Ranky Opublikowano 6 Września 2017 Zgłoś Udostępnij Opublikowano 6 Września 2017 Cześć. Mam problem, który został już rozwiązany na tym forum - chodzi o niewłączający się explorer.exe po krótkiej przygodzie z czasowymwyłącznikiem. Chodzi o to, że niestety nie jestem w stanie, na podstawie zawartych tam instrukcji sam stworzyć pliku, który tam problem rozwiązał. Chciałem wkleić FRST, ale wyrzuca mi błąd "Wysyłanie ominięte (Błąd413)", więc wklejam całość do posta.Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20-08-2017Uruchomiony przez Oem (administrator) OEM-PC (06-09-2017 18:32:13)Uruchomiony z C:\Users\Oem\DownloadsZaładowane profile: Oem (Dostępne profile: Oem & Aśka)Platform: Windows 10 Home Wersja 1703 (X64) Język: Polski (Polska)Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)Tryb startu: NormalInstrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/==================== Procesy (filtrowane) =================(Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe(Intel Corporation) C:\Windows\System32\igfxCUIService.exe(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe(Microsoft) C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe(Intel® Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe(Electronic Arts) D:\Program Files (x86)\Origin\OriginWebHelperService.exe(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe(Intel Corporation) C:\Windows\System32\igfxEM.exe(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe(Microsoft Corporation) C:\Windows\System32\smartscreen.exe(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe(Intel Corporation) C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe(Intel Corporation) C:\Program Files (x86)\Intel\Intel® Management Engine Components\LMS\LMS.exe(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe(Microsoft Corporation) C:\Windows\System32\dllhost.exe(Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe==================== Rejestr (filtrowane) ====================(Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)HKLM\...\Run: [securityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13662936 2013-10-24] (Realtek Semiconductor)HKLM\...\Run: [igfxTray] => C:\Windows\system32\igfxtray.exe [401896 2016-11-02] ()HKLM\...\Run: [iAStorIcon] => C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation)HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation)HKLM-x32\...\Run: [amd_dc_opt] => C:\Program Files (x86)\AMD\Dual-Core Optimizer\amd_dc_opt.exe [77824 2008-07-22] (AMD)HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe [52553728 2017-07-21] (Hammer & Chisel, Inc.)HKLM-x32\...\Run: [sunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-07-21] (Oracle Corporation)HKLM\...\Winlogon: [userinit] D:\CodeOpen\CzasoWylacznik4\czasowyl.exe -tray,HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [steam] => D:\Program Files (x86)\Steam\steam.exe [3019552 2017-04-26] (Valve Corporation)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [ALLUpdate] => D:\Program Files (x86)\ALLPlayer\ALLUpdate.exe [3670472 2015-07-28] (ALLPlayer Group Ltd.)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [DAEMON Tools Lite] => D:\Program Files\DAEMON Tools Lite\DTLite.exe [5585136 2015-03-31] (Disc Soft Ltd)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [sony PC Companion] => C:\Program Files (x86)\Sony\Sony PC Companion\PCCompanion.exe [457088 2015-09-23] (Sony)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [Napisy24Update] => C:\Program Files (x86)\Napisy24\Napisy24Update.exe [3709896 2015-11-04] (Napisy24.pl)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [Napisy24.pl] => C:\Program Files (x86)\Napisy24\Napisy24.exe [6592512 2016-11-11] (Napisy24.pl)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)HKU\S-1-5-21-3545765792-2004337224-592000477-1001\...\Run: [Discord] => C:\Users\Oem\AppData\Local\Discord\app-0.0.298\Discord.exe [57477112 2017-08-08] (Discord Inc.)Startup: C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Facebook Gameroom.lnk [2017-07-14]ShortcutTarget: Facebook Gameroom.lnk -> C:\Users\Oem\AppData\Local\Facebook\Games\FacebookGameroom.exe (Facebook)GroupPolicyUsers\S-1-5-21-3545765792-2004337224-592000477-1003\User: Ograniczenia <==== UWAGA==================== Internet (filtrowane) ====================(Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)Tcpip\Parameters: [DhcpNameServer] 192.168.0.1Tcpip\..\Interfaces\{8282ab7e-35af-4081-b421-56bc34ae1531}: [NameServer] 8.8.8.8,8.8.4.4Tcpip\..\Interfaces\{8282ab7e-35af-4081-b421-56bc34ae1531}: [DhcpNameServer] 192.168.0.1Internet Explorer:==================HKU\S-1-5-21-3545765792-2004337224-592000477-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.bing.com/search?q={searchTerms}HKU\S-1-5-21-3545765792-2004337224-592000477-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=188HKU\S-1-5-21-3545765792-2004337224-592000477-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehpSearchScopes: HKLM-x32 -> ielnksrch URL = hxxp://www.bing.com/search?q={searchTerms}SearchScopes: HKU\S-1-5-21-3545765792-2004337224-592000477-1001 -> {ielnksrch} URL = hxxp://www.bing.com/search?q={searchTerms}BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)BHO-x32: Java Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\ssv.dll [2017-08-18] (Oracle Corporation)BHO-x32: Java Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\jp2ssv.dll [2017-08-18] (Oracle Corporation)FireFox:========FF ProfilePath: C:\Users\Oem\AppData\Roaming\Mozilla\Firefox\Profiles\h253vhfn.default-1487263566267 [2017-09-06]FF Extension: (Aktualizacja dodatku Flash) - C:\Users\Oem\AppData\Roaming\Mozilla\Firefox\Profiles\h253vhfn.default-1487263566267\Extensions\dodateksuper@firefox.pl.xpi [2017-03-15]FF Extension: (AdBlock) - C:\Users\Oem\AppData\Roaming\Mozilla\Firefox\Profiles\h253vhfn.default-1487263566267\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2017-07-27]FF Extension: (Google Image Search) - C:\Users\Oem\AppData\Roaming\Mozilla\Firefox\Profiles\h253vhfn.default-1487263566267\Extensions\{73007fef-a6e0-47d3-b4e7-dfc116ed6f65}.xpi [2017-03-21]FF Extension: (Firefox Screenshots) - C:\Users\Oem\AppData\Roaming\Mozilla\Firefox\Profiles\h253vhfn.default-1487263566267\features\{ef630417-6011-4e44-a148-36b921c81067}\screenshots@mozilla.org.xpi [2017-09-02]FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_151.dll [2017-08-09] ()FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll [brak pliku]FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_26_0_0_151.dll [2017-08-09] ()FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation)FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel® Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation)FF