Guest User

FRST

a guest
May 28th, 2018
546
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 156.05 KB | None | 0 0
  1. Rezultaty skanu uzupełniającego Farbar Recovery Scan Tool (x64) Wersja: 16.05.2018 01
  2. Uruchomiony przez maro (28-05-2018 08:34:00)
  3. Uruchomiony z F:\
  4. Windows 10 Home Wersja 1803 17134.48 (X64) (2018-05-13 20:20:08)
  5. Tryb startu: Normal
  6. ==========================================================
  7.  
  8.  
  9. ==================== Konta użytkowników: =============================
  10.  
  11. Administrator (S-1-5-21-2733974409-696436795-1696199612-500 - Administrator - Disabled)
  12. Gość (S-1-5-21-2733974409-696436795-1696199612-501 - Limited - Disabled)
  13. Konto domyślne (S-1-5-21-2733974409-696436795-1696199612-503 - Limited - Disabled)
  14. maro (S-1-5-21-2733974409-696436795-1696199612-1004 - Administrator - Enabled) => C:\Users\maro
  15. WDAGUtilityAccount (S-1-5-21-2733974409-696436795-1696199612-504 - Limited - Disabled)
  16.  
  17. ==================== Centrum zabezpieczeń ========================
  18.  
  19. (Załączenie wejścia w fixlist spowoduje jego usunięcie.)
  20.  
  21. AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  22. AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
  23.  
  24. ==================== Zainstalowane programy ======================
  25.  
  26. (W fixlist dozwolone tylko załączanie programów adware z flagą "Hidden" w celu ich uwidocznienia. Programy adware powinny zostać w poprawny sposób odinstalowane.)
  27.  
  28. µTorrent (HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\uTorrent) (Version: 3.5.3.44396 - BitTorrent Inc.)
  29. 1400 (HKLM-x32\...\{0919D141-CCBC-4751-997D-E022345643BE}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
  30. 1400_Help (HKLM-x32\...\{6FBE200D-1F00-40B7-BF48-FEB265AADE94}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
  31. 1400Trb (HKLM-x32\...\{6A3C2391-BCE2-4D28-A336-73B953B4502F}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
  32. 64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
  33. 7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
  34. Adobe Flash Player 29 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 29.0.0.113 - Adobe Systems Incorporated)
  35. AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
  36. AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
  37. AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
  38. AudioFXSetup (HKLM\...\{1FE5ADE2-823B-4E4C-A2D3-063822B3C794}) (Version: 1.2.1201 - Nahimic) Hidden
  39. Brother MFL-Pro Suite DCP-T500W (HKLM-x32\...\{BA07A125-6AC7-4293-89D6-391676FFD041}) (Version: 1.0.2.0 - Brother Industries, Ltd.)
  40. BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
  41. CCleaner (HKLM\...\CCleaner) (Version: 5.32 - Piriform)
  42. Cent Browser (HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\CentBrowser) (Version: 2.9.4.39 - Cent Studio)
  43. Cheat Engine 6.7 (HKLM-x32\...\Cheat Engine 6.7_is1) (Version: - Cheat Engine)
  44. CheckDevicesConfigurator (HKLM\...\{85334C6B-E4CF-4A3C-8FE2-AF73D5DB9827}) (Version: 1.2.1201 - Nahimic) Hidden
  45. Company of Heroes 2 (HKLM-x32\...\Company of Heroes 2_is1) (Version: - )
  46. Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
  47. Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
  48. DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
  49. e-pity 9.3.4 za rok 2017 (HKLM-x32\...\{80D8170E-5590-218-B9ED-E24E4C99A11D}_is1) (Version: 9.3.4 - e-file sp. z o.o. sp.k.)
  50. f.lux (HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\Flux) (Version: - f.lux Software LLC)
  51. Fallout 4 GOTY version 1.10.82.0 (HKLM-x32\...\Fallout 4 GOTY_is1) (Version: 1.10.82.0 - Mr DJ)
  52. Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
  53. Gadwin PrintScreen (64-Bit) (HKLM\...\{6813FA49-DFC4-4F58-910D-ED39C2BD979B}) (Version: 5.8.0.0 - Gadwin Systems)
  54. HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
  55. HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
  56. Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1025 - Intel Corporation)
  57. Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1519.7 - Intel Corporation)
  58. Intel(R) Update Manager (HKLM-x32\...\{89E5F369-612A-4A5E-8BF2-7938C76ABF29}) (Version: 3.0.135 - Intel Corporation)
  59. Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
  60. Intel® Small Business Advantage (HKLM-x32\...\{6A6D86CD-B004-46b7-8951-7BB75A776F8C}) (Version: 3.1.53.8739 - Intel(R) Corporation)
  61. Intel® Small Business Advantage (HKLM-x32\...\{C7A82877-2365-4A03-B23F-DFDD629B7F3A}) (Version: 4.0.44 - Intel Corporation)
  62. Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
  63. JPEXS Free Flash Decompiler (HKLM-x32\...\{E618D276-6596-41F4-8A98-447D442A77DB}_is1) (Version: 11.0.0 - JPEXS)
  64. LauncherSetup (HKLM\...\{E9A24BF9-2AD3-46BE-A9AF-4DED8EBC124E}) (Version: 1.2.1201 - Nahimic) Hidden
  65. LOOT version 0.12.5 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.12.5 - LOOT Team)
  66. Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProPlusRetail - en-us) (Version: 16.0.9226.2156 - Microsoft Corporation)
  67. Microsoft Office Professional Plus 2016 - pl-pl (HKLM\...\ProPlusRetail - pl-pl) (Version: 16.0.9226.2156 - Microsoft Corporation)
  68. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
  69. Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
  70. Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
  71. Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
  72. Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
  73. Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
  74. Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
  75. Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
  76. Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
  77. Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
  78. MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
  79. MSI Live Update 6 (HKLM-x32\...\{4F46CF54-47D2-41F4-B230-B0954C544420}}_is1) (Version: 6.1.021 - MSI)
  80. Nahimic for MSI (HKLM-x32\...\{0c311339-9de4-4dd7-b21d-3dcfa3a2946f}) (Version: 1.2.12 - Nahimic)
  81. NahimicSettingsConfigurator (HKLM\...\{5FFC5E3A-4A2B-4201-9132-5ED5A0453797}) (Version: 1.2.1201 - Nahimic) Hidden
  82. Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
  83. Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.65.2 - Black Tree Gaming)
  84. Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5 - Notepad++ Team)
  85. NVIDIA Oprogramowanie systemu PhysX 9.16.0318 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.16.0318 - NVIDIA Corporation)
  86. NVIDIA Sterownik 3D Vision 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 388.13 - NVIDIA Corporation)
  87. NVIDIA Sterownik dźwięku HD 1.3.35.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.35.1 - NVIDIA Corporation)
  88. NVIDIA Sterownik graficzny 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 388.13 - NVIDIA Corporation)
  89. NVIDIA Sterownik kontrolera 3D Vision 369.04 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 369.04 - NVIDIA Corporation)
  90. Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.9226.2156 - Microsoft Corporation) Hidden
  91. Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.9226.2156 - Microsoft Corporation) Hidden
  92. Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.9226.2156 - Microsoft Corporation) Hidden
  93. Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0415-1000-0000000FF1CE}) (Version: 16.0.9226.2156 - Microsoft Corporation) Hidden
  94. Online Application (HKLM-x32\...\{5266F634-7B7D-4537-BDDC-98DD6CFCBAA1}) (Version: 2.7.0 - Microleaves) Hidden <==== UWAGA
  95. OpenAL (HKLM-x32\...\OpenAL) (Version: - )
  96. Oprogramowanie mikroukładu Intel® (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
  97. Panel sterowania NVIDIA 388.13 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 388.13 - NVIDIA Corporation) Hidden
  98. PDF-Viewer (HKLM\...\{A278382D-4F1B-4D47-9885-8523F7261E8D}_is1) (Version: 2.5.322.5 - Tracker Software Products Ltd)
  99. ProductDaemonSetup (HKLM\...\{79CB3FC2-E67A-4C4F-8C24-874DCD38199A}) (Version: 1.2.1201 - Nahimic) Hidden
  100. Python 3.6.4 (32-bit) (HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\{9218130b-5ad0-4cf7-82be-6993cfd6cb84}) (Version: 3.6.4150.0 - Python Software Foundation)
  101. Python 3.6.4 Core Interpreter (32-bit) (HKLM-x32\...\{D188614B-E656-4EF1-9F5A-23559EBE8F5A}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  102. Python 3.6.4 Development Libraries (32-bit) (HKLM-x32\...\{C3797E33-967D-4687-8F1A-9DE771A00125}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  103. Python 3.6.4 Documentation (32-bit) (HKLM-x32\...\{E09874D3-E898-4AB6-B043-EE24DF786088}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  104. Python 3.6.4 Executables (32-bit) (HKLM-x32\...\{47A75DB9-F3F5-4697-9261-DBA5162DBB9E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  105. Python 3.6.4 pip Bootstrap (32-bit) (HKLM-x32\...\{54142B43-2FA5-4BBA-BF03-27C10EB50C1E}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  106. Python 3.6.4 Standard Library (32-bit) (HKLM-x32\...\{2832768E-9BCA-4421-950C-7186B3BDFC45}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  107. Python 3.6.4 Tcl/Tk Support (32-bit) (HKLM-x32\...\{20888FA1-8127-42E3-969F-9BF93245AC83}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  108. Python 3.6.4 Test Suite (32-bit) (HKLM-x32\...\{D14FB2FA-51B2-415C-93BF-5053102235EE}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  109. Python 3.6.4 Utility Scripts (32-bit) (HKLM-x32\...\{D0730E44-E519-4F39-B926-E2FC0449D67C}) (Version: 3.6.4150.0 - Python Software Foundation) Hidden
  110. Python Launcher (HKLM-x32\...\{B42FF40A-60D4-4096-AC47-C86153D72797}) (Version: 3.6.6196.0 - Python Software Foundation)
  111. Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7885 - Realtek Semiconductor Corp.)
  112. Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
  113. Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
  114. System Table (HKLM-x32\...\System Table_is1) (Version: - )
  115. Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
  116. Tower of Time (HKLM-x32\...\Tower of Time_is1) (Version: - )
  117. TP-LINK TL-WN881ND Driver (HKLM-x32\...\{FDA7E907-6539-42C1-9721-0239C281B336}) (Version: 1.3.1 - TP-LINK)
  118. TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
  119. UIInstallUpgrade (HKLM\...\{DEB82682-EF4C-4D3D-AEE0-51B62FEFDD21}) (Version: 1.2.1201 - Nahimic) Hidden
  120. Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
  121. WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
  122. WhatsApp (HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\WhatsApp) (Version: 0.2.6968 - WhatsApp)
  123. Winamp (HKLM-x32\...\Winamp) (Version: 5.666 - Nullsoft, Inc)
  124. YoutubeAdBlock (HKLM-x32\...\E3605470-291B-44EB-8648-745EE356599A) (Version: 2.0.0.541 - Company Inc.) <==== UWAGA
  125.  
  126. ==================== Niestandardowe rejestracje CLSID (filtrowane): ==========================
  127.  
  128. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  129.  
  130. ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
  131. ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
  132. ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => F:\Notepad++\NppShell_06.dll [2017-08-15] ()
  133. ContextMenuHandlers3: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku
  134. ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
  135. ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2017-10-27] (NVIDIA Corporation)
  136. ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov)
  137.  
  138. ==================== Zaplanowane zadania (filtrowane) =============
  139.  
  140. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  141.  
  142. Task: {095AB15E-9C81-482C-8B89-12D4F3016D9E} - System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
  143. Task: {20BAD7FA-0048-47F4-AF24-E94E863EBB6B} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-12] (Microsoft Corporation)
  144. Task: {2D571C8D-2C5C-46AE-A106-3BC7F6B8C105} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2733974409-696436795-1696199612-1004 => C:\Users\maro\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
  145. Task: {2E551A8D-9151-4D87-89A5-A1248A52FFDF} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-05-21] (Microsoft Corporation)
  146. Task: {3905B444-EDD6-4F32-9309-B66AFE04046D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation)
  147. Task: {3ABDD550-9BAF-4C1B-9FC3-F117E66D6CF0} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-05-12] (Microsoft Corporation)
  148. Task: {3C829382-C543-43F3-885B-38256FCC1988} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-05-29] ()
  149. Task: {487CF29F-C985-47AE-84DB-7FF66578471C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2018-05-21] (Microsoft Corporation)
  150. Task: {4F9736B9-68C8-48D2-8B94-10115F7FA46C} - \Microsoft\Windows\UNP\RunCampaignManager -> Brak pliku <==== UWAGA
  151. Task: {630AC73E-81DD-4F88-AD06-6A26D8F2BBC7} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-07-26] (Intel(R) Corporation)
  152. Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\WINDOWS\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
  153. Task: {768788A2-2194-420B-A84D-DF0C27C0EFF3} - System32\Tasks\NahimicMSIsvc32Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIsvc32.exe [2015-12-04] ()
  154. Task: {78BBD74E-4FF0-4D48-BFE7-431CF268C9A9} - System32\Tasks\{019149B5-28B3-4D91-A2E7-AD81B91E7D02} => C:\WINDOWS\system32\pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{E70DB50B-10B4-46BC-9DE2-AB8B49E061EE}\PerformanceSuite.exe" -c -remove -runfromtemp
  155. Task: {7BD16E14-5FBF-4A68-9F9E-81C6FB65C198} - System32\Tasks\NahimicMSIUILauncherRun => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [2015-12-04] ()
  156. Task: {7CC54AB4-B9E8-43B0-9158-0B36666939A0} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [2015-05-29] ()
  157. Task: {8784AE71-91F1-4A9C-B0BE-5627D141E86C} - System32\Tasks\NahimicMSIsvc64Run => C:\Program Files\Nahimic\NahimicMSI\UserInterface\x64\NahimicMSIsvc64.exe [2015-12-04] ()
  158. Task: {92607F0D-32F4-4DBC-8132-144FED4DE048} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation)
  159. Task: {92819FA6-8AA2-44BC-8FE4-D67E3A50E922} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation)
  160. Task: {9D359044-3963-4430-8F4E-E0A0B89D5ED1} - System32\Tasks\CCleanerSkipUAC => E:\CCleaner\CCleaner.exe [2017-06-30] (Piriform Ltd)
  161. Task: {A09CD147-1336-46A7-BBA5-A74F3ADC6E5D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MpCmdRun.exe [2018-04-25] (Microsoft Corporation)
  162. Task: {A21E145D-D254-4FCB-91B5-6A78B0118908} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2017-08-18] (NVIDIA Corporation)
  163. Task: {C058E22E-7DFD-4A5D-A296-456B8D068AA4} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
  164. Task: {CA629667-5308-497C-BEC7-3F962295E273} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2017-08-18] (NVIDIA Corporation)
  165. Task: {D307241E-F920-4734-8956-5094E65FB9BE} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [2018-05-21] (Microsoft Corporation)
  166. Task: {D3079382-EED2-4845-8D5E-E2C12DA7577B} - System32\Tasks\Intel(R) Small Business Advantage\Notifier => C:\Program Files\Intel\Intel(R) Small Business Advantage\UI\SBA_Notifier.exe [2015-06-04] (Intel Corporation)
  167. Task: {D8E232C3-619B-4047-B5AE-E7BD94482584} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-05-21] (Microsoft Corporation)
  168. Task: {DDBA8288-9832-46AF-8DBE-8B8A8447A91A} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2017-08-18] (NVIDIA Corporation)
  169. Task: {DE493D15-B701-4F11-BD4A-958E2FE4199F} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [2015-08-18] (MSI)
  170. Task: {DEB4DB56-9641-4FDB-9310-8DC23098BD3F} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
  171. Task: {E40FE246-6B48-4260-B5A5-AB7FDCDD73F3} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
  172. Task: {FA0B11EA-A149-4440-8557-AF51A914BC11} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
  173.  
  174. (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.)
