Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 15-03-2017 Uruchomiony przez Shaman (administrator) SHAMAN-KOMPUTER (26-03-2017 17:14:38) Uruchomiony z C:\Users\Shaman\Downloads\frst Załadowane profile: Shaman (Dostępne profile: Shaman) Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe () C:\ProgramData\DataCardService\DCService.exe (Binary Fortress Software) C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe (BayHubTech/O2Micro International) C:\Windows\System32\drivers\o2flash.exe () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\igfxEM.exe (Intel Corporation) C:\Windows\System32\igfxHK.exe (Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (BitTorrent Inc.) C:\Users\Shaman\AppData\Roaming\BitTorrent\BitTorrent.exe (Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe (Huawei Technologies Co., Ltd.) C:\ProgramData\DataCardService\DCSHelper.exe (Macrovision Corporation) C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe (Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (Microsoft Corporation) C:\Windows\System32\regsvr32.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe () C:\Users\Shaman\AppData\Roaming\network\GoogleUpdate.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (Microsoft Corporation) C:\Windows\SysWOW64\regsvr32.exe (Intel Corporation) C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseInfo.exe (Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Facebook) C:\Users\Shaman\AppData\Local\Facebook\Games\FacebookGameroom.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe () C:\Users\Shaman\AppData\Local\Unmedia\tmpB99B.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe (BitTorrent Inc.) C:\Users\Shaman\AppData\Roaming\BitTorrent\updates\7.9.9_43389\bittorrentie.exe (BitTorrent Inc.) C:\Users\Shaman\AppData\Roaming\BitTorrent\updates\7.9.9_43389\bittorrentie.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (The CefSharp Authors) C:\Users\Shaman\AppData\Local\Facebook\Games\CefSharp.BrowserSubprocess.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Razer, Inc.) C:\Program Files (x86)\Razer\InGameEngine\32bit\RazerIngameEngine.exe (Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16404224 2015-09-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1409264 2015-09-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1409264 2015-09-17] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1409264 2015-09-17] (Realtek Semiconductor) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [296216 2015-07-21] (Intel Corporation) HKLM-x32\...\Run: [Intel(R) RealSense(TM) SDK info server] => C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseInfo.exe [21144 2015-07-09] (Intel Corporation) HKLM-x32\...\Run: [Tv-Plug-In] => "C:\Program Files (x86)\Tv-Plug-In\Tv-Plug-In.exe" nogui HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2016-08-22] (Razer Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [598552 2016-06-22] (Oracle Corporation) HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [205512 2017-03-26] (AVAST Software) HKLM Group Policy restriction on software: C:\Program Files\COMODO <====== UWAGA HKLM Group Policy restriction on software: C:\Program Files\AVAST Software <====== UWAGA HKLM Group Policy restriction on software: C:\Program Files\Avira <====== UWAGA HKLM Group Policy restriction on software: C:\Program Files\Microsoft Security Client <====== UWAGA HKLM\Software\Policies\Microsoft\Windows NT\SystemRestore: [DisableSR/DisableConfig] <===== UWAGA HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [BitTorrent] => C:\Users\Shaman\AppData\Roaming\BitTorrent\BitTorrent.exe [1982152 2017-03-18] (BitTorrent Inc.) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27017856 2016-10-17] (Skype Technologies S.A.) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8894680 2016-08-05] (Piriform Ltd) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [TSMApplication] => "C:\Program Files (x86)\TradeSkillMaster Application\app\TSMApplication.exe" HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [ChomikBox] => C:\Program Files (x86)\ChomikBox\chomikbox.exe [3941376 2017-02-22] ( ) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4557504 2016-10-06] (Disc Soft Ltd) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [Xvid] => powershell.exe -nologo -WindowStyle hidden -Noninteractive -NoProfile -ExecutionPolicy Bypass -File "C:\Program Files (x86)\Xvid\CheckUpdate.ps1" HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [ISUSPM] => C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe [218032 2006-09-10] (Macrovision Corporation) HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [Unmedia] => C:\Users\Shaman\AppData\Local\Unmedia\tmpB99B.exe [168645 2017-03-26] () HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [YgkPack] => regsvr32.exe C:\Users\Shaman\AppData\Local\YgkPack\pxbvydtw.dll <===== UWAGA HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [YTJPack] => C:\Windows\SysWOW64\regsvr32.exe C:\Users\Shaman\AppData\Local\Unmedia\kglpemmq.dll <===== UWAGA HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [NetworkLan] => C:\Users\Shaman\AppData\Roaming\network\GoogleUpdate.exe [55571968 2017-03-26] () HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Run: [Network] => C:\Users\Shaman\AppData\Roaming\network\GoogleUpdate.exe [55571968 2017-03-26] () HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\Policies\system: [DisableTaskMgr] 1 HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: G - G:\setup.