Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 12.01.2019
- Uruchomiony przez wawker (administrator) DESKTOP-U8HLGPA (12-01-2019 18:46:37)
- Uruchomiony z C:\Users\wawker\Downloads
- Załadowane profile: wawker (Dostępne profile: wawker)
- Platform: Windows 10 Pro Wersja 1803 17134.523 (X64) Język: Polski (Polska)
- Internet Explorer Wersja 11 (Domyślna przeglądarka: FF)
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
- (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
- (MSI) C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe
- (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe
- () C:\Program Files (x86)\MobileBrServ\mbbService.exe
- (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
- (MSI) C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe
- () C:\Program Files (x86)\NordVPN\nordvpn-service.exe
- () C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- (DEVGURU Co., LTD.) C:\Program Files\Samsung\USB Drivers\25_escape\conn\ss_conn_service.exe
- (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\NisSrv.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
- (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeApp.exe
- () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18102.12011.0_x64__8wekyb3d8bbwe\Video.UI.exe
- (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
- (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.36.52.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
- (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
- (Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
- (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
- (Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
- (Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\laclient\laclient.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- (NordVPN) C:\Program Files (x86)\NordVPN\NordVPN.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Office14\MSOSYNC.EXE
- () C:\Program Files (x86)\4G Hostless Modem\PLAY ONLINE\CheckNDISPort_df.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- () C:\Program Files (x86)\4G Hostless Modem\PLAY ONLINE\CancelAutoPlay_df.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Micro-Star INT'L CO.,LTD.) C:\Program Files (x86)\MSI\Fast Boot\FastBoot.exe
- (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2018.18112.17430.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
- (IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallMonitor.exe
- () C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- (Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
- (Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
- (Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17134.464_none_eaf315ac1d6e512f\TiWorker.exe
- (Farbar) C:\Users\wawker\Downloads\FRST64(1).exe
- ==================== Rejestr (filtrowane) ===========================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
- HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.)
- HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2125944 2017-11-16] (Logitech, Inc.)
- HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9269328 2018-11-22] (Realtek Semiconductor)
- HKLM\...\Run: [Cmaudio8788] => C:\Windows\syswow64\RunDll32.exe C:\Windows\Syswow64\cmicnfgp.dll,CMICtrlWnd
- HKLM\...\Run: [Cmaudio8788GX] => C:\Windows\syswow64\HsMgr.exe [200704 2008-07-11] ()
- HKLM\...\Run: [Cmaudio8788GX64] => C:\Windows\system\HsMgr64.exe [282112 2008-07-11] ()
- HKLM-x32\...\Run: [CheckNDISPortF0acD2] => C:\Program Files (x86)\4G Hostless Modem\PLAY ONLINE\CheckNDISPort_df.exe [459008 2013-07-26] ()
- HKLM-x32\...\Run: [CancelAutoPlay_df] => C:\Program Files (x86)\4G Hostless Modem\PLAY ONLINE\CancelAutoPlay_df.exe [446208 2013-07-26] ()
- HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587800 2017-12-19] (Oracle Corporation)
- HKLM-x32\...\Run: [Fast Boot] => C:\Program Files (x86)\MSI\Fast Boot\StartFastBoot.exe [759120 2015-04-22] ()
- HKLM-x32\...\Run: [X_Boost] => C:\Program Files (x86)\MSI\MSI X Boost\X_Boost.exe [4261024 2018-02-22] (Micro-Star INT'L CO., LTD.)
- HKLM-x32\...\Run: [Command Center] => C:\Program Files (x86)\MSI\Command Center\StartCommandCenter.exe [835768 2018-09-07] (MSI)
- HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
- HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\Run: [NordVPN] => C:\Program Files (x86)\NordVPN\NordVPN.exe [3036112 2018-11-06] (NordVPN)
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\Run: [wawker] => cmd.exe /c start www.dipladoks.org
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\MountPoints2: {6fb4020a-b497-11e7-9657-002522fd3a60} - "H:\AutoRun.exe"
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\MountPoints2: {9f7c676a-4d18-11e8-9a7d-309c233cab89} - "I:\setup.exe"
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\...\MountPoints2: {c3f496a9-c4c2-11e8-9aeb-309c233cab89} - "H:\AutoRun.exe"
- HKU\S-1-5-18\...\Winlogon: [Shell] C:\Windows\explorer.exe [3932672 2018-07-06] (Microsoft Corporation) <==== UWAGA
- HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2018-12-18] (Google Inc.)
- ShellServiceObjects: Brak nazwy -> {59EFE487-E5B8-4fae-9D2C-FCDF0B70CE70} =>
- ShellServiceObjects-x32: Brak nazwy -> {59EFE487-E5B8-4fae-9D2C-FCDF0B70CE70} =>
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{02ec7239-9b6b-40a6-a96d-486ae5f229ce}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{1d84d1dc-c604-4dcb-80b2-2eb3d541e785}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{58eeae8b-751b-4efd-ac75-a04629814127}: [DhcpNameServer] 192.168.8.1 192.168.8.1
- Tcpip\..\Interfaces\{76242fd3-e2f7-423e-a45e-a90007fbedad}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{ead8a487-895a-4902-bea1-7d267dff4d6d}: [DhcpNameServer] 192.168.0.1
- Internet Explorer:
- ==================
- HKU\S-1-5-21-354751307-3651647976-1189152146-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.gazeta.pl/0,0.html?p=190
- BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2017-05-22] (IObit)
- BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
- BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
- BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_162\bin\ssv.dll [2018-01-28] (Oracle Corporation)
- BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.)
- BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
- BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_162\bin\jp2ssv.dll [2018-01-28] (Oracle Corporation)
- FireFox:
- ========
- FF DefaultProfile: pd2v08ul.default-1521834201438
- FF ProfilePath: C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438 [2019-01-12]
- FF user.js: detected! => C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\user.js [2018-03-23]
- FF Extension: (Complete YouTube Downloader) - C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\Extensions\@complete-youtube-downloader.xpi [2018-11-19]
- FF Extension: (Web Security) - C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\Extensions\contact@web-security.com.xpi [2018-03-23]
- FF Extension: (Brak nazwy) - C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\Extensions\jid1-YcMV6ngYmQRA2w@jetpack.xpi [2018-12-11]
- FF Extension: (karachan.org) - C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\Extensions\karachan@karachan.org.xpi [2018-12-06]
- FF Extension: (uBlock Origin) - C:\Users\wawker\AppData\Roaming\Mozilla\Firefox\Profiles\pd2v08ul.default-1521834201438\Extensions\uBlock0@raymondhill.net.xpi [2018-12-01]
- FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
- FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2017-10-08] [Przestarzałe] [Brak podpisu cyfrowego]
- FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_32_0_0_114.dll [2019-01-12] ()
- FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_114.dll [2019-01-12] ()
- FF Plugin-x32: @java.com/DTPlugin,version=11.162.2 -> C:\Program Files (x86)\Java\jre1.8.0_162\bin\dtplugin\npDeployJava1.dll [2018-01-28] (Oracle Corporation)
- FF Plugin-x32: @java.com/JavaPlugin,version=11.162.2 -> C:\Program Files (x86)\Java\jre1.8.0_162\bin\plugin2\npjp2.dll [2018-01-28] (Oracle Corporation)
- FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-12-11] (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-12-11] (NVIDIA Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2018-12-19] (Google Inc.)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-12-04] (Adobe Systems Inc.)
- Chrome:
- =======
- CHR HomePage: Default -> hxxp://www.gazeta.pl/0,0.html?p=190
- CHR StartupUrls: Default -> "hxxp://www.gazeta.pl/0,0.html?p=190"
- CHR Profile: C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default [2018-12-15]
- CHR Extension: (Prezentacje) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-12-30]
- CHR Extension: (Dokumenty) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-12-30]
- CHR Extension: (Dysk Google) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-12-30]
- CHR Extension: (YouTube) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-12-30]
- CHR Extension: (Adobe Acrobat) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2018-12-15]
- CHR Extension: (Arkusze) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-12-30]
- CHR Extension: (Dokumenty Google offline) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-12-15]
- CHR Extension: (Norton Identity Safe) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\iikflkcanblccfahdhdonehdalibjnif [2017-12-30]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-12-15]
- CHR Extension: (Gmail) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-12-30]
- CHR Extension: (Chrome Media Router) - C:\Users\wawker\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-15]
- CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - hxxps://clients2.google.com/service/update2/crx
- ==================== Usługi (filtrowane) ====================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 Disc Soft Ultra Bus Service; C:\Program Files\DAEMON Tools Ultra\DiscSoftBusService.exe [1439424 2016-02-02] (Disc Soft Ltd)
- R2 DSAService; C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [23800 2018-10-18] (Intel)
- R2 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [937192 2018-09-19] ()
- S3 GalaxyClientService; C:\Program Files (x86)\GalaxyClient\GalaxyClientService.exe [682056 2018-06-24] (GOG.com)
- S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8174664 2018-06-24] (GOG.com)
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [758552 2018-03-02] (Intel(R) Corporation)
- R2 Intel(R) PROSet Monitoring Service; C:\Windows\system32\IProsetMonitor.exe [505856 2018-01-31] (Intel Corporation) [Brak podpisu cyfrowego]
- S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel Corporation)
- S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [719640 2018-03-02] (Intel(R) Corporation)
- R2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [206112 2017-06-14] (IObit)
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [205968 2017-12-03] (Intel Corporation)
- S4 MBAMService-BackupByMalwarebytesPortable; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [4317648 2016-11-29] (Malwarebytes)
- R2 Mobile Broadband HL Service; C:\Program Files (x86)\MobileBrServ\mbbservice.exe [242264 2016-03-24] ()
- S3 MSIClock_CC; C:\Program Files (x86)\MSI\Command Center\ClockGen\MSIClockService_x64.exe [2669240 2018-01-12] (MSI)
- S3 MSICOMM_CC; C:\Program Files (x86)\MSI\Command Center\MSICommService.exe [2343608 2018-01-12] (MSI)
- S3 MSICPU_CC; C:\Program Files (x86)\MSI\Command Center\CPU\MSICPUService_x64.exe [2725048 2017-12-22] (MSI)
- R2 MSICTL_CC; C:\Program Files (x86)\MSI\Command Center\MSIControlService.exe [2255032 2018-08-23] (MSI)
- S3 MSIDDR_CC; C:\Program Files (x86)\MSI\Command Center\DDR\MSIDDRService.exe [2507448 2018-07-18] (MSI)
- S3 MSISMB_CC; C:\Program Files (x86)\MSI\Command Center\SMBus\MSISMBService.exe [2136248 2018-03-29] (MSI)
- S3 MSISuperIO_CC; C:\Program Files (x86)\MSI\Command Center\SuperIO\MSISuperIOService.exe [2742968 2018-08-23] (MSI)
- R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83104 2018-02-22] (Micro-Star INT'L CO., LTD.)