Plugin-x32: @java.com/DTPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\dtplugin\npDeployJava1.dll [2017-08-18] (Oracle Corporation)FF Plugin-x32: @java.com/JavaPlugin,version=11.144.2 -> C:\Program Files (x86)\Java\jre1.8.0_144\bin\plugin2\npjp2.dll [2017-08-18] (Oracle Corporation)FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-12-29] (NVIDIA Corporation)FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-12-29] (NVIDIA Corporation)FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-05-01] (Google Inc.)FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-08-01] (Adobe Systems Inc.)FF Plugin HKU\S-1-5-21-3545765792-2004337224-592000477-1001: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Oem\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-17] (Unity Technologies ApS)FF Plugin HKU\S-1-5-21-3545765792-2004337224-592000477-1001: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [brak pliku]Chrome:=======CHR DefaultProfile: DefaultCHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=pl-plCHR StartupUrls: Default -> "hxxps://www.google.pl/"CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC=__PARAM__&q={searchTerms}CHR DefaultSearchKeyword: Default -> bing.comCHR DefaultSuggestURL: Default -> hxxp://www.bing.com/osjson.aspx?FORM=__PARAM__DF&PC=__PARAM__&query={searchTerms}CHR Profile: C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default [2017-09-06]CHR Extension: (Prezentacje Google) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-12-28]CHR Extension: (Dokumenty Google) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-12-28]CHR Extension: (Dysk Google) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-12-28]CHR Extension: (YouTube) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-12-28]CHR Extension: (Google Search) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-12-28]CHR Extension: (Arkusze Google) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-12-28]CHR Extension: (Dokumenty Google offline) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-17]CHR Extension: (AdBlock) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-08-11]CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-08-25]CHR Extension: (Gmail) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-12-28]CHR Extension: (Chrome Media Router) - C:\Users\Oem\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-08-11]CHR HKU\S-1-5-21-3545765792-2004337224-592000477-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crxCHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx==================== Usługi (filtrowane) ====================(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2246256 2017-05-18] (Adobe Systems, Incorporated)S3 AppleChargerSrv; C:\WINDOWS\System32\AppleChargerSrv.exe [31272 2010-04-06] ()S3 Disc Soft Lite Bus Service; D:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1277680 2015-03-31] (Disc Soft Ltd)R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel® Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation)R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373744 2016-11-02] (Intel Corporation)R2 Intel® Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel® Corporation) [brak podpisu cyfrowego]S3 Intel® Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel® Corporation)R2 jhi_service; C:\Program Files (x86)\Intel\Intel® Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation)R2 NovaPdfServer; C:\Program Files\Softland\novaPDF 8\Server\novapdfs.exe [41760 2015-10-13] (Microsoft)R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-05-01] (NVIDIA Corporation)S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation)S3 Origin Client Service; D:\Program Files (x86)\Origin\OriginClientService.exe [2142728 2016-11-01] (Electronic Arts)R2 Origin Web Helper Service; D:\Program Files (x86)\Origin\OriginWebHelperService.exe [2209296 2016-11-01] (Electronic Arts)S2 SkypeUpdate; D:\Program Files (x86)\Skype\Updater\Updater.exe [324224 2016-09-20] (Skype Technologies)R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation)R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-07-11] (Microsoft Corporation)===================== Sterowniki (filtrowane) ======================(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)R1 AppleCharger; C:\WINDOWS\System32\DRIVERS\AppleCharger.sys [22240 2013-10-28] ()R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30352 2015-05-01] (Disc Soft Ltd)R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_f9309145156afb40\nvlddmkm.sys [14456912 2017-05-19] (NVIDIA Corporation)S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation)R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2017-03-18] (Realtek )S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] ()S1 UsbCharger; C:\WINDOWS\System32\DRIVERS\UsbCharger.sys [22240 2013-10-24] ()S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation)R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation)R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation)==================== NetSvcs (filtrowane) ===================(Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)==================== Jeden miesiąc - utworzone pliki i foldery ========(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)Error(1) reading file: "C:\Users\Oem\Downloads\Famous Movie Scene_ Gladiator "2017-09-06 18:32 - 2017-09-06 18:32 - 000017371 _____ C:\Users\Oem\Downloads\FRST.txt2017-09-06 18:32 - 2017-09-06 18:32 - 000000000 ____D C:\FRST2017-09-06 18:31 - 2017-09-06 18:31 - 000406582 _____ C:\Users\Oem\Downloads\startmenu.diagcab2017-09-06 18:30 - 2017-09-06 18:30 - 002395648 _____ (Farbar) C:\Users\Oem\Downloads\FRST64.exe2017-09-06 16:50 - 2017-09-06 16:50 - 000000614 __RSH C:\Users\Aśka\ntuser.pol2017-09-06 16:50 - 2017-09-06 16:50 - 000000020 ___SH C:\Users\Aśka\ntuser.ini2017-09-06 16:50 - 2017-09-06 16:50 - 000000000 ____D C:\Users\Aśka\AppData\Local\ConnectedDevicesPlatform2017-09-05 20:49 - 2017-09-05 20:49 - 000245921 _____ C:\Users\Oem\Downloads\swoff351.exe2017-09-05 20:49 - 2017-09-05 20:49 - 000000836 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Airytec Switch Off.lnk2017-09-05 20:49 - 2017-09-05 20:49 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Airytec2017-09-05 20:45 - 2017-09-05 20:45 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CzasoWyłącznik 42017-09-05 20:45 - 2017-09-05 20:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CzasoWyłącznik 42017-09-04 17:31 - 2017-09-05 19:51 - 000000000 ____D C:\Users\Oem\Downloads\Wonder.Woman.2017.1080p.WEB-DL.DD5.1.H264-STRiFE2017-09-04 17:31 - 