Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 18-01-2017 Uruchomiony przez E6420 (administrator) DELL (21-01-2017 18:33:35) Uruchomiony z F:\Nowy folder\Download\cos\Nowy folder Załadowane profile: E6420 & UpdatusUser (Dostępne profile: E6420 & UpdatusUser) Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: IE) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\MsMpEng.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\BCMWLTRY.EXE (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostControlService.exe (Broadcom Corporation) C:\Program Files\Broadcom Corporation\Broadcom USH Host Components\CV\bin\HostStorageService.exe (Autodesk Inc.) C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe (Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\btwdins.exe (O2Micro International) C:\Windows\System32\drivers\o2flash.exe () C:\Windows\SysWOW64\srvany.exe (O2Micro.) C:\Windows\SysWOW64\SDIOAssist.exe (Ericsson AB) C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Program Files\Microsoft Security Client\NisSrv.exe (Dell Inc.) C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE (Microsoft Corporation) C:\Program Files\Microsoft Security Client\msseces.exe (Intel Corporation) C:\Windows\System32\igfxtray.exe (Intel Corporation) C:\Windows\System32\hkcmd.exe (Intel Corporation) C:\Windows\System32\igfxpers.exe (Ericsson AB) C:\Program Files (x86)\Dell\Dell Mobile Broadband Manager\WirelessManager.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe (Google, Inc) C:\Users\E6420\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe (Renesas Electronics Corporation) C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Microsoft Corporation) C:\Windows\SysWOW64\rundll32.exe (Broadcom Corporation.) C:\Program Files\WIDCOMM\Bluetooth Software\BTStackServer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe () F:\Download\t4plimtg.exe (McAfee, Inc.) C:\Program Files\TrueKey\InstallerWrapperService.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe (AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\UI0Detect.exe (McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe (McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe (McAfee, Inc.) C:\Program Files\TrueKey\McTkSchedulerService.exe (Intel Security) C:\Program Files\Intel Security\True Key\application\truekey.exe (McAfee, Inc.) C:\Program Files\TrueKey\McAfee.TrueKey.SmartMonitor.exe (Intel Security) C:\Program Files\Intel Security\True Key\application\truekey.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (McAfee, Inc.) C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Broadcom Wireless Manager UI] => C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [7469568 2012-03-01] (Dell Inc.) HKLM\...\Run: [nwiz] => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1694016 2012-05-11] () HKLM\...\Run: [MSC] => C:\Program Files\Microsoft Security Client\msseces.exe [1353680 2016-11-14] (Microsoft Corporation) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM-x32\...\Run: [NUSB3MON] => C:\Program Files (x86)\Renesas Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe [115048 2011-09-16] (Renesas Electronics Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292088 2013-02-23] (Intel Corporation) HKLM-x32\...\Run: [ADSKAppManager] => C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgr.exe [529480 2016-02-24] (Autodesk Inc.) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [9103976 2017-01-21] (AVAST Software) Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation) HKU\S-1-5-21-1928984926-2228085626-273026004-1000\...\Run: [WirelessManager] => C:\Program Files (x86)\Dell\Dell Mobile Broadband Manager\WirelessManager.exe [20480 2012-04-20] (Ericsson AB) HKU\S-1-5-21-1928984926-2228085626-273026004-1000\...\Run: [Google Update] => C:\Users\E6420\AppData\Local\Google\Update\1.3.32.7\GoogleUpdateCore.exe [601752 2016-12-29] (Google Inc.) HKU\S-1-5-21-1928984926-2228085626-273026004-1000\...