- R2 MSI_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\FastBootService.exe [113336 2017-12-21] (MSI)
- R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2190520 2018-09-25] (Micro-Star INT'L CO., LTD.)
- R2 nordvpn-service; C:\Program Files (x86)\NordVPN\nordvpn-service.exe [437200 2018-11-06] ()
- R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787440 2018-12-06] (NVIDIA Corporation)
- S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [787440 2018-12-06] (NVIDIA Corporation)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-07-15] (Microsoft Corporation)
- S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
- R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-03] (DEVGURU Co., LTD.)
- R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [194792 2018-09-19] ()
- S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [937192 2018-09-19] ()
- R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3880120 2018-12-10] (Microsoft Corporation)
- R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [114208 2018-12-10] (Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
- R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
- ===================== Sterowniki (filtrowane) ======================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R3 cmudaxp; C:\Windows\system32\drivers\cmudaxp.sys [2735616 2015-06-02] (C-Media Inc)
- R3 dtultrascsibus; C:\Windows\System32\drivers\dtultrascsibus.sys [30264 2018-05-01] (Disc Soft Ltd)
- R1 HWiNFO32; C:\Windows\system32\drivers\HWiNFO64A.SYS [27552 2018-06-02] (REALiX(tm))
- R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [39904 2017-06-06] (IObit.com)
- R3 IURegProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegProcessFilter.sys [45024 2017-06-12] (IObit.com)
- R3 NTIOLib_FastBoot; C:\Program Files (x86)\MSI\Fast Boot\NTIOLib_X64.sys [14288 2017-03-29] (MSI)
- R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_e7b3660b4830c245\nvlddmkm.sys [20424640 2018-12-17] (NVIDIA Corporation)
- S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2018-10-25] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [70024 2018-10-01] (NVIDIA Corporation)
- R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [74576 2018-11-03] (NVIDIA Corporation)
- S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [9275336 2018-09-17] (Realtek Semiconductor Corporation )
- R3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [43008 2018-09-19] ()
- R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [46168 2017-12-15] (Synaptics Incorporated)
- R3 tapnordvpn; C:\Windows\System32\drivers\tapnordvpn.sys [44896 2018-06-13] (The OpenVPN Project)
- S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [22016 2018-04-12] (Microsoft Corporation)
- S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [46680 2018-12-10] (Microsoft Corporation)
- R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [330936 2018-12-10] (Microsoft Corporation)
- S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (MBB)
- R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [62136 2018-12-10] (Microsoft Corporation)
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc - utworzone pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2019-01-12 18:46 - 2019-01-12 18:46 - 002427392 _____ (Farbar) C:\Users\wawker\Downloads\FRST64(1).exe
- 2019-01-12 18:46 - 2019-01-12 18:46 - 000000000 ____D C:\Users\wawker\Downloads\FRST-OlderVersion
- 2019-01-11 20:14 - 2019-01-11 20:14 - 000005198 _____ C:\Users\wawker\mbam-log-2019-01-11 (20-09-14).xml
- 2019-01-11 20:09 - 2019-01-11 20:09 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2019-01-11 20:09 - 2016-03-18 05:05 - 000140672 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamchameleon.sys
- 2019-01-11 20:09 - 2016-03-18 05:05 - 000065408 _____ (Malwarebytes Corporation) C:\Windows\system32\Drivers\mwac.sys
- 2019-01-11 20:09 - 2016-03-18 05:05 - 000027008 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
- 2019-01-11 19:26 - 2019-01-11 19:26 - 000000300 _____ C:\Users\wawker\Downloads\SearchReg.txt
- 2019-01-11 19:12 - 2019-01-12 18:46 - 000024098 _____ C:\Users\wawker\Downloads\FRST.txt
- 2019-01-11 19:12 - 2019-01-12 18:46 - 000000000 ____D C:\FRST
- 2019-01-11 19:12 - 2019-01-11 19:13 - 000072778 _____ C:\Users\wawker\Downloads\Addition.txt
- 2019-01-10 21:01 - 2019-01-11 19:06 - 000000000 ____D C:\Program Files\Mozilla Firefox
- 2019-01-09 17:26 - 2019-01-02 20:41 - 000835480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
- 2019-01-09 17:26 - 2019-01-02 20:41 - 000179600 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
- 2019-01-09 17:24 - 2019-01-01 14:50 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\iemigplugin.dll
- 2019-01-09 17:24 - 2019-01-01 14:46 - 012710912 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2019-01-09 17:24 - 2019-01-01 08:13 - 003292152 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
- 2019-01-09 17:24 - 2019-01-01 08:13 - 001363536 _____ (Microsoft Corporation) C:\Windows\system32\WinTypes.dll
- 2019-01-09 17:24 - 2019-01-01 08:13 - 000709728 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
- 2019-01-09 17:24 - 2019-01-01 08:13 - 000436024 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