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: I - I:\setup.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {08a2ebc6-9871-11e6-bbcd-507b9d810798} - G:\setup.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {8e8e24c6-a104-11e6-97ae-507b9d810798} - I:\autorun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d68258-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d6825a-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d68261-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d6826f-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d6827b-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\...\MountPoints2: {b9d68289-bf98-11e6-8699-507b9d810798} - G:\AutoRun.exe AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [170360 2017-02-10] (NVIDIA Corporation) AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [148016 2017-02-10] (NVIDIA Corporation) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2017-03-26] (AVAST Software) ShellIconOverlayIdentifiers: [0TheftProtectionDll] -> {3B5B973C-92A4-4855-9D3F-0F3D23332208} => C:\ProgramData\Microsoft\Performance\TheftProtection\TheftProtection.dll [2017-03-26] () Startup: C:\Users\Shaman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2016-12-31] ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Shaman\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{8207074B-645C-4594-A23C-2ADD74E46017}: [DhcpNameServer] 192.168.1.1 192.168.1.1 Tcpip\..\Interfaces\{98472BCA-2041-46F7-BA2F-2913B6A6F1A0}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{9B2B56B4-956C-4C02-8191-A6A5DCCE3E46}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{BF81EB72-D220-4779-833E-2F657ECCC3A1}: [DhcpNameServer] 213.5.40.41 213.5.40.45 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131252280019652235&GUID=00000000-0000-0000-0000-000000000000 HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131252280019852235&GUID=00000000-0000-0000-0000-000000000000 HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = HKU\S-1-5-21-1620987891-4227553324-3504988357-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://go.microsoft.com/fwlink/?LinkID=617910&ResetID=131252280019952235&GUID=00000000-0000-0000-0000-000000000000 BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\ssv.dll [2016-10-02] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\jp2ssv.dll [2016-10-02] (Oracle Corporation) FireFox: ======== FF DefaultProfile: opxymd9w.default FF ProfilePath: C:\Users\Shaman\AppData\Roaming\Mozilla\Firefox\Profiles\opxymd9w.default [2017-03-26] FF user.js: detected! => C:\Users\Shaman\AppData\Roaming\Mozilla\Firefox\Profiles\opxymd9w.default\user.js [2016-11-03] FF Session Restore: Mozilla\Firefox\Profiles\opxymd9w.default -> [funkcja włączona] FF Extension: (Application Registration UI) - C:\Users\Shaman\AppData\Roaming\Mozilla\Firefox\Profiles\opxymd9w.default\Extensions\{1961688E-6C84-837A-967B-18958B88E86E} [2017-03-26] [Brak podpisu cyfrowego] FF Extension: (Adblock Plus) - C:\Users\Shaman\AppData\Roaming\Mozilla\Firefox\Profiles\opxymd9w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-12-10] FF Extension: (Site Deployment Checker) - C:\Users\Shaman\AppData\Roaming\Mozilla\Firefox\Profiles\opxymd9w.default\features\{0aaac277-0f18-4909-83c8-2665064f9bf6}\deployment-checker@mozilla.org.xpi [2017-03-25] FF ProfilePath: C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default [2016-11-05] FF Homepage: Firefox\Firefox\Profiles\opxymd9w.default -> hxxp://www.searchinme.com/?type=hp&ts=1477051543047&z=8f66f405e922eaca22cb597g8z0m0mfo8q3g4q1wce&from=official&uid=WDCXWD10SPCX-24HWST1_WD-WX51AA50S0US0S0US FF Extension: (SimilarWeb) - C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default\Extensions\@DA3566E2-F709-11E5-8E87-A604BC8E7F8B.xpi [2016-10-24] [Brak podpisu cyfrowego] FF Extension: (FF Adr) - C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default\Extensions\@H99KV4DO-UCCF-9PFO-9ZLK-8RRP4FVOKD9O.xpi [2016-10-21] [Brak podpisu cyfrowego] FF Extension: (English (US) Language Pack) - C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default\Extensions\langpack-en-US@firefox.mozilla.org.xpi [2016-10-21] [Brak podpisu cyfrowego] FF Extension: (Adblock Plus) - C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-10-27] FF SearchPlugin: C:\Users\Shaman\AppData\Roaming\Firefox\Firefox\Profiles\opxymd9w.default\searchplugins\searchinme.xml [2016-10-21] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_25_0_0_127.dll [2017-03-14] () FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_25_0_0_127.dll [2017-03-14] () FF Plugin-x32: @java.com/DTPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\dtplugin\npDeployJava1.dll [2016-10-02] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.101.2 -> C:\Program Files (x86)\Java\jre1.8.0_101\bin\plugin2\npjp2.dll [2016-10-02] (Oracle Corporation) FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku] FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-02-10] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [Brak pliku] FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [Brak pliku] FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-12-17] (Adobe Systems Inc.) Chrome: ======= CHR HomePage: Default -> hxxps://www.google.com/ CHR DefaultSearchURL: Default -> hxxp://www.nicesearches.com/search.php?type=ds&ts=1477300119&from=e2dd1024&uid=wdcxwd10spcx-24hwst1_wd-wx51aa50s0us0s0us&z=f928be3085a83ae85aa0561gfzfmcm1cfefeag1gfw&q={searchTerms} CHR DefaultSearchKeyword: Default -> nice CHR Profile: C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default [2016-10-28] CHR Extension: (Prezentacje Google) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-07-07] CHR Extension: (Dokumenty Google) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-07-07] CHR Extension: (Dysk Google) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-07] CHR Extension: (YouTube) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-07] CHR Extension: (Adblock Plus) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2016-08-23] CHR Extension: (Arkusze Google) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-07-07] CHR Extension: (Dokumenty Google offline) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-07-07] CHR Extension: (AdBlock) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-09-21] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-07-07] CHR Extension: (Gmail) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-07-07] CHR Extension: (Chrome Media Router) - C:\Users\Shaman\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-22] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [7147320 2017-03-26] (AVAST Software s.r.o.) S2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [262736 2017-03-26] (AVAST Software) R2 DCService.exe; C:\ProgramData\DatacardService\DCService.exe [249856 2010-09-29] () [Brak podpisu cyfrowego] R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1468608 2016-10-06] (Disc Soft Ltd) R2 DisplayFusionService; C:\Program Files (x86)\DisplayFusion\DisplayFusionService.exe [5132312 2016-08-08] (Binary Fortress Software) S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [244800 2016-07-04] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6211648 2016-07-04] (GOG.com) R2 Hkhlp; C:\Program Files (x86)\Common Files\Apps\Hkhlp.dll [281600 2016-09-20] () [Brak podpisu cyfrowego] R2 igfxCUIService2.0.0.0; C:\Windows\system32\igfxCUIService.exe [353384 2015-11-03] (Intel Corporation) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-08-13] () R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [71680 2009-05-14] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462784 2017-02-10] (NVIDIA Corporation) R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation) R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3634232 2016-06-15] (NVIDIA Corporation) R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation) R2 O2FLASH; C:\Windows\system32\DRIVERS\o2flash.exe [82096 2015-08-04] (BayHubTech/O2Micro International) R2 O2FLASH; C:\Windows\SysWOW64\DRIVERS\o2flash.exe [82096 2015-08-04] (BayHubTech/O2Micro International) R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [89600 2009-05-14] (Hewlett-Packard) [Brak podpisu cyfrowego] R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [188072 2015-11-05] () S2 RealSenseDCM; C:\Program Files (x86)\Common Files\Intel\RSDCM\bin\win32\RealSenseDCM.exe [3660440 2015-07-09] (Intel(R) Corporation) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246376 2015-10-16] (Synaptics Incorporated) R2 W3PCC; C:\ProgramData\Sun\Java\extension.dll [340480 2016-09-23] () [Brak podpisu cyfrowego] S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831712 2015-08-13] (Intel® Corporation) S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X] S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 aswbidsdriver; C:\Windows\system32\drivers\aswbidsdrivera.sys [309272 2017-03-26] (AVAST Software s.r.o.) R0 aswbidsh; C:\Windows\system32\drivers\aswbidsha.sys [189768 2017-03-26] (AVAST Software s.r.o.) R0 aswblog; C:\Windows\system32\drivers\aswbloga.sys [334600 2017-03-26] (AVAST Software s.r.o.) R0 aswbuniv; C:\Windows\system32\drivers\aswbuniva.sys [48528 2017-03-26] (AVAST Software s.r.o.) S3 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [38296 2017-03-26] (AVAST Software) R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [126600 2017-03-26] (AVAST Software) R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [100640 2017-03-26] (AVAST Software) R0 aswRvrt; C:\Windows\system32\drivers\aswRvrt.sys [75704 2017-03-26] (AVAST Software) R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [993608 2017-03-26] (AVAST Software) R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [547904 2017-03-26] (AVAST Software) R2 aswStm; C:\Windows\system32\drivers\aswStm.sys [162528 2017-03-26] (AVAST Software) R0 aswVmm; C:\Windows\system32\drivers\aswVmm.sys [337592 2017-03-26] (AVAST Software) R3 dtlitescsibus; C:\Windows\System32\DRIVERS\dtlitescsibus.sys [30264 2016-10-24] (Disc Soft Ltd) R3 dtliteusbbus; C:\Windows\System32\DRIVERS\dtliteusbbus.sys [47672 2016-10-24] (Disc Soft Ltd) R0 fsbts; C:\Windows\System32\Drivers\fsbts.sys [73928 2016-08-06] () R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-10-12] (REALiX(tm)) R3 NETwNs64; C:\Windows\System32\DRIVERS\Netwsw02.sys [4008176 2015-08-23] (Intel Corporation) R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) R3 O2FJ2RDR; C:\Windows\System32\DRIVERS\bhtscpcrx64.sys [201400 2015-08-04] (BayHubTech/O2Micro ) R3 rzendpt; C:\Windows\System32\DRIVERS\rzendpt.sys [50392 2015-08-13] (Razer Inc) R3 rzmpos; C:\Windows\System32\DRIVERS\rzmpos.sys [48840 2015-08-13] (Razer Inc) R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [37184 2015-09-22] (Razer, Inc.) R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [130880 2015-12-14] (Razer, Inc.) R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [42600 2015-10-16] (Synaptics Incorporated) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-03-26 17:13 - 2017-03-26 17:14 - 00000000 ____D C:\Users\Shaman\Downloads\frst 2017-03-26 17:06 - 2017-03-26 17:06 - 00001926 _____ C:\Users\Public\Desktop\Avast Free Antivirus.lnk 2017-03-26 17:06 - 2017-03-26 17:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVAST Software 2017-03-26 17:06 - 2017-03-26 17:05 - 00547904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys 2017-03-26 17:06 - 2017-03-26 17:05 - 00337592 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys 2017-03-26 17:06 - 2017-03-26 17:05 - 00162528 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys 2017-03-26 17:06 - 2017-03-26 17:05 - 00075704 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys 2017-03-26 17:05 - 2017-03-26 17:05 - 00993608 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys 2017-03-26 17:05 - 2017-03-26 17:05 - 00398408 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe 2017-03-26 17:05 - 2017-03-26 17:05 - 00126600 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys 2017-03-26 17:05 - 2017-03-26 17:05 - 00100640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys 2017-03-26 17:05 - 2017-03-26 17:05 - 00038296 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys 2017-03-26 17:05 - 2017-03-26 17:04 - 00334600 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbloga.sys 2017-03-26 17:05 - 2017-03-26 17:04 - 00309272 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsdrivera.sys 2017-03-26 17:05 - 2017-03-26 17:04 - 00189768 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbidsha.sys 2017-03-26 17:05 - 2017-03-26 17:04 - 00048528 _____ (AVAST Software s.r.o.) C:\Windows\system32\Drivers\aswbuniva.sys 2017-03-26 17:03 - 2017-03-26 17:03 - 00000000 ____D C:\Program Files\AVAST Software 2017-03-26 17:00 - 2017-03-26 17:01 - 00000000 ____D C:\ProgramData\AVAST Software 2017-03-26 17:00 - 2017-03-26 17:00 - 06654960 _____ (AVAST Software) C:\Users\Shaman\Downloads\avast_free_antivirus_setup_online.exe 2017-03-26 17:00 - 2017-03-26 17:00 - 06654960 _____ (AVAST Software) C:\Users\Public\Desktop\avast_free_antivirus_setup_online.exe 2017-03-26 16:57 - 2017-03-26 17:12 - 00000000 ____D C:\Users\Shaman\AppData\LocalLow\BitTorrent 2017-03-26 16:56 - 2017-03-26 17:10 - 00000000 _____ C:\Users\Public\Documents\temp.dat 2017-03-26 16:49 - 2017-03-26 16:49 - 04031440 _____ C:\Users\Shaman\Downloads\adwcleaner_6.044.exe 2017-03-26 03:02 - 2017-03-26 03:02 - 00000904 ____H C:\ProgramData\@system.temp 2017-03-26 03:02 - 2017-03-26 03:02 - 00000008 ____H C:\ProgramData\@000001.dat 2017-03-26 03:01 - 2017-03-26 17:13 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\network 2017-03-26 03:01 - 2017-03-26 03:02 - 00000640 ____H C:\ProgramData\int.bin 2017-03-26 03:01 - 2017-03-26 03:01 - 00000480 ____H C:\Users\Shaman\AppData\Roaming\½’’’™™œ‰ 2017-03-26 02:58 - 2017-03-26 02:58 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Unlocker 2017-03-26 02:58 - 2017-03-26 02:58 - 00000000 ____D C:\Program Files\Unlocker 2017-03-26 02:57 - 2017-03-26 02:57 - 01078591 _____ C:\Users\Shaman\Downloads\Unlocker1.9.2.exe 2017-03-26 02:52 - 2017-03-26 02:52 - 01123840 _____ (Karol Winnicki) C:\Users\Shaman\Downloads\BESTplayer.exe 2017-03-26 02:51 - 2017-03-26 02:51 - 01190704 _____ ( ) C:\Users\Shaman\Downloads\BESTplayer-12658-dp.exe 2017-03-26 02:51 - 2017-03-26 02:51 - 00003176 _____ C:\Windows\System32\Tasks\klcp_update 2017-03-26 02:51 - 2016-05-08 12:27 - 03613696 _____ (x264vfw project) C:\Windows\SysWOW64\x264vfw.dll 2017-03-26 02:51 - 2016-05-08 12:19 - 03642880 _____ (x264vfw project) C:\Windows\system32\x264vfw64.dll 2017-03-26 02:51 - 2015-10-24 19:00 - 00126976 _____ C:\Windows\system32\ff_vfw.dll 2017-03-26 02:51 - 2015-10-24 19:00 - 00112128 _____ C:\Windows\SysWOW64\ff_vfw.dll 2017-03-26 02:51 - 2015-02-25 19:27 - 00473088 _____ (hxxp://www.mp3dev.org/) C:\Windows\SysWOW64\lameACM.acm 2017-03-26 02:51 - 2012-07-21 13:55 - 00180736 _____ (fccHandler) C:\Windows\system32\ac3acm.acm 2017-03-26 02:51 - 2012-07-21 13:54 - 00122880 _____ (fccHandler) C:\Windows\SysWOW64\ac3acm.acm 2017-03-26 02:51 - 2012-05-22 00:48 - 00000415 _____ C:\Windows\SysWOW64\lame_acm.xml 2017-03-26 02:51 - 2011-12-07 20:37 - 00148992 _____ ( ) C:\Windows\system32\lagarith.dll 2017-03-26 02:51 - 2011-12-07 20:32 - 00216064 _____ ( ) C:\Windows\SysWOW64\lagarith.dll 2017-03-26 02:51 - 2005-01-22 02:53 - 00055296 _____ C:\Windows\system32\huffyuv.dll 2017-03-26 02:51 - 2004-05-18 21:16 - 00039936 _____ (Disappearing Inc.) C:\Windows\SysWOW64\huffyuv.dll 2017-03-26 02:48 - 2017-03-26 02:48 - 44213414 _____ (KLCP ) C:\Users\Shaman\Downloads\K-Lite_Codec_Pack_1300_Mega.exe 2017-03-26 02:46 - 2017-03-26 02:49 - 00000000 ____D C:\Users\Shaman\AppData\Local\Unmedia 2017-03-26 02:46 - 2017-03-26 02:46 - 01190704 _____ ( ) C:\Users\Shaman\Downloads\KLite-Mega-Codec-Pack-18588-dp.exe 2017-03-26 02:46 - 2017-03-26 02:46 - 00000000 ____D C:\Users\Shaman\AppData\Local\YgkPack 2017-03-26 02:45 - 2017-03-26 02:52 - 00000000 ___HD C:\Users\Shaman\AppData\Local\SysHashTable 2017-03-19 16:52 - 2017-03-19 19:02 - 159784281 _____ C:\Users\Shaman\Downloads\Total.War.Warhammer.Hybrid.Crack-Voksi.rar 2017-03-19 16:41 - 2017-03-19 16:41 - 09407413 _____ (denuvo-crack) C:\Users\Shaman\Downloads\Total War Warhammer.exe 2017-03-18 15:57 - 2017-03-18 15:57 - 00468536 _____ C:\Windows\Minidump\031817-20748-01.dmp 2017-03-16 15:31 - 2017-03-16 15:31 - 86905867 _____ C:\Users\Shaman\Downloads\Spolszczenie_FC2.exe 2017-03-16 15:27 - 2017-03-16 15:27 - 00000000 ____D C:\Users\Shaman\AppData\Local\Ubisoft 2017-03-16 15:24 - 2008-07-31 11:41 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_2.dll 2017-03-16 15:24 - 2008-07-31 11:41 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_2.dll 2017-03-16 15:24 - 2008-07-31 11:41 - 00072200 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_1.dll 2017-03-16 15:24 - 2008-07-31 11:41 - 00068616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_1.dll 2017-03-16 15:24 - 2008-07-31 11:40 - 00513544 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_2.dll 2017-03-16 15:24 - 2008-07-31 11:40 - 00509448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_2.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 04992520 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_39.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 03851784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_39.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 01942552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_39.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 01493528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_39.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_39.dll 2017-03-16 15:24 - 2008-07-12 09:18 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_39.dll 2017-03-16 15:24 - 2008-05-30 15:19 - 00511496 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_1.dll 2017-03-16 15:24 - 2008-05-30 15:19 - 00507400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_1.dll 2017-03-16 15:24 - 2008-05-30 15:18 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_1.dll 2017-03-16 15:24 - 2008-05-30 15:18 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_1.dll 2017-03-16 15:24 - 2008-05-30 15:17 - 00068104 _____ (Microsoft Corporation) C:\Windows\system32\XAPOFX1_0.dll 2017-03-16 15:24 - 2008-05-30 15:17 - 00065032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAPOFX1_0.dll 2017-03-16 15:24 - 2008-05-30 15:17 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_4.dll 2017-03-16 15:24 - 2008-05-30 15:16 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_4.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 04991496 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_38.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 03850760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_38.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 01941528 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_38.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 01491992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_38.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 00540688 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_38.dll 2017-03-16 15:24 - 2008-05-30 15:11 - 00467984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_38.dll 2017-03-16 15:24 - 2008-03-05 17:04 - 00489480 _____ (Microsoft Corporation) C:\Windows\system32\XAudio2_0.dll 2017-03-16 15:24 - 2008-03-05 17:03 - 00479752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XAudio2_0.dll 2017-03-16 15:24 - 2008-03-05 17:03 - 00238088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine3_0.dll 2017-03-16 15:24 - 2008-03-05 17:03 - 00177672 _____ (Microsoft Corporation) C:\Windows\system32\xactengine3_0.dll 2017-03-16 15:24 - 2008-03-05 17:00 - 00028168 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_3.dll 2017-03-16 15:24 - 2008-03-05 17:00 - 00025608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_3.dll 2017-03-16 15:24 - 2008-03-05 16:56 - 04910088 _____ (Microsoft Corporation) C:\Windows\system32\D3DX9_37.dll 2017-03-16 15:24 - 2008-03-05 16:56 - 03786760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DX9_37.dll 2017-03-16 15:24 - 2008-03-05 16:56 - 01860120 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_37.dll 2017-03-16 15:24 - 2008-03-05 16:56 - 01420824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_37.dll 2017-03-16 15:24 - 2008-02-06 00:07 - 00529424 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_37.dll 2017-03-16 15:24 - 2008-02-06 00:07 - 00462864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_37.dll 2017-03-16 15:24 - 2007-10-22 04:40 - 00411656 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_10.dll 2017-03-16 15:24 - 2007-10-22 04:39 - 00267272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_10.dll 2017-03-16 15:24 - 2007-10-22 04:37 - 00021000 _____ (Microsoft Corporation) C:\Windows\system32\X3DAudio1_2.dll 2017-03-16 15:24 - 2007-10-22 04:37 - 00017928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\X3DAudio1_2.dll 2017-03-16 15:24 - 2007-10-12 16:14 - 05081608 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_36.dll 2017-03-16 15:24 - 2007-10-12 16:14 - 03734536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_36.dll 2017-03-16 15:24 - 2007-10-12 16:14 - 02006552 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_36.dll 2017-03-16 15:24 - 2007-10-12 16:14 - 01374232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_36.dll 2017-03-16 15:24 - 2007-10-02 10:56 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_36.dll 2017-03-16 15:24 - 2007-10-02 10:56 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_36.dll 2017-03-16 15:24 - 2007-07-20 01:57 - 00411496 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_9.dll 2017-03-16 15:24 - 2007-07-20 01:57 - 00267112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_9.