\Run: [Google Photos Backup] => C:\Users\E6420\AppData\Local\Programs\Google\Google Photos Backup\Google Photos Backup.exe [3790936 2016-04-08] (Google, Inc) HKU\S-1-5-18\...\RunOnce: [SPReview] => C:\Windows\System32\SPReview\SPReview.exe [301568 2015-09-02] (Microsoft Corporation) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll C:\Program Files\TrueKey\McAfeeTrueKeyPasswordFilter ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-01-21] (AVAST Software) ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2014-02-07] (Autodesk, Inc.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Bluetooth.lnk [2015-12-16] ShortcutTarget: Bluetooth.lnk -> C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe (Broadcom Corporation.) Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\McAfee Security Scan Plus.lnk [2017-01-21] ShortcutTarget: McAfee Security Scan Plus.lnk -> C:\Program Files\McAfee Security Scan\3.11.474\SSScheduler.exe (McAfee, Inc.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: 0.0.0.1 mssplus.mcafee.com Tcpip\Parameters: [DhcpNameServer] 46.227.241.55 46.227.241.56 Tcpip\..\Interfaces\{1B14147E-C8E1-4F5D-813F-BF790CCEB444}: [DhcpNameServer] 192.168.1.1 0.0.0.0 Tcpip\..\Interfaces\{2C14B51A-FD4B-45B5-BDCB-738432D490A0}: [DhcpNameServer] 192.168.137.1 Tcpip\..\Interfaces\{513E2714-B171-457B-A141-B007665B2C9F}: [DhcpNameServer] 192.168.1.1 0.0.0.0 Tcpip\..\Interfaces\{B5DF8A02-068E-43AF-8561-50B6B36D19EF}: [DhcpNameServer] 46.227.241.55 46.227.241.56 Internet Explorer: ================== BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2017-01-21] (AVAST Software) BHO: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-01-21] (Google Inc.) BHO-x32: True Key Helper -> {0F4B8786-5502-4803-8EBC-F652A1153BB6} -> C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security) BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2017-01-21] (AVAST Software) BHO-x32: Google Toolbar Helper -> {AA58ED58-01DD-4d91-8333-CF10577473F7} -> C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-01-21] (Google Inc.) Toolbar: HKLM - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_64.dll [2017-01-21] (Google Inc.) Toolbar: HKLM-x32 - Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files (x86)\Google\Google Toolbar\GoogleToolbar_32.dll [2017-01-21] (Google Inc.) Toolbar: HKLM-x32 - True Key - {4BAAC1B8-0800-42C9-8FA6-08B211F356B8} - C:\Program Files\Intel Security\True Key\MSIE\truekey_ie.dll [2017-01-10] (Intel Security) StartMenuInternet: IEXPLORE.EXE - iexplore.exe FireFox: ======== FF HKLM\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF Extension: (Avast SafePrice) - C:\Program Files\AVAST Software\Avast\SafePrice\FF [2017-01-21] FF HKLM\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Extension: (Avast Online Security) - C:\Program Files\AVAST Software\Avast\WebRep\FF [2017-01-21] FF HKLM-x32\...\Firefox\Extensions: [sp@avast.com] - C:\Program Files\AVAST Software\Avast\SafePrice\FF FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2016-10-06] (Google) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2012-05-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2012-05-10] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-16] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.) FF Plugin HKU\S-1-5-21-1928984926-2228085626-273026004-1000: @tools.google.com/Google Update;version=3 -> C:\Users\E6420\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-29] (Google Inc.) FF Plugin HKU\S-1-5-21-1928984926-2228085626-273026004-1000: @tools.google.com/Google Update;version=9 -> C:\Users\E6420\AppData\Local\Google\Update\1.3.32.7\npGoogleUpdate3.dll [2016-12-29] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default [2017-01-21] CHR Extension: (Prezentacje Google) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-13] CHR Extension: (Dokumenty Google) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-13] CHR Extension: (Dysk Google) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-13] CHR Extension: (YouTube) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-13] CHR