- 2019-01-09 17:24 - 2019-01-01 08:13 - 000170808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
- 2019-01-09 17:24 - 2019-01-01 08:12 - 009084216 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
- 2019-01-09 17:24 - 2019-01-01 08:12 - 007520104 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
- 2019-01-09 17:24 - 2019-01-01 08:12 - 002765344 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2019-01-09 17:24 - 2019-01-01 08:12 - 002465792 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
- 2019-01-09 17:24 - 2019-01-01 08:12 - 002421288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
- 2019-01-09 17:24 - 2019-01-01 08:12 - 000128824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
- 2019-01-09 17:24 - 2019-01-01 07:55 - 025856512 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
- 2019-01-09 17:24 - 2019-01-01 07:50 - 022715392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2019-01-09 17:24 - 2019-01-01 07:50 - 004383744 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
- 2019-01-09 17:24 - 2019-01-01 07:46 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
- 2019-01-09 17:24 - 2019-01-01 07:45 - 007573504 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
- 2019-01-09 17:24 - 2019-01-01 07:45 - 000352768 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
- 2019-01-09 17:24 - 2019-01-01 07:44 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
- 2019-01-09 17:24 - 2019-01-01 07:44 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
- 2019-01-09 17:24 - 2019-01-01 07:43 - 001805312 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2019-01-09 17:24 - 2019-01-01 07:42 - 004939776 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2019-01-09 17:24 - 2019-01-01 07:41 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
- 2019-01-09 17:24 - 2019-01-01 07:41 - 000899072 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
- 2019-01-09 17:24 - 2019-01-01 07:41 - 000505344 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
- 2019-01-09 17:24 - 2019-01-01 07:37 - 006571584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
- 2019-01-09 17:24 - 2019-01-01 07:29 - 022016512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
- 2019-01-09 17:24 - 2019-01-01 07:22 - 019405312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2019-01-09 17:24 - 2019-01-01 07:16 - 005775872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
- 2019-01-09 17:24 - 2019-01-01 07:14 - 004514816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2019-01-09 17:23 - 2019-01-01 14:47 - 000225792 _____ (Microsoft Corporation) C:\Windows\system32\windowslivelogin.dll
- 2019-01-09 17:23 - 2019-01-01 14:45 - 000714752 _____ (Microsoft Corporation) C:\Windows\system32\wlidcli.dll
- 2019-01-09 17:23 - 2019-01-01 14:45 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\wlidcredprov.dll
- 2019-01-09 17:23 - 2019-01-01 14:43 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
- 2019-01-09 17:23 - 2019-01-01 14:20 - 011902976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2019-01-09 17:23 - 2019-01-01 14:20 - 000165888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windowslivelogin.dll
- 2019-01-09 17:23 - 2019-01-01 14:18 - 000500736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcli.dll
- 2019-01-09 17:23 - 2019-01-01 14:17 - 000231936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidcredprov.dll
- 2019-01-09 17:23 - 2019-01-01 08:14 - 001221432 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
- 2019-01-09 17:23 - 2019-01-01 08:14 - 001063224 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
- 2019-01-09 17:23 - 2019-01-01 08:14 - 001029944 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
- 2019-01-09 17:23 - 2019-01-01 08:14 - 000566568 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
- 2019-01-09 17:23 - 2019-01-01 08:14 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
- 2019-01-09 17:23 - 2019-01-01 08:14 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
- 2019-01-09 17:23 - 2019-01-01 08:12 - 000713272 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
- 2019-01-09 17:23 - 2019-01-01 08:12 - 000268304 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
- 2019-01-09 17:23 - 2019-01-01 08:12 - 000043536 _____ (Microsoft Corporation) C:\Windows\system32\browser_broker.exe
- 2019-01-09 17:23 - 2019-01-01 07:48 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
- 2019-01-09 17:23 - 2019-01-01 07:48 - 000081920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
- 2019-01-09 17:23 - 2019-01-01 07:48 - 000079360 _____ (Microsoft Corporation) C:\Windows\system32\Print.Workflow.Source.dll
- 2019-01-09 17:23 - 2019-01-01 07:47 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
- 2019-01-09 17:23 - 2019-01-01 07:47 - 000433152 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
- 2019-01-09 17:23 - 2019-01-01 07:46 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
- 2019-01-09 17:23 - 2019-01-01 07:46 - 000153088 _____ (Microsoft Corporation) C:\Windows\system32\dssvc.dll
- 2019-01-09 17:23 - 2019-01-01 07:45 - 002368512 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
- 2019-01-09 17:23 - 2019-01-01 07:44 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