2017-09-04 17:31 - 000000000 ____D C:\Users\Oem\AppData\LocalLow\uTorrent2017-09-02 21:12 - 2017-09-06 18:24 - 000003808 _____ C:\WINDOWS\System32\Tasks\AutoKMS2017-08-28 17:07 - 2017-08-28 17:15 - 000000000 ____D C:\Users\Oem\Downloads\Game.of.Thrones.S07E07.The.Dragon.and.the.Wolf.AMZN.WEBRip.DDP2.0.x264-GoT[rarbg]2017-08-18 16:25 - 2017-08-18 16:27 - 349422717 _____ C:\Users\Oem\Downloads\Marvels.The.Defenders.S01E06.WEB.x264-STRiFE[eztv].mkv2017-08-18 16:24 - 2017-08-19 22:48 - 000000000 ____D C:\Users\Oem\Downloads\Marvels.The.Defenders.S01E03.720p.WEBRip.x264-STRiFE[rarbg]2017-08-18 16:24 - 2017-08-18 16:35 - 344240647 _____ C:\Users\Oem\Downloads\Marvels.The.Defenders.S01E05.WEB.x264-STRiFE[eztv].mkv2017-08-18 16:24 - 2017-08-18 16:29 - 000000000 ____D C:\Users\Oem\Downloads\Marvels.The.Defenders.S01E04.WEB.x264-STRiFE[rarbg]2017-08-17 16:24 - 2017-08-17 16:24 - 000003354 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3545765792-2004337224-592000477-10012017-08-17 16:21 - 2017-08-17 16:21 - 000000000 ____D C:\ProgramData\Microsoft OneDrive2017-08-17 16:17 - 2017-08-17 16:17 - 000000020 ___SH C:\Users\Oem\ntuser.ini2017-08-16 23:00 - 2017-08-29 16:36 - 000000000 ____D C:\Windows.old2017-08-16 22:59 - 2017-08-16 22:59 - 005820984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll2017-08-16 22:59 - 2017-08-16 22:59 - 005721600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll2017-08-16 22:59 - 2017-08-16 22:59 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll2017-08-16 22:59 - 2017-08-16 22:59 - 000750496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe2017-08-16 22:59 - 2017-08-16 22:59 - 000636416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll2017-08-16 22:59 - 2017-08-16 22:59 - 000406544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll2017-08-16 22:59 - 2017-08-16 22:59 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll2017-08-16 22:59 - 2017-08-16 22:59 - 000387928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll2017-08-16 22:59 - 2017-08-16 22:59 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgentUserBroker.exe2017-08-16 22:59 - 2017-08-16 22:59 - 000337920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe2017-08-16 22:59 - 2017-08-16 22:59 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IpNatHlpClient.dll2017-08-16 22:58 - 2017-08-16 22:58 - 023681536 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 023677952 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 021353208 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 020504064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 020373408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 019336192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 017366528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 013841408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll2017-08-16 22:58 - 2017-08-16 22:58 - 012786176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll2017-08-16 22:58 - 2017-08-16 22:58 - 011870208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll2017-08-16 22:58 - 2017-08-16 22:58 - 008333312 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll2017-08-16 22:58 - 2017-08-16 22:58 - 008319392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe2017-08-16 22:58 - 2017-08-16 22:58 - 008209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll2017-08-16 22:58 - 2017-08-16 22:58 - 007931392 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll2017-08-16 22:58 - 2017-08-16 22:58 - 007907344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll2017-08-16 22:58 - 2017-08-16 22:58 - 007336960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll2017-08-16 22:58 - 2017-08-16 22:58 - 007326128 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll2017-08-16 22:58 - 2017-08-16 22:58 - 006761568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll2017-08-16 22:58 - 2017-08-16 22:58 - 006728192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll2017-08-16 22:58 - 2017-08-16 22:58 - 006557520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll2017-08-16 22:58 - 2017-08-16 22:58 - 006269440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005961728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005808640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005557760 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005302968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepository.dll2017-08-16 22:58 - 2017-08-16 22:58 - 005225984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004730368 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004707840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004559360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004535296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004445696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004417024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004396032 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_47.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004213656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll2017-08-16 22:58 - 2017-08-16 22:58 - 004056064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003995136 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003670016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys2017-08-16 22:58 - 2017-08-16 22:58 - 003667456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_47.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003656192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003464704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbon.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003377664 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll2017-08-16 22:58 - 2017-08-16 22:58 - 003204608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.Profiles.Gatt.