Extension: (Adblock Plus) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-11-07] CHR Extension: (Google Search) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-13] CHR Extension: (Arkusze Google) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-13] CHR Extension: (Dokumenty Google offline) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-16] CHR Extension: (AdBlock) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-12-30] CHR Extension: (Avast Online Security) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2017-01-21] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-01-20] CHR Extension: (Gmail) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-13] CHR Extension: (Chrome Media Router) - C:\Users\E6420\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-12-30] CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S2 0113601485018618mcinstcleanup; C:\Windows\TEMP\011360~1.EXE [922152 2016-03-02] (McAfee, Inc.) R2 AdAppMgrSvc; C:\Program Files (x86)\Common Files\Autodesk Shared\AppManager\R1\AdAppMgrSvc.exe [1145928 2016-02-24] (Autodesk Inc.) R2 Autodesk Content Service; C:\Program Files (x86)\Autodesk\Content Service\Connect.Service.ContentService.exe [31192 2014-02-07] (Autodesk, Inc.) R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [197128 2017-01-21] (AVAST Software) S2 InstallerService; C:\Program Files\TrueKey\Mcafee.TrueKey.InstallerService.exe [187792 2016-08-23] (McAfee, Inc.) R4 InstallerWrapperService; C:\Program Files\TrueKey\InstallerWrapperService.exe [47688 2016-07-19] (McAfee, Inc.) S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.11.474\McCHSvc.exe [329480 2016-12-14] (McAfee, Inc.) R2 MsMpSvc; C:\Program Files\Microsoft Security Client\MsMpEng.exe [119864 2016-11-14] (Microsoft Corporation) R3 NisSrv; C:\Program Files\Microsoft Security Client\NisSrv.exe [361816 2016-11-14] (Microsoft Corporation) R2 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] () [Brak podpisu cyfrowego] R2 TrueKey; C:\Program Files\TrueKey\McAfee.TrueKey.Service.exe [995800 2017-01-05] (McAfee, Inc.) R2 TrueKeyScheduler; C:\Program Files\TrueKey\McTkSchedulerService.exe [16248 2017-01-05] (McAfee, Inc.) R2 TrueKeyServiceHelper; C:\Program Files\TrueKey\McAfee.TrueKey.ServiceHelper.exe [86864 2017-01-05] (McAfee, Inc.) S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 wltrysvc; C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe [6157312 2012-03-01] (Dell Inc.) [Brak podpisu cyfrowego] R2 WMCoreService; C:\Program Files (x86)\Dell\Dell WWAN\WMCore\mini_WMCore.exe [688024 2012-05-31] (Ericsson AB) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [37656 2017-01-21] (AVAST Software) S3 aswKbd; C:\Windows\system32\drivers\aswKbd.sys [37144 2017-01-21] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [108816 2017-01-21] (AVAST Software) S3 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [103064 2017-01-21] (AVAST Software) S0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [74544 2017-01-21] (AVAST Software) S3 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [969184 2017-01-21] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [513632 2017-01-21] (AVAST Software) S3 aswStm; C:\Windows\system32\drivers\aswStm.sys [163416 2017-01-21] (AVAST Software) S3 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [293352 2017-01-21] (AVAST Software) S3 athrusb; C:\Windows\System32\DRIVERS\athrxusb.sys [1075712 2008-07-29] (Atheros Communications, Inc.) R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [165688 2015-12-11] (Broadcom Corporation.) R3 BCM42RLY; C:\Windows\System32\drivers\BCM42RLY.sys [20344 2012-03-01] (Broadcom Corporation) [Brak podpisu cyfrowego] S3 d554gps; C:\Windows\System32\DRIVERS\d554gps64.sys [103184 2012-03-01] (Ericsson AB) S3 d554scard; C:\Windows\System32\DRIVERS\d554scard.sys [61992 2011-01-14] (Ericsson AB) S3 ecnssndis; C:\Windows\System32\Drivers\wwuss64.sys [26664 2011-10-05] (Ericsson AB) S3 ecnssndisfltr; C:\Windows\System32\Drivers\wwussf64.sys [29736 2011-10-05] (Ericsson AB) S3 MBAMProtector; C:\Windows\system32\drivers\mbam.sys [25816 2015-10-05] (Malwarebytes) S3 MBAMWebAccessControl; C:\Windows\system32\drivers\mwac.sys [63704 2015-10-05] (Malwarebytes Corporation) S3 Mbm3CBus; C:\Windows\System32\DRIVERS\Mbm3CBus.sys [419400 2011-10-05] (MCCI Corporation) S3 Mbm3DevMt; C:\Windows\System32\DRIVERS\Mbm3DevMt.sys [430664 2011-10-05] (MCCI Corporation) S3 Mbm3mdfl; C:\Windows\System32\DRIVERS\Mbm3mdfl.sys [19528 2011-10-05] (MCCI Corporation) S3 Mbm3Mdm; C:\Windows\System32\DRIVERS\Mbm3Mdm.sys [483400 2011-10-05] (MCCI Corporation) R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [295000 2016-08-25] (Microsoft Corporation) S3 NETwNs64; C:\Windows\System32\DRIVERS\NETwsw00.sys [11524096 2013-05-29] (Intel Corporation) [Brak podpisu cyfrowego] R3 NisDrv; C:\Windows\System32\DRIVERS\NisDrvWFP.sys [135928 2016-08-25] (Microsoft Corporation) R1 nvkflt; C:\Windows\System32\DRIVERS\nvkflt.sys [249152 2012-05-11] (NVIDIA Corporation) S3 WwanUsbServ; C:\Windows\System32\DRIVERS\WwanUsbMp64.sys [279312 2012-04-27] (Ericsson AB) U3 pxldapod; \??\C:\Users\E6420\AppData\Local\Temp\pxldapod.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-01-21 18:31 - 2017-01-21 18:31 - 00001964 _____ C:\Users\Public\Desktop\McAfee Security Scan Plus.lnk 2017-01-21 18:31 - 2017-01-21 18:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee Security Scan Plus 2017-01-21 18:30 - 2017-01-21 18:31 - 00000000 ____D C:\Program Files\McAfee Security Scan 2017-01-21 18:29 - 2017-01-21 18:33 - 00000000 ____D C:\FRST 2017-01-21 18:28 - 2017-01-21 18:28 - 00027692 _____ C:\Users\E6420\Desktop\Gmer..txt 2017-01-21 18:12 - 2017-01-21 18:12 - 00000000 ____D C:\ProgramData\TrueKey 2017-01-21 18:11 - 2017-01-21 18:13 - 00000000 ____D C:\Users\E6420\AppData\Local\tkdata 2017-01-21 18:11 - 2017-01-21 18:11 - 00001190 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\True Key.lnk 2017-01-21 18:11 - 2017-01-21 18:11 - 00001176 _____ C:\Users\Public\Desktop\True Key.lnk 2017-01-21 18:10 - 2017-01-21 18:10 - 00000000 ____D C:\Program Files\Intel Security 2017-01-21 18:10 - 2017-01-21 18:10 - 00000000 ____D C:\Program Files\Common Files\McAfee 2017-01-21 18:10 - 2017-01-21 18:10 - 00000000 ____D C:\Program Files (x86)\McAfee 2017-01-21 18:08 - 2017-01-21 18:08 - 00003950 _____ C:\Windows\System32\Tasks\SafeZone scheduled Autoupdate 1485018499 2017-01-21 18:08 - 2017-01-21 18:08 - 00001043 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast SafeZone Browser.lnk 2017-01-21 18:08 - 2017-01-21 18:08 - 00000000 ____D C:\Program Files\Google 2017-01-21 18:07 - 2017-01-21 18:08 - 00000000 ____D C:\ProgramData\Google 2017-01-21 18:07 - 2017-01-21 18:07 - 00037144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys 2017-01-21 18:05 - 2017-01-21 18:05 - 00000000 ____D C:\Users\E6420\AppData\Roaming\AVAST Software 2017-01-21 18:05 - 2017-01-21 18:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-01-21 18:04 - 2017-01-21 18:05 - 00969184 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys 2017-01-21 18:04 - 2017-01-21 18:05 - 00513632 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys 2017-01-21 18:04 - 2017-01-21 18:05 - 00293352 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00969560 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsnx.sys.148501830064407 2017-01-21 18:04 - 2017-01-21 18:04 - 00513496 _____ (AVAST Software) C:\Windows\system32\Drivers\aswsp.sys.148501830170510 2017-01-21 18:04 - 2017-01-21 18:04 - 00391496 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-01-21 18:04 - 2017-01-21 18:04 - 00292704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswvmm.sys.148501830248512 2017-01-21 18:04 - 2017-01-21 18:04 - 00163416 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00108816 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00103064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00074544 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00053208 _____ (AVAST