 2016-07-15 19:26 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeployUtil.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00509440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSession.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00427520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshSftp.exe 2016-08-03 20:11 - 2016-07-15 19:25 - 00360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SshBroker.dll 2016-08-03 20:11 - 2016-07-15 19:17 - 01000448 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebManagement.exe 2016-08-03 20:10 - 2016-08-03 20:10 - 00000000 ____D C:\ProgramData\USOShared 2016-08-03 20:07 - 2016-08-03 20:07 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\IIS 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\SysWOW64\BestPractices 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\WINDOWS\system32\BestPractices 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files\Reference Assemblies 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files\MSBuild 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2016-08-03 20:06 - 2016-08-03 20:06 - 00000000 ____D C:\inetpub 2016-08-03 20:06 - 2016-08-03 19:41 - 00000000 ____D C:\Program Files (x86)\MSBuild 2016-08-03 20:05 - 2016-08-04 08:02 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ConnectedDevicesPlatform 2016-08-03 20:05 - 2016-08-03 20:05 - 00000020 ___SH C:\Users\k.krupa\ntuser.ini 2016-08-03 20:05 - 2016-05-25 15:31 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 15:31 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 15:31 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2016-08-03 20:05 - 2016-05-25 12:03 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 12:03 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2016-08-03 20:05 - 2016-05-25 12:03 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Szablony 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Menu Start 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moje wideo 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2016-08-03 20:04 - 2016-08-03 20:04 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2016-08-03 20:03 - 2016-08-03 20:03 - 00038103 _____ C:\WINDOWS\diagwrn.xml 2016-08-03 20:03 - 2016-08-03 20:03 - 00038103 _____ C:\WINDOWS\diagerr.xml 2016-08-03 20:01 - 2016-08-25 10:18 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2016-08-03 20:01 - 2016-08-03 20:01 - 00023044 _____ C:\WINDOWS\system32\emptyregdb.dat 2016-08-03 20:01 - 2016-08-03 20:01 - 00003580 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2016-08-03 20:01 - 2016-08-03 20:01 - 00003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2016-08-03 20:01 - 2016-08-03 20:01 - 00003356 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2016-08-03 20:01 - 2016-08-03 20:01 - 00003144 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2016-08-03 20:01 - 2016-08-03 20:01 - 00000000 ____D C:\WINDOWS\System32\Tasks\MySQL 2016-08-03 19:55 - 2016-08-03 19:55 - 00000020 ___SH C:\Users\MSSQL$ENOVA\ntuser.ini 2016-08-03 19:54 - 2016-08-03 19:54 - 00001519 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default\Documents\Visual Studio 2010 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default\AppData\Local\Google 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default User\Documents\Visual Studio 2010 2016-08-03 19:54 - 2016-08-03 19:54 - 00000000 ____D C:\Users\Default User\AppData\Local\Google 2016-08-03 19:23 - 2016-08-03 19:54 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2016-08-03 19:20 - 2016-08-25 10:19 - 00000000 ____D C:\Users\k.krupa 2016-08-03 19:20 - 2016-08-24 13:35 - 00000000 ____D C:\Users\MSSQL$ENOVA 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\DefaultAppPool 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\.NET v4.5 2016-08-03 19:20 - 2016-08-03 20:01 - 00000000 ____D C:\Users\.NET v2.0 Classic 2016-08-03 19:20 - 2016-08-03 20:00 - 00000000 ____D C:\Users\.NET v4.5 Classic 2016-08-03 19:20 - 2016-08-03 20:00 - 00000000 ____D C:\Users\.NET v2.0 2016-08-03 19:20 - 2016-08-03 19:59 - 00000000 ____D C:\Users\Classic .NET AppPool 