  175.  
  176. Task: C:\WINDOWS\Tasks\MSIOSDx64_Host.job => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
  177. Task: C:\WINDOWS\Tasks\MSIOSDx86_Host.job => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
  178. Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWoW64\muachost.exe
  179.  
  180. ==================== Skróty & WMI ========================
  181.  
  182. (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
  183.  
  184.  
  185. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Сеnt Вrоwser.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku) <==== Cyrillic
  186. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Еxplоrеr.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.erolpxei.bat (Brak pliku) <==== Cyrillic
  187. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\6f9cb17000d7fedd\Сent Вrowser.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku) <==== Cyrillic
  188. Shortcut: C:\Users\Public\Desktop\Вrоther Utilitiеs.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.rehcnualrb.bat (Brak pliku) <==== Cyrillic
  189.  
  190. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\6f9cb17000d7fedd\Cent Browser.lnk -> E:\CentBrowser\CentBrowser\Application\chrome.exe (Dan Deng) -> --profile-directory="Profile 1"
  191.  
  192. ==================== Załadowane moduły (filtrowane) ==============
  193.  
  194. 2015-05-19 09:11 - 2015-05-19 09:11 - 000007680 _____ () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
  195. 2017-12-05 23:26 - 2005-04-22 06:36 - 000143360 _____ () C:\WINDOWS\system32\BrSNMP64.dll
  196. 2018-05-28 00:11 - 2018-05-22 18:24 - 006232185 _____ () C:\ProgramData\Microsoft\Windows\WNetworkMgmt\WNetworkMgmt.exe
  197. 2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
  198. 2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
  199. 2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
  200. 2017-08-15 23:20 - 2017-08-15 23:20 - 000230064 _____ () F:\Notepad++\NppShell_06.dll
  201. 2018-04-12 01:35 - 2018-04-12 17:53 - 002184704 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
  202. 2018-05-28 08:23 - 2018-05-28 08:23 - 000776704 _____ () C:\Users\maro\AppData\Local\Temp\is-28N4F.tmp\tvbpugmu5zr.tmp
  203. 2018-05-28 08:23 - 2018-05-28 08:23 - 000776704 _____ () C:\Users\maro\AppData\Local\Temp\is-FMDO1.tmp\2sd5l54wrxi.tmp
  204. 2017-10-02 17:41 - 2017-10-01 14:27 - 004195384 _____ () E:\CentBrowser\CentBrowser\Application\2.9.4.39\libglesv2.dll
  205. 2017-10-02 17:41 - 2017-10-01 14:27 - 000102968 _____ () E:\CentBrowser\CentBrowser\Application\2.9.4.39\libegl.dll
  206. 2016-09-29 22:07 - 2005-07-18 13:43 - 000160256 _____ () C:\Program Files (x86)\MSI\Live Update\unrar.dll
  207. 2018-05-28 08:23 - 2018-05-28 08:23 - 000024240 _____ () C:\Users\maro\AppData\Local\Temp\is-U5RJG.tmp\_isetup\_isdecmp.dll
  208. 2018-05-28 08:23 - 2008-10-15 17:44 - 000205312 _____ () C:\Users\maro\AppData\Local\Temp\is-U5RJG.tmp\itdownload.dll
  209. 2018-05-28 08:23 - 2018-05-28 08:23 - 000024240 _____ () C:\Users\maro\AppData\Local\Temp\is-RHE31.tmp\_isetup\_isdecmp.dll
  210. 2018-05-28 08:23 - 2008-10-15 17:44 - 000205312 _____ () C:\Users\maro\AppData\Local\Temp\is-RHE31.tmp\itdownload.dll
  211. 2016-08-30 01:19 - 2016-08-30 01:19 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
  212.  
  213. ==================== Alternate Data Streams (filtrowane) =========
  214.  
  215. (Załączenie wejścia w fixlist spowoduje usunięcie strumienia ADS.)
  216.  
  217.  
  218. ==================== Tryb awaryjny (filtrowane) ===================
  219.  
  220. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Wartość "AlternateShell" zostanie przywrócona.)
  221.  
  222.  
  223. ==================== Powiązania plików (filtrowane) ===============
  224.  
  225. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci.)
  226.  
  227.  
  228. ==================== Internet Explorer - Witryny zaufane i z ograniczeniami ===============
  229.  
  230. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru.)
  231.  
  232.  
  233. ==================== Hosts - zawartość: ===============================
  234.  
  235. (Użycie dyrektywy Hosts: w fixlist spowoduje reset pliku Hosts.)
  236.  
  237. 2015-10-30 09:24 - 2018-05-28 00:32 - 000094876 _____ C:\WINDOWS\system32\Drivers\etc\hosts
  238.  
  239. 127.0.0.1 localhost
  240.  
  241. ==================== Inne obszary ============================
  242.  
  243. (Obecnie brak automatycznej naprawy dla tej sekcji.)
  244.  
  245. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\Control Panel\Desktop\\Wallpaper -> E:\Dokumenty\Tapety\cristal_clear_mountain_lake-wallpaper-1920x1080.jpg
  246. DNS Servers: Urządzenie nie jest podłączone do internetu.
  247. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
  248. HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
  249. Zapora systemu Windows [funkcja włączona]
  250.  
  251. ==================== MSCONFIG/TASK MANAGER - Wyłączone elementy ==
  252.  
  253. HKLM\...\StartupApproved\StartupFolder: => "Killer Network Manager.lnk"
  254. HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
  255. HKLM\...\StartupApproved\Run: => "SecurityHealth"
  256. HKLM\...\StartupApproved\Run: => "NahimicMSIUILauncher"
  257. HKLM\...\StartupApproved\Run: => "ShadowPlay"
  258. HKLM\...\StartupApproved\Run: => "WindowsDefender"
  259. HKLM\...\StartupApproved\Run32: => "Live Update"
  260. HKLM\...\StartupApproved\Run32: => "MSIRegister"
  261. HKLM\...\StartupApproved\Run32: => "IMSS"
  262. HKLM\...\StartupApproved\Run32: => "Super Charger"
  263. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\StartupApproved\Run: => "OneDrive"
  264.  
  265. ==================== Reguły Zapory systemu Windows (filtrowane) ===============
  266.  
  267. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  268.  
  269. FirewallRules: [UDP Query User{FD9E1BD7-CE65-4A87-83EB-70B508B8AA01}E:\gry\company of heroes 2\reliccoh2.exe] => (Block) E:\gry\company of heroes 2\reliccoh2.exe
  270. FirewallRules: [TCP Query User{C67D69C0-53EF-4422-85AD-417B5B7B4224}E:\gry\company of heroes 2\reliccoh2.exe] => (Block) E:\gry\company of heroes 2\reliccoh2.exe
  271. FirewallRules: [{84C6DBE6-696A-4E39-A60B-3C79D1A6FD88}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
  272. FirewallRules: [{DDFEB754-3B4F-4C35-815C-0DAF9102CB90}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
  273. FirewallRules: [{878602AA-E6A0-4A2A-BDF0-B09E51B09238}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe
  274. FirewallRules: [UDP Query User{57E07912-C72B-4046-851A-7A12134E7D9D}C:\program files (x86)\java\jre1.8.0_151\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\jp2launcher.exe
  275. FirewallRules: [TCP Query User{878BD3E9-7A47-44BD-9B8F-018452BCF70E}C:\program files (x86)\java\jre1.8.0_151\bin\jp2launcher.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_151\bin\jp2launcher.exe
  276. FirewallRules: [UDP Query User{3D1254F8-16FC-4339-A949-DF1E5958F1E1}E:\centbrowser\centbrowser\application\chrome.exe] => (Allow) E:\centbrowser\centbrowser\application\chrome.exe
  277. FirewallRules: [TCP Query User{723E4249-07A9-460E-B3EE-95EE48C90720}E:\centbrowser\centbrowser\application\chrome.exe] => (Allow) E:\centbrowser\centbrowser\application\chrome.exe
  278. FirewallRules: [{A139781F-0938-496A-9999-BCE54E87FBEA}] => (Allow) LPort=54925
  279. FirewallRules: [{A5D5F748-94E3-4899-8755-0D8A9E6CC4FB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe
  280. FirewallRules: [{FEA533A2-A7CE-4836-9A82-C57A22EB4C3A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe
  281. FirewallRules: [{33862EC3-5732-44DC-A5F2-202EA7CF0AB8}] => (Allow) C:\Users\maro\AppData\Roaming\uTorrent\uTorrent.exe
  282. FirewallRules: [{5BF134D1-7A30-457D-AE2D-87BAD8363508}] => (Allow) C:\Users\maro\AppData\Roaming\uTorrent\uTorrent.exe
  283. FirewallRules: [{36340E82-581D-4521-9770-2DE227E011E3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe
  284. FirewallRules: [{7A6119B9-65E4-40D5-BD0C-5C6088BFE93B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe
  285. FirewallRules: [{DB793729-DAD5-42E6-BB46-7D205A5EE496}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe
  286. FirewallRules: [{6055E416-1980-4B93-97D9-0F1CAD6CBA1B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe
  287. FirewallRules: [{38D053DD-844E-4FB8-AF4E-96A709425E5E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe
  288. FirewallRules: [{0605A85A-9C1D-4A19-B3AF-4C9D313B37F3}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe
  289. FirewallRules: [{81A0FC50-C162-46E1-AC22-8CC12D5B1D8F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe
  290. FirewallRules: [{605F05FE-E9CC-428F-A855-A958CEE62A5E}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
  291. FirewallRules: [{FD80DFB7-04F8-4604-88FE-F71D9B6DCED9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe
  292. FirewallRules: [{848BA282-32A1-4D2F-9471-0221B5C75EAF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe
  293. FirewallRules: [{4E0B7E82-5527-44C5-B7E6-4880A24433F2}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe
  294. FirewallRules: [{F06560DC-0D15-4329-B644-FBE6BE204CFF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe
  295. FirewallRules: [{AAD37DE6-F2E7-4ED7-B772-0DB30DE944C8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe
  296. FirewallRules: [{52807D15-98A0-42A0-9410-92DCF438739F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe
  297. FirewallRules: [{89E22D1D-BD18-489C-AA4B-C4D948BEE62D}] => (Allow) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage Next\Sba.exe
  298. FirewallRules: [{651A89FD-F3AE-4C58-874C-2F9AD8219292}] => (Allow) E:\Winamp\winamp.exe
  299. FirewallRules: [{60302C6D-51A9-4E39-AFB2-7129905E2C63}] => (Allow) E:\Winamp\winamp.exe
  300. FirewallRules: [{C1C07F57-8640-46DD-9B2F-86D24639F641}] => (Allow) LPort=26789
  301. FirewallRules: [TCP Query User{970529C5-C198-4A15-9DA7-EDA477649B99}F:\pobrane gry\judgment.apocalypse.survival.simulation\judgment\judgment.exe] => (Block) F:\pobrane gry\judgment.apocalypse.survival.simulation\judgment\judgment.exe
  302. FirewallRules: [UDP Query User{998E2E68-83A9-45F7-912F-A7BF73165500}F:\pobrane gry\judgment.apocalypse.survival.simulation\judgment\judgment.exe] => (Block) F:\pobrane gry\judgment.apocalypse.survival.simulation\judgment\judgment.exe
  303. FirewallRules: [{6AA7E01B-4513-4899-AC3E-5254BF664844}] => (Allow) C:\Fallout 4 GOTY\Fallout4.exe
  304. FirewallRules: [{DA57CDF7-FE9A-4F82-9022-9F8D2D29EC93}] => (Allow) C:\Fallout 4 GOTY\Fallout4.exe
  305. FirewallRules: [{5F1A1C7F-06F6-4A13-A7B3-F9145E5BA8B1}] => (Allow) C:\Fallout 4 GOTY\Fallout4Launcher.exe
  306. FirewallRules: [{223EA642-0AB2-4610-8A9F-526A96CACFB2}] => (Allow) C:\Fallout 4 GOTY\Fallout4Launcher.exe
  307. FirewallRules: [TCP Query User{454CD8A1-FE8C-4CCD-9069-2BED8908285B}C:\fallout 4 goty\creationkit.exe] => (Block) C:\fallout 4 goty\creationkit.exe
  308. FirewallRules: [UDP Query User{1E9435A1-CB89-4C09-BCE5-DD7334C9C2D8}C:\fallout 4 goty\creationkit.exe] => (Block) C:\fallout 4 goty\creationkit.exe
  309.  
  310. ==================== Punkty Przywracania systemu =========================
  311.  
  312. 14-05-2018 22:00:29 Windows Update
  313. 22-05-2018 18:05:03 Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215
  314. 23-05-2018 22:28:05 Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215
  315.  
  316. ==================== Wadliwe urządzenia w Menedżerze urządzeń =============
  317.  
  318. Name: Standardowa klawiatura PS/2
  319. Description: Standardowa klawiatura PS/2
  320. Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
  321. Manufacturer: (Klawiatury standardowe)
  322. Service: i8042prt
  323. Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
  324. Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
  325. Devices stay in this state if they have been prepared for removal.
  326. After you remove the device, this error disappears.Remove the device, and this error should be resolved.
  327.  
  328. Name: Mysz Microsoft PS/2
  329. Description: Mysz Microsoft PS/2
  330. Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
  331. Manufacturer: Microsoft
  332. Service: i8042prt
  333. Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
  334. Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
  335. Devices stay in this state if they have been prepared for removal.
  336. After you remove the device, this error disappears.Remove the device, and this error should be resolved.
  337.  
  338.  
  339. ==================== Błędy w Dzienniku zdarzeń: =========================
  340.  
  341. Dziennik Aplikacja:
  342. ==================
  343. Error: (05/28/2018 12:13:42 AM) (Source: Application Error) (EventID: 1000) (User: )
  344. Description: Nazwa aplikacji powodującej błąd: v8dq2esy.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
  345. Nazwa modułu powodującego błąd: v8dq2esy.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
  346. Kod wyjątku: 0xc0000005
  347. Przesunięcie błędu: 0x0008dd21
  348. Identyfikator procesu powodującego błąd: 0x1f04
  349. Godzina uruchomienia aplikacji powodującej błąd: 0x01d3f607326c7ca3
  350. Ścieżka aplikacji powodującej błąd: F:\v8dq2esy.exe
  351. Ścieżka modułu powodującego błąd: F:\v8dq2esy.exe
  352. Identyfikator raportu: 18e62334-1088-45c1-9978-fff8ec95390b
  353. Pełna nazwa pakietu powodującego błąd:
  354. Identyfikator aplikacji względem pakietu powodującego błąd:
  355.  
  356. Error: (05/28/2018 12:10:41 AM) (Source: Application Error) (EventID: 1000) (User: )
  357. Description: Nazwa aplikacji powodującej błąd: system.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5b0a3757
  358. Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000
  359. Kod wyjątku: 0xc0000005
  360. Przesunięcie błędu: 0x00000000
  361. Identyfikator procesu powodującego błąd: 0x26f0
  362. Godzina uruchomienia aplikacji powodującej błąd: 0x01d3f6077de68eac
  363. Ścieżka aplikacji powodującej błąd: C:\Users\maro\AppData\Local\Temp\we3zibwx5me\system.exe
  364. Ścieżka modułu powodującego błąd: unknown
  365. Identyfikator raportu: 1bdcd47e-63dc-4759-9448-ab8c44f5c59e
  366. Pełna nazwa pakietu powodującego błąd:
  367. Identyfikator aplikacji względem pakietu powodującego błąd:
  368.  