Software) C:\Windows\avastSS.scr 2017-01-21 18:04 - 2017-01-21 18:04 - 00037656 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-01-21 18:04 - 2017-01-21 18:04 - 00003922 _____ C:\Windows\System32\Tasks\avast! Emergency Update 2017-01-21 18:02 - 2017-01-21 18:07 - 00000000 ____D C:\Program Files\AVAST Software 2017-01-21 18:00 - 2017-01-21 18:13 - 00000000 ____D C:\Program Files\TrueKey 2017-01-21 18:00 - 2017-01-21 18:00 - 00000000 ____D C:\ProgramData\McAfee Security Scan 2017-01-21 17:59 - 2017-01-21 17:59 - 00004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2017-01-21 17:59 - 2017-01-21 17:59 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-01-21 17:58 - 2017-01-21 17:58 - 00000000 ____D C:\Program Files (x86)\Adobe 2017-01-21 17:42 - 2017-01-21 17:47 - 00000000 ____D C:\Users\E6420\AppData\Roaming\SymMover 2017-01-21 17:42 - 2017-01-21 17:42 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\SymMover 2017-01-21 17:21 - 2017-01-21 17:22 - 00001693 _____ C:\Users\E6420\Desktop\advcleaner2.txt 2017-01-21 17:17 - 2017-01-21 17:18 - 00000000 ____D C:\AdwCleaner 2017-01-21 17:10 - 2017-01-21 17:10 - 00000435 _____ C:\Users\E6420\Desktop\Delfix.txt 2017-01-21 17:09 - 2017-01-21 17:09 - 00000435 _____ C:\DelFix.txt 2017-01-21 16:33 - 2017-01-21 16:33 - 00005397 _____ C:\Users\E6420\Desktop\fixlist.txt.txt 2017-01-21 16:04 - 2017-01-21 16:04 - 00005803 _____ C:\Users\E6420\Desktop\h.txt 2017-01-21 15:30 - 2017-01-21 15:30 - 00028023 _____ C:\Users\E6420\Desktop\gmerz.txt 2017-01-21 15:26 - 2017-01-21 15:26 - 00041266 _____ C:\Users\E6420\Desktop\3022816.perl 2017-01-21 13:36 - 2017-01-21 13:36 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk 2017-01-21 13:34 - 2017-01-21 13:34 - 00002100 _____ C:\Users\Public\Desktop\AUTOCAD.lnk 2017-01-21 13:28 - 2017-01-21 13:28 - 00000000 ____D C:\Users\Public\Documents\Autodesk 2017-01-21 13:27 - 2017-01-21 13:27 - 00000000 ____D C:\Program Files\Autodesk 2017-01-21 13:20 - 2017-01-21 13:20 - 00000000 ____D C:\Program Files (x86)\Autodesk 2017-01-21 13:19 - 2017-01-21 13:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk 2017-01-21 13:13 - 2017-01-21 13:13 - 00000000 ____D C:\Autodesk 2017-01-20 23:42 - 2017-01-21 16:10 - 00000000 ____D C:\Windows\system32\appmgmt 2017-01-20 23:34 - 2013-10-02 02:10 - 00044544 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbGDCoInstaller.dll 2017-01-20 23:33 - 2013-10-02 03:22 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\TsUsbFlt.sys 2017-01-20 23:33 - 2013-10-02 03:11 - 00013824 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyControl.exe 2017-01-20 23:33 - 2013-10-02 03:08 - 00012800 _____ (Microsoft Corporation) C:\Windows\system32\TsUsbRedirectionGroupPolicyExtension.dll 2017-01-20 23:33 - 2013-10-02 02:48 - 00056832 _____ (Microsoft Corporation) C:\Windows\system32\MsRdpWebAccess.dll 2017-01-20 23:33 - 2013-10-02 02:48 - 00018944 _____ (Microsoft Corporation) C:\Windows\system32\wksprtPS.dll 2017-01-20 23:33 - 2013-10-02 02:29 - 00062976 _____ (Microsoft Corporation) C:\Windows\system32\tsgqec.dll 2017-01-20 23:33 - 2013-10-02 01:15 - 01057280 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll 2017-01-20 23:33 - 2013-10-02 01:14 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MsRdpWebAccess.dll 2017-01-20 23:33 - 2013-10-02 01:14 - 00017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wksprtPS.dll 2017-01-20 23:33 - 2013-10-02 01:08 - 00083968 _____ (Microsoft Corporation) C:\Windows\system32\TSWbPrxy.exe 2017-01-20 23:33 - 2013-10-02 01:01 - 00420864 _____ (Microsoft Corporation) C:\Windows\system32\wksprt.exe 2017-01-20 23:33 - 2013-10-02 00:58 - 00053248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsgqec.dll 2017-01-20 23:33 - 2013-10-02 00:31 - 01147392 _____ (Microsoft Corporation) C:\Windows\system32\mstsc.exe 2017-01-20 23:33 - 2013-10-02 00:08 - 00855552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll 2017-01-20 23:33 - 2013-10-01 23:34 - 01068544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstsc.exe 2017-01-20 23:33 - 2013-10-01 21:57 - 06578176 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll 2017-01-20 23:33 - 2013-10-01 21:55 - 05698048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll 2017-01-20 23:30 - 2015-08-05 18:56 - 00022528 _____ (Microsoft Corporation) C:\Windows\system32\icaapi.dll 2017-01-20 23:30 - 2015-08-05 18:06 - 00039936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tssecsrv.sys 2017-01-20 23:06 - 2012-08-23 15:13 - 00243200 _____ (Microsoft Corporation) C:\Windows\system32\rdpudd.dll 2017-01-20 23:06 - 2012-08-23 15:10 - 00019456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpvideominiport.sys 2017-01-20 23:06 - 2012-08-23 14:24 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\RdpGroupPolicyExtension.dll 2017-01-20 23:06 - 2012-08-23 12:12 - 00192000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpendp_winip.dll 2017-01-20 23:06 - 2012-08-23 11:51 - 00228864 _____ (Microsoft Corporation) C:\Windows\system32\rdpendp_winip.dll 2017-01-20 23:06 - 2012-08-23 10:51 - 03174912 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll 2017-01-20 23:04 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\kbdgeoqw.dll 2017-01-20 23:04 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZEL.DLL 2017-01-20 23:04 - 2015-12-16 19:53 - 00007168 _____ (Microsoft Corporation) C:\Windows\system32\KBDAZE.DLL 2017-01-20 23:04 - 2015-12-16 19:48 - 00007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZE.DLL 2017-01-20 23:04 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kbdgeoqw.dll 2017-01-20 23:04 - 2015-12-16 19:48 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KBDAZEL.DLL 2017-01-20 22:52 - 2017-01-20 22:52 - 00002938 _____ C:\Windows\System32\Tasks\RunUninstallTool_SkipUac 2017-01-20 22:52 - 2017-01-20 22:52 - 00000000 ____D C:\Users\E6420\AppData\Roaming\CrystalIdea Software 2017-01-20 22:52 - 2017-01-20 22:52 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Uninstall Tool 2017-01-17 01:07 - 2017-01-17 01:07 - 00000086 ____H C:\Users\E6420\Downloads\.~lock.BELGIA (1).doc# 2017-01-17 01:06 - 2017-01-17 01:06 - 00000086 ____H C:\Users\E6420\Downloads\.~lock.BELGIA.doc# 2017-01-15 14:09 - 2017-01-15 14:09 - 00279949 _____ C:\Users\E6420\Documents\Agnieszka%20Lubaszewska.doc_0.odt 2017-01-15 12:15 - 2012-06-01 06:39 - 00014848 _____ (Microsoft Corporation) C:\Windows\system32\wamregps.dll 2017-01-15 12:15 - 2012-06-01 06:36 - 00192000 _____ (Microsoft Corporation) C:\Windows\system32\iisRtl.dll 2017-01-15 12:15 - 2012-06-01 06:36 - 00011264 _____ (Microsoft Corporation) C:\Windows\system32\iisrstap.dll 2017-01-15 12:15 - 2012-06-01 06:35 - 00060928 _____ (Microsoft Corporation) C:\Windows\system32\ahadmin.dll 2017-01-15 12:15 - 2012-06-01 06:34 - 00055296 _____ (Microsoft Corporation) C:\Windows\system32\admwprox.dll 2017-01-15 12:15 - 2012-06-01 06:33 - 00016896 _____ (Microsoft Corporation) C:\Windows\system32\iisreset.exe 2017-01-15 12:15 - 2012-06-01 05:40 - 00010752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wamregps.dll 2017-01-15 12:15 - 2012-06-01 05:37 - 00154624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisRtl.dll 2017-01-15 12:15 - 2012-06-01 05:37 - 00008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisrstap.dll 2017-01-15 12:15 - 2012-06-01 05:35 - 00050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\admwprox.dll 2017-01-15 12:15 - 2012-06-01 05:35 - 00026624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ahadmin.dll 2017-01-15 12:15 - 2012-06-01 05:34 - 00015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iisreset.exe 2017-01-14 11:21 - 2017-01-14 11:21 - 00000000 ____D C:\Windows\SysWOW64\BestPractices 2017-01-14 11:21 - 2017-01-14 11:21 - 00000000 ____D C:\Windows\system32\BestPractices 2017-01-14 11:21 - 2017-01-14 11:21 - 00000000 ____D C:\inetpub 2017-01-12 14:53 - 2017-01-12 14:53 - 00000086 ____H C:\Users\E6420\Downloads\.~lock.Agnieszka Lubaszewska.doc# 2017-01-11 14:38 - 2017-01-05 19:55 - 00154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys 2017-01-11 14:38 - 2017-01-05 19:55 - 00095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys 2017-01-11 14:38 - 2017-01-05 19:52 - 01460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 01212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00730624 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll 2017-01-11 14:38 - 2017-01-05 19:52 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00553472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll 2017-01-11 14:38 - 2017-01-05 18:43 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll 2017-01-11 14:38 - 2017-01-05 18:42 - 00690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll 2017-01-11 14:38 - 2017-01-05 18:32 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe 2017-01-11 14:38 - 2017-01-05 18:25 - 00159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys 2017-01-11 14:38 - 2017-01-05 18:24 - 00291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2017-01-11 14:38 - 2017-01-05 18:24 - 00129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys 2017-01-11 14:38 - 2017-01-05 18:24 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe 2017-01-11 14:38 - 2017-01-05 18:23 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe 2017-01-11 14:38 - 2017-01-05 18:19 - 00036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll 2017-01-09 22:09 - 2017-01-11 20:42 - 00000000 ___RD C:\Users\E6420\Documents\Scanned Documents 2017-01-09 22:09 - 2017-01-09 22:09 - 00000000 ____D C:\Users\E6420\Documents\Fax 2017-01-09 22:02 - 2017-01-09 22:02 - 00000000 ____D C:\ProgramData\HP 2017-01-09 21:59 - 2017-01-09 21:59 - 00000000 ____D C:\Users\E6420\Documents\Moje palety 2017-01-09 21:55 - 2017-01-09 21:55 - 00000000 ____D C:\Program Files (x86)\gs 2017-01-09 21:54 - 2017-01-09 21:54 - 00000000 ____D C:\ProgramData\VsTelemetry 2017-01-09 21:52 - 2017-01-09 21:52 - 00000000 ____D C:\Users\Public\Documents\Corel 2017-01-09 21:51 - 2017-01-09 22:09 - 00000000 ____D C:\Users\E6420\Documents\Corel 2017-01-09 21:51 - 2017-01-09 21:55 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Corel 2017-01-09 21:50 - 2017-01-09 21:57 - 00000000 ____D C:\ProgramData\Corel 2017-01-09 21:29 - 2017-01-09 21:29 - 00000000 ____D C:\ProgramData\UniqueId 2016-12-30 00:38 - 2016-12-30 00:38 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Opera Software 2016-12-30 00:38 - 2016-12-30 00:38 - 00000000 ____D C:\Users\E6420\AppData\Local\Opera Software 2016-12-30 00:37 - 2017-01-03 17:04 - 00000000 ____D C:\Program Files (x86)\Opera 2016-12-30 00:20 - 2016-12-30 00:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight 2016-12-30 00:20 - 2016-12-30 00:20 - 00000000 ____D C:\Program Files\Microsoft Silverlight 2016-12-30 00:20 - 2016-12-30 00:20 - 00000000 ____D C:\Program Files (x86)\Microsoft Silverlight 2016-12-29 22:45 - 2016-12-29 22:50 - 00003656 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1928984926-2228085626-273026004-1000UA 2016-12-29 22:45 - 2016-12-29 22:50 - 00003384 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-1928984926-2228085626-273026004-1000Core 2016-12-29 22:45 - 2016-12-29 22:45 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Google Photos Backup ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-01-21 18:10 - 2016-09-26 16:48 - 00000000 ____D C:\Program Files\Common Files\AV 2017-01-21 18:10 - 2016-09-26 16:46 - 00000000 ____D C:\ProgramData\McAfee 2017-01-21 18:08 - 2015-12-11 15:32 - 00000000 ____D C:\Program Files (x86)\Google 2017-01-21 18:07 - 2016-09-26 16:46 - 00000000 ____D C:\ProgramData\AVAST Software 2017-01-21 18:01 - 2015-12-12 20:15 - 00000000 ____D C:\Users\E6420\AppData\Local\Adobe 2017-01-21 18:01 - 2015-09-02 11:42 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Adobe 2017-01-21 17:28 - 2009-07-14 05:45 - 00014256 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-01-21 17:28 - 2009-07-14 05:45 - 00014256 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-01-21 17:19 - 2015-09-01 16:18 - 