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 05073256 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_35.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 03727720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_35.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 01985904 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_35.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 01358192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_35.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 00508264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_35.dll 2017-03-16 15:24 - 2007-07-19 19:14 - 00444776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_35.dll 2017-03-16 15:24 - 2007-06-20 21:49 - 00409960 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_8.dll 2017-03-16 15:24 - 2007-06-20 21:46 - 00266088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_8.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 04496232 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_34.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 03497832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_34.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 01401200 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_34.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 01124720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_34.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_34.dll 2017-03-16 15:24 - 2007-05-16 17:45 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_34.dll 2017-03-16 15:24 - 2007-04-04 19:55 - 00403304 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_7.dll 2017-03-16 15:24 - 2007-04-04 19:55 - 00261480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_7.dll 2017-03-16 15:24 - 2007-04-04 19:53 - 00081768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_3.dll 2017-03-16 15:24 - 2007-03-15 17:57 - 00506728 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10_33.dll 2017-03-16 15:24 - 2007-03-15 17:57 - 00443752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10_33.dll 2017-03-16 15:24 - 2007-03-12 17:42 - 04494184 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_33.dll 2017-03-16 15:24 - 2007-03-12 17:42 - 03495784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_33.dll 2017-03-16 15:24 - 2007-03-12 17:42 - 01400176 _____ (Microsoft Corporation) C:\Windows\system32\D3DCompiler_33.dll 2017-03-16 15:24 - 2007-03-12 17:42 - 01123696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\D3DCompiler_33.dll 2017-03-16 15:24 - 2007-03-05 13:42 - 00017688 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_1.dll 2017-03-16 15:24 - 2007-03-05 13:42 - 00015128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_1.dll 2017-03-16 15:24 - 2007-01-24 16:27 - 00393576 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_6.dll 2017-03-16 15:24 - 2007-01-24 16:27 - 00255848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_6.dll 2017-03-16 15:24 - 2006-12-08 13:02 - 00251672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_5.dll 2017-03-16 15:24 - 2006-12-08 13:00 - 00390424 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_5.dll 2017-03-16 15:24 - 2006-11-29 14:06 - 04398360 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_32.dll 2017-03-16 15:24 - 2006-11-29 14:06 - 03426072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_32.dll 2017-03-16 15:24 - 2006-11-29 14:06 - 00469264 _____ (Microsoft Corporation) C:\Windows\system32\d3dx10.dll 2017-03-16 15:24 - 2006-11-29 14:06 - 00440080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx10.dll 2017-03-16 15:24 - 2006-09-28 17:05 - 03977496 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_31.dll 2017-03-16 15:24 - 2006-09-28 17:05 - 02414360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_31.dll 2017-03-16 15:24 - 2006-09-28 17:05 - 00237848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_4.dll 2017-03-16 15:24 - 2006-09-28 17:04 - 00364824 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_4.dll 2017-03-16 15:24 - 2006-07-28 10:31 - 00083736 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_2.dll 2017-03-16 15:24 - 2006-07-28 10:30 - 00363288 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_3.dll 2017-03-16 15:24 - 2006-07-28 10:30 - 00236824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_3.dll 2017-03-16 15:24 - 2006-07-28 10:30 - 00062744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_2.dll 2017-03-16 15:24 - 2006-05-31 08:24 - 00230168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_2.dll 2017-03-16 15:24 - 2006-05-31 08:22 - 00354072 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_2.dll 2017-03-16 15:24 - 2006-03-31 13:41 - 03927248 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_30.dll 2017-03-16 15:24 - 2006-03-31 13:40 - 02388176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_30.dll 2017-03-16 15:24 - 2006-03-31 13:40 - 00352464 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_1.dll 