  369. Error: (05/28/2018 12:02:57 AM) (Source: Application Error) (EventID: 1000) (User: )
  370. Description: Nazwa aplikacji powodującej błąd: v8dq2esy.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
  371. Nazwa modułu powodującego błąd: v8dq2esy.exe, wersja: 2.2.19882.0, sygnatura czasowa: 0x56e2cdca
  372. Kod wyjątku: 0xc0000005
  373. Przesunięcie błędu: 0x0001d061
  374. Identyfikator procesu powodującego błąd: 0x73c
  375. Godzina uruchomienia aplikacji powodującej błąd: 0x01d3f604d9747138
  376. Ścieżka aplikacji powodującej błąd: F:\v8dq2esy.exe
  377. Ścieżka modułu powodującego błąd: F:\v8dq2esy.exe
  378. Identyfikator raportu: abda91a9-9005-481b-bf1c-e6837fa30e75
  379. Pełna nazwa pakietu powodującego błąd:
  380. Identyfikator aplikacji względem pakietu powodującego błąd:
  381.  
  382. Error: (05/27/2018 11:44:55 PM) (Source: SideBySide) (EventID: 33) (User: )
  383. Description: Nie można wygenerować kontekstu aktywacji dla "C:\$Recycle.Bin\S-1-5-21-2733974409-696436795-1696199612-1004\$RPQ6T48.exe".
  384. Nie można odnaleźć zestawu zależnego 2.9.4.39,language="&#x2a;",type="win32",version="2.9.4.39".
  385. Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
  386.  
  387. Error: (05/27/2018 11:44:38 PM) (Source: SideBySide) (EventID: 33) (User: )
  388. Description: Nie można wygenerować kontekstu aktywacji dla "C:\Users\maro\AppData\Roaming\Browsers\chrome.bat.exe".
  389. Nie można odnaleźć zestawu zależnego 2.9.4.39,language="&#x2a;",type="win32",version="2.9.4.39".
  390. Użyj narzędzia sxstrace.exe, aby uzyskać szczegółową diagnozę.
  391.  
  392. Error: (05/27/2018 11:40:20 PM) (Source: Perflib) (EventID: 1023) (User: )
  393. Description: System Windows nie może załadować biblioteki DLL licznika rozszerzalnego rdyboost. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod błędu systemu Windows.
  394.  
  395. Error: (05/27/2018 11:40:20 PM) (Source: Perflib) (EventID: 1008) (User: )
  396. Description: Nie powiodło się wykonanie procedury otwierania dla usługi „BITS” w bibliotece DLL „C:\Windows\System32\bitsperf.dll”. Dane wydajności dla tej usługi nie będą dostępne. Pierwsze cztery bajty (DWORD) sekcji danych Data zawierają kod błędu.
  397.  
  398. Error: (05/27/2018 11:38:40 PM) (Source: Application Error) (EventID: 1000) (User: )
  399. Description: Nazwa aplikacji powodującej błąd: g4sh2vq302d.exe, wersja: 0.0.0.0, sygnatura czasowa: 0x5b0a3780
  400. Nazwa modułu powodującego błąd: unknown, wersja: 0.0.0.0, sygnatura czasowa: 0x00000000
  401. Kod wyjątku: 0xc0000005
  402. Przesunięcie błędu: 0x00000000
  403. Identyfikator procesu powodującego błąd: 0x2484
  404. Godzina uruchomienia aplikacji powodującej błąd: 0x01d3f60309bf46ab
  405. Ścieżka aplikacji powodującej błąd: C:\Users\maro\AppData\Local\Temp\skaovp3vksm\g4sh2vq302d.exe
  406. Ścieżka modułu powodującego błąd: unknown
  407. Identyfikator raportu: 3aea9e70-83ac-48c7-b7c3-293db714ab4b
  408. Pełna nazwa pakietu powodującego błąd:
  409. Identyfikator aplikacji względem pakietu powodującego błąd:
  410.  
  411.  
  412. Dziennik System:
  413. =============
  414. Error: (05/28/2018 08:24:48 AM) (Source: DCOM) (EventID: 10016) (User: ZARZĄDZANIE NT)
  415. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Uruchom do aplikacji serwera COM z identyfikatorem klasy CLSID
  416. Windows.SecurityCenter.WscDataProtection
  417. i identyfikatorem aplikacji APPID
  418. Niedostępny
  419. użytkownikowi ZARZĄDZANIE NT\SYSTEM o identyfikatorze zabezpieczeń SID (S-1-5-18) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  420.  
  421. Error: (05/28/2018 08:23:04 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-09FFBFH)
  422. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
  423. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  424. i identyfikatorem aplikacji APPID
  425. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  426. użytkownikowi DESKTOP-09FFBFH\maro o identyfikatorze zabezpieczeń SID (S-1-5-21-2733974409-696436795-1696199612-1004) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  427.  
  428. Error: (05/28/2018 08:22:52 AM) (Source: BugCheck) (EventID: 1001) (User: )
  429. Description: Nastąpił ponowny rozruch komputera po operacji wykrywania błędów. Wyniki tej operacji były następujące: 0x000000d1 (0xffffa08138d78010, 0x00000000000000ff, 0x0000000000000000, 0xfffff80f0fe98bc8). Zrzut zapisano w: C:\WINDOWS\MEMORY.DMP. Identyfikator raportu: 43617555-6d8f-43fc-a531-ee9ce94c372c.
  430.  
  431. Error: (05/28/2018 08:22:45 AM) (Source: EventLog) (EventID: 6008) (User: )
  432. Description: Poprzednie zamknięcie systemu przy 01:18:47 na ‎28.‎05.‎2018 było nieoczekiwane.
  433.  
  434. Error: (05/28/2018 08:15:07 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-09FFBFH)
  435. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
  436. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  437. i identyfikatorem aplikacji APPID
  438. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  439. użytkownikowi DESKTOP-09FFBFH\maro o identyfikatorze zabezpieczeń SID (S-1-5-21-2733974409-696436795-1696199612-1004) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  440.  
  441. Error: (05/28/2018 08:13:56 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-09FFBFH)
  442. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
  443. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  444. i identyfikatorem aplikacji APPID
  445. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  446. użytkownikowi DESKTOP-09FFBFH\maro o identyfikatorze zabezpieczeń SID (S-1-5-21-2733974409-696436795-1696199612-1004) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  447.  
  448. Error: (05/28/2018 08:13:04 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-09FFBFH)
  449. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
  450. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  451. i identyfikatorem aplikacji APPID
  452. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  453. użytkownikowi DESKTOP-09FFBFH\maro o identyfikatorze zabezpieczeń SID (S-1-5-21-2733974409-696436795-1696199612-1004) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  454.  
  455. Error: (05/28/2018 01:21:52 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-09FFBFH)
  456. Description: Zgodnie z ustawieniami uprawnienia właściwe dla aplikacji nie jest udzielane uprawnienie Lokalny Aktywacja do aplikacji serwera COM z identyfikatorem klasy CLSID
  457. {D63B10C5-BB46-4990-A94F-E40B9D520160}
  458. i identyfikatorem aplikacji APPID
  459. {9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
  460. użytkownikowi DESKTOP-09FFBFH\maro o identyfikatorze zabezpieczeń SID (S-1-5-21-2733974409-696436795-1696199612-1004) z adresu LocalHost (użycie LRPC) działającemu w kontenerze aplikacji o identyfikatorze SID Niedostępny (Niedostępny). To uprawnienie zabezpieczeń można modyfikować przy użyciu narzędzia administracyjnego Usługi składowe.
  461.  
  462.  
  463. Windows Defender:
  464. ===================================
  465. Date: 2018-05-28 01:13:12.232
  466. Description:
  467. Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
  468. Aby uzyskać więcej informacji, zobacz:
  469. https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:MSIL/AutoKMS&threatid=2147711767&enterprise=0
  470. Nazwa: HackTool:MSIL/AutoKMS
  471. Identyfikator: 2147711767
  472. Ważność: Wysoki
  473. Kategoria: Narzędzie
  474. Ścieżka: file:_F:\uTorrent\MICROSOFT Office PRO Plus 2016 v16.0.4266.1003 RTM + Activator [TechTools.NET]\KMSAuto Net 2015 v1.3.8 Portable\KMSAuto Net.exe->[MSILRES:KMSAuto_Net.Resources.resources]#9->(VFS:TunMirror.exe)
  475. Pochodzenie wykrycia: Komputer lokalny
  476. Typ wykrycia: Konkretne
  477. Źródło wykrycia: Ochrona w czasie rzeczywistym
  478. Użytkownik: DESKTOP-09FFBFH\maro
  479. Nazwa procesu: C:\Users\maro\AppData\Local\Temp\F4037A5E-97D5264-66F610EA-47D4B570\x21xVq3u.exe
  480. Wersja podpisu: AV: 1.269.149.0, AS: 1.269.149.0, NIS: 1.269.149.0
  481. Wersja aparatu: AM: 1.1.14901.4, NIS: 1.1.14901.4
  482.  
  483. Date: 2018-05-28 01:04:35.672
  484. Description:
  485. Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
  486. Aby uzyskać więcej informacji, zobacz:
  487. https://go.microsoft.com/fwlink/?linkid=37020&name=HackTool:MSIL/AutoKMS&threatid=2147711767&enterprise=0
  488. Nazwa: HackTool:MSIL/AutoKMS
  489. Identyfikator: 2147711767
  490. Ważność: Wysoki
  491. Kategoria: Narzędzie
  492. Ścieżka: file:_F:\uTorrent\MICROSOFT Office PRO Plus 2016 v16.0.4266.1003 RTM + Activator [TechTools.NET]\KMSAuto Net 2015 v1.3.8 Portable\KMSAuto Net.exe->[MSILRES:KMSAuto_Net.Resources.resources]#9->(VFS:TunMirror.exe)
  493. Pochodzenie wykrycia: Komputer lokalny
  494. Typ wykrycia: Konkretne
  495. Źródło wykrycia: Ochrona w czasie rzeczywistym
  496. Użytkownik: DESKTOP-09FFBFH\maro
  497. Nazwa procesu: C:\Users\maro\AppData\Local\Temp\F4037A5E-97D5264-66F610EA-47D4B570\x21xVq3u.exe
  498. Wersja podpisu: AV: 1.269.149.0, AS: 1.269.149.0, NIS: 1.269.149.0
  499. Wersja aparatu: AM: 1.1.14901.4, NIS: 1.1.14901.4
  500.  
  501. Date: 2018-05-28 00:11:30.329
  502. Description:
  503. Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
  504. Aby uzyskać więcej informacji, zobacz:
  505. https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/CoinMiner.CY&threatid=2147726391&enterprise=0
  506. Nazwa: Trojan:Win32/CoinMiner.CY
  507. Identyfikator: 2147726391
  508. Ważność: Poważny
  509. Kategoria: Koń trojański
  510. Ścieżka: clsid:_HKLM\SOFTWARE\CLASSES\CLSID\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};file:_C:\Windows\System32\mcicda64.dll;regkey:_HKLM\SOFTWARE\CLASSES\CLSID\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};regkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\SHELLEXECUTEHOOKS\\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};regkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\SHELLICONOVERLAYIDENTIFIERS\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};regkey:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHELL EXTENSIONS\APPROVED\\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};shellexechook:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\SHELLEXECUTEHOOKS\\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};shellextapproved:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\SHELL EXTENSIONS\APPROVED\\{BFD98515-CD74-48A4-98E2-13D209E3EE4F};shelliconoverlayid:_HKLM\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\EXPLORER\SHELLICONOVERLAYIDENTIFIERS\{BFD98515-CD74-48A4-98E2-13D209E3EE4F}
  511. Pochodzenie wykrycia: Komputer lokalny
  512. Typ wykrycia: Konkretne
  513. Źródło wykrycia: Ochrona w czasie rzeczywistym
  514. Użytkownik: DESKTOP-09FFBFH\maro
  515. Nazwa procesu: C:\Windows\explorer.exe
  516. Wersja podpisu: AV: 1.269.149.0, AS: 1.269.149.0, NIS: 1.269.149.0
  517. Wersja aparatu: AM: 1.1.14901.4, NIS: 1.1.14901.4
  518.  
  519. Date: 2018-05-28 00:10:48.871
  520. Description:
  521. Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
  522. Aby uzyskać więcej informacji, zobacz:
  523. https://go.microsoft.com/fwlink/?linkid=37020&name=Trojan:Win32/CoinMiner.CY&threatid=2147726391&enterprise=0
  524. Nazwa: Trojan:Win32/CoinMiner.CY
  525. Identyfikator: 2147726391
  526. Ważność: Poważny
  527. Kategoria: Koń trojański
  528. Ścieżka: file:_C:\Windows\System32\mcicda64.dll
  529. Pochodzenie wykrycia: Komputer lokalny
  530. Typ wykrycia: Konkretne
  531. Źródło wykrycia: Ochrona w czasie rzeczywistym
  532. Użytkownik: DESKTOP-09FFBFH\maro
  533. Nazwa procesu: C:\Windows\explorer.exe
  534. Wersja podpisu: AV: 1.269.149.0, AS: 1.269.149.0, NIS: 1.269.149.0
  535. Wersja aparatu: AM: 1.1.14901.4, NIS: 1.1.14901.4
  536.  
  537. Date: 2018-05-28 00:10:47.649
  538. Description:
  539. Produkt Program antywirusowy Windows Defender wykrył złośliwe oprogramowanie lub inne potencjalnie niechciane oprogramowanie.
  540. Aby uzyskać więcej informacji, zobacz:
  541. https://go.microsoft.com/fwlink/?linkid=37020&name=Ransom:Win32/GandCrab.AE&threatid=2147727082&enterprise=0
  542. Nazwa: Ransom:Win32/GandCrab.AE
  543. Identyfikator: 2147727082
  544. Ważność: Poważny
  545. Kategoria: Oprogramowanie wymuszające okup
  546. Ścieżka: file:_C:\Users\maro\AppData\Local\Temp\io30kjf0htw\calc.exe
  547. Pochodzenie wykrycia: Komputer lokalny
  548. Typ wykrycia: Konkretne
  549. Źródło wykrycia: Ochrona w czasie rzeczywistym
  550. Użytkownik: DESKTOP-09FFBFH\maro
  551. Nazwa procesu: C:\Program Files (x86)\ssFanny\501186.exe
  552. Wersja podpisu: AV: 1.269.149.0, AS: 1.269.149.0, NIS: 1.269.149.0
  553. Wersja aparatu: AM: 1.1.14901.4, NIS: 1.1.14901.4
  554.  
  555. Date: 2018-05-28 08:32:52.590
  556. Description:
  557. Produkt Program antywirusowy Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
  558. Nowa wersja podpisu:
  559. Poprzednia wersja podpisu: 1.269.149.0
  560. Źródło aktualizacji: Serwer usługi Microsoft Update
  561. Typ podpisu: Oprogramowanie antywirusowe
  562. Typ aktualizacji: Pełne
  563. Użytkownik: ZARZĄDZANIE NT\SYSTEM
  564. Bieżąca wersja aparatu:
  565. Poprzednia wersja aparatu: 1.1.14901.4
  566. Kod błędu: 0x80240438
  567. Opis błędu: Podczas sprawdzania aktualizacji wystąpił nieoczekiwany problem. Aby uzyskać informacje na temat instalowania aktualizacji i rozwiązywania problemów z nimi, zobacz Pomoc i obsługę techniczną.
  568.  
  569. Date: 2018-05-28 00:58:57.719
  570. Description:
  571. Produkt Program antywirusowy Windows Defender napotkał błąd podczas próby aktualizacji podpisów.
  572. Nowa wersja podpisu:
  573. Poprzednia wersja podpisu: 1.269.149.0
  574. Źródło aktualizacji: Serwer usługi Microsoft Update
  575. Typ podpisu: Oprogramowanie antywirusowe
  576. Typ aktualizacji: Pełne
  577. Użytkownik: ZARZĄDZANIE NT\SYSTEM
  578. Bieżąca wersja aparatu:
  579. Poprzednia wersja aparatu: 1.1.14901.4
  580. Kod błędu: 0x80240438
  581. Opis błędu: Podczas sprawdzania aktualizacji wystąpił nieoczekiwany problem. Aby uzyskać informacje na temat instalowania aktualizacji i rozwiązywania problemów z nimi, zobacz Pomoc i obsługę techniczną.
  582.  