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002969888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002956288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys2017-08-16 22:58 - 2017-08-16 22:58 - 002939392 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002679200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys2017-08-16 22:58 - 2017-08-16 22:58 - 002671616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002645680 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002604248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002516480 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002444704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys2017-08-16 22:58 - 2017-08-16 22:58 - 002444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002424024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002399728 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002327456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys2017-08-16 22:58 - 2017-08-16 22:58 - 002259768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002211840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002199552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002165752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll2017-08-16 22:58 - 2017-08-16 22:58 - 002055168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys2017-08-16 22:58 - 2017-08-16 22:58 - 001886208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001878016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001839872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001833984 _____ (Microsoft Corporation) C:\WINDOWS\system32\workfolderssvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001802752 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001722880 _____ (Microsoft Corporation) C:\WINDOWS\system32\dui70.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001706496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001536512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001525760 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe2017-08-16 22:58 - 2017-08-16 22:58 - 001468416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001396736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001357312 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001337856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001325968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001305088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001298432 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001293824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001291776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001269760 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001260544 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe2017-08-16 22:58 - 2017-08-16 22:58 - 001248768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001195760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001114528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001068720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001054280 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001052160 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001046016 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001033544 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001019904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll2017-08-16 22:58 - 2017-08-16 22:58 - 001015296 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000988168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000972288 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000971264 _____ (Microsoft Corporation) C:\WINDOWS\system32\autochk.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000967584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000961952 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\autoconv.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000952832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000942592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000932352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GamePanel.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000926208 _____ (Microsoft Corporation) C:\WINDOWS\system32\autofmt.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000923048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000892928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autochk.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autoconv.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000872472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000866816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswdat10.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000866808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000864248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000853504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\autofmt.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000820128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000809984 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000805888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000805816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000798208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000787456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000778240 _____ C:\WINDOWS\system32\MBR2GPT.EXE2017-08-16 22:58 - 2017-08-16 22:58 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyHrtfEnc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000777216 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000770048 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000760832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000723680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000723360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000715168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000712600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000699904 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000692736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000687616 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000665600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000660680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000654976 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000641536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrepl40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\shsvcs.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000610584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000586752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppReadiness.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIRibbonRes.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000583160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000582656 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000579072 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000564224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shsvcs.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000554400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS2017-08-16 22:58 - 2017-08-16 22:58 - 000551200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000538112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000529992 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000527976 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000527360 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadcloudap.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\TileDataRepository.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000519680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000518144 _____ C:\WINDOWS\SysWOW64\msjetoledb40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000500224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Shell.BlueLightReduction.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Display.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000482816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000475648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxbde40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000473240 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000470016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000455584 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000417792 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgentUserBroker.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000414296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000412160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000411040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000410160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000382368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000375808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000365056 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000359552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000349600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000339968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000323936 _____ (Microsoft Corporation) C:\WINDOWS\system32\shlwapi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000318232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptprov.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000315288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd2x40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvsvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjtes40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000280472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000279968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000277432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shlwapi.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000272896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstext40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000267264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptprov.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Flights.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000255488 _____ (Microsoft Corporation) C:\WINDOWS\system32\scksp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyMATEnc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\scksp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SIHClient.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000212384 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000204192 _____ (Microsoft Corporation) C:\WINDOWS\system32\basecsp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000197120 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000194048 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000192264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\BluetoothApis.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE2017-08-16 22:58 - 2017-08-16 22:58 - 000182688 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000176024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\basecsp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000173104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsensorgroup.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000168864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE2017-08-16 22:58 - 2017-08-16 22:58 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdeploy.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\qasf.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000144896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvcext.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000143736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BluetoothApis.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.StateRepositoryUpgrade.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000135680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qasf.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000133904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdeploy.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000119904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000119712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepositoryUpgrade.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000116280 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\system32\RjvMDMConfig.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000104432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\officecsp.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000100232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcd.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000096648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000090464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000090112 _____ (Microsoft Corporation) C:\WINDOWS\system32\ofdeploy.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjter40.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmclr.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000082336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe2017-08-16 22:58 - 2017-08-16 22:58 - 000077312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spbcd.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\winsrv.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\system32\DmApiSetExtImplDesktop.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys2017-08-16 22:58 - 2017-08-16 22:58 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscore.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tokenbinding.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sscore.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tokenbinding.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll2017-08-16 22:58 - 2017-08-16 22:58 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\IpNatHlpClient.dll2017-08-16 22:51 - 2017-08-16 22:51 - 000008192 _____ C:\WINDOWS\system32\config\userdiff2017-08-16 22:51 - 2017-08-16 22:04 - 000000000 ____D C:\WINDOWS\ServiceProfiles2017-08-16 22:49 - 2017-08-16 22:49 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer2017-08-16 22:49 - 2017-08-16 22:49 - 000000000 ____D C:\Program Files\Reference Assemblies2017-08-16 22:49 - 2017-08-16 22:49 - 000000000 ____D C:\Program Files\MSBuild2017-08-16 22:49 - 2017-08-16 22:49 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies2017-08-16 22:49 - 2017-08-16 22:16 - 000000000 ____D C:\Program Files (x86)\MSBuild2017-08-16 22:48 - 2017-02-10 12:26 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll2017-08-16 22:48 - 2017-02-10 12:26 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll2017-08-16 22:48 - 2017-02-10 12:26 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe2017-08-16 22:48 - 2017-02-10 12:21 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll2017-08-16 22:48 - 2017-02-10 12:21 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll2017-08-16 22:48 - 2017-02-10 12:21 - 000035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe2017-08-16 22:27 - 2017-08-16 22:28 - 000011433 _____ C:\WINDOWS\diagwrn.xml2017-08-16 22:27 - 2017-08-16 22:28 - 000011433 _____ C:\WINDOWS\diagerr.xml2017-08-16 22:22 - 2017-09-06 18:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT2017-08-16 22:22 - 2017-09-06 16:54 - 000004204 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{F98215C1-34F6-4536-AE58-E44F707FB62C}2017-08-16 22:22 - 2017-09-06 16:45 - 000004202 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{0571C8D5-6405-4163-A5AF-61C459E92BCE}2017-08-16 22:22 - 2017-08-16 22:22 - 000003582 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier2017-08-16 22:22 - 2017-08-16 22:22 - 000003494 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA2017-08-16 22:22 - 2017-08-16 22:22 - 000003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task2017-08-16 22:22 - 2017-08-16 22:22 - 000003378 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater2017-08-16 22:22 - 2017-08-16 22:22 - 000003348 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1D095CEE-4C23-4AA6-8949-C92CEEB47773}2017-08-16 22:22 - 2017-08-16 22:22 - 000003270 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore2017-08-16 22:22 - 2017-08-16 22:22 - 000002820 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task2017-08-16 22:22 - 2017-08-16 22:22 - 000002810 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3545765792-2004337224-592000477-10032017-08-16 22:22 - 2017-08-16 22:22 - 000002810 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3545765792-2004337224-592000477-10022017-08-16 22:22 - 2017-08-16 22:22 - 000002810 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3545765792-2004337224-592000477-10012017-08-16 22:22 - 2017-08-16 22:22 - 000002770 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v22017-08-16 22:22 - 2017-08-16 22:22 - 000002554 _____ C:\WINDOWS\System32\Tasks\doPDF Update2017-08-16 22:22 - 2017-08-16 22:22 - 000002422 _____ C:\WINDOWS\System32\Tasks\Security Software2017-08-16 22:22 - 2017-08-16 22:22 - 000002244 _____ C:\WINDOWS\System32\Tasks\{E62A2545-791D-4006-9CE9-9B69DB14F45F}2017-08-16 22:22 - 2017-08-16 22:22 - 000002218 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC2017-08-16 22:22 - 2017-08-16 22:22 - 000002192 _____ C:\WINDOWS\System32\Tasks\{D9271DE0-B561-442C-BB3A-72BC9255EEEF}2017-08-16 22:22 - 2017-08-16 22:22 - 000002110 _____ C:\WINDOWS\System32\Tasks\{9D14E0BB-6A3A-4174-9AA4-F6BA1F96B010}2017-08-16 22:22 - 2017-08-16 22:22 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD2017-08-16 22:22 - 2017-08-16 22:22 - 000000000 ____D C:\WINDOWS\System32\Tasks\WiseCleaner2017-08-16 22:20 - 2017-09-06 18:28 - 002157786 _____ C:\WINDOWS\system32\PerfStringBackup.INI2017-08-16 22:15 - 2017-08-16 22:15 - 000000000 ____D C:\ProgramData\USOShared2017-08-16 22:14 - 2017-08-16 22:14 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk2017-08-16 22:10 - 2017-08-16 22:16 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate2017-08-16 22:08 - 2017-09-06 18:11 - 000000000 ____D C:\Users\Oem2017-08-16 22:08 - 2017-09-06 17:01 - 000000000 ____D C:\Users\Aśka2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Ustawienia lokalne2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Szablony2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Moje dokumenty2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Menu Start2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Documents\Moje wideo2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Documents\Moje obrazy2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Documents\Moja muzyka2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\Dane aplikacji2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programy2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\AppData\Local\Historia2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Oem\AppData\Local\Dane aplikacji2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Ustawienia lokalne2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Szablony2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Moje dokumenty2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Menu Start2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Documents\Moje wideo2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Documents\Moje obrazy2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Documents\Moja muzyka2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\Dane aplikacji2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\AppData\Roaming\Microsoft\Windows\Start Menu\Programy2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\AppData\Local\Historia2017-08-16 22:08 - 2017-08-16 22:08 - 000000000 _SHDL C:\Users\Aśka\AppData\Local\Dane aplikacji2017-08-16 22:07 - 2017-09-06 18:24 - 000000000 ____D C:\ProgramData\NVIDIA2017-08-16 22:07 - 2017-08-16 22:11 - 000000000 ____D C:\ProgramData\NVIDIA Corporation2017-08-16 22:07 - 2017-08-16 22:07 - 000000000 ____H C:\ProgramData\DP45977C.lfl2017-08-16 22:07 - 2017-08-16 22:07 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM2017-08-16 22:07 - 2017-08-16 22:07 - 000000000 ____D C:\Program Files\Realtek2017-08-16 22:07 - 2017-05-01 22:52 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat2017-08-16 22:07 - 2017-05-01 22:51 - 006437312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll2017-08-16 22:07 - 2017-05-01 22:51 - 002479552 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll2017-08-16 22:07 - 2017-05-01 22:51 - 001762752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll2017-08-16 22:07 - 2017-05-01 22:51 - 000548800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll2017-08-16 22:07 - 2017-05-01 22:51 - 000392312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll2017-08-16 22:07 - 2017-05-01 22:51 - 000081856 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll2017-08-16 22:07 - 2017-05-01 22:51 - 000069752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll2017-08-16 22:07 - 2017-04-25 23:11 - 007944687 _____ C:\WINDOWS\system32\nvcoproc.bin2017-08-16 22:06 - 2017-09-06 18:24 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat2017-08-16 22:06 - 2017-08-16 22:11 - 000000000 ____D C:\Program Files\NVIDIA Corporation2017-08-16 22:06 - 2017-08-16 22:11 - 000000000 ____D C:\Program Files\Intel2017-08-16 22:06 - 2017-08-16 22:11 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation2017-08-16 22:06 - 2017-08-16 22:06 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat2017-08-16 22:06 - 2017-08-16 22:06 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf2017-08-16 22:06 - 2017-08-16 22:06 - 000000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin2017-08-16 22:06 - 2017-03-18 22:56 - 002233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll2017-08-16 22:06 - 2016-11-02 00:05 - 000103952 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL2017-08-16 22:06 - 2016-11-02 00:05 - 000099848 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL2017-08-16 22:04 - 2017-09-06 17:53 - 000000000 ____D C:\WINDOWS\system32\SleepStudy2017-08-16 22:04 - 2017-08-25 15:51 - 000498088 _____ C:\WINDOWS\system32\FNTCACHE.DAT2017-08-15 10:30 - 2017-09-06 18:28 - 000000000 ___DC C:\WINDOWS\Panther2017-08-13 22:13 - 2017-08-13 22:14 - 000000000 ___SD C:\WINDOWS\UpdateAssistantV22017-08-10 22:11 - 2017-08-10 22:11 - 004723200 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe2017-08-10 00:14 - 2017-08-10 00:14 - 000000000 __SHD C:\found.0052017-08-09 16:45 - 2017-08-09 16:45 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========(Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)2017-09-06 18:28 - 2017-03-20 05:59 - 000973974 _____ C:\WINDOWS\system32\perfh015.dat2017-09-06 18:28 - 2017-03-20 05:59 - 000205404 _____ C:\WINDOWS\system32\perfc015.dat2017-09-06 18:28 - 2017-03-18 23:01 - 000000000 ____D C:\WINDOWS\INF2017-09-06 18:28 - 2016-01-10 20:26 - 000000000 ____D C:\Users\Oem\AppData\Local\CrashDumps2017-09-06 18:28 - 2015-04-29 14:53 - 000000000 ____D C:\Users\Oem\AppData\Roaming\uTorrent2017-09-06 18:24 - 2016-03-29 16:12 - 000000000 __SHD C:\Users\Oem\IntelGraphicsProfiles2017-09-06 18:23 - 2017-03-18 13:40 - 001048576 _____ C:\WINDOWS\system32\config\BBI2017-09-06 18:21 - 2016-12-11 11:19 - 000000000 ____D C:\ProgramData\TDM-GCC2017-09-06 16:57 - 2016-03-30 23:43 - 000000000 __SHD C:\Users\Aśka\IntelGraphicsProfiles2017-09-06 16:53 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps2017-09-06 16:53 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\AppReadiness2017-09-06 16:36 - 2017-02-16 18:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service2017-09-06 16:36 - 2017-02-16 18:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox2017-08-29 16:40 - 2015-04-24 15:25 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk2017-08-25 07:32 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\NDF2017-08-22 20:35 - 2017-07-21 21:57 - 000002223 _____ C:\Users\Oem\Desktop\Discord.lnk2017-08-22 20:35 - 2015-04-23 12:55 - 000000864 _____ C:\Users\Oem\Desktop\Pobrane.lnk2017-08-19 09:14 - 2015-04-25 07:22 - 000544424 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe2017-08-18 16:31 - 2016-05-16 11:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java2017-08-18 16:31 - 2015-07-20 16:08 - 000000000 ____D C:\Program Files (x86)\Java2017-08-18 16:31 - 2015-04-23 13:12 - 000000000 ____D C:\ProgramData\Oracle2017-08-18 16:30 - 2016-05-16 11:03 - 000097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll2017-08-18 08:21 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\appcompat2017-08-17 18:21 - 2017-03-18 22:51 - 000000000 ____D C:\WINDOWS\CbsTemp2017-08-17 16:35 - 2015-04-23 10:29 - 000000000 ____D C:\Users\Oem\AppData\Local\Packages2017-08-17 16:24 - 2016-03-29 16:14 - 000002401 _____ C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk2017-08-17 16:24 - 2016-03-29 16:14 - 000000000 ___RD C:\Users\Oem\OneDrive2017-08-17 16:18 - 2017-03-18 23:03 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel2017-08-17 16:18 - 2016-02-13 19:52 - 000000000 __RHD C:\Users\Public\AccountPictures2017-08-16 23:03 - 2017-03-18 23:03 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template2017-08-16 23:00 - 2017-03-18 23:06 - 000000000 ____D C:\WINDOWS\Setup2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinMetadata2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\ShellExperiences2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows Photo Viewer2017-08-16 23:00 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer2017-08-16 22:49 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI2017-08-16 22:49 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\MUI2017-08-16 22:49 - 2017-03-18 22:56 - 000465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe2017-08-16 22:49 - 2017-03-18 22:56 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe2017-08-16 22:49 - 2017-03-18 22:56 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe2017-08-16 22:49 - 2017-03-18 22:56 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll2017-08-16 22:49 - 2017-03-18 22:56 - 000005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll2017-08-16 22:29 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase2017-08-16 22:29 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows NT2017-08-16 22:28 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\rescache2017-08-16 22:28 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Registration2017-08-16 22:28 - 2017-03-18 13:40 - 000032768 _____ C:\WINDOWS\system32\config\ELAM2017-08-16 22:26 - 2016-07-16 13:47 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated2017-08-16 22:22 - 2017-03-20 06:01 - 000000000 ____D C:\WINDOWS\HoloShell2017-08-16 22:22 - 2016-03-29 13:50 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat2017-08-16 22:21 - 2017-03-18 23:03 - 000000000 __RHD C:\Users\Public\Libraries2017-08-16 22:20 - 2015-04-23 10:38 - 001892902 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI2017-08-16 22:16 - 2017-07-07 08:34 - 000000000 ____D C:\WINDOWS\system32\UNP2017-08-16 22:16 - 2017-05-20 15:40 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Facebook2017-08-16 22:16 - 2016-11-04 13:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner2017-08-16 22:16 - 2016-11-02 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Napisy242017-08-16 22:16 - 2016-07-13 13:32 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Photoshop CS32017-08-16 22:16 - 2016-07-12 11:01 