2017-03-16 15:24 - 2006-03-31 13:39 - 00229584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_1.dll 2017-03-16 15:24 - 2006-03-31 13:39 - 00083664 _____ (Microsoft Corporation) C:\Windows\system32\xinput1_1.dll 2017-03-16 15:24 - 2006-03-31 13:39 - 00062672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xinput1_1.dll 2017-03-16 15:24 - 2006-02-03 09:43 - 03830992 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_29.dll 2017-03-16 15:24 - 2006-02-03 09:43 - 02332368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_29.dll 2017-03-16 15:24 - 2006-02-03 09:42 - 00355536 _____ (Microsoft Corporation) C:\Windows\system32\xactengine2_0.dll 2017-03-16 15:24 - 2006-02-03 09:42 - 00230096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xactengine2_0.dll 2017-03-16 15:24 - 2006-02-03 09:41 - 00016592 _____ (Microsoft Corporation) C:\Windows\system32\x3daudio1_0.dll 2017-03-16 15:24 - 2006-02-03 09:41 - 00014032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\x3daudio1_0.dll 2017-03-16 15:24 - 2005-12-05 19:09 - 03815120 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_28.dll 2017-03-16 15:24 - 2005-12-05 19:09 - 02323664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_28.dll 2017-03-16 15:24 - 2005-07-22 20:59 - 03807440 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_27.dll 2017-03-16 15:24 - 2005-07-22 20:59 - 02319568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_27.dll 2017-03-16 15:24 - 2005-05-26 16:34 - 03767504 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_26.dll 2017-03-16 15:24 - 2005-05-26 16:34 - 02297552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_26.dll 2017-03-16 15:24 - 2005-03-18 18:19 - 03823312 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_25.dll 2017-03-16 15:24 - 2005-03-18 18:19 - 02337488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_25.dll 2017-03-16 15:24 - 2005-02-05 20:45 - 03544272 _____ (Microsoft Corporation) C:\Windows\system32\d3dx9_24.dll 2017-03-16 15:24 - 2005-02-05 20:45 - 02222800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3dx9_24.dll 2017-03-16 15:22 - 2017-03-16 15:22 - 00000000 ____D C:\ProgramData\Ubisoft 2017-03-16 15:16 - 2017-03-16 15:16 - 00002068 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Program Updates.lnk 2017-03-16 15:16 - 2007-04-27 11:12 - 00078784 _____ (Macrovision Corporation) C:\Windows\SysWOW64\ISUSPM.cpl 2017-03-14 20:21 - 2017-03-14 20:21 - 00001310 _____ C:\Users\Public\Desktop\Testy na prawo jazdy 2017 - pytania oficjalne.lnk 2017-03-14 20:21 - 2017-03-14 20:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Testy na prawo jazdy 2017 - pytania oficjalne 2017-03-14 20:19 - 2017-03-14 20:21 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\Digibit 2017-03-14 20:19 - 2017-03-14 20:21 - 00000000 ____D C:\Program Files (x86)\Testy na prawo jazdy 2017 - pytania oficjalne 2017-03-13 15:53 - 2017-03-13 15:53 - 00466520 _____ C:\Windows\Minidump\031317-18111-01.dmp 2017-03-13 15:16 - 2017-03-13 15:18 - 547951505 _____ (Digibit ) C:\Users\Shaman\Downloads\testy2017oficjalnesetup.exe 2017-03-12 14:42 - 2017-03-12 14:42 - 576437866 _____ C:\Users\Shaman\Downloads\[Nyan] Choukou Sennin Haruka - 01 [720p][CEN][5D80051E].mkv 2017-03-12 13:57 - 2017-03-12 13:57 - 00000000 _____ C:\Users\Shaman\Documents\Nowy dokument tekstowy.txt 2017-03-01 12:32 - 2017-03-01 12:48 - 4066558382 _____ C:\Users\Shaman\Downloads\Faceci w Czerni 3 (3D SBS) Men in Black 3 (2012) Lektor PL mini-HD.1080p.x264.Side.by.Side-HOOLIMAN.mkv 2017-03-01 11:46 - 2017-03-01 12:11 - 4201644992 _____ C:\Users\Shaman\Downloads\Spider-Man II Rise Of Electro 3_3D.miniHD.1080p.jb(3).mkv ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-03-26 17:15 - 2016-08-23 13:23 - 50838798 _____ C:\Windows\ntbtlog.txt 2017-03-26 17:14 - 2016-08-23 20:51 - 00000000 ____D C:\FRST 2017-03-26 17:14 - 2016-07-07 00:22 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\BitTorrent 2017-03-26 17:13 - 2016-11-18 18:36 - 00000000 ____D C:\Users\Shaman\AppData\LocalLow\Mozilla 2017-03-26 17:13 - 2016-10-18 15:26 - 00000000 ____D C:\Users\Shaman\AppData\Local\ChomikBox 2017-03-26 17:12 - 2016-10-18 15:26 - 00000000 ____D C:\Users\Shaman\.gstreamer-0.10 2017-03-26 17:12 - 2016-07-30 19:19 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\Skype 2017-03-26 17:11 - 2016-07-07 00:17 - 00001044 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job 2017-03-26 17:11 - 2016-07-06 23:47 - 00000000 __SHD C:\Users\Shaman\IntelGraphicsProfiles 2017-03-26 17:11 - 2016-07-06 23:44 - 00000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2017-03-26 17:10 - 2016-07-06 23:51 - 00000000 ____D C:\ProgramData\NVIDIA 2017-03-26 17:10 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT 2017-03-26 17:04 - 2009-07-14 06:45 - 00029376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2017-03-26 17:04 - 2009-07-14 06:45 - 00029376 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2017-03-26 17:02 - 2011-04-12 15:21 - 00740348 _____ C:\Windows\system32\perfh015.dat 2017-03-26 17:02 - 2011-04-12 15:21 - 00155890 _____ C:\Windows\system32\perfc015.dat 2017-03-26 17:02 - 2009-07-14 07:13 - 01669190 _____ C:\Windows\system32\PerfStringBackup.INI 2017-03-26 17:02 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF 2017-03-26 17:01 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf 2017-03-26 16:55 - 2016-08-06 21:58 - 00000000 ____D C:\AdwCleaner 2017-03-26 16:34 - 2016-07-07 00:17 - 00001048 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job 2017-03-26 03:06 - 2016-07-20 22:13 - 00000000 ____D C:\Users\Shaman\AppData\Local\Battle.net 2017-03-26 02:51 - 2016-08-19 00:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack 2017-03-26 02:51 - 2016-08-19 00:19 - 00000000 ____D C:\Program Files (x86)\K-Lite Codec Pack 2017-03-26 02:51 - 2009-07-14 06:57 - 00001515 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2017-03-26 02:46 - 2016-09-30 06:25 - 00000000 ____D C:\Users\Shaman\AppData\Local\CrashDumps 2017-03-25 15:36 - 2016-07-20 22:12 - 00000000 ____D C:\Program Files (x86)\Battle.net 2017-03-22 23:08 - 2016-07-06 23:51 - 00000000 ____D C:\Users\Shaman\AppData\Local\NVIDIA Corporation 2017-03-22 23:08 - 2016-07-06 23:50 - 00000000 ____D C:\Users\Shaman\AppData\Local\NVIDIA 2017-03-22 14:23 - 2016-07-06 23:49 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-03-22 14:23 - 2016-07-06 23:49 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-03-22 14:23 - 2016-07-06 23:48 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-03-19 19:11 - 2016-11-18 06:33 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox 2017-03-19 19:11 - 2016-08-18 14:52 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-03-18 15:57 - 2017-01-15 10:14 - 701214644 _____ C:\Windows\MEMORY.DMP 2017-03-18 15:57 - 2017-01-15 10:14 - 00000000 ____D C:\Windows\Minidump 2017-03-16 15:22 - 2009-07-14 07:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games 2017-03-16 15:16 - 2016-07-06 23:54 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-03-16 15:16 - 2009-07-14 07:32 - 00000000 ____D C:\Windows\Downloaded Program Files 2017-03-14 16:34 - 2016-09-07 01:08 - 00004412 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2017-03-14 16:33 - 2016-09-07 01:08 - 00802904 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2017-03-14 16:33 - 2016-09-07 01:08 - 00144472 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-14 16:33 - 2016-09-07 01:08 - 00004566 _____ C:\Windows\System32\Tasks\Adobe Flash Player PPAPI Notifier 2017-03-14 16:33 - 2016-09-07 01:08 - 00000000 ____D C:\Windows\system32\Macromed 2017-03-14 16:33 - 2016-07-17 20:04 - 00000000 ____D C:\Windows\SysWOW64\Macromed 2017-03-12 21:46 - 2016-08-26 19:33 - 00000160 _____ C:\Users\Shaman\Desktop\wow hasła i loginy.txt 2017-03-10 23:08 - 2016-07-20 22:14 - 00000000 ____D C:\Program Files (x86)\Hearthstone 2017-03-08 04:40 - 2016-08-18 20:35 - 00000000 ____D C:\Program Files (x86)\StarCraft II 2017-03-02 08:29 - 2016-10-18 15:34 - 00000000 ____D C:\Users\Shaman\AppData\Roaming\foobar2000 ==================== Pliki w katalogu głównym wybranych folderów ======= 2017-03-26 03:01 - 2017-03-26 03:01 - 0000480 ____H () C:\Users\Shaman\AppData\Roaming\½’’’™™œ‰ 2017-03-26 03:02 - 2017-03-26 03:02 - 0000008 ____H () C:\ProgramData\@000001.dat 2017-03-26 03:02 - 2017-03-26 03:02 - 0000904 ____H () C:\ProgramData\@system.temp 2016-07-06 23:55 - 2016-07-06 23:55 - 0000000 ____H () C:\ProgramData\DP45977C.lfl 2016-08-13 16:15 - 2016-10-17 14:57 - 0002236 _____ () C:\ProgramData\hpzinstall.log 2017-03-26 03:01 - 2017-03-26 03:02 - 0000640 ____H () C:\ProgramData\int.bin 2016-08-25 17:25 - 2016-08-25 17:25 - 0000016 _____ () C:\ProgramData\mntemp Pliki do przeniesienia lub usunięcia: ==================== C:\ProgramData\@000001.dat C:\Users\Shaman\Razer Synapse Tournament Drivers 20160906_2012.exe Niektóre pliki w TEMP: ==================== 2017-03-16 15:15 - 2008-11-10 13:31 - 0176776 ____R (Ubisoft) C:\Users\Shaman\AppData\Local\Temp\autorun.exe 2016-12-11 15:55 - 2012-02-11 23:06 - 0206336 ____R (Huawei Technologies Co., Ltd.) C:\Users\Shaman\AppData\Local\Temp\DataCard_Setup64.exe 2017-03-16 15:15 - 2008-11-10 14:57 - 0196608 ____R () C:\Users\Shaman\AppData\Local\Temp\detectionapi_rd.dll 2008-11-10 14:57 - 2008-11-10 14:57 - 0025600 ____R () C:\Users\Shaman\AppData\Local\Temp\directx9tests_rd.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 5124096 ____R () C:\Users\Shaman\AppData\Local\Temp\local.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 1101824 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\mfc80.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 1093120 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\mfc80u.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 0069632 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\mfcm80.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 0057856 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\mfcm80u.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 0479232 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\msvcm80.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 0548864 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\msvcp80.dll 2017-03-16 15:15 - 2008-11-10 14:57 - 0626688 ____R (Microsoft Corporation) C:\Users\Shaman\AppData\Local\Temp\msvcr80.dll 2017-03-25 10:49 - 2017-03-25 10:49 - 0013312 _____ (Intel Corporation.) C:\Users\Shaman\AppData\Local\Temp\privates.dll 2016-12-11 15:55 - 2012-02-11 23:06 - 0007168 ____R () C:\Users\Shaman\AppData\Local\Temp\ResetDevice.exe 2017-03-26 03:01 - 2017-03-26 03:01 - 0175616 _____ () C:\Users\Shaman\AppData\Local\Temp\update.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-03-16 02:14 ==================== Koniec FRST.txt ============================