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\MSSQL$ENOVA\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\k.krupa\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\DefaultAppPool\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\Classic .NET AppPool\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v4.5 Classic\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0\AppData\Local\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Ustawienia lokalne 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Szablony 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Moje dokumenty 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Menu Start 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moje wideo 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moje obrazy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Documents\Moja muzyka 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\Dane aplikacji 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Historia 2016-08-03 19:20 - 2016-08-03 19:20 - 00000000 _SHDL C:\Users\.NET v2.0 Classic\AppData\Local\Dane aplikacji 2016-08-03 19:18 - 2016-07-16 13:41 - 02716672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2016-08-03 19:17 - 2016-08-24 15:22 - 02388710 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2016-08-03 19:17 - 2016-08-03 19:17 - 01539412 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI 2016-08-03 19:16 - 2016-08-03 19:16 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01009.Wdf 2016-08-03 19:16 - 2016-08-03 19:16 - 00000000 ____D C:\Program Files\Synaptics 2016-08-03 19:15 - 2016-08-25 09:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2016-08-03 19:15 - 2016-08-10 17:10 - 00342088 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2016-08-02 14:55 - 2016-08-02 08:37 - 00237016 ____N C:\Users\k.krupa\Downloads\faktura.pdf 2016-08-02 14:14 - 2016-08-02 14:14 - 05447607 ____N C:\Users\k.krupa\Downloads\instalator_enova365_helper_1.2.53.zip 2016-08-02 13:52 - 2016-08-02 13:52 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\NPS 2016-08-01 14:22 - 2016-08-08 11:01 - 00000144 ____N C:\Users\k.krupa\Desktop\kamery.txt 2016-08-01 12:23 - 2016-08-01 12:23 - 00227566 ____T C:\Users\k.krupa\Documents\kadry.pdf 2016-08-01 12:22 - 2016-08-23 10:38 - 00000000 ____D C:\Users\k.krupa\AppData\LocalLow\Temp 2016-08-01 12:18 - 2016-08-01 12:29 - 00033723 ____N C:\Users\k.krupa\Documents\Kopia Plik do importu umowy o dzieło-3-przykladowe.xlsx 2016-08-01 09:49 - 2016-08-25 09:28 - 00000280 _____ C:\Users\k.krupa\Desktop\crm.txt 2016-07-26 15:12 - 2016-07-26 15:12 - 00001044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vbsedit 32-bit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001044 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Htaedit 32-bit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vbsedit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Htaedit.lnk 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Adersoft 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\ProgramData\Vbsedit 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Program Files\Vbsedit 2016-07-26 15:12 - 2016-07-26 15:12 - 00000000 ____D C:\Program Files (x86)\Vbsedit 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Andy 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\ProgramData\Apple 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\Program Files\Bonjour 2016-07-26 13:51 - 2016-07-26 13:51 - 00000000 ____D C:\Program Files (x86)\Bonjour 2016-07-26 13:47 - 2016-07-26 14:21 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Andy ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2016-08-25 10:20 - 2016-03-18 12:37 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ownCloud 2016-08-25 10:19 - 2016-05-16 15:28 - 00000000 ___RD C:\Users\k.krupa\Dysk Google 2016-08-25 10:19 - 2016-03-18 12:38 - 00000000 ___RD C:\Users\k.krupa\OwnCloud 2016-08-25 10:19 - 2016-03-10 21:01 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Skype 2016-08-25 10:19 - 2016-03-10 20:35 - 00000256 _____ C:\WINDOWS\system32\config\netlogon.ftl 2016-08-25 10:18 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\AppReadiness 2016-08-25 10:18 - 2016-07-16 08:04 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2016-08-25 10:18 - 2016-03-10 21:00 - 00002286 ____H C:\Users\k.krupa\Documents\Default.rdp 2016-08-25 10:18 - 2016-03-10 20:14 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2016-08-25 10:17 - 2016-03-10 20:48 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\KeePass 2016-08-25 09:46 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2016-08-25 08:35 - 2016-03-11 10:44 - 00000600 _____ C:\Users\k.krupa\AppData\Local\PUTTY.RND 2016-08-25 08:14 - 2016-03-10 20:19 - 00000000 ____D C:\Program Files (x86)\Microsoft Office 2016-08-25 08:03 - 2016-07-16 13:47 - 00000000 ___HD C:\Program Files\WindowsApps 2016-08-25 08:01 - 2016-03-11 11:33 - 00000600 _____ C:\Users\k.krupa\AppData\Roaming\winscp.rnd 2016-08-24 15:22 - 2016-07-17 00:05 - 00837596 _____ C:\WINDOWS\system32\perfh015.dat 2016-08-24 15:22 - 2016-07-17 00:05 - 00218288 _____ C:\WINDOWS\system32\perfc015.dat 2016-08-24 14:36 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\rescache 2016-08-24 14:12 - 2016-07-16 13:45 - 00000000 ____D C:\WINDOWS\INF 2016-08-24 13:48 - 2016-07-22 12:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\webplugin.exe 2016-08-24 13:48 - 2016-07-22 12:12 - 00000000 ____D C:\Program Files (x86)\webplugin.exe 2016-08-24 13:47 - 2016-07-22 12:12 - 00000000 ____D C:\Program Files\webrec 2016-08-24 13:40 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2016-08-24 13:38 - 2016-03-10 20:36 - 00008072 __RSH C:\ProgramData\ntuser.pol 2016-08-24 13:37 - 2016-03-10 20:36 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Packages 2016-08-24 13:37 - 2016-03-10 19:51 - 00000000 __RHD C:\Users\Public\AccountPictures 2016-08-24 13:36 - 2016-07-16 13:47 - 00000000 ___SD C:\WINDOWS\system32\dsc 2016-08-24 13:36 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2016-08-24 13:36 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\appraiser 2016-08-24 13:36 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\ShellExperiences 2016-08-24 13:29 - 2016-03-14 10:06 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\TeamViewer 2016-08-24 10:21 - 2016-03-14 13:28 - 00000000 ____D C:\Users\k.krupa\.VirtualBox 2016-08-24 08:51 - 2016-03-11 09:09 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Soneta 2016-08-24 08:35 - 2016-07-16 13:36 - 00000000 ____D C:\WINDOWS\CbsTemp 2016-08-23 15:19 - 2016-03-11 09:08 - 00000000 ____D C:\Users\k.krupa\AppData\Local\Soneta 2016-08-23 14:28 - 2016-03-10 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TightVNC 2016-08-23 11:21 - 2016-03-10 20:39 - 00000000 ___RD C:\Users\k.krupa\OneDrive 2016-08-23 11:19 - 2016-03-10 20:12 - 00000000 ____D C:\Program Files\Soneta 2016-08-23 11:15 - 2016-03-10 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Soneta 2016-08-23 11:06 - 2016-04-05 11:48 - 00000023 _____ C:\WINDOWS\ODBCINST.INI 2016-08-23 11:04 - 2016-04-05 11:38 - 00000000 ____D C:\ProgramData\MySQL 2016-08-23 08:33 - 2016-06-27 14:07 - 00002425 _____ C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2016-08-22 15:52 - 2016-03-10 20:39 - 00000000 ____D C:\Users\k.krupa\Documents\KeePass 2016-08-22 15:24 - 2016-03-10 20:39 - 00000000 ____D C:\Users\k.krupa\Documents\enova 2016-08-22 14:05 - 2016-03-10 20:37 - 00000000 ____D C:\Users\k.krupa\AppData\Local\VirtualStore 2016-08-19 13:02 - 2016-04-26 14:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2016-08-19 13:02 - 2016-04-26 14:00 - 00000000 ____D C:\Program Files (x86)\UltraISO 2016-08-19 08:15 - 2016-03-10 20:27 - 00000000 ____D C:\DodatkiEnova 2016-08-19 08:11 - 2016-06-06 12:06 - 00000877 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ownCloud.lnk 2016-08-19 08:11 - 2016-03-21 16:55 - 00000000 ____D C:\Program Files\OwnCloud 2016-08-19 08:11 - 2016-03-17 19:31 - 00000000 ____D C:\ProgramData\Package Cache 2016-08-18 21:19 - 2016-05-16 15:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive 2016-08-17 14:41 - 2016-03-10 20:19 - 00001150 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk 2016-08-17 14:41 - 2016-03-10 20:19 - 00000000 ____D C:\Program Files (x86)\WinSCP 2016-08-17 14:01 - 2016-04-26 09:25 - 00000000 ____D C:\Program Files (x86)\Cobian Backup 11 2016-08-16 11:01 - 2016-06-13 15:01 - 00001024 ____H C:\AMTAG.BIN 2016-08-12 13:08 - 2016-07-06 13:55 - 00000000 ____D C:\Users\k.krupa\Documents\enova.integrator 2016-08-12 08:59 - 2016-03-31 08:22 - 00000000 ____D C:\Users\k.krupa\Documents\Visual Studio 2015 2016-08-11 18:48 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\NDF 2016-08-11 14:23 - 2016-03-18 09:19 - 00000000 ____D C:\Users\k.krupa\Documents\SQL Server Management Studio 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lv-LV 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\lt-LT 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\et-EE 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\es-MX 2016-08-10 16:20 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\en-GB 2016-08-10 11:59 - 2016-03-10 20:01 - 00000000 ____D C:\WINDOWS\system32\MRT 2016-08-10 11:51 - 2016-03-10 20:01 - 147640136 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2016-08-09 16:47 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2016-08-09 16:09 - 2016-03-18 09:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2008 2016-08-09 16:09 - 2016-03-18 09:08 - 00000000 ____D C:\Program Files\Microsoft SQL Server 2016-08-09 16:08 - 2016-03-18 09:13 - 00000000 ____D C:\WINDOWS\SysWOW64\1033 2016-08-09 16:08 - 2016-03-18 09:12 - 00000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2016-08-09 16:08 - 2016-03-18 09:11 - 00000000 ____D C:\WINDOWS\system32\1033 2016-08-08 22:28 - 2016-03-10 20:14 - 00002290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2016-08-08 12:46 - 2016-07-01 11:27 - 00020046 ____N C:\Users\k.krupa\Desktop\aktualizacja enovy.xlsx 2016-08-05 08:33 - 2016-03-10 20:28 - 00000000 ___DX C:\Tools 2016-08-04 08:16 - 2016-03-10 20:10 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2016-08-04 08:05 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\appcompat 2016-08-04 08:03 - 2016-03-10 20:22 - 00002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook 2016.lnk 2016-08-03 20:15 - 2016-07-16 13:47 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2016-08-03 20:11 - 2016-07-16 13:42 - 00132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\LxRun.exe 2016-08-03 20:11 - 2016-07-16 13:42 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\bash.exe 2016-08-03 20:11 - 2016-07-16 13:42 - 00015712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\lxss.sys 2016-08-03 20:10 - 2016-07-16 13:47 - 00000000 ____D C:\ProgramData\USOPrivate 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2016-08-03 20:06 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\MUI 2016-08-03 20:06 - 2016-07-16 13:44 - 00172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe 2016-08-03 20:06 - 2016-07-16 13:44 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll 2016-08-03 20:06 - 2016-07-16 13:44 - 00009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cngkeyhelper.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\telnet.exe 2016-08-03 20:06 - 2016-07-16 13:43 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe 2016-08-03 20:06 - 2016-07-16 13:43 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll 2016-08-03 20:06 - 2016-07-16 13:43 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\cngkeyhelper.dll 2016-08-03 20:05 - 2016-05-12 14:29 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 11.0 2016-08-03 20:05 - 2016-03-31 08:01 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 12.0 2016-08-03 20:05 - 2016-03-31 07:27 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 14.0 2016-08-03 20:04 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Windows NT 2016-08-03 20:03 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2016-08-03 20:03 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\Registration 2016-08-03 20:03 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2016-08-03 20:01 - 2016-07-16 13:47 - 00000000 __RHD C:\Users\Public\Libraries 2016-08-03 19:54 - 2016-07-25 09:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Oracle VM VirtualBox 2016-08-03 19:54 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\inetsrv 2016-08-03 19:54 - 2016-07-15 09:50 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-08-03 19:54 - 2016-06-23 14:44 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2016 2016-08-03 19:54 - 2016-05-13 16:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Sync Framework 2.1 ENU 2016-08-03 19:54 - 2016-04-12 08:57 - 00000000 ____D C:\WINDOWS\SysWOW64\FFU Loader Driver 2016-08-03 19:54 - 2016-03-18 09:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft SQL Server 2014 2016-08-03 19:54 - 2016-03-17 09:03 - 00000000 ____D C:\WINDOWS\pl 2016-08-03 19:54 - 2016-03-16 09:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2016-08-03 19:54 - 2016-03-15 13:24 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft WSE 3.0 2016-08-03 19:54 - 2016-03-15 13:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Płatnik 10.01.001 2016-08-03 19:54 - 2016-03-11 09:43 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2016-08-03 19:54 - 2016-03-10 21:04 - 00000000 ____D C:\Users\k.krupa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HyperCam 2 2016-08-03 19:54 - 2016-03-10 20:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2016-08-03 19:54 - 2016-03-10 20:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office 2016 2016-08-03 19:54 - 2016-03-10 20:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenVPN 2016-08-03 19:54 - 2015-10-30 08:28 - 00000000 ____D C:\Users\Default.migrated 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\SysWOW64\Macromed 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\spool 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\Macromed 2016-08-03 19:41 - 2016-07-16 13:47 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2016-08-03 19:41 - 2016-07-14 10:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Expression 2016-08-03 19:41 - 2016-07-14 10:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Visual Studio 2015 2016-08-03 19:41 - 2016-05-10 11:17 - 00000000 ____D C:\Program Files\IIS 2016-08-03 19:41 - 2016-03-31 07:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits 2016-08-03 19:41 - 2016-03-21 16:59 - 00000000 ____D C:\WINDOWS\system32\appmgmt 2016-08-03 19:41 - 2016-03-15 13:24 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Asseco Poland SA 2016-08-03 19:41 - 2016-03-10 20:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2016-08-03 19:41 - 2016-03-10 20:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TAP-Windows 2016-08-03 19:41 - 2016-03-10 20:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Soneta 2016-08-03 19:41 - 2016-03-10 20:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2016-08-03 19:23 - 2015-10-30 09:24 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy 2016-08-03 19:17 - 2016-07-16 08:04 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2016-08-03 19:16 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\PrintDialog 2016-08-03 19:16 - 2016-07-16 13:47 - 00000000 ___RD C:\WINDOWS\MiracastView 2016-08-03 18:12 - 2016-04-05 18:36 - 00000930 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job 2016-08-03 18:07 - 2016-03-10 20:14 - 00001068 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2016-08-03 17:20 - 2016-03-10 20:14 - 00001064 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job 2016-08-03 15:28 - 2016-07-18 10:24 - 00000000 ____D C:\Wirtualki 2016-08-03 15:00 - 2016-03-31 08:31 - 00000000 ____D C:\VS 2016-08-03 13:59 - 2016-03-10 20:45 - 00000000 ____D C:\Users\k.krupa\Desktop\Nagrania 2016-08-01 11:02 - 2016-07-19 15:00 - 19709440 ____N (Luis Cobian, CobianSoft) C:\Users\k.krupa\Downloads\cbSetup.exe 2016-07-29 12:19 - 2016-04-22 08:07 - 00000000 ____D C:\Users\k.krupa\AppData\Local\ElevatedDiagnostics 2016-07-28 08:11 - 2016-03-10 20:17 - 00000000 ___RD C:\Program Files (x86)\Skype 2016-07-28 08:11 - 2016-03-10 20:16 - 00000000 ____D C:\ProgramData\Skype ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-06-29 13:03 - 2016-06-29 13:08 - 0038430 _____ () C:\Users\k.krupa\AppData\Roaming\Wartości oddzielone przecinkami.ADR 2016-03-11 11:33 - 2016-08-25 08:01 - 0000600 _____ () C:\Users\k.krupa\AppData\Roaming\winscp.rnd 2016-03-11 10:44 - 2016-08-25 08:35 - 0000600 _____ () C:\Users\k.krupa\AppData\Local\PUTTY.RND 2016-03-29 08:15 - 2016-03-29 08:15 - 0000017 _____ () C:\Users\k.krupa\AppData\Local\resmon.resmoncfg ==================== Bamital & volsnap ================= (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2016-08-23 15:36 ==================== Koniec FRST.txt ============================