- 2019-01-09 17:23 - 2019-01-01 07:44 - 000662528 _____ (Microsoft Corporation) C:\Windows\system32\wlidprov.dll
- 2019-01-09 17:23 - 2019-01-01 07:44 - 000456192 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Graphics.Printing.Workflow.dll
- 2019-01-09 17:23 - 2019-01-01 07:42 - 002247680 _____ (Microsoft Corporation) C:\Windows\system32\wlidsvc.dll
- 2019-01-09 17:23 - 2019-01-01 07:42 - 001371136 _____ (Microsoft Corporation) C:\Windows\system32\aadtb.dll
- 2019-01-09 17:23 - 2019-01-01 07:42 - 000717312 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Web.dll
- 2019-01-09 17:23 - 2019-01-01 07:41 - 000895488 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Security.Authentication.OnlineId.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 002478664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\combase.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 002253696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 001989040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 000880048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinTypes.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 000581808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
- 2019-01-09 17:23 - 2019-01-01 07:37 - 000381240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
- 2019-01-09 17:23 - 2019-01-01 07:17 - 000153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
- 2019-01-09 17:23 - 2019-01-01 07:16 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
- 2019-01-09 17:23 - 2019-01-01 07:16 - 000310272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wincorlib.dll
- 2019-01-09 17:23 - 2019-01-01 07:15 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
- 2019-01-09 17:23 - 2019-01-01 07:15 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
- 2019-01-09 17:23 - 2019-01-01 07:15 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
- 2019-01-09 17:23 - 2019-01-01 07:15 - 000317440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
- 2019-01-09 17:23 - 2019-01-01 07:14 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
- 2019-01-09 17:23 - 2019-01-01 07:14 - 000330752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Graphics.Printing.Workflow.dll
- 2019-01-09 17:23 - 2019-01-01 07:13 - 001628160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2019-01-09 17:23 - 2019-01-01 07:13 - 000594432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Web.dll
- 2019-01-09 17:23 - 2019-01-01 07:13 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
- 2019-01-09 17:23 - 2019-01-01 07:12 - 001036288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aadtb.dll
- 2019-01-09 17:23 - 2019-01-01 07:12 - 000795648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Security.Authentication.OnlineId.dll
- 2019-01-09 17:23 - 2019-01-01 07:12 - 000778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
- 2019-01-09 17:23 - 2019-01-01 07:12 - 000516608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlidprov.dll
- 2019-01-09 17:23 - 2019-01-01 06:23 - 000001310 _____ C:\Windows\system32\tcbres.wim
- 2019-01-09 17:23 - 2018-12-19 05:49 - 000352768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
- 2019-01-07 16:42 - 2019-01-07 16:42 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- 2018-12-29 20:51 - 2018-12-29 20:51 - 000000000 ____D C:\Users\wawker\AppData\LocalLow\Midgar Studio
- 2018-12-26 19:19 - 2018-12-26 19:19 - 000000000 ____D C:\Users\wawker\Documents\Egosoft
- 2018-12-26 19:13 - 2018-12-26 19:13 - 000000839 _____ C:\Users\Public\Desktop\Far Cry 5.lnk
- 2018-12-26 19:13 - 2018-12-26 19:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Far Cry 5
- 2018-12-26 18:55 - 2018-12-26 18:55 - 000000789 _____ C:\Users\Public\Desktop\X4 - Foundations.lnk
- 2018-12-26 18:55 - 2018-12-26 18:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\X4 - Foundations [GOG.com]
- 2018-12-26 18:49 - 2018-12-26 18:49 - 000000894 _____ C:\Users\wawker\Desktop\Railway Empire Great Britain and Ireland.lnk
- 2018-12-26 18:49 - 2018-12-26 18:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Railway Empire Great Britain and Ireland
- 2018-12-23 16:44 - 2018-12-23 16:44 - 000000000 ____D C:\Users\wawker\Documents\SKIDROW
- 2018-12-23 16:43 - 2018-12-23 16:43 - 000000000 ____D C:\Users\wawker\AppData\LocalLow\HandyGames
- 2018-12-23 16:37 - 2018-12-23 16:37 - 000000826 _____ C:\Users\wawker\Desktop\Aces of the Luftwaffe - Squadron.lnk
- 2018-12-23 16:36 - 2018-12-23 16:36 - 000001238 _____ C:\Users\wawker\Desktop\Sid Meiers Civilization VI Rise and Fall.lnk
- 2018-12-23 16:33 - 2018-12-23 16:33 - 000000724 _____ C:\Users\wawker\Desktop\HELLGATE London.lnk
- 2018-12-23 16:15 - 2018-12-23 16:15 - 000000593 _____ C:\Users\Public\Desktop\Battlefield™ V.lnk
- 2018-12-23 15:52 - 2018-12-23 15:52 - 000003570 _____ C:\Windows\System32\Tasks\wawker
- 2018-12-23 15:04 - 2018-12-23 15:05 - 000000000 ____D C:\Users\wawker\Documents\Battlefield V
- 2018-12-23 15:03 - 2018-12-23 15:03 - 000000000 ____D C:\ProgramData\Origin