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder2017-08-16 22:16 - 2016-06-13 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NapiProjekt2017-08-16 22:16 - 2016-03-10 22:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office2017-08-16 22:16 - 2016-02-13 19:39 - 000000000 ____D C:\WINDOWS\ShellNew2017-08-16 22:16 - 2016-02-09 15:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight2017-08-16 22:16 - 2016-02-07 21:22 - 000000000 ____D C:\WINDOWS\pl2017-08-16 22:16 - 2016-02-07 21:21 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live2017-08-16 22:16 - 2015-12-02 19:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\doPDF 82017-08-16 22:16 - 2015-12-02 19:51 - 000000000 ____D C:\ProgramData\regid.2008-09.org.wixtoolset2017-08-16 22:16 - 2015-10-06 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ALLPlayer2017-08-16 22:16 - 2015-05-28 11:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware2017-08-16 22:16 - 2015-05-01 19:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite2017-08-16 22:16 - 2015-04-27 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games for Windows Marketplace2017-08-16 22:16 - 2015-04-23 20:45 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR2017-08-16 22:16 - 2015-04-23 20:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR2017-08-16 22:16 - 2015-04-23 20:44 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.12017-08-16 22:16 - 2015-04-23 20:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ffdshow x642017-08-16 22:16 - 2015-04-23 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin2017-08-16 22:16 - 2015-04-23 16:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam2017-08-16 22:16 - 2015-04-23 15:49 - 000000000 ____D C:\ProgramData\regid.1986-12.com.adobe2017-08-16 22:16 - 2015-04-23 10:36 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel2017-08-16 22:15 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\USOPrivate2017-08-16 22:15 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\spool2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\oobe2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\Macromed2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\lv-LV2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\lt-LT2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\InputMethod2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\et-EE2017-08-16 22:12 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\system32\en-GB2017-08-16 22:12 - 2015-04-27 20:14 - 000000000 ____D C:\WINDOWS\SysWOW64\xlive2017-08-16 22:12 - 2015-04-25 13:53 - 000000000 ____D C:\WINDOWS\system32\MRT2017-08-16 22:12 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared2017-08-16 22:12 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared2017-08-16 22:11 - 2017-05-10 18:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES2017-08-16 22:11 - 2017-05-06 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockstar Games2017-08-16 22:11 - 2017-04-20 17:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com2017-08-16 22:11 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\LiveKernelReports2017-08-16 22:11 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\InputMethod2017-08-16 22:11 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Common Files\microsoft shared2017-08-16 22:11 - 2017-03-13 20:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefly Studios2017-08-16 22:11 - 2017-02-09 01:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation2017-08-16 22:11 - 2015-12-23 08:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype2017-08-16 22:11 - 2015-07-04 09:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony2017-08-16 22:10 - 2016-10-02 19:57 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc2017-08-16 22:10 - 2016-01-12 20:10 - 000000000 ____D C:\Users\Oem\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam2017-08-16 22:10 - 2013-08-22 17:36 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicyUsers2017-08-16 22:09 - 2015-10-23 14:42 - 000000000 ____D C:\Users\Aśka\AppData\Local\Packages2017-08-16 22:07 - 2017-03-18 23:03 - 000000000 ____D C:\WINDOWS\Help2017-08-16 22:07 - 2017-03-18 13:40 - 000000000 ____D C:\WINDOWS\system32\Sysprep2017-08-16 21:31 - 2016-03-12 20:52 - 000000000 ____D C:\ProgramData\Napisy242017-08-14 19:18 - 2017-05-07 22:09 - 000000000 ____D C:\Users\Oem\Downloads\Narcos.Season.2.720p.WEBRiP.x265.ShAaNiG2017-08-11 15:40 - 2017-07-28 07:50 - 000000000 ____D C:\Program Files\rempl2017-08-09 18:56 - 2015-04-25 13:53 - 140394280 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe2017-08-09 16:45 - 2016-10-02 19:57 - 000000000 ____D C:\Users\Oem\AppData\Roaming\discord2017-08-09 16:44 - 2017-07-21 21:57 - 000000000 ____D C:\Users\Oem\AppData\Local\Discord2017-08-08 16:30 - 2016-11-16 08:09 - 000000000 ____D C:\Users\Oem\AppData\LocalLow\Mozilla==================== Pliki w katalogu głównym wybranych folderów =======2016-05-11 16:25 - 2016-07-06 17:25 - 000000137 _____ () C:\Users\Oem\AppData\Roaming\WB.CFG2016-12-05 09:45 - 2016-12-05 09:45 - 000000935 _____ () C:\Users\Oem\AppData\Local\recently-used.xbel2015-08-16 09:39 - 2015-08-16 09:39 - 000000000 _____ () C:\Users\Oem\AppData\Local\{86C5B5DD-D9E9-44ED-BF6C-2499C73C2C93}2017-08-16 22:07 - 2017-08-16 22:07 - 000000000 ____H () C:\ProgramData\DP45977C.lfl==================== Bamital & volsnap ======================(Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowoC:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowoC:\WINDOWS\explorer.exe => Plik podpisany cyfrowoC:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowoC:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowoC:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowoC:\WINDOWS\system32\services.exe => Plik podpisany cyfrowoC:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowoC:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowoC:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowoC:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowoC:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowoC:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowoC:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowoC:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowoLastRegBack: 2017-08-29 16:33==================== Koniec FRST.txt ============================ Odnośnik do komentarza
Rekomendowane odpowiedzi
Jeśli chcesz dodać odpowiedź, zaloguj się lub zarejestruj nowe konto
Jedynie zarejestrowani użytkownicy mogą komentować zawartość tej strony.
Zarejestruj nowe konto
Załóż nowe konto. To bardzo proste!
Zarejestruj sięZaloguj się
Posiadasz już konto? Zaloguj się poniżej.
Zaloguj się