  583. ==================== Statystyki pamięci ===========================
  584.  
  585. Procesor: Intel(R) Core(TM) i5-6600 CPU @ 3.30GHz
  586. Procent pamięci w użyciu: 13%
  587. Całkowita pamięć fizyczna: 16330.77 MB
  588. Dostępna pamięć fizyczna: 14123.23 MB
  589. Całkowita pamięć wirtualna: 18762.77 MB
  590. Dostępna pamięć wirtualna: 15347.98 MB
  591.  
  592. ==================== Dyski ================================
  593.  
  594. Drive c: () (Fixed) (Total:222.24 GB) (Free:90.61 GB) NTFS
  595. Drive e: (Nowy) (Fixed) (Total:465.82 GB) (Free:330.93 GB) NTFS
  596. Drive f: (Nowy) (Fixed) (Total:465.69 GB) (Free:343.78 GB) NTFS
  597.  
  598. \\?\Volume{c37e9f41-0000-0000-0000-100000000000}\ (Zastrzeżone przez system) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
  599. \\?\Volume{c37e9f41-0000-0000-0000-60ae37000000}\ () (Fixed) (Total:0.84 GB) (Free:0.45 GB) NTFS
  600.  
  601. ==================== MBR & Tablica partycji ==================
  602.  
  603. ========================================================
  604. Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: C37E9F41)
  605. Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
  606. Partition 2: (Not Active) - (Size=222.2 GB) - (Type=07 NTFS)
  607. Partition 3: (Not Active) - (Size=864 MB) - (Type=27)
  608.  
  609. ========================================================
  610. Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: DA86C5A4)
  611. Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)
  612. Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)
  613.  
  614. ==================== Koniec Addition.txt ============================
  615. Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 16.05.2018 01
  616. Uruchomiony przez maro (administrator) DESKTOP-09FFBFH (28-05-2018 08:33:36)
  617. Uruchomiony z F:\
  618. Załadowane profile: maro (Dostępne profile: maro)
  619. Platform: Windows 10 Home Wersja 1803 17134.48 (X64) Język: Polski (Polska)
  620. Internet Explorer Wersja 11 (Domyślna przeglądarka: "E:\CentBrowser\CentBrowser\Application\chrome.exe" -- "%1")
  621. Tryb startu: Normal
  622. Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
  623.  
  624. ==================== Procesy (filtrowane) =================
  625.  
  626. (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
  627.  
  628. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  629. (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
  630. (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
  631. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage Next\SbaService.exe
  632. () C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
  633. (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
  634. (Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe
  635. (Microsoft Corporation) C:\ProgramData\Microsoft\Windows\Audio\winamgr.exe
  636. () C:\ProgramData\Microsoft\Windows\WNetworkMgmt\WNetworkMgmt.exe
  637. (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.14.17639.18041-0\MsMpEng.exe
  638. (Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
  639. (MSI) C:\Windows\SysWOW64\muachost.exe
  640. (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.14.17639.18041-0\NisSrv.exe
  641. (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
  642. (f.lux Software LLC) C:\Users\maro\AppData\Local\FluxSoftware\Flux\flux.exe
  643. (ZA3 ) C:\Users\maro\AppData\Roaming\ur0l0ankdj4\tvbpugmu5zr.exe
  644. () C:\Users\maro\AppData\Local\Temp\is-28N4F.tmp\tvbpugmu5zr.tmp
  645. (ZA3 ) C:\Users\maro\AppData\Roaming\abw31lmiwa5\2sd5l54wrxi.exe
  646. () C:\Users\maro\AppData\Local\Temp\is-FMDO1.tmp\2sd5l54wrxi.tmp
  647. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  648. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  649. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  650. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  651. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  652. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  653. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  654. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  655. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  656. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
  657. (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
  658. (Microsoft Corporation) C:\Windows\System32\dllhost.exe
  659. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  660. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  661. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  662. (Dan Deng) E:\CentBrowser\CentBrowser\Application\chrome.exe
  663.  
  664. ==================== Rejestr (filtrowane) ===========================
  665.  
  666. (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
  667.  
  668. HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
  669. HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8843784 2016-07-22] (Realtek Semiconductor)
  670. HKLM\...\Run: [NahimicMSIUILauncher] => C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe [740320 2015-12-04] ()
  671. HKLM-x32\...\Run: [Live Update] => C:\Program Files (x86)\MSI\Live Update\Live Update.exe [11340752 2016-07-19] (Micro-Star INT'L CO., LTD.)
  672. HKLM-x32\...\Run: [IMSS] => C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe [1190688 2016-08-30] (Intel Corporation)
  673. HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
  674. HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [139776 2014-06-16] (Brother Industries, Ltd.)
  675. HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [4514304 2014-08-26] (Brother Industries, Ltd.)
  676. HKLM-x32\...\Run: [BrHelp] => C:\Program Files (x86)\Brother\Brother Help\BrotherHelp.exe [1944576 2013-03-07] (Brother Industries, Ltd.)
  677. HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
  678. HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
  679. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\Run: [f.lux] => C:\Users\maro\AppData\Local\FluxSoftware\Flux\flux.exe [1678840 2017-10-10] (f.lux Software LLC)
  680. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\Run: [8654320] => C:\Users\maro\AppData\Roaming\ur0l0ankdj4\tvbpugmu5zr.exe [615599 2018-05-27] (ZA3 )
  681. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\Run: [4642551] => C:\Users\maro\AppData\Roaming\abw31lmiwa5\2sd5l54wrxi.exe [615599 2018-05-28] (ZA3 )
  682. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\...\RunOnce: [Application Restart #4] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MSI)
  683. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\scrnsave.scr [36864 2018-04-12] (Microsoft Corporation)
  684. Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HP Digital Imaging Monitor.lnk [2017-07-31]
  685. ShortcutTarget: HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
  686. GroupPolicy: Ograniczenia - Windows Defender <==== UWAGA
  687.  
  688. ==================== Internet (filtrowane) ====================
  689.  
  690. (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
  691.  
  692. Tcpip\Parameters: [DhcpNameServer] 192.168.43.1
  693. Tcpip\..\Interfaces\{64c0f746-de2f-4f45-9017-8cda2f4488e3}: [DhcpNameServer] 192.168.1.15 192.168.1.1
  694. Tcpip\..\Interfaces\{d334fd5a-72ae-4032-a341-4dcfdebff9be}: [DhcpNameServer] 192.168.43.1
  695.  
  696. Internet Explorer:
  697. ==================
  698. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ_ye9Gzw4oVd4hIuDhExDC9LZyZwjMJ_SYddkPbpL6beCduMsoN-Bjjhe-pZm-2E0xVZyTMv6n8zIy7NKS_dNbvJi-Whwe38dEwXazZSnQm689YBbOzzp6akxnjPbTzf1s8-xfED5joxqwF28PJML77t_EUg,,&q={searchTerms}
  699. HKU\S-1-5-21-2733974409-696436795-1696199612-1004\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://page-ups.com/all/
  700. SearchScopes: HKLM-x32 -> DefaultScope {ielnksrch} URL =
  701. SearchScopes: HKLM-x32 -> ielnksrch URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ_ye9Gzw4oVd4hIuDhExDC9LZyZwjMJ_SYddkPbpL6beCduMsoN-Bjjhe-pZm-2E0xVZyTMv6n8zIy7NKS_dNbvJi-Whwe38dEwXazZSnQm689YBbOzzp6akxnjPbTzf1s8-xfED5joxqwF28PJML77t_EUg,,&q={searchTerms}
  702. SearchScopes: HKU\S-1-5-21-2733974409-696436795-1696199612-1004 -> DefaultScope {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ_ye9Gzw4oVd4hIuDhExDC9LZyZwjMJ_SYddkPbpL6beCduMsoN-Bjjhe-pZm-2E0xVZyTMv6n8zIy7NKS_dNbvJi-Whwe38dEwXazZSnQm689YBbOzzp6akxnjPbTzf1s8-xfED5joxqwF28PJML77t_EUg,,&q={searchTerms}
  703. SearchScopes: HKU\S-1-5-21-2733974409-696436795-1696199612-1004 -> {ielnksrch} URL = hxxps://%66%65%65%64.%73%6F%6E%69%63-%73%65%61%72%63%68.%63%6F%6D/?p=mKO_AwFzXIpYRaHdGKBRGNclVS1AC6sNoGk3GzeHhcr-ccZ_ye9Gzw4oVd4hIuDhExDC9LZyZwjMJ_SYddkPbpL6beCduMsoN-Bjjhe-pZm-2E0xVZyTMv6n8zIy7NKS_dNbvJi-Whwe38dEwXazZSnQm689YBbOzzp6akxnjPbTzf1s8-xfED5joxqwF28PJML77t_EUg,,&q={searchTerms}
  704. BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2018-05-21] (Microsoft Corporation)
  705. BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2018-04-29] (Microsoft Corporation)
  706. BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-24] (Oracle Corporation)
  707. BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-24] (Oracle Corporation)
  708. Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  709. Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  710. Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  711. Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  712. Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  713. Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  714. Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  715. Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2018-04-29] (Microsoft Corporation)
  716.  
  717. FireFox:
  718. ========
  719. FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-04-03] (Microsoft Corporation)
  720. FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-24] (Oracle Corporation)
  721. FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-24] (Oracle Corporation)
  722. FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-04-03] (Microsoft Corporation)
  723. FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2018-03-05] (Microsoft Corporation)
  724. FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-10-27] (NVIDIA Corporation)
  725. FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-10-27] (NVIDIA Corporation)
  726.  
  727. Chrome:
  728. =======
  729. CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx
  730.  
  731. ==================== Usługi (filtrowane) ====================
  732.  
  733. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  734.  
  735. S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [282112 2013-09-25] (Brother Industries, Ltd.) [Brak podpisu cyfrowego]
  736. R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8566448 2018-05-12] (Microsoft Corporation)
  737. R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [Brak podpisu cyfrowego]
  738. S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [987432 2016-07-26] (Intel(R) Corporation)
  739. S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [Brak podpisu cyfrowego]
  740. S3 intelsba; C:\Program Files\Intel\Intel(R) Small Business Advantage\Service\Intel.SmallBusinessAdvantage.WindowsService.exe [58792 2015-06-04] (Intel Corporation)
  741. R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [Brak podpisu cyfrowego]
  742. S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177288 2015-05-29] ()
  743. R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [177440 2016-08-30] (Intel Corporation)
  744. R2 MSI_LiveUpdate_Service; C:\Program Files (x86)\MSI\Live Update\MSI_LiveUpdate_Service.exe [2227152 2016-07-19] (Micro-Star INT'L CO., LTD.)
  745. R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego]
  746. R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [Brak podpisu cyfrowego]
  747. R2 SbaService; C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage Next\SbaService.exe [26296 2015-10-14] (Intel Corporation)
  748. S3 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
  749. R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\NisSrv.exe [4632736 2018-04-25] (Microsoft Corporation)
  750. R2 winamgr; C:\ProgramData\Microsoft\Windows\Audio\winamgr.exe [10644480 2018-05-23] (Microsoft Corporation) [Brak podpisu cyfrowego] <==== UWAGA
  751. R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.14.17639.18041-0\MsMpEng.exe [104680 2018-04-25] (Microsoft Corporation)
  752. R2 WNetworkMgmt; C:\ProgramData\Microsoft\Windows\WNetworkMgmt\WNetworkMgmt.exe [6232185 2018-05-22] () [Brak podpisu cyfrowego] <==== UWAGA
  753. R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
  754.  
  755. ===================== Sterowniki (filtrowane) ======================
  756.  
  757. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  758.  
  759. S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2018-02-08] (Disc Soft Ltd)
  760. S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2018-02-08] (Disc Soft Ltd)
  761. S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
  762. R3 KillerEth; C:\WINDOWS\System32\drivers\e2xw10x64.sys [145920 2018-04-12] (Qualcomm Atheros, Inc.)
  763. R1 MpKsle48d637c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0045F7FA-FCFA-4729-B55E-A77531505C89}\MpKsle48d637c.sys [58120 2018-05-28] (Microsoft Corporation)
  764. R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_ref_pubwu.inf_amd64_2e7fa54192fe16d0\nvlddmkm.sys [16936048 2017-11-09] (NVIDIA Corporation)
  765. S3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-08-18] (NVIDIA Corporation)
  766. R0 sptd2; C:\WINDOWS\System32\Drivers\sptd2.sys [203296 2018-02-08] (Duplex Secure Ltd)
  767. S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46072 2018-04-25] (Microsoft Corporation)
  768. R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [313888 2018-04-25] (Microsoft Corporation)
  769. R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [61472 2018-04-25] (Microsoft Corporation)
  770. U3 dmwappushsvc; Brak ImagePath
  771.  
  772. ==================== NetSvcs (filtrowane) ===================
  773.  
  774. (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
  775.  
  776.  
  777. ==================== Jeden miesiąc - utworzone pliki i foldery ========
  778.  
  779. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  780.  