- 2018-12-23 14:43 - 2018-12-11 08:32 - 000133616 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000978128 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000978128 _____ C:\Windows\system32\vulkan-1.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000845008 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000845008 _____ C:\Windows\SysWOW64\vulkan-1.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000552032 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000456800 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000267984 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000267984 _____ C:\Windows\system32\vulkaninfo.exe
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000243408 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
- 2018-12-23 14:41 - 2018-12-17 07:18 - 000243408 _____ C:\Windows\SysWOW64\vulkaninfo.exe
- 2018-12-23 14:41 - 2018-12-17 07:16 - 002003600 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
- 2018-12-23 14:41 - 2018-12-17 07:16 - 001512080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
- 2018-12-23 14:41 - 2018-12-17 07:16 - 001461024 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
- 2018-12-23 14:41 - 2018-12-17 07:16 - 001126144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
- 2018-12-23 14:41 - 2018-12-17 07:16 - 000631232 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
- 2018-12-23 14:41 - 2018-12-17 07:16 - 000521472 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 040261192 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 035157064 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 004946336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 004316760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 002017752 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6441735.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 001468504 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6441735.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 000750488 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
- 2018-12-23 14:41 - 2018-12-17 07:15 - 000609368 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 015909552 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 013204120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 001471608 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 001462024 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 001167400 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 001151984 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 001145536 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 000914400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 000822576 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 000794632 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
- 2018-12-23 14:41 - 2018-12-17 07:13 - 000637480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
- 2018-12-23 14:41 - 2018-12-17 07:12 - 019714256 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
- 2018-12-23 14:41 - 2018-12-17 07:12 - 016990072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
- 2018-12-23 14:41 - 2018-12-17 07:12 - 004999920 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
- 2018-12-23 14:41 - 2018-12-17 07:12 - 004258800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
- 2018-12-23 14:41 - 2018-12-11 12:00 - 000048148 _____ C:\Windows\system32\nvinfo.pb
- 2018-12-23 14:36 - 2018-12-23 14:36 - 000003976 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:36 - 2018-12-23 14:36 - 000003940 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:36 - 2018-12-06 11:15 - 002865136 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
- 2018-12-23 14:36 - 2018-12-06 11:15 - 002265072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000004308 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000004106 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003926 _____ C:\Windows\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003926 _____ C:\Windows\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003926 _____ C:\Windows\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003894 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003866 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003858 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-23 14:35 - 2018-12-23 14:35 - 000003654 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-12-20 20:14 - 2018-12-20 20:14 - 011617640 _____ C:\Users\wawker\Downloads\Railway Empire Great Britain and Ireland.rar
- 2018-12-20 19:57 - 2018-12-20 19:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Railway Empire Great Britain and Ireland MULTi10
- 2018-12-20 18:35 - 2018-12-14 08:29 - 001130760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
- 2018-12-20 18:35 - 2018-12-14 08:25 - 001035256 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
- 2018-12-20 18:35 - 2018-12-14 08:21 - 001457240 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
- 2018-12-20 18:35 - 2018-12-14 08:21 - 001257672 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
- 2018-12-20 18:35 - 2018-12-14 08:21 - 001140480 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
- 2018-12-20 18:35 - 2018-12-14 08:21 - 001098064 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
- 2018-12-20 18:35 - 2018-12-14 08:21 - 000982912 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
- 2018-12-20 18:35 - 2018-12-14 08:10 - 001295360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVPXENC.dll