00000000 ____D C:\ProgramData\NVIDIA 2017-01-21 17:19 - 2009-07-14 06:08 - 00032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT 2017-01-21 17:19 - 2009-07-14 06:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-01-21 16:35 - 2016-09-26 16:48 - 00000000 ____D C:\Windows\System32\Tasks\AVAST Software 2017-01-21 16:35 - 2015-09-01 15:47 - 00000000 ____D C:\Users\E6420 2017-01-21 16:07 - 2015-12-12 20:14 - 00000000 ____D C:\ProgramData\Adobe 2017-01-21 15:06 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\rescache 2017-01-21 13:49 - 2015-12-21 20:52 - 00000000 ___RD C:\Users\E6420\Desktop\WSZYSTKO 2017-01-21 13:38 - 2009-07-14 05:45 - 00446432 _____ C:\Windows\system32\FNTCACHE.DAT 2017-01-21 13:36 - 2016-01-04 14:32 - 00000000 ____D C:\ProgramData\Package Cache 2017-01-21 13:35 - 2016-01-04 15:01 - 00000000 ____D C:\Program Files\Common Files\Autodesk Shared 2017-01-21 13:35 - 2016-01-04 14:52 - 00000000 ____D C:\ProgramData\Autodesk 2017-01-21 13:34 - 2015-09-01 16:01 - 00117920 _____ C:\Users\E6420\AppData\Local\GDIPFONTCACHEV1.DAT 2017-01-21 13:30 - 2009-07-14 06:32 - 00000000 ____D C:\Windows\Downloaded Program Files 2017-01-21 13:27 - 2016-01-04 14:52 - 00000000 ____D C:\Users\E6420\AppData\Roaming\Autodesk 2017-01-20 23:53 - 2016-04-25 12:48 - 00000000 ____D C:\Users\E6420\Downloads\PROGRAMY 2017-01-20 23:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\PolicyDefinitions 2017-01-20 23:07 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\inf 2017-01-17 11:50 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\SysWOW64\inetsrv 2017-01-17 11:50 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\inetsrv 2017-01-14 13:42 - 2015-09-02 00:42 - 00822520 _____ C:\Windows\system32\perfh015.dat 2017-01-14 13:42 - 2015-09-02 00:42 - 00191780 _____ C:\Windows\system32\perfc015.dat 2017-01-14 13:42 - 2009-07-14 06:13 - 01890990 _____ C:\Windows\system32\PerfStringBackup.INI 2017-01-14 13:34 - 2015-12-11 11:19 - 00000000 ____D C:\Program Files (x86)\Cisco 2017-01-14 13:33 - 2015-09-01 16:01 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DW WLAN 2017-01-14 13:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\lv-LV 2017-01-14 13:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\lt-LT 2017-01-14 13:33 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Help 2017-01-14 13:32 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\et-EE 2017-01-14 11:22 - 2015-09-02 13:07 - 01776166 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2017-01-13 23:43 - 2016-04-23 12:01 - 00000000 ____D C:\ProgramData\Skype 2017-01-12 01:10 - 2015-09-02 07:16 - 00000000 ____D C:\Windows\system32\MRT 2017-01-12 01:08 - 2015-09-02 07:16 - 135657872 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe 2017-01-10 12:21 - 2015-09-01 16:18 - 00000000 ____D C:\Users\UpdatusUser 2017-01-09 23:38 - 2009-07-14 04:20 - 00000000 ____D C:\Program Files\Common Files\Microsoft Shared 2017-01-03 17:04 - 2015-09-01 15:48 - 00001421 _____ C:\Users\E6420\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2016-12-30 13:32 - 2015-12-11 15:30 - 00000000 ____D C:\Users\E6420\AppData\Local\Diagnostics 2016-12-30 13:32 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\system32\NDF 2016-12-30 00:20 - 2015-09-01 15:53 - 00000000 ____D C:\Users\E6420\AppData\LocalLow\Microsoft 2016-12-30 00:20 - 2009-07-14 04:20 - 00000000 ___SD C:\ProgramData\Microsoft 2016-12-29 23:00 - 2015-09-01 15:47 - 00000000 ___RD C:\Users\E6420\Pictures 2016-12-29 22:50 - 2009-07-14 04:20 - 00000000 ____D C:\Windows\Tasks 2016-12-29 22:45 - 2015-12-16 19:33 - 00000000 ____D C:\Users\E6420\AppData\Local\Programs 2016-12-29 22:45 - 2015-12-11 15:32 - 00000000 ____D C:\Users\E6420\AppData\Local\Google ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-01-04 15:05 - 2016-01-04 15:05 - 0000153 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.351.32.bc ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-01-13 19:04 ==================== Koniec FRST.txt ============================