  781. 2018-05-28 08:33 - 2018-05-28 08:33 - 000000000 ____D C:\FRST
  782. 2018-05-28 08:22 - 2018-05-28 08:22 - 1452639219 _____ C:\WINDOWS\MEMORY.DMP
  783. 2018-05-28 08:22 - 2018-05-28 08:22 - 001176068 _____ C:\WINDOWS\Minidump\052818-5546-01.dmp
  784. 2018-05-28 08:22 - 2018-05-28 08:22 - 000000000 ____D C:\WINDOWS\Minidump
  785. 2018-05-28 00:11 - 2018-05-28 00:54 - 000000000 ____D C:\Program Files (x86)\NExnNAYCpUUn
  786. 2018-05-28 00:11 - 2018-05-28 00:49 - 000000000 ____D C:\Program Files (x86)\VfXyqasRzlGpJFtgwyR
  787. 2018-05-28 00:11 - 2018-05-28 00:29 - 000000000 ____D C:\Program Files (x86)\EPVqpVJyVSWU2
  788. 2018-05-28 00:11 - 2018-05-28 00:28 - 000000000 ____D C:\Program Files (x86)\KCGHGVOnU
  789. 2018-05-28 00:11 - 2018-05-28 00:28 - 000000000 ____D C:\Program Files (x86)\JAcqddADqIE
  790. 2018-05-28 00:11 - 2018-05-28 00:25 - 000000000 ____D C:\Program Files (x86)\SvnSzzIscGyUC
  791. 2018-05-28 00:10 - 2018-05-28 00:55 - 000000000 ____D C:\Program Files\NA95Q9L6FZ
  792. 2018-05-28 00:10 - 2018-05-28 00:10 - 000000000 ____D C:\Users\maro\AppData\Roaming\WidModule
  793. 2018-05-28 00:10 - 2018-05-28 00:10 - 000000000 ____D C:\Users\maro\AppData\Roaming\abw31lmiwa5
  794. 2018-05-27 23:43 - 2018-05-27 23:43 - 000000000 ____D C:\Users\maro\Intel
  795. 2018-05-27 23:40 - 2018-05-27 23:40 - 000000266 __RSH C:\Users\maro\ntuser.pol
  796. 2018-05-27 23:40 - 2018-05-27 23:40 - 000000000 ____D C:\Users\maro\AppData\LocalLow\uTorrent
  797. 2018-05-27 23:39 - 2018-05-28 00:59 - 000000000 ____D C:\Users\maro\AppData\Roaming\Browsers
  798. 2018-05-27 23:39 - 2018-05-28 00:11 - 000000034 _____ C:\Users\Public\Documents\{DE764086-1C0A-4DD3-90BA-0B93BDD794BE}
  799. 2018-05-27 23:39 - 2018-05-27 23:40 - 000401664 _____ C:\WINDOWS\system32\FNTCACHE.DAT
  800. 2018-05-27 23:39 - 2018-05-27 23:39 - 000002260 ___RS C:\Users\Public\Desktop\Вrоther Utilitiеs.lnk
  801. 2018-05-27 23:39 - 2018-05-27 23:39 - 000001380 ___RS C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Сеnt Вrоwser.lnk
  802. 2018-05-27 23:39 - 2018-05-27 23:39 - 000000000 ____D C:\Users\maro\AppData\Roaming\SPI
  803. 2018-05-27 23:38 - 2018-05-28 00:54 - 000000000 ____D C:\Program Files\E0K2R0XGIM
  804. 2018-05-27 23:38 - 2018-05-28 00:11 - 000000000 ____D C:\Users\maro\AppData\Local\XService
  805. 2018-05-27 23:38 - 2018-05-28 00:10 - 000003654 _____ C:\WINDOWS\System32\Tasks\CreateExplorerShellUnelevatedTask
  806. 2018-05-27 23:38 - 2018-05-27 23:38 - 000000266 __RSH C:\ProgramData\ntuser.pol
  807. 2018-05-27 23:38 - 2018-05-27 23:38 - 000000000 ____D C:\Users\maro\AppData\Roaming\ur0l0ankdj4
  808. 2018-05-27 23:38 - 2018-05-27 23:38 - 000000000 ____D C:\Program Files\My Program
  809. 2018-05-27 23:37 - 2018-05-28 00:29 - 000000000 ____D C:\ProgramData\yahoochrome_D
  810. 2018-05-27 23:37 - 2018-05-27 23:37 - 000000000 ____D C:\Users\Public\Documents\XMUpdate
  811. 2018-05-27 23:37 - 2018-05-27 23:37 - 000000000 ____D C:\Program Files (x86)\ssFanny
  812. 2018-05-27 23:36 - 2018-05-28 00:29 - 000000000 ____D C:\ProgramData\Logic Cramble
  813. 2018-05-27 23:36 - 2018-05-27 23:41 - 000929792 _____ C:\Users\maro\AppData\Local\sham.db
  814. 2018-05-27 23:36 - 2018-05-27 23:36 - 007611392 _____ C:\Users\maro\AppData\Local\agent.dat
  815. 2018-05-27 23:36 - 2018-05-27 23:36 - 001986760 _____ C:\Users\maro\AppData\Local\UnaLux.tst
  816. 2018-05-27 23:36 - 2018-05-27 23:36 - 001895382 _____ C:\Users\maro\AppData\Local\Bamcore.bin
  817. 2018-05-27 23:36 - 2018-05-27 23:36 - 000278508 _____ C:\Users\maro\AppData\Local\Domstring.tst
  818. 2018-05-27 23:36 - 2018-05-27 23:36 - 000140800 _____ C:\Users\maro\AppData\Local\installer.dat
  819. 2018-05-27 23:36 - 2018-05-27 23:36 - 000126464 _____ C:\Users\maro\AppData\Local\noah.dat
  820. 2018-05-27 23:36 - 2018-05-27 23:36 - 000070896 _____ C:\Users\maro\AppData\Local\Config.xml
  821. 2018-05-27 23:36 - 2018-05-27 23:36 - 000016416 _____ C:\Users\maro\AppData\Local\InstallationConfiguration.xml
  822. 2018-05-27 23:36 - 2018-05-27 23:36 - 000015606 _____ C:\WINDOWS\SysWOW64\findit.xml
  823. 2018-05-27 23:36 - 2018-05-27 23:36 - 000005568 _____ C:\Users\maro\AppData\Local\md.xml
  824. 2018-05-27 23:36 - 2018-05-27 23:36 - 000000000 ____D C:\Users\maro\AppData\Roaming\Mozilla
  825. 2018-05-27 23:36 - 2018-05-27 23:36 - 000000000 ____D C:\Users\maro\AppData\Roaming\Microleaves
  826. 2018-05-27 23:36 - 2018-05-27 23:36 - 000000000 ____D C:\Users\maro\AppData\Local\AdvinstAnalytics
  827. 2018-05-27 23:36 - 2018-05-27 23:36 - 000000000 ____D C:\ProgramData\Quoteexs
  828. 2018-05-27 23:36 - 2018-05-27 23:36 - 000000000 ____D C:\Program Files (x86)\Microleaves
  829. 2018-05-26 23:53 - 2018-05-26 23:53 - 000000165 ____H C:\Users\maro\Desktop\~$Social_Media_Presentation.pptx
  830. 2018-05-23 22:16 - 2018-05-23 22:17 - 000000000 ____D C:\Users\maro\AppData\Local\Bethesda.net Launcher
  831. 2018-05-23 18:26 - 2018-05-23 18:27 - 000000000 ____D C:\Users\maro\AppData\Local\Fallout4
  832. 2018-05-23 12:39 - 2018-05-26 22:34 - 000001075 _____ C:\Users\maro\Desktop\f4se_loader — skrót .lnk
  833. 2018-05-23 07:57 - 2018-05-23 07:57 - 000000000 ____D C:\Users\maro\AppData\Roaming\JPEXS
  834. 2018-05-22 18:09 - 2018-05-26 17:42 - 000000000 ____D C:\Users\maro\AppData\Local\LOOT
  835. 2018-05-22 18:05 - 2018-05-22 18:05 - 000000631 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LOOT.lnk
  836. 2018-05-22 17:07 - 2018-05-22 17:07 - 000000000 ____D C:\Games
  837. 2018-05-22 16:55 - 2018-05-26 22:27 - 000000000 ____D C:\Users\maro\Documents\Nexus Mod Manager
  838. 2018-05-22 16:55 - 2018-05-22 16:55 - 000000735 _____ C:\Users\Public\Desktop\Nexus Mod Manager.lnk
  839. 2018-05-22 16:55 - 2018-05-22 16:55 - 000000000 ____D C:\Users\maro\AppData\Local\Black_Tree_Gaming
  840. 2018-05-22 16:09 - 2018-05-26 23:34 - 000000000 ____D C:\Fallout 4 GOTY
  841. 2018-05-21 18:28 - 2018-05-21 18:28 - 000000000 ____D C:\Users\maro\AppData\LocalLow\Suncrash
  842. 2018-05-21 16:55 - 2018-05-21 16:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
  843. 2018-05-14 15:07 - 2018-05-26 17:20 - 000000000 ____D C:\Users\maro\AppData\Local\D3DSCache
  844. 2018-05-14 14:00 - 2018-05-14 14:00 - 000000000 ____D C:\Users\maro\AppData\LocalLow\Meta Interaction
  845. 2018-05-13 23:13 - 2018-05-13 23:14 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
  846. 2018-05-13 23:12 - 2018-05-13 23:13 - 000000000 ____D C:\WINDOWS\ServiceProfiles
  847. 2018-05-13 23:12 - 2018-05-13 23:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
  848. 2018-05-13 23:11 - 2018-05-13 23:11 - 025848832 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
  849. 2018-05-13 23:11 - 2018-05-13 23:11 - 023862272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
  850. 2018-05-13 23:11 - 2018-05-13 23:11 - 022707712 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
  851. 2018-05-13 23:11 - 2018-05-13 23:11 - 022002688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
  852. 2018-05-13 23:11 - 2018-05-13 23:11 - 021389360 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
  853. 2018-05-13 23:11 - 2018-05-13 23:11 - 020383720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
  854. 2018-05-13 23:11 - 2018-05-13 23:11 - 019525120 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
  855. 2018-05-13 23:11 - 2018-05-13 23:11 - 019399168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
  856. 2018-05-13 23:11 - 2018-05-13 23:11 - 013570560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
  857. 2018-05-13 23:11 - 2018-05-13 23:11 - 012712960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
  858. 2018-05-13 23:11 - 2018-05-13 23:11 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
  859. 2018-05-13 23:11 - 2018-05-13 23:11 - 011903488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
  860. 2018-05-13 23:11 - 2018-05-13 23:11 - 009159064 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
  861. 2018-05-13 23:11 - 2018-05-13 23:11 - 008623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
  862. 2018-05-13 23:11 - 2018-05-13 23:11 - 008188928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
  863. 2018-05-13 23:11 - 2018-05-13 23:11 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
  864. 2018-05-13 23:11 - 2018-05-13 23:11 - 007583232 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
  865. 2018-05-13 23:11 - 2018-05-13 23:11 - 007519992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
  866. 2018-05-13 23:11 - 2018-05-13 23:11 - 007436624 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
  867. 2018-05-13 23:11 - 2018-05-13 23:11 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
  868. 2018-05-13 23:11 - 2018-05-13 23:11 - 006569952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
  869. 2018-05-13 23:11 - 2018-05-13 23:11 - 006044104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
  870. 2018-05-13 23:11 - 2018-05-13 23:11 - 005951488 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbgeng.dll
  871. 2018-05-13 23:11 - 2018-05-13 23:11 - 005782528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
  872. 2018-05-13 23:11 - 2018-05-13 23:11 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbgeng.dll
  873. 2018-05-13 23:11 - 2018-05-13 23:11 - 004867072 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
  874. 2018-05-13 23:11 - 2018-05-13 23:11 - 004706816 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
  875. 2018-05-13 23:11 - 2018-05-13 23:11 - 004372992 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
  876. 2018-05-13 23:11 - 2018-05-13 23:11 - 004070400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
  877. 2018-05-13 23:11 - 2018-05-13 23:11 - 003732800 _____ C:\WINDOWS\system32\Windows.Mirage.dll
  878. 2018-05-13 23:11 - 2018-05-13 23:11 - 003712000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
  879. 2018-05-13 23:11 - 2018-05-13 23:11 - 003655168 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
  880. 2018-05-13 23:11 - 2018-05-13 23:11 - 003440640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
  881. 2018-05-13 23:11 - 2018-05-13 23:11 - 003392512 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
  882. 2018-05-13 23:11 - 2018-05-13 23:11 - 003389952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
  883. 2018-05-13 23:11 - 2018-05-13 23:11 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
  884. 2018-05-13 23:11 - 2018-05-13 23:11 - 003283400 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreUIComponents.dll
  885. 2018-05-13 23:11 - 2018-05-13 23:11 - 003086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
  886. 2018-05-13 23:11 - 2018-05-13 23:11 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
  887. 2018-05-13 23:11 - 2018-05-13 23:11 - 002961408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
  888. 2018-05-13 23:11 - 2018-05-13 23:11 - 002902528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
  889. 2018-05-13 23:11 - 2018-05-13 23:11 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
  890. 2018-05-13 23:11 - 2018-05-13 23:11 - 002897408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
  891. 2018-05-13 23:11 - 2018-05-13 23:11 - 002841312 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
  892. 2018-05-13 23:11 - 2018-05-13 23:11 - 002835864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
  893. 2018-05-13 23:11 - 2018-05-13 23:11 - 002753040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
  894. 2018-05-13 23:11 - 2018-05-13 23:11 - 002700800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
  895. 2018-05-13 23:11 - 2018-05-13 23:11 - 002486976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreUIComponents.dll
  896. 2018-05-13 23:11 - 2018-05-13 23:11 - 002422168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
  897. 2018-05-13 23:11 - 2018-05-13 23:11 - 002366976 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
  898. 2018-05-13 23:11 - 2018-05-13 23:11 - 002242208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
  899. 2018-05-13 23:11 - 2018-05-13 23:11 - 002236928 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
  900. 2018-05-13 23:11 - 2018-05-13 23:11 - 002170368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
  901. 2018-05-13 23:11 - 2018-05-13 23:11 - 001953280 _____ C:\WINDOWS\system32\rdpnano.dll
  902. 2018-05-13 23:11 - 2018-05-13 23:11 - 001855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
  903. 2018-05-13 23:11 - 2018-05-13 23:11 - 001817088 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
  904. 2018-05-13 23:11 - 2018-05-13 23:11 - 001664512 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
  905. 2018-05-13 23:11 - 2018-05-13 23:11 - 001636352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
  906. 2018-05-13 23:11 - 2018-05-13 23:11 - 001634800 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
  907. 2018-05-13 23:11 - 2018-05-13 23:11 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
  908. 2018-05-13 23:11 - 2018-05-13 23:11 - 001585664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
  909. 2018-05-13 23:11 - 2018-05-13 23:11 - 001565592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
  910. 2018-05-13 23:11 - 2018-05-13 23:11 - 001550848 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
  911. 2018-05-13 23:11 - 2018-05-13 23:11 - 001534976 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
  912. 2018-05-13 23:11 - 2018-05-13 23:11 - 001466368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
  913. 2018-05-13 23:11 - 2018-05-13 23:11 - 001456616 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
  914. 2018-05-13 23:11 - 2018-05-13 23:11 - 001454016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
  915. 2018-05-13 23:11 - 2018-05-13 23:11 - 001426328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
  916. 2018-05-13 23:11 - 2018-05-13 23:11 - 001421312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpbase.dll
  917. 2018-05-13 23:11 - 2018-05-13 23:11 - 001380864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
  918. 2018-05-13 23:11 - 2018-05-13 23:11 - 001258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
  919. 2018-05-13 23:11 - 2018-05-13 23:11 - 001235968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpbase.dll
  920. 2018-05-13 23:11 - 2018-05-13 23:11 - 001191168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
  921. 2018-05-13 23:11 - 2018-05-13 23:11 - 001174424 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
  922. 2018-05-13 23:11 - 2018-05-13 23:11 - 001160192 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
  923. 2018-05-13 23:11 - 2018-05-13 23:11 - 001063320 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
  924. 2018-05-13 23:11 - 2018-05-13 23:11 - 001034624 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
  925. 2018-05-13 23:11 - 2018-05-13 23:11 - 001012120 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
  926. 2018-05-13 23:11 - 2018-05-13 23:11 - 000976384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Spectrum.exe
  927. 2018-05-13 23:11 - 2018-05-13 23:11 - 000960512 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
  928. 2018-05-13 23:11 - 2018-05-13 23:11 - 000944640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
  929. 2018-05-13 23:11 - 2018-05-13 23:11 - 000933376 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
  930. 2018-05-13 23:11 - 2018-05-13 23:11 - 000917504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
  931. 2018-05-13 23:11 - 2018-05-13 23:11 - 000898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
  932. 2018-05-13 23:11 - 2018-05-13 23:11 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
  933. 2018-05-13 23:11 - 2018-05-13 23:11 - 000885848 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
  934. 2018-05-13 23:11 - 2018-05-13 23:11 - 000860160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
  935. 2018-05-13 23:11 - 2018-05-13 23:11 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
  936. 2018-05-13 23:11 - 2018-05-13 23:11 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
  937. 2018-05-13 23:11 - 2018-05-13 23:11 - 000788216 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
  938. 2018-05-13 23:11 - 2018-05-13 23:11 - 000786168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
  939. 2018-05-13 23:11 - 2018-05-13 23:11 - 000776880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
  940. 2018-05-13 23:11 - 2018-05-13 23:11 - 000775680 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
  941. 2018-05-13 23:11 - 2018-05-13 23:11 - 000758272 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
  942. 2018-05-13 23:11 - 2018-05-13 23:11 - 000733992 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
  943. 2018-05-13 23:11 - 2018-05-13 23:11 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
  944. 2018-05-13 23:11 - 2018-05-13 23:11 - 000709816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
  945. 2018-05-13 23:11 - 2018-05-13 23:11 - 000705944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
  946. 2018-05-13 23:11 - 2018-05-13 23:11 - 000695296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
  947. 2018-05-13 23:11 - 2018-05-13 23:11 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
  948. 2018-05-13 23:11 - 2018-05-13 23:11 - 000668672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
  949. 2018-05-13 23:11 - 2018-05-13 23:11 - 000665320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
  950. 2018-05-13 23:11 - 2018-05-13 23:11 - 000658432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
  951. 2018-05-13 23:11 - 2018-05-13 23:11 - 000624128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
  952. 2018-05-13 23:11 - 2018-05-13 23:11 - 000619520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
  953. 2018-05-13 23:11 - 2018-05-13 23:11 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
  954. 2018-05-13 23:11 - 2018-05-13 23:11 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs4.dll
  955. 2018-05-13 23:11 - 2018-05-13 23:11 - 000606448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
  956. 2018-05-13 23:11 - 2018-05-13 23:11 - 000604568 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
  957. 2018-05-13 23:11 - 2018-05-13 23:11 - 000596480 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
  958. 2018-05-13 23:11 - 2018-05-13 23:11 - 000585728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs3.dll
  959. 2018-05-13 23:11 - 2018-05-13 23:11 - 000584192 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
  960. 2018-05-13 23:11 - 2018-05-13 23:11 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
  961. 2018-05-13 23:11 - 2018-05-13 23:11 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
  962. 2018-05-13 23:11 - 2018-05-13 23:11 - 000567136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
  963. 2018-05-13 23:11 - 2018-05-13 23:11 - 000561664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
  964. 2018-05-13 23:11 - 2018-05-13 23:11 - 000559968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
  965. 2018-05-13 23:11 - 2018-05-13 23:11 - 000553984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
  966. 2018-05-13 23:11 - 2018-05-13 23:11 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
  967. 2018-05-13 23:11 - 2018-05-13 23:11 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
  968. 2018-05-13 23:11 - 2018-05-13 23:11 - 000494488 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
  969. 2018-05-13 23:11 - 2018-05-13 23:11 - 000474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs2.dll
  970. 2018-05-13 23:11 - 2018-05-13 23:11 - 000473496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
  971. 2018-05-13 23:11 - 2018-05-13 23:11 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.rs1.dll
  972. 2018-05-13 23:11 - 2018-05-13 23:11 - 000434584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
  973. 2018-05-13 23:11 - 2018-05-13 23:11 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
  974. 2018-05-13 23:11 - 2018-05-13 23:11 - 000382872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
  975. 2018-05-13 23:11 - 2018-05-13 23:11 - 000344064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
  976. 2018-05-13 23:11 - 2018-05-13 23:11 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.th.dll
  977. 2018-05-13 23:11 - 2018-05-13 23:11 - 000272288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
  978. 2018-05-13 23:11 - 2018-05-13 23:11 - 000269216 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
  979. 2018-05-13 23:11 - 2018-05-13 23:11 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MixedReality.Broker.dll
  980. 2018-05-13 23:11 - 2018-05-13 23:11 - 000241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win81.dll
  981. 2018-05-13 23:11 - 2018-05-13 23:11 - 000171520 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll
  982. 2018-05-13 23:11 - 2018-05-13 23:11 - 000170904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
  983. 2018-05-13 23:11 - 2018-05-13 23:11 - 000159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Analog.dll
  984. 2018-05-13 23:11 - 2018-05-13 23:11 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
  985. 2018-05-13 23:11 - 2018-05-13 23:11 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedPCCSP.dll
  986. 2018-05-13 23:11 - 2018-05-13 23:11 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll
  987. 2018-05-13 23:11 - 2018-05-13 23:11 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
  988. 2018-05-13 23:11 - 2018-05-13 23:11 - 000143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll
  989. 2018-05-13 23:11 - 2018-05-13 23:11 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.win8rtm.dll
  990. 2018-05-13 23:11 - 2018-05-13 23:11 - 000134552 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
  991. 2018-05-13 23:11 - 2018-05-13 23:11 - 000117760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll
  992. 2018-05-13 23:11 - 2018-05-13 23:11 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcimage.dll
  993. 2018-05-13 23:11 - 2018-05-13 23:11 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\credssp.dll
  994. 2018-05-13 23:11 - 2018-05-13 23:11 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\credssp.dll
  995. 2018-05-13 23:11 - 2018-05-13 23:11 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
  996. 2018-05-13 23:11 - 2018-05-13 23:11 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
  997. 2018-05-13 23:11 - 2018-05-13 23:11 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim
  998. 2018-05-13 23:10 - 2018-05-13 23:10 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
  999. 2018-05-13 23:10 - 2018-05-13 23:10 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
  1000. 2018-05-13 23:10 - 2018-05-13 23:10 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
  1001. 2018-05-13 23:10 - 2018-05-13 23:10 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
  1002. 2018-05-13 23:10 - 2018-05-13 23:10 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
  1003. 2018-05-13 23:10 - 2018-05-13 23:10 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
  1004. 2018-05-13 23:10 - 2018-05-13 23:10 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
  1005. 2018-05-13 23:10 - 2018-05-13 23:10 - 000000000 ____D C:\Program Files\Reference Assemblies
  1006. 2018-05-13 23:10 - 2018-05-13 23:10 - 000000000 ____D C:\Program Files\MSBuild
  1007. 2018-05-13 23:10 - 2018-05-13 23:10 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
  1008. 2018-05-13 23:10 - 2018-05-13 23:10 - 000000000 ____D C:\Program Files (x86)\MSBuild
  1009. 2018-05-13 23:09 - 2018-05-13 23:09 - 004492288 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe
  1010. 2018-05-13 23:09 - 2018-05-13 23:09 - 003398144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe
  1011. 2018-05-13 23:09 - 2018-05-13 23:09 - 000925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsFilt.dll
  1012. 2018-05-13 23:09 - 2018-05-13 23:09 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsFilt.dll
  1013. 2018-05-13 23:09 - 2018-05-13 23:09 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\XPSSHHDR.dll
  1014. 2018-05-13 23:09 - 2018-05-13 23:09 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XPSSHHDR.dll
  1015. 2018-05-13 23:09 - 2018-05-13 23:09 - 000076060 _____ C:\WINDOWS\SysWOW64\xpsrchvw.xml
  1016. 2018-05-13 23:09 - 2018-05-13 23:09 - 000076060 _____ C:\WINDOWS\system32\xpsrchvw.xml
  1017. 2018-05-13 22:24 - 2018-05-13 22:24 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
  1018. 2018-05-13 22:22 - 2018-05-28 08:26 - 001763504 _____ C:\WINDOWS\system32\PerfStringBackup.INI
  1019. 2018-05-13 22:20 - 2018-05-28 08:22 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
  1020. 2018-05-13 22:20 - 2018-05-13 22:20 - 000003118 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification
  1021. 2018-05-13 22:20 - 2018-05-13 22:20 - 000003042 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
  1022. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002984 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  1023. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002956 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  1024. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002856 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2733974409-696436795-1696199612-1004
  1025. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002838 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  1026. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002786 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  1027. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002744 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
  1028. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002680 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473-Logon
  1029. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002436 _____ C:\WINDOWS\System32\Tasks\{019149B5-28B3-4D91-A2E7-AD81B91E7D02}
  1030. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002412 _____ C:\WINDOWS\System32\Tasks\NahimicMSIUILauncherRun
  1031. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002400 _____ C:\WINDOWS\System32\Tasks\NahimicMSIsvc64Run
  1032. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002392 _____ C:\WINDOWS\System32\Tasks\NahimicMSIsvc32Run
  1033. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002222 _____ C:\WINDOWS\System32\Tasks\MSIOSDx86_Host
  1034. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002222 _____ C:\WINDOWS\System32\Tasks\MSIOSDx64_Host
  1035. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002190 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
  1036. 2018-05-13 22:20 - 2018-05-13 22:20 - 000002148 _____ C:\WINDOWS\System32\Tasks\MSISW_Host
  1037. 2018-05-13 22:20 - 2018-05-13 22:20 - 000000020 ___SH C:\Users\maro\ntuser.ini
  1038. 2018-05-13 22:20 - 2018-05-13 22:20 - 000000000 ____D C:\WINDOWS\System32\Tasks\Intel(R) Small Business Advantage
  1039. 2018-05-13 22:20 - 2018-05-13 22:20 - 000000000 ____D C:\ProgramData\USOShared
  1040. 2018-05-13 22:19 - 2018-05-13 22:20 - 000007623 _____ C:\WINDOWS\diagwrn.xml
  1041. 2018-05-13 22:19 - 2018-05-13 22:20 - 000007623 _____ C:\WINDOWS\diagerr.xml
  1042. 2018-05-13 22:17 - 2018-05-13 22:17 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
  1043. 2018-05-13 22:16 - 2018-05-28 00:47 - 000000000 ____D C:\Users\maro
  1044. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Ustawienia lokalne
  1045. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Szablony
  1046. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Moje dokumenty
  1047. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Menu Start
  1048. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Documents\Moje wideo
  1049. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Documents\Moje obrazy
  1050. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Documents\Moja muzyka
  1051. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\Dane aplikacji
  1052. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
  1053. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\AppData\Local\Historia
  1054. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 _SHDL C:\Users\maro\AppData\Local\Dane aplikacji
  1055. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
  1056. 2018-05-13 22:16 - 2018-05-13 22:16 - 000000000 ____D C:\Program Files (x86)\VulkanRT
  1057. 2018-05-13 22:16 - 2017-10-27 18:06 - 000136312 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
  1058. 2018-05-13 22:16 - 2017-09-14 01:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
  1059. 2018-05-13 22:16 - 2017-09-14 01:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
  1060. 2018-05-13 22:16 - 2017-09-14 01:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll
  1061. 2018-05-13 22:16 - 2017-09-14 01:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe
  1062. 2018-05-13 22:15 - 2018-05-28 08:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
  1063. 2018-05-13 22:15 - 2018-04-12 01:33 - 002752000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
  1064. 2018-05-13 22:15 - 2017-11-09 05:43 - 000540784 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
  1065. 2018-05-13 22:15 - 2017-11-09 05:43 - 000446392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
  1066. 2018-05-13 19:39 - 2018-05-13 19:39 - 000000565 _____ C:\Users\Public\Desktop\Company of Heroes 2.lnk
  1067. 2018-05-13 16:41 - 2018-05-13 16:41 - 000000000 ____D C:\Users\maro\AppData\Local\WARTILE
  1068. 2018-05-13 16:41 - 2018-05-13 16:41 - 000000000 ____D C:\Users\maro\AppData\Local\UnrealEngine
  1069. 2018-05-13 08:37 - 2018-05-27 23:24 - 000000000 ___DC C:\WINDOWS\Panther
  1070. 2018-05-10 14:39 - 2018-05-10 14:39 - 000000000 ____D C:\Users\maro\AppData\Local\2K Games
  1071. 2018-05-10 11:33 - 2018-05-10 11:33 - 000000000 ____D C:\Users\maro\AppData\LocalLow\Event horizon
  1072. 2018-05-10 11:13 - 2018-05-10 11:13 - 000000533 _____ C:\Users\Public\Desktop\Tower of Time.lnk
  1073. 2018-04-30 09:26 - 2018-04-30 09:26 - 000000000 ____D C:\Users\maro\Documents\efile-backup
  1074. 2018-04-30 09:26 - 2018-04-30 09:26 - 000000000 _____ C:\Users\maro\Desktop\ZAPŁACIĆ SKŁADKĘ KWIECIEŃ.txt
  1075. 2018-04-30 08:47 - 2018-04-30 08:47 - 000000000 ____D C:\Users\maro\Documents\efile
  1076. 2018-04-30 08:47 - 2018-04-30 08:47 - 000000000 ____D C:\Users\maro\AppData\Roaming\com.efile.epity
  1077. 2018-04-30 08:46 - 2018-05-13 23:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity
  1078. 2018-04-30 08:46 - 2018-04-30 08:46 - 000000682 _____ C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-pity 2017 - program, pity roczne, e-deklaracje.lnk
  1079. 2018-04-30 08:46 - 2018-04-30 08:46 - 000000000 ____D C:\Users\maro\AppData\Roaming\fillUp
  1080.  
  1081. ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
  1082.  
  1083. (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
  1084.  