- 2018-12-20 18:35 - 2018-12-14 08:07 - 000669696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
- 2018-12-20 18:35 - 2018-12-14 07:55 - 003396608 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
- 2018-12-20 18:35 - 2018-12-14 07:55 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
- 2018-12-20 18:35 - 2018-12-14 07:54 - 006032384 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
- 2018-12-20 18:35 - 2018-12-14 07:54 - 001307648 _____ (Microsoft Corporation) C:\Windows\system32\MSVPXENC.dll
- 2018-12-20 18:35 - 2018-12-14 07:52 - 002173440 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
- 2018-12-20 18:35 - 2018-12-14 07:52 - 001826816 _____ (Microsoft Corporation) C:\Windows\system32\Windows.CloudStore.dll
- 2018-12-20 18:35 - 2018-12-14 07:51 - 001551360 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
- 2018-12-20 18:35 - 2018-12-14 07:50 - 000776192 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
- 2018-12-19 15:17 - 2018-12-19 15:22 - 000000000 ____D C:\Users\wawker\Desktop\Maria Słońce Moje i Miłość
- 2018-12-18 18:22 - 2018-12-18 18:22 - 000000000 ____D C:\Users\wawker\AppData\LocalLow\Crytivo Games Inc_
- 2018-12-18 18:21 - 2018-12-18 18:21 - 000000633 _____ C:\Users\Public\Desktop\The Universim.lnk
- 2018-12-18 18:21 - 2018-12-18 18:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Universim
- 2018-12-15 21:29 - 2018-12-15 21:29 - 016981094 _____ C:\Users\wawker\Downloads\Pazera_Free_Audio_Extractor_64bit_PORTABLE.zip
- 2018-12-15 14:26 - 2018-12-15 14:26 - 000084655 _____ C:\Users\wawker\Downloads\Umowa_o_pozyczke_BLP0023049394.pdf
- 2018-12-15 14:24 - 2018-12-15 14:24 - 000260291 _____ C:\Users\wawker\Downloads\klauzula-informacyjna-przetwarzanie-danych-osobowych.pdf
- 2018-12-15 13:25 - 2018-12-15 13:25 - 001847295 _____ C:\Users\wawker\Downloads\instrukcja_montazu_kompakt_cersanit.pdf
- ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2019-01-12 18:46 - 2018-04-12 00:36 - 000000000 ____D C:\Windows\INF
- 2019-01-12 18:46 - 2017-08-29 16:19 - 000000000 ____D C:\ProgramData\NVIDIA
- 2019-01-12 18:45 - 2017-01-10 18:17 - 000000000 ____D C:\Users\wawker\AppData\Local\Adobe
- 2019-01-12 18:44 - 2018-04-30 19:45 - 000004690 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
- 2019-01-12 18:44 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\SysWOW64\Macromed
- 2019-01-12 18:44 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\system32\Macromed
- 2019-01-12 18:43 - 2018-04-30 19:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2019-01-12 18:43 - 2018-04-30 19:38 - 000000000 ____D C:\Windows\system32\SleepStudy
- 2019-01-12 18:43 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2019-01-12 18:43 - 2017-01-10 17:53 - 000000000 ____D C:\Users\wawker\AppData\LocalLow\Mozilla
- 2019-01-11 20:21 - 2018-04-30 19:49 - 001763568 _____ C:\Windows\system32\PerfStringBackup.INI
- 2019-01-11 20:21 - 2018-04-12 16:54 - 000782334 _____ C:\Windows\system32\perfh015.dat
- 2019-01-11 20:21 - 2018-04-12 16:54 - 000151496 _____ C:\Windows\system32\perfc015.dat
- 2019-01-11 20:17 - 2018-04-11 22:04 - 000524288 _____ C:\Windows\system32\config\BBI
- 2019-01-11 20:17 - 2018-02-21 21:01 - 000000000 ____D C:\ProgramData\Napisy24
- 2019-01-11 20:15 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\Vss
- 2019-01-11 20:14 - 2018-04-30 19:41 - 000000000 ____D C:\Users\wawker
- 2019-01-11 20:09 - 2017-01-10 18:40 - 000192216 _____ (Malwarebytes) C:\Windows\system32\Drivers\MBAMSwissArmy.sys
- 2019-01-11 20:08 - 2017-01-10 17:59 - 000000000 ____D C:\Users\wawker\AppData\Roaming\Azureus
- 2019-01-11 19:59 - 2018-03-02 20:40 - 000000000 ____D C:\ProgramData\rvlkl
- 2019-01-11 19:59 - 2017-01-10 17:50 - 000000000 ____D C:\ProgramData\Logishrd
- 2019-01-11 19:40 - 2018-09-30 18:02 - 000000000 ____D C:\Users\wawker\AppData\Local\TP-Link
- 2019-01-11 19:40 - 2018-06-22 22:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sword of the Guardian
- 2019-01-11 19:39 - 2018-06-02 16:47 - 000000000 ____D C:\Temp
- 2019-01-11 19:39 - 2017-01-10 18:04 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
- 2019-01-11 19:38 - 2018-08-26 17:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Bureau - XCOM Declassified [GOG.com]
- 2019-01-11 19:37 - 2018-12-11 19:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Stellaris MegaCorp
- 2019-01-11 19:37 - 2018-11-01 18:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpellForce 3 [GOG.com]
- 2019-01-11 19:37 - 2018-09-18 13:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wolcen - Lords of Mayhem [GOG.com]
- 2019-01-11 19:34 - 2018-09-27 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Pathfinder Kingmaker
- 2019-01-11 19:33 - 2018-06-24 16:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kenshi [GOG.com]
- 2019-01-11 19:32 - 2018-02-23 19:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Final Fantasy XII The Zodiac Age
- 2019-01-11 19:31 - 2018-05-01 11:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Frostpunk
- 2019-01-11 19:31 - 2018-04-18 16:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FarCry5
- 2019-01-11 19:30 - 2018-11-28 19:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Darksiders III