  1085. 2018-05-28 08:27 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
  1086. 2018-05-28 08:26 - 2018-04-12 17:51 - 000782334 _____ C:\WINDOWS\system32\perfh015.dat
  1087. 2018-05-28 08:26 - 2018-04-12 17:51 - 000151496 _____ C:\WINDOWS\system32\perfc015.dat
  1088. 2018-05-28 08:26 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
  1089. 2018-05-28 08:22 - 2017-09-07 16:16 - 000000000 ____D C:\ProgramData\NVIDIA
  1090. 2018-05-28 00:54 - 2018-04-23 11:45 - 000000000 ____D C:\Program Files (x86)\ProxyGate
  1091. 2018-05-28 00:33 - 2018-04-11 23:04 - 000262144 _____ C:\WINDOWS\system32\config\BBI
  1092. 2018-05-28 00:25 - 2018-03-14 13:17 - 000000000 ____D C:\Users\maro\Doctor Web
  1093. 2018-05-27 23:43 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
  1094. 2018-05-27 23:43 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
  1095. 2018-05-27 23:43 - 2017-11-08 15:38 - 000000000 ____D C:\Users\maro\AppData\Local\Packages
  1096. 2018-05-27 23:40 - 2017-08-03 09:32 - 000000000 ____D C:\Users\maro\AppData\Roaming\uTorrent
  1097. 2018-05-27 23:39 - 2017-12-05 23:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother
  1098. 2018-05-27 23:39 - 2016-09-27 17:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nahimic for MSI
  1099. 2018-05-27 23:39 - 2016-09-27 17:39 - 000000000 ____D C:\ProgramData\Intel
  1100. 2018-05-27 23:38 - 2015-10-30 09:24 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy
  1101. 2018-05-27 23:24 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
  1102. 2018-05-27 23:24 - 2017-08-08 09:58 - 000000000 ____D C:\Users\maro\AppData\Roaming\MPC-HC
  1103. 2018-05-23 22:28 - 2016-09-27 17:34 - 000000000 ____D C:\ProgramData\Package Cache
  1104. 2018-05-23 18:29 - 2018-03-12 20:14 - 000000000 ____D C:\Users\maro\Documents\My Games
  1105. 2018-05-22 18:09 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\OCR
  1106. 2018-05-22 18:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
  1107. 2018-05-22 16:43 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp
  1108. 2018-05-21 18:28 - 2017-08-02 09:04 - 000000000 ____D C:\Users\maro\AppData\Roaming\SmartSteamEmu
  1109. 2018-05-21 16:55 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
  1110. 2018-05-21 16:55 - 2017-08-04 09:28 - 000000000 ____D C:\Program Files\Microsoft Office
  1111. 2018-05-16 14:00 - 2018-04-10 15:49 - 000000000 ____D C:\Users\maro\AppData\Local\PlaceholderTileLogoFolder
  1112. 2018-05-16 07:24 - 2018-04-24 15:47 - 000000901 _____ C:\Users\maro\Desktop\Battle Brothers - Lindwurm.lnk
  1113. 2018-05-15 19:42 - 2017-09-14 21:33 - 000001319 ____H C:\Users\maro\Desktop\centbrowser.lnk
  1114. 2018-05-15 08:55 - 2016-10-12 20:28 - 000000000 ____D C:\Users\maro\AppData\Local\ConnectedDevicesPlatform
  1115. 2018-05-15 08:16 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\appcompat
  1116. 2018-05-13 23:14 - 2018-04-12 01:41 - 000000000 ____D C:\WINDOWS\Setup
  1117. 2018-05-13 23:14 - 2018-04-12 01:38 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
  1118. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 __RHD C:\Users\Public\Libraries
  1119. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
  1120. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
  1121. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\spool
  1122. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe
  1123. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF
  1124. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
  1125. 2018-05-13 23:14 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Help
  1126. 2018-05-13 23:14 - 2018-02-05 22:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools
  1127. 2018-05-13 23:14 - 2017-09-29 15:46 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
  1128. 2018-05-13 23:14 - 2017-09-09 20:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
  1129. 2018-05-13 23:14 - 2017-09-07 16:16 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
  1130. 2018-05-13 23:14 - 2017-08-23 14:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++
  1131. 2018-05-13 23:14 - 2017-07-24 12:22 - 000000000 ____D C:\Program Files\UNP
  1132. 2018-05-13 23:14 - 2017-07-24 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK
  1133. 2018-05-13 23:14 - 2017-07-19 19:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
  1134. 2018-05-13 23:14 - 2016-09-29 22:07 - 000000000 ____D C:\WINDOWS\SysWOW64\LiveUpdate
  1135. 2018-05-13 23:14 - 2016-09-27 17:34 - 000000000 ____D C:\Program Files\Intel
  1136. 2018-05-13 23:13 - 2017-09-07 16:15 - 000000000 ____D C:\Program Files\Realtek
  1137. 2018-05-13 23:13 - 2017-09-05 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadwin
  1138. 2018-05-13 23:13 - 2017-07-31 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\spool
  1139. 2018-05-13 23:13 - 2017-07-31 15:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
  1140. 2018-05-13 23:13 - 2017-07-28 14:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
  1141. 2018-05-13 23:13 - 2016-09-27 17:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
  1142. 2018-05-13 23:13 - 2016-09-27 17:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
  1143. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
  1144. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
  1145. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
  1146. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
  1147. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
  1148. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
  1149. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
  1150. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
  1151. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
  1152. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
  1153. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
  1154. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
  1155. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
  1156. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
  1157. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
  1158. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
  1159. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
  1160. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
  1161. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
  1162. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
  1163. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
  1164. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
  1165. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
  1166. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
  1167. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
  1168. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
  1169. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
  1170. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
  1171. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
  1172. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
  1173. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
  1174. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
  1175. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
  1176. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
  1177. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
  1178. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
  1179. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
  1180. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
  1181. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
  1182. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
  1183. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
  1184. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
  1185. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
  1186. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
  1187. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
  1188. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
  1189. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
  1190. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
  1191. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
  1192. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
  1193. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
  1194. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
  1195. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
  1196. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
  1197. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
  1198. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
  1199. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
  1200. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
  1201. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
  1202. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
  1203. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
  1204. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
  1205. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
  1206. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
  1207. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
  1208. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
  1209. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
  1210. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
  1211. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\yo-NG
  1212. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
  1213. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\wo-SN
  1214. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\vi-VN
  1215. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
  1216. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ur-PK
  1217. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ug-CN
  1218. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tt-RU
  1219. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
  1220. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tk-TM
  1221. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ti-ET
  1222. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
  1223. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\te-IN
  1224. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sw-KE
  1225. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
  1226. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
  1227. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sq-AL
  1228. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
  1229. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\rw-RW
  1230. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\quz-PE
  1231. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
  1232. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\prs-AF
  1233. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\pa-IN
  1234. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
  1235. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\or-IN
  1236. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
  1237. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\nn-NO
  1238. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ne-NP
  1239. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mt-MT
  1240. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mr-IN
  1241. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mn-MN
  1242. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ml-IN
  1243. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mk-MK
  1244. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
  1245. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lo-LA
  1246. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lb-LU
  1247. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ky-KG
  1248. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
  1249. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kok-IN
  1250. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kn-IN
  1251. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\km-KH
  1252. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
  1253. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ka-GE
  1254. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\is-IS
  1255. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ig-NG
  1256. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\id-ID
  1257. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\hy-AM
  1258. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
  1259. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gu-IN
  1260. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gd-GB
  1261. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ga-IE
  1262. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fil-PH
  1263. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fa-IR
  1264. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\cy-GB
  1265. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
  1266. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
  1267. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
  1268. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-IN
  1269. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-BD
  1270. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\be-BY
  1271. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
  1272. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\as-IN
  1273. 2018-05-13 23:11 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\af-ZA
  1274. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput
  1275. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
  1276. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ta-in
  1277. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\si-lk
  1278. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\setup
  1279. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\appraiser
  1280. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\am-et
  1281. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Provisioning
  1282. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr
  1283. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer
  1284. 2018-05-13 23:11 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
  1285. 2018-05-13 23:10 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
  1286. 2018-05-13 23:10 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\MUI
  1287. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
  1288. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
  1289. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
  1290. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
  1291. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\en-GB
  1292. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lv-LV
  1293. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lt-LT
  1294. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\et-EE
  1295. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\es-MX
  1296. 2018-05-13 23:09 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\en-GB
  1297. 2018-05-13 23:01 - 2018-04-14 12:25 - 000000766 _____ C:\Users\maro\Desktop\Cheat Engine.lnk
  1298. 2018-05-13 22:39 - 2016-09-29 21:14 - 000000000 ___RD C:\Users\maro\OneDrive
  1299. 2018-05-13 22:20 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\USOPrivate
  1300. 2018-05-13 22:20 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\windows nt
  1301. 2018-05-13 22:20 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Defender
  1302. 2018-05-13 22:20 - 2018-04-11 23:04 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
  1303. 2018-05-13 22:20 - 2017-11-08 15:42 - 000000000 ___RD C:\Users\maro\3D Objects
  1304. 2018-05-13 22:20 - 2016-09-27 17:31 - 000000000 __RHD C:\Users\Public\AccountPictures
  1305. 2018-05-13 22:19 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
  1306. 2018-05-13 22:19 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\Registration
  1307. 2018-05-13 22:18 - 2016-10-12 20:26 - 000023140 _____ C:\WINDOWS\system32\emptyregdb.dat
  1308. 2018-05-13 22:17 - 2018-02-09 23:46 - 000000000 ____D C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6
  1309. 2018-05-13 22:16 - 2017-11-10 19:42 - 000000000 ____D C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp
  1310. 2018-05-13 22:16 - 2017-09-07 16:15 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
  1311. 2018-05-13 22:16 - 2017-09-07 16:15 - 000000000 ____D C:\WINDOWS\system32\DAX2
  1312. 2018-05-13 22:15 - 2017-09-07 16:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
  1313. 2018-05-13 22:15 - 2017-09-07 16:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
  1314. 2018-05-11 09:04 - 2017-12-05 23:26 - 000007969 _____ C:\WINDOWS\BRRBCOM.INI
  1315. 2018-05-10 12:13 - 2016-09-28 10:34 - 000000000 ____D C:\WINDOWS\system32\MRT
  1316. 2018-05-10 12:12 - 2017-10-12 11:02 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe
  1317. 2018-05-10 12:11 - 2016-09-28 10:34 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
  1318. 2018-05-04 22:04 - 2017-11-27 20:36 - 000016895 _____ C:\Users\maro\Desktop\ZIOŁA.xlsx
  1319. 2018-05-04 21:49 - 2018-04-05 18:11 - 000580999 _____ C:\Users\maro\Desktop\Excel dla Klaudii.xlsx
  1320. 2018-05-01 23:22 - 2018-04-12 01:41 - 000835064 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
  1321. 2018-05-01 23:22 - 2018-04-12 01:41 - 000179704 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
  1322.  
  1323. ==================== Pliki w katalogu głównym wybranych folderów =======
  1324.  
  1325. 2017-12-08 10:13 - 2017-12-08 11:03 - 000000279 _____ () C:\Users\maro\AppData\Roaming\enigmaProviderCertSign.properties
  1326. 2017-12-08 10:13 - 2017-12-08 10:13 - 000000277 _____ () C:\Users\maro\AppData\Roaming\enigmaSecApp.properties
  1327. 2018-04-23 11:44 - 2018-04-23 11:44 - 000000000 _____ () C:\Users\maro\AppData\Roaming\FC29FA0894FE.ini
  1328. 2017-09-12 08:35 - 2017-09-12 08:35 - 000000003 _____ () C:\Users\maro\AppData\Roaming\ispnetkey.dll
  1329. 2017-10-17 20:54 - 2017-10-27 16:40 - 000000619 _____ () C:\Users\maro\AppData\Roaming\pacemaker.ini
  1330. 2017-10-17 20:54 - 2017-10-27 16:40 - 000041090 _____ () C:\Users\maro\AppData\Roaming\pacemaker_songparams.txt
  1331. 2018-05-27 23:36 - 2018-05-27 23:36 - 007611392 _____ () C:\Users\maro\AppData\Local\agent.dat
  1332. 2018-05-27 23:36 - 2018-05-27 23:36 - 001895382 _____ () C:\Users\maro\AppData\Local\Bamcore.bin
  1333. 2018-05-27 23:36 - 2018-05-27 23:36 - 000070896 _____ () C:\Users\maro\AppData\Local\Config.xml
  1334. 2018-05-27 23:36 - 2018-05-27 23:36 - 000278508 _____ () C:\Users\maro\AppData\Local\Domstring.tst
  1335. 2018-05-27 23:36 - 2018-05-27 23:36 - 000016416 _____ () C:\Users\maro\AppData\Local\InstallationConfiguration.xml
  1336. 2018-05-27 23:36 - 2018-05-27 23:36 - 000140800 _____ () C:\Users\maro\AppData\Local\installer.dat
  1337. 2018-05-27 23:36 - 2018-05-27 23:36 - 000005568 _____ () C:\Users\maro\AppData\Local\md.xml
  1338. 2018-05-27 23:36 - 2018-05-27 23:36 - 000126464 _____ () C:\Users\maro\AppData\Local\noah.dat
  1339. 2018-05-27 23:36 - 2018-05-27 23:41 - 000929792 _____ () C:\Users\maro\AppData\Local\sham.db
  1340. 2018-05-27 23:36 - 2018-05-27 23:36 - 001986760 _____ () C:\Users\maro\AppData\Local\UnaLux.tst
  1341. 2018-05-27 23:36 - 2018-05-27 23:36 - 000032038 _____ () C:\Users\maro\AppData\Local\uninstall_temp.ico
  1342.  
  1343. Niektóre pliki w TEMP:
  1344. ====================
  1345. 2018-05-27 23:35 - 2018-05-27 23:35 - 000016384 _____ (Greenville) C:\Users\maro\AppData\Local\Temp\capi.exe
  1346. 2018-05-27 23:38 - 2018-05-27 23:38 - 000020480 _____ (noOrg) C:\Users\maro\AppData\Local\Temp\cubesta.exe
  1347. 2018-05-27 23:35 - 2018-05-27 23:35 - 001793368 _____ () C:\Users\maro\AppData\Local\Temp\gimi.exe
  1348. 2018-05-27 23:37 - 2018-05-27 23:37 - 000375522 _____ ( ) C:\Users\maro\AppData\Local\Temp\rbpusrw4jmb.exe
  1349. 2018-05-27 23:35 - 2018-05-27 23:35 - 003303331 _____ () C:\Users\maro\AppData\Local\Temp\tilusorel.exe
  1350. 2018-05-27 23:39 - 2018-05-27 23:39 - 000976896 _____ () C:\Users\maro\AppData\Local\Temp\Ummi downloader 2.0.exe
  1351.  
  1352. ==================== Bamital & volsnap ======================
  1353.  
  1354. (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
  1355.  
  1356. C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
  1357. C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
  1358. C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
  1359. C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
  1360. C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
  1361. C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
  1362. C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
  1363. C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
  1364. C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
  1365. C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
  1366. C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
  1367. C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
  1368. C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
  1369. C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
  1370. C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
  1371.  
  1372. LastRegBack: 2018-05-13 22:15
  1373.  
  1374. ==================== Koniec FRST.txt ============================
  1375. Rezultat skanowania skrótów użytkowników (x64) Wersja: 16.05.2018 01
  1376. Uruchomiony przez maro (28-05-2018 08:34:13)
  1377. Uruchomiony z F:\
  1378. Tryb startu: Normal
  1379.  
  1380. ==================== Skróty =============================
  1381.  
  1382. (Wybrane wejścia mogą zostać załączone w celu ich zresetowania lub usunięcia.)
  1383.  
  1384.  
  1385. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\01 - File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1386. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\03 - Documents.lnk -> C:\Users\maro\Documents ()
  1387. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\04 - Downloads.lnk -> C:\Users\maro\Downloads ()
  1388. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\05 - Music.lnk -> C:\Users\maro\Music ()
  1389. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\06 - Pictures.lnk -> C:\Users\maro\Pictures ()
  1390. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\07 - Videos.lnk -> C:\Users\maro\Videos ()
  1391. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\08 - Homegroup.lnk -> Microsoft.Windows.Homegroup
  1392. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\09 - Network.lnk -> Microsoft.Windows.Network
  1393. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu Places\10 - UserProfile.lnk -> C:\Users\maro ()
  1394. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk -> C:\Program Files\Microsoft Office\root\Office16\MSACCESS.EXE (Microsoft Corporation)
  1395. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files\Microsoft Office\root\Office16\EXCEL.EXE (Microsoft Corporation)
  1396. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immersive Control Panel.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation)
  1397. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LOOT.lnk -> E:\Gry\LOOT\LOOT.exe ()
  1398. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTE.EXE (Microsoft Corporation)
  1399. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE (Microsoft Corporation)
  1400. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files\Microsoft Office\root\Office16\POWERPNT.EXE (Microsoft Corporation)
  1401. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk -> C:\Program Files\Microsoft Office\root\Office16\MSPUB.EXE (Microsoft Corporation)
  1402. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk -> C:\Program Files\Microsoft Office\root\Office16\lync.exe (Microsoft Corporation)
  1403. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE (Microsoft Corporation)
  1404. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\StartUp\HP Digital Imaging Monitor.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett-Packard Co.)
  1405. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision Photo Viewer.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstview.exe (NVIDIA Corporation)
  1406. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++\Notepad++.lnk -> F:\Notepad++\notepad++.exe (Don HO don.h@free.fr)
  1407. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nahimic for MSI\Nahimic for MSI.lnk -> C:\Program Files\Nahimic\NahimicMSI\UserInterface\NahimicMSIUILauncher.exe ()
  1408. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nahimic for MSI\Nаhimiс for MSI.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.rehcnualiuismcimihan.bat (Brak pliku)
  1409. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI\Live Update\Dezinstalacja aplikacji Live Update.lnk -> C:\Program Files (x86)\MSI\Live Update\unins000.exe ()
  1410. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI\Live Update\Live Update.lnk -> C:\Program Files (x86)\MSI\Live Update\Live Update.exe (Micro-Star INT'L CO., LTD.)
  1411. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Configure Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\javacpl.exe (Oracle Corporation)
  1412. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Small Business Advantage\Small Business Advantage.lnk -> C:\Program Files (x86)\Intel\Intel(R) Small Business Advantage Next\Sba.exe (Intel Corporation)
  1413. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel® Small Business Advantage\Intel® Small Business Advantage.lnk -> C:\Program Files\Intel\Intel(R) Small Business Advantage\UI\IntelSmallBusinessAdvantage.exe (Intel Corporation)
  1414. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Management Engine Components\Intel(R) Management and Security Status.lnk -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PrivacyIconClient.exe (Intel Corporation)
  1415. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Pomoc.lnk -> C:\Program Files (x86)\HP\Digital Imaging\help\aio21.chm ()
  1416. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Readme.lnk -> C:\Program Files (x86)\HP\Digital Imaging\help\AIO_CDB_readme\readme.html ()
  1417. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Witryna pomocy technicznej.lnk -> C:\Program Files (x86)\HP\Digital Imaging\hp psc 1400 series\help\HP Product Support Website.url ()
  1418. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Tower of Time\Tower of Time.lnk -> E:\Gry\Tower of Time\TowerOfTime.exe ()
  1419. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games\Tower of Time\Uninstall Tower of Time.lnk -> E:\Gry\Tower of Time\unins000.exe ()
  1420. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gadwin\Gadwin PrintScreen (64-Bit)\Gadwin PrintScreen (64-Bit).lnk -> C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe (Gadwin Systems)
  1421. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity\e-pity 2017 - program, pity roczne, e-deklaracje.lnk -> E:\Programy\e-pity\e-pity.exe ()
  1422. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity\Odinstaluj e-pity 2017.lnk -> E:\Programy\e-pity\unins000.exe ()
  1423. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\Brother Utilities.lnk -> C:\Program Files (x86)\Brother\BrLauncher\BrLauncher.exe (Brother Industories, Ltd.)
  1424. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brother\Вrоthеr Utilities.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.rehcnualrb.bat (Brak pliku)
  1425. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Component Services.lnk -> C:\Windows\System32\comexp.msc ()
  1426. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\dfrgui.lnk -> C:\Windows\System32\dfrgui.exe (Microsoft Corporation)
  1427. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Disk Cleanup.lnk -> C:\Windows\System32\cleanmgr.exe (Microsoft Corporation)
  1428. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\iSCSI Initiator.lnk -> C:\Windows\System32\iscsicpl.exe (Microsoft Corporation)
  1429. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Memory Diagnostics Tool.lnk -> C:\Windows\System32\MdSched.exe (Microsoft Corporation)
  1430. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (32-bit).lnk -> C:\Windows\SysWOW64\odbcad32.exe (Microsoft Corporation)
  1431. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\ODBC Data Sources (64-bit).lnk -> C:\Windows\System32\odbcad32.exe (Microsoft Corporation)
  1432. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\RecoveryDrive.lnk -> C:\Windows\System32\RecoveryDrive.exe (Microsoft Corporation)
  1433. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\services.lnk -> C:\Windows\System32\services.msc ()
  1434. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Configuration.lnk -> C:\Windows\System32\msconfig.exe (Microsoft Corporation)
  1435. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\System Information.lnk -> C:\Windows\System32\msinfo32.exe (Microsoft Corporation)
  1436. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Windows Defender Firewall with Advanced Security.lnk -> C:\Windows\System32\WF.msc ()
  1437. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Math Input Panel.lnk -> C:\Program Files\Common Files\Microsoft Shared\ink\mip.exe (Microsoft Corporation)
  1438. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Paint.lnk -> C:\Windows\System32\mspaint.exe (Microsoft Corporation)
  1439. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Quick Assist.lnk -> C:\Windows\System32\quickassist.exe (Microsoft Corporation)
  1440. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Remote Desktop Connection.lnk -> C:\Windows\System32\mstsc.exe (Microsoft Corporation)
  1441. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Snipping Tool.lnk -> C:\Windows\System32\SnippingTool.exe (Microsoft Corporation)
  1442. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Steps Recorder.lnk -> C:\Windows\System32\psr.exe (Microsoft Corporation)
  1443. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Fax and Scan.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation)
  1444. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Wordpad.lnk -> C:\Program Files\Windows NT\Accessories\wordpad.exe (Microsoft Corporation)
  1445. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\XPS Viewer.lnk -> C:\Windows\System32\xpsrchvw.exe (Microsoft Corporation)
  1446. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\System Tools\Character Map.lnk -> C:\Windows\System32\charmap.exe (Microsoft Corporation)
  1447. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip File Manager.lnk -> C:\Program Files\7-Zip\7zFM.exe (Igor Pavlov)
  1448. Shortcut: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip\7-Zip Help.lnk -> C:\Program Files\7-Zip\7-zip.chm ()
  1449. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1450. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
  1451. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
  1452. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1453. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1454. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
  1455. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
  1456. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1457. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
  1458. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
  1459. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
  1460. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
  1461. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
  1462. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
  1463. Shortcut: C:\Users\Default\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1464. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1465. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1466. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1467. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1468. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
  1469. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
  1470. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
  1471. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
  1472. Shortcut: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
  1473. Shortcut: C:\Users\maro\Links\Desktop.lnk -> C:\Users\maro\Desktop ()
  1474. Shortcut: C:\Users\maro\Links\Downloads.lnk -> C:\Users\maro\Downloads ()
  1475. Shortcut: C:\Users\maro\Desktop\Battle Brothers - Lindwurm.lnk -> E:\Gry\Battle Brothers - Lindwurm\win32\BattleBrothers.exe ()
  1476. Shortcut: C:\Users\maro\Desktop\Cheat Engine.lnk -> E:\Programy\Cheat Engine 6.7\Cheat Engine.exe ()
  1477. Shortcut: C:\Users\maro\Desktop\Dokumenty — skrót .lnk -> E:\Dokumenty ()
  1478. Shortcut: C:\Users\maro\Desktop\f4se_loader — skrót .lnk -> C:\Fallout 4 GOTY\f4se_loader.exe ()
  1479. Shortcut: C:\Users\maro\Desktop\Think and Grow Rich — skrót 108.lnk -> E:\Dokumenty\E-booki\THINK AND GROW RICH - Napoleon Hill\Think and Grow Rich.pdf ()
  1480. Shortcut: C:\Users\maro\Desktop\Tor Browser — skrót .lnk -> E:\Programy\Tor Browser ()
  1481. Shortcut: C:\Users\maro\Desktop\WhatsApp.lnk -> C:\Users\maro\AppData\Local\WhatsApp\WhatsApp.exe (WhatsApp)
  1482. Shortcut: C:\Users\maro\Desktop\µTorrent.lnk -> C:\Users\maro\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
  1483. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\µTorrent.lnk -> C:\Users\maro\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
  1484. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Cent Browser.lnk -> E:\CentBrowser\CentBrowser\Application\chrome.exe (Dan Deng)
  1485. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\e-pity 2017 - program, pity roczne, e-deklaracje.lnk -> E:\Programy\e-pity\e-pity.exe ()
  1486. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk -> C:\Users\maro\AppData\Local\FluxSoftware\Flux\flux.exe (f.lux Software LLC)
  1487. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kosz.lnk -> [LFx@_dP/N1SPSU(Ly9K-e)::{645FF040-5081-101B-9F08-00AA002F954E}]
  1488. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Сеnt Вrоwser.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku)
  1489. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1490. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE (x86).lnk -> C:\Windows\SysWOW64\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
  1491. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell ISE.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\PowerShell_ISE.exe (Microsoft Corporation)
  1492. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell\Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1493. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp\WhatsApp.lnk -> C:\Users\maro\AppData\Local\WhatsApp\WhatsApp.exe (WhatsApp)
  1494. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1495. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\computer.lnk -> C:\Windows\explorer.exe,-30
  1496. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Control Panel.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
  1497. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1498. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools\Run.lnk -> C:\Windows\System32\shell32.dll (Microsoft Corporation)
  1499. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6\Python 3.6 (32-bit).lnk -> E:\Programy\Python\python.exe (Python Software Foundation)
  1500. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Internet Explorer.lnk -> C:\Program Files\internet explorer\iexplore.exe (Microsoft Corporation)
  1501. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Intеrnet Еxplоrеr.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.erolpxei.bat (Brak pliku)
  1502. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories\Notepad.lnk -> C:\Windows\System32\notepad.exe (Microsoft Corporation)
  1503. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Magnify.lnk -> C:\Windows\System32\Magnify.exe (Microsoft Corporation)
  1504. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\Narrator.lnk -> C:\Windows\System32\Narrator.exe (Microsoft Corporation)
  1505. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility\On-Screen Keyboard.lnk -> C:\Windows\System32\osk.exe (Microsoft Corporation)
  1506. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Windows\SendTo\Transfer plików Bluetooth.LNK -> C:\Windows\System32\fsquirt.exe (Microsoft Corporation)
  1507. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Shows Desktop.lnk -> C:\Windows\System32\imageres.dll (Microsoft Corporation)
  1508. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\Window Switcher.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1509. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\µTorrent.lnk -> C:\Users\maro\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc.)
  1510. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\File Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation)
  1511. Shortcut: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\6f9cb17000d7fedd\Сent Вrowser.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.emorhc.bat (Brak pliku)
  1512. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\01 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1513. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\01a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1514. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\02 - Command Prompt.lnk -> C:\Windows\System32\cmd.exe (Microsoft Corporation)
  1515. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\02a - Windows PowerShell.lnk -> C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe (Microsoft Corporation)
  1516. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\03 - Computer Management.lnk -> C:\Windows\System32\compmgmt.msc ()
  1517. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\04 - Disk Management.lnk -> C:\Windows\System32\diskmgmt.msc ()
  1518. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\07 - Event Viewer.lnk -> C:\Windows\System32\eventvwr.exe (Microsoft Corporation)
  1519. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\09 - Mobility Center.lnk -> C:\Windows\System32\mblctr.exe (Microsoft Corporation)
  1520. Shortcut: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group2\4 - Control Panel.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation)
  1521. Shortcut: C:\Users\Public\Desktop\Brother Utilities.lnk -> C:\Program Files (x86)\Brother\BrLauncher\BrLauncher.exe (Brother Industories, Ltd.)
  1522. Shortcut: C:\Users\Public\Desktop\Company of Heroes 2.lnk -> E:\Gry\Company of Heroes 2\RelicCoH2.exe (Relic Entertainment Inc.)
  1523. Shortcut: C:\Users\Public\Desktop\Gadwin PrintScreen (64-Bit).lnk -> C:\Program Files\Gadwin\Gadwin PrintScreen\PrintScreen64.exe (Gadwin Systems)
  1524. Shortcut: C:\Users\Public\Desktop\Nexus Mod Manager.lnk -> E:\Gry\Nexus Mod Manager\NexusClient.exe (Black Tree Gaming)
  1525. Shortcut: C:\Users\Public\Desktop\PDF-Viewer.lnk -> E:\Tracker Software\PDF Viewer\PDFXCview.exe (Tracker Software Products (Canada) Ltd.)
  1526. Shortcut: C:\Users\Public\Desktop\Tower of Time.lnk -> E:\Gry\Tower of Time\TowerOfTime.exe ()
  1527. Shortcut: C:\Users\Public\Desktop\Winamp.lnk -> E:\Winamp\winamp.exe (Nullsoft, Inc.)
  1528. Shortcut: C:\Users\Public\Desktop\Вrоther Utilitiеs.lnk -> C:\Users\maro\AppData\Roaming\Browsers\exe.rehcnualrb.bat (Brak pliku)
  1529.  
  1530.  
  1531. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
  1532. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TP-LINK\Uninstall - TP-LINK TL-WN881ND Driver.lnk -> C:\Program Files (x86)\InstallShield Installation Information\{FDA7E907-6539-42C1-9721-0239C281B336}\setup.exe (Macrovision Corporation) -> -runfromtemp -removeonly DriverOnly
  1533. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Tools\Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /7
  1534. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation\3D Vision\3D Vision preview pack 1.lnk -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvstlink.exe (NVIDIA Corporation) -> /show
  1535. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools\Database Compare.lnk -> C:\Program Files\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files (x86)\Microsoft Office\Office16\DCF\DATABASECOMPARE.EXE"
  1536. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools\Office Upload Center.lnk -> C:\Program Files\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files\Microsoft Office\Root\Office16\MSOUC.EXE"
  1537. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2016 Tools\Spreadsheet Compare.lnk -> C:\Program Files\Microsoft Office\root\client\AppVLP.exe (Microsoft Corporation) -> "C:\Program Files (x86)\Microsoft Office\Office16\DCF\SPREADSHEETCOMPARE.EXE"
  1538. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\About Java.lnk -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\javacpl.exe (Oracle Corporation) -> -tab about
  1539. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Check For Updates.lnk -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\javacpl.exe (Oracle Corporation) -> -tab update
  1540. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel\Intel(R) Update Manager\Intel(R) Update Manager.lnk -> C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe () -> --showui
  1541. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Dezinstalacja.lnk -> C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\setup\hpzscr40.exe (Hewlett-Packard) -> -datfile hposcr19.dat -onestop
  1542. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Dodaj urządzenie.lnk -> C:\Program Files (x86)\HP\Digital Imaging\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}\hpzstub.exe (Hewlett-Packard) -> -addadevice
  1543. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP\PSC All-In-One 1400 series\Rejestracja produktu.lnk -> C:\Program Files (x86)\HP\Digital Imaging\bin\hpqwrg.exe (Hewlett-Packard Company) -> "HP PSC 1400 series"
  1544. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Computer Management.lnk -> C:\Windows\System32\compmgmt.msc () -> /s
  1545. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Event Viewer.lnk -> C:\Windows\System32\eventvwr.msc () -> /s
  1546. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Performance Monitor.lnk -> C:\Windows\System32\perfmon.msc () -> /s
  1547. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Resource Monitor.lnk -> C:\Windows\System32\perfmon.exe (Microsoft Corporation) -> /res
  1548. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Administrative Tools\Task Scheduler.lnk -> C:\Windows\System32\taskschd.msc () -> /s
  1549. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessories\Windows Media Player.lnk -> C:\Program Files (x86)\Windows Media Player\wmplayer.exe (Microsoft Corporation) -> /prefetch:1
  1550. ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Accessibility\Speech Recognition.lnk -> C:\Windows\Speech\Common\sapisvr.exe (Microsoft Corporation) -> -SpeechUX
  1551. ShortcutWithArgument: C:\Users\Default\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
  1552. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
  1553. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
  1554. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
  1555. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
  1556. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
  1557. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
  1558. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
  1559. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
  1560. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
  1561. ShortcutWithArgument: C:\Users\Default\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
  1562. ShortcutWithArgument: C:\Users\maro\Desktop\centbrowser.lnk -> E:\CentBrowser\CentBrowser\Application\chrome.exe (Dan Deng) -> chrome
  1563. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6\IDLE (Python 3.6 32-bit).lnk -> E:\Programy\Python\pythonw.exe (Python Software Foundation) -> "E:\Programy\Python\Lib\idlelib\idle.pyw"
  1564. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Python 3.6\Python 3.6 Module Docs (32-bit).lnk -> E:\Programy\Python\python.exe (Python Software Foundation) -> -m pydoc -b
  1565. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Windows\SendTo\Fax Recipient.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
  1566. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Windows\SendTo\Odbiorca faksu.lnk -> C:\Windows\System32\WFS.exe (Microsoft Corporation) -> /SendTo
  1567. ShortcutWithArgument: C:\Users\maro\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\6f9cb17000d7fedd\Cent Browser.lnk -> E:\CentBrowser\CentBrowser\Application\chrome.exe (Dan Deng) -> --profile-directory="Profile 1"
  1568. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - Network Connections.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> ::{7007ACC7-3202-11D1-AAD2-00805FC1270E}
  1569. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\04-1 - NetworkStatus.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageNetworkStatus
  1570. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\05 - Device Manager.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.DeviceManager
  1571. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\06 - System.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.System
  1572. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\06 - SystemAbout.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPagePCSystemInfo
  1573. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\08 - Power Options.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.PowerOptions
  1574. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\08 - PowerAndSleep.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageScreenPowerAndSleep
  1575. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\10 - AppsAndFeatures.lnk -> C:\Windows\ImmersiveControlPanel\systemsettings.exe (Microsoft Corporation) -> page=SettingsPageAppsSizes
  1576. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group3\10 - Programs and Features.lnk -> C:\Windows\System32\control.exe (Microsoft Corporation) -> /name Microsoft.ProgramsAndFeatures
  1577. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group2\1 - Run.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}
  1578. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group2\2 - Search.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{2559a1f8-21d7-11d4-bdaf-00c04f60b9f0}
  1579. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group2\3 - Windows Explorer.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{52205fd8-5dfb-447d-801a-d0b52f2e83e1}
  1580. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group2\5 - Task Manager.lnk -> C:\Windows\System32\Taskmgr.exe (Microsoft Corporation) -> /0
  1581. ShortcutWithArgument: C:\Users\maro\AppData\Local\Microsoft\Windows\WinX\Group1\1 - Desktop.lnk -> C:\Windows\explorer.exe (Microsoft Corporation) -> shell:::{3080F90D-D7AD-11D9-BD98-0000947B0257}
  1582.  
  1583.  
  1584. InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI\Live Update\MSI Website.url -> URL: hxxp://www.msi.com/
  1585. InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Get Help.url -> URL: hxxp://java.com/help
  1586. InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java\Visit Java.com.url -> URL: hxxp://java.com/
  1587. InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity\fillUp online - przyjazne formularze, umowy, druki.url -> URL: hxxp://fillup.pl/online
  1588. InternetURL: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\e-pity\Przejdź na stronę WWW o e-pity.url -> URL: hxxp://e-pity.pl
  1589. InternetURL: C:\Users\maro\Favorites\Bing.url -> URL: hxxp://go.microsoft.com/fwlink/p/?LinkId=255142
  1590.  
  1591. ==================== Koniec Shortcut.txt =============================
Add Comment
Please, Sign In to add comment