- 2019-01-11 19:30 - 2018-01-15 18:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Divinity Original Sin Enhanced Edition
- 2019-01-11 19:27 - 2018-11-01 18:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Empires Apart Civilizations
- 2019-01-11 19:06 - 2018-03-23 20:43 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
- 2019-01-10 21:30 - 2018-03-23 20:43 - 000000971 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
- 2019-01-10 20:56 - 2018-04-12 00:30 - 000000000 ____D C:\Windows\CbsTemp
- 2019-01-10 08:38 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\TextInput
- 2019-01-10 08:38 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\bcastdvr
- 2019-01-09 18:28 - 2017-10-01 14:38 - 000000000 ____D C:\Program Files (x86)\Steam
- 2019-01-09 18:27 - 2018-11-27 19:35 - 000000000 ____D C:\Users\wawker\Downloads\Hellgate London V2.1.0.4 Trainer +3 MrAntiFun
- 2019-01-09 17:27 - 2017-01-10 21:18 - 000000000 ____D C:\Windows\system32\MRT
- 2019-01-09 17:26 - 2017-01-10 17:42 - 132790320 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2019-01-09 10:21 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\AppReadiness
- 2019-01-07 20:28 - 2017-01-10 18:35 - 000000000 ____D C:\ProgramData\ProductData
- 2019-01-07 20:27 - 2018-04-12 00:38 - 000000000 ____D C:\Windows\system32\NDF
- 2019-01-07 20:26 - 2018-11-30 19:07 - 000000000 ____D C:\Users\wawker\AppData\Local\Bethesda.net Launcher
- 2019-01-07 20:26 - 2018-11-30 19:06 - 000000000 ____D C:\Program Files (x86)\Bethesda.net Launcher
- 2019-01-07 20:18 - 2017-02-08 19:07 - 000000000 ____D C:\Users\wawker\AppData\Local\CrashDumps
- 2019-01-07 19:45 - 2018-11-30 21:30 - 000000271 _____ C:\Users\wawker\Desktop\Fallout 76.url
- 2019-01-07 18:23 - 2017-10-12 19:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
- 2019-01-07 18:23 - 2017-10-12 19:04 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
- 2019-01-07 16:40 - 2018-11-01 18:12 - 000000000 ____D C:\Program Files (x86)\Intel Driver and Support Assistant
- 2019-01-05 14:23 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps
- 2018-12-26 19:19 - 2017-01-10 17:51 - 000000000 ____D C:\Users\wawker\AppData\Local\NVIDIA
- 2018-12-23 16:56 - 2018-05-01 16:45 - 000000000 ____D C:\Users\wawker\AppData\Local\D3DSCache
- 2018-12-23 16:36 - 2018-02-09 20:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sid Meiers Civilization VI Rise and Fall
- 2018-12-23 16:33 - 2018-11-16 14:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HELLGATE London
- 2018-12-23 15:51 - 2017-04-08 14:00 - 000000148 _____ C:\Users\wawker\AppData\Roaming\default.rss
- 2018-12-23 14:43 - 2017-08-29 16:19 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2018-12-23 14:43 - 2017-08-29 16:19 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
- 2018-12-23 14:43 - 2017-01-10 17:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
- 2018-12-23 14:35 - 2017-08-29 16:19 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2018-12-23 14:35 - 2017-04-11 18:59 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
- 2018-12-20 19:57 - 2017-10-01 15:34 - 000000000 ____D C:\Users\wawker\AppData\Roaming\Kalypso Media
- 2018-12-20 19:57 - 2017-01-10 18:58 - 000000000 ____D C:\Users\wawker\Documents\My Games
- 2018-12-19 20:06 - 2018-04-30 19:45 - 000003568 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
- 2018-12-19 20:06 - 2018-04-30 19:45 - 000003444 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
- 2018-12-18 14:20 - 2017-12-30 02:31 - 000002309 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-12-17 19:23 - 2017-01-10 19:26 - 000000000 ____D C:\Users\wawker\Documents\karachan
- ==================== Pliki w katalogu głównym wybranych folderów =======
- 2017-04-08 14:00 - 2018-12-23 15:51 - 000000148 _____ () C:\Users\wawker\AppData\Roaming\default.rss
- 2017-01-11 21:47 - 2017-01-11 21:47 - 000000000 _____ () C:\Users\wawker\AppData\Roaming\gdfw.log
- 2017-01-11 21:47 - 2017-01-11 21:47 - 000000779 _____ () C:\Users\wawker\AppData\Roaming\gdscan.log
- Niektóre pliki w TEMP:
- ====================
- 2018-04-30 20:39 - 2019-01-11 20:08 - 000035680 _____ () C:\Users\wawker\AppData\Local\Temp\i4jdel0.exe
- 2018-12-06 22:12 - 2018-11-29 17:19 - 000640880 _____ (NVIDIA Corporation) C:\Users\wawker\AppData\Local\Temp\nvSCPAPI.dll
- 2018-12-06 22:12 - 2018-11-29 17:19 - 000730480 _____ (NVIDIA Corporation) C:\Users\wawker\AppData\Local\Temp\nvSCPAPI64.dll
- 2018-12-06 22:09 - 2018-11-29 17:19 - 000395632 _____ (NVIDIA Corporation) C:\Users\wawker\AppData\Local\Temp\nvStInst.exe
- ==================== Bamital & volsnap ======================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
- C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
- C:\Windows\explorer.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
- C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
- C:\Windows\system32\services.exe => Plik podpisany cyfrowo
- C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
- C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
- C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
- C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
- C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
- LastRegBack: 2018-04-30 19:38
- ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement