Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 24.10.2018
- Uruchomiony przez Admin (administrator) ADMIN-KOMPUTER (07-11-2018 22:09:13)
- Uruchomiony z C:\Users\Admin\AppData\Local\Temp\scoped_dir1776_25811
- Załadowane profile: Admin (Dostępne profile: Admin)
- Platform: Windows 7 Professional Service Pack 1 (X64) Język: Polski (Polska)
- Internet Explorer Wersja 11 (Domyślna przeglądarka: Opera)
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
- (ESET) C:\Program Files\ESET\ESET Security\egui.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
- (Glarysoft Ltd) C:\Program Files (x86)\Glary Utilities 5\Integrator.exe
- (O2Micro International) C:\Windows\System32\o2flash.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera_crashreporter.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Opera Software) C:\Program Files (x86)\Opera\56.0.3051.99\opera.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v2.0.50727\mscorsvw.exe
- (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
- ==================== Rejestr (filtrowane) ===========================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [177928 2018-10-31] (ESET)
- HKLM-x32\...\Run: [] => [X]
- HKU\S-1-5-21-211379173-1308523029-2236797906-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
- Lsa: [Notification Packages] scecli C:\Program Files\WIDCOMM\Bluetooth Software\BtwProximityCP.dll
- BootExecute: autocheck autochk *
- GroupPolicy: Ograniczenia ? <==== UWAGA
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{2E7FD06F-FAD1-48AC-B57C-7EE84E328622}: [DhcpNameServer] 192.168.42.129
- Tcpip\..\Interfaces\{63B5476D-D411-4D7E-87A3-52AEB1F413F6}: [DhcpNameServer] 192.168.0.1
- Tcpip\..\Interfaces\{B725EC89-2114-474F-ABBD-D83958D39C56}: [DhcpNameServer] 192.168.42.129
- Tcpip\..\Interfaces\{EB874090-2A57-4CB6-8102-DDBB67CAB5B6}: [DhcpNameServer] 192.168.0.1
- Internet Explorer:
- ==================
- HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=msnhome
- HKU\S-1-5-21-211379173-1308523029-2236797906-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
- BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-07-20] (Oracle Corporation)
- BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-07-20] (Oracle Corporation)
- BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2018-09-13] (Adobe Systems Incorporated)
- FireFox:
- ========
- FF DefaultProfile: 6w47dmi2.default
- FF ProfilePath: C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6w47dmi2.default [2018-11-07]
- FF user.js: detected! => C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6w47dmi2.default\user.js [2016-11-24]
- FF Extension: (Visual Bookmarks) - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6w47dmi2.default\Extensions\vb@yandex.ru.xpi [2017-03-16] [Przestarzałe]
- FF Extension: ("Yandex Elements") - C:\Users\Admin\AppData\Roaming\Mozilla\Firefox\Profiles\6w47dmi2.default\Extensions\yasearch@yandex.ru.xpi [2017-03-22] [Przestarzałe]
- FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2018-09-12]
- FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
- FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-07-20] (Oracle Corporation)
- FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-07-20] (Oracle Corporation)
- FF Plugin: @microsoft.com/GENUINE -> disabled [Brak pliku]
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [Brak pliku]
- FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [Brak pliku]
- FF Plugin-x32: @microsoft.com/GENUINE -> disabled [Brak pliku]
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-19] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-19] (Google Inc.)
- FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2018-09-13] (Adobe Systems Inc.)
- FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.)
- Chrome:
- =======
- CHR HomePage: Default -> hxxp://www.google.com/
- CHR StartupUrls: Default -> "hxxps://mail.google.com/mail/?hl=pl&tab=wm#inbox/1327549bcee9d530","chrome://downloads/","hxxp://www.exsite.pl/","hxxps://www.google.com/","hxxps://www.google.com/","hxxps://www.google.com/","hxxp://www.google.com","hxxps://www.google.com/","hxxps://www.google.com/"
- CHR Session Restore: Default -> [funkcja włączona]
- CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default [2018-11-07]
- CHR Extension: (Dokumenty) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
- CHR Extension: (Dysk Google) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06]
- CHR Extension: (YouTube) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-06]
- CHR Extension: (Adblock Plus) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-09-11]
- CHR Extension: (Excel Viewer, Editor) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpdiahdjhpfaafoffpoaafcmjbcfmaj [2017-01-03]
- CHR Extension: (Adobe Acrobat) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2017-03-08]
- CHR Extension: (Gmail offline) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejidjjhkpiempkbhmpbfngldlkglhimk [2016-09-06]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-31]
- CHR Extension: (AdBlock) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-09-19]
- CHR Extension: (FileFox) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\jpfljeojphpcoeafdhbfannleggjhcma [2017-10-02]
- CHR Extension: (Download) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nccjoeeljedbmkidebclpoabijggpbdp [2016-09-06]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
- CHR Extension: (Checker Plus for Gmail™) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oeopbcgkkoapgobdbedcemjljbihmemj [2018-10-03]
- CHR Extension: (e-pity - dodatek) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ofoeigeaodhbjogdigckajfhjbonaofg [2018-03-17]
- CHR Extension: (Gmail) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-06]
- CHR Extension: (Chrome Media Router) - C:\Users\Admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-24]
- CHR Profile: C:\Users\Admin\AppData\Local\Google\Chrome\User Data\System Profile [2018-11-07]
- CHR HKU\S-1-5-21-211379173-1308523029-2236797906-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx
- CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx
- ==================== Usługi (filtrowane) ====================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S4 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems, Incorporated)
- S3 ApHidMonitorService; C:\Program Files\DellTPad\HidMonitorSvc.exe [104744 2016-05-17] (Alps Electric Co., Ltd.)
- S3 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [208792 2018-02-10] (Dell Inc.)
- S3 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3346320 2018-02-10] (Dell Inc.)
- S3 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [217488 2018-02-10] (Dell Inc.)
- S3 Dell Hardware Support; C:\Program Files\Dell\SupportAssistAgent\PCDr\SupportAssist\6.0.6992.1236\DSAPI.exe [935744 2018-08-30] (PC-Doctor, Inc.)
- R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2302152 2018-10-31] (ESET)
- S3 hostcontrolsvc; C:\Program Files\Broadcom\CV\bin\HostControlService.exe [1045736 2016-07-20] (Broadcom Corporation)
- S3 hoststoragesvc; C:\Program Files\Broadcom\CV\bin\HostStorageService.exe [42216 2016-07-20] (Broadcom Corporation)
- S3 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [329192 2016-06-02] (Intel Corporation)
- S3 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Brak podpisu cyfrowego]
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation)
- R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
- R2 O2FLASH; C:\Windows\system32\o2flash.exe [244328 2011-11-16] (O2Micro International)
- S4 O2SDIOAssist; C:\Windows\SysWOW64\srvany.exe [8192 2003-04-18] () [Brak podpisu cyfrowego]
- S3 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation)
- S4 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [45016 2018-07-08] (Dell Inc.)
- S3 ushupgradesvc; C:\Program Files\Broadcom\CV\bin\UshUpgradeService.exe [257760 2016-07-20] ()
- S3 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation)
- R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
- S4 WsAppService; C:\Program Files (x86)\Wondershare\WAF\2.4.2.223\WsAppService.exe [473312 2017-03-20] (Wondershare)
- ===================== Sterowniki (filtrowane) ======================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [303712 2018-09-04] (Bluestack System Inc. )
- R3 DDDriver; C:\Windows\System32\drivers\DDDriver64Dcsa.sys [41608 2018-02-10] (Dell Inc.)
- R3 DellProf; C:\Windows\System32\drivers\DellProf.sys [41208 2018-02-10] (Dell Computer Corporation)
- R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [143448 2018-10-31] (ESET)
- R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [188832 2018-10-31] (ESET)
- S4 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [50144 2018-09-17] (ESET)
- S4 epfw; C:\Windows\System32\DRIVERS\epfw.sys [82304 2018-09-17] (ESET)
- S4 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [61016 2018-09-17] (ESET)
- R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [109864 2018-10-31] (ESET)
- S3 epmntdrv; C:\Windows\system32\epmntdrv.sys [24056 2016-01-14] ()
- S3 epmntdrv; C:\Windows\SysWOW64\epmntdrv.sys [21496 2016-01-14] ()
- R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152688 2018-10-18] (Malwarebytes)
- S3 EuGdiDrv; C:\Windows\system32\EuGdiDrv.sys [10848 2016-07-11] () [Brak podpisu cyfrowego]
- S3 EuGdiDrv; C:\Windows\SysWOW64\EuGdiDrv.sys [10208 2016-07-11] () [Brak podpisu cyfrowego]
- R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [28936 2018-07-14] (Glarysoft Ltd)
- R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [41440 2017-06-20] (Intel Corporation)
- R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [198000 2018-11-07] (Malwarebytes)
- R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [119136 2018-11-07] (Malwarebytes)
- R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [63768 2018-11-07] (Malwarebytes)
- R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [260480 2018-11-07] (Malwarebytes)
- R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [101200 2018-11-07] (Malwarebytes)
- R3 MEIx64; C:\Windows\System32\DRIVERS\TeeDriverx64.sys [181304 2016-03-29] (Intel Corporation)
- S3 O2FJ2RDR; C:\Windows\System32\DRIVERS\O2FJ2w7x64.sys [208312 2013-12-12] (O2Micro )
- S3 PortTalk; C:\Windows\SysWOW64\Drivers\PortTalk.sys [3567 2002-01-12] (Beyond Logic hxxp://www.beyondlogic.org) [Brak podpisu cyfrowego]
- S3 qcfilter; C:\Windows\System32\DRIVERS\qcusbfilter.sys [40448 2014-05-23] (QUALCOMM Incorporated)
- S3 qcusbser; C:\Windows\System32\DRIVERS\qcusbser.sys [243712 2014-08-08] (QUALCOMM Incorporated)
- S3 qcusbwwan; C:\Windows\System32\DRIVERS\qcusbwwan.sys [489472 2014-05-23] (QUALCOMM Incorporated)
- R3 SmbDrvI; C:\Windows\System32\DRIVERS\Smb_driver_Intel.sys [33008 2013-06-04] (Synaptics Incorporated)
- R3 ST_ACCEL; C:\Windows\System32\DRIVERS\ST_Accel.sys [103088 2015-02-26] (STMicroelectronics)
- S1 VBoxUSBMon; C:\Windows\SysWOW64\DRIVERS\VBoxUSBMon.sys [135912 2017-08-19] (BigNox Corporation)
- R3 wbfcvusbdrv; C:\Windows\System32\Drivers\wbfcvusbdrv.sys [15976 2011-07-05] ()
- S3 BCM42RLY; system32\drivers\BCM42RLY.sys [X]
- S3 catchme; \??\C:\ComboFix\catchme.sys [X]
- S0 edevmon; system32\DRIVERS\edevmon.sys [X]
- S3 SWDUMon; system32\DRIVERS\SWDUMon.sys [X]
- U3 TBS; Brak ImagePath
- S3 VMnetAdapter; system32\DRIVERS\vmnetadapter.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc - utworzone pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-11-07 21:57 - 2018-11-07 22:09 - 000000000 ____D C:\FRST
- 2018-11-07 21:56 - 2018-11-07 21:57 - 002414592 _____ (Farbar) C:\Users\Admin\Downloads\FRST64.exe
- 2018-11-07 21:46 - 2018-11-07 21:46 - 000000000 ____D C:\Windows\LastGood
- 2018-11-07 21:43 - 2018-11-07 21:43 - 000063768 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
- 2018-11-07 21:42 - 2018-11-07 21:42 - 000260480 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
- 2018-11-07 21:42 - 2018-11-07 21:42 - 000119136 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
- 2018-11-07 21:42 - 2018-11-07 21:42 - 000101200 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
- 2018-11-07 21:36 - 2018-11-07 21:36 - 000271546 _____ C:\Users\Admin\Documents\cc_20181107_213639.reg
- 2018-11-07 21:28 - 2018-11-07 21:30 - 000000000 ____D C:\Users\Admin\Desktop\CCleaner
- 2018-11-07 21:28 - 2018-10-10 14:25 - 011994881 _____ (lrepacks.ru ) C:\Users\Admin\Desktop\CCleaner Pro 5.47.6716.exe
- 2018-11-07 21:28 - 2017-06-13 12:45 - 000001345 _____ C:\Users\Admin\Desktop\portable.cmd
- 2018-11-07 21:07 - 2018-11-07 21:07 - 000027411 _____ C:\ComboFix.txt
- 2018-11-07 21:02 - 2018-11-07 21:02 - 000198000 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
- 2018-11-07 20:50 - 2018-11-07 21:07 - 000000000 ____D C:\ComboFix
- 2018-11-07 20:50 - 2011-06-26 07:45 - 000256000 _____ C:\Windows\PEV.exe
- 2018-11-07 20:50 - 2010-11-07 18:20 - 000208896 _____ C:\Windows\MBR.exe
- 2018-11-07 20:50 - 2009-04-20 05:56 - 000060416 _____ (NirSoft) C:\Windows\NIRCMD.exe
- 2018-11-07 20:50 - 2000-08-31 01:00 - 000518144 _____ (SteelWerX) C:\Windows\SWREG.exe
- 2018-11-07 20:50 - 2000-08-31 01:00 - 000406528 _____ (SteelWerX) C:\Windows\SWSC.exe
- 2018-11-07 20:50 - 2000-08-31 01:00 - 000098816 _____ C:\Windows\sed.exe
- 2018-11-07 20:50 - 2000-08-31 01:00 - 000080412 _____ C:\Windows\grep.exe
- 2018-11-07 20:50 - 2000-08-31 01:00 - 000068096 _____ C:\Windows\zip.exe
- 2018-11-07 20:44 - 2018-11-07 21:07 - 000000000 ____D C:\Qoobox
- 2018-11-07 20:43 - 2018-11-07 21:04 - 000000000 ____D C:\Windows\erdnt
- 2018-11-07 20:38 - 2018-11-07 20:39 - 005660510 ____N (Swearware) C:\Users\Admin\Downloads\ComboFix.exe
- 2018-11-07 20:25 - 2018-11-07 20:25 - 000380928 _____ C:\Users\Admin\Downloads\4urfukw2.exe
- 2018-11-07 17:20 - 2018-11-07 17:20 - 000024313 _____ C:\Users\Admin\Downloads\Domyslne-uslugi-windows-7.zip
- 2018-11-07 17:13 - 2018-11-07 17:13 - 000000000 ____D C:\Windows\pss
- 2018-11-07 17:10 - 2018-08-28 04:48 - 000419608 _____ C:\Windows\SysWOW64\locale.nls
- 2018-11-07 17:10 - 2018-08-28 04:48 - 000419608 _____ C:\Windows\system32\locale.nls
- 2018-11-07 16:30 - 2018-11-07 16:30 - 007592144 _____ (Malwarebytes) C:\Users\Admin\Downloads\adwcleaner_7.2.4.0.exe
- 2018-11-07 16:29 - 2018-11-07 16:31 - 000000000 ____D C:\AdwCleaner
- 2018-11-07 16:29 - 2018-11-07 16:29 - 008206624 _____ (Malwarebytes) C:\Users\Admin\Downloads\adwcleaner-7-0-7-0.exe
- 2018-11-07 16:11 - 2018-11-07 16:11 - 000051041 _____ C:\Users\Admin\Downloads\UMOWA_RACHUNEK_OSZCZEDNOSCIOWY_20181107_160439.pdf
- 2018-11-07 08:46 - 2018-11-07 08:46 - 000009216 _____ C:\Users\Admin\Documents\Posiłki profilaktyczne 2018-19.xls
- 2018-11-07 06:49 - 2018-11-07 06:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AutoMapa
- 2018-11-07 06:46 - 2018-11-06 13:59 - 000000000 ____D C:\Users\Admin\Desktop\AutoMapa_6.24_1810_EU_Final_Cracked
- 2018-11-07 06:13 - 2018-11-07 06:31 - 1163919360 _____ C:\Users\Admin\Downloads\AutoMapa_6.24_1810_EU_Final_Cracked.part1.rar
- 2018-11-06 20:34 - 2018-11-06 21:17 - 1163919360 _____ C:\Users\Admin\Downloads\AutoMapa_6.24_1810_EU_Final_Cracked.part2.rar
- 2018-11-06 19:18 - 2018-11-06 19:53 - 1163919360 _____ C:\Users\Admin\Downloads\AutoMapa_6.24_1810_EU_Final_Cracked.part3.rar
- 2018-11-06 18:47 - 2018-11-06 19:16 - 1163919360 _____ C:\Users\Admin\Downloads\AutoMapa_6.24_1810_EU_Final_Cracked.part4.rar
- 2018-11-06 18:47 - 2018-11-06 18:51 - 267761360 _____ C:\Users\Admin\Downloads\AutoMapa_6.24_1810_EU_Final_Cracked.part5.rar
- 2018-11-06 18:22 - 2018-11-06 18:26 - 012357271 _____ C:\Users\Admin\Downloads\ccleaner_pro_5.47.6716.crk.rar
- 2018-11-06 11:17 - 2018-11-06 11:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
- 2018-11-06 11:17 - 2018-11-06 11:17 - 000000000 ____D C:\Program Files (x86)\HD Tune
- 2018-11-06 11:15 - 2018-11-06 11:15 - 000642632 _____ (EFD Software ) C:\Users\Admin\Downloads\hdtune_255.exe
- 2018-11-06 10:41 - 2018-11-06 10:41 - 000000000 ____D C:\Users\Admin\AppData\Local\mbam
- 2018-11-06 10:40 - 2018-11-06 10:40 - 000001875 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2018-11-06 10:40 - 2018-11-06 10:40 - 000000000 ____D C:\Users\Admin\AppData\Local\mbamtray
- 2018-11-06 10:40 - 2018-11-06 10:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
- 2018-11-06 10:39 - 2018-11-06 10:39 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2018-11-06 10:39 - 2018-11-06 10:39 - 000000000 ____D C:\Program Files\Malwarebytes
- 2018-11-06 10:39 - 2018-10-18 08:44 - 000152688 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
- 2018-11-06 10:38 - 2018-11-06 10:39 - 078955096 _____ (Malwarebytes ) C:\Users\Admin\Downloads\mb3-setup-consumer-3.6.1.2711-1.0.482-1.0.7699.exe
- 2018-11-03 20:53 - 2018-11-06 10:59 - 000000000 ____D C:\Program Files (x86)\CodeStuff
- 2018-11-03 20:53 - 2018-11-03 20:53 - 000680340 _____ C:\Users\Admin\Downloads\StarterSetup.zip
- 2018-11-03 20:37 - 2018-11-03 20:37 - 000007597 _____ C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
- 2018-11-02 20:59 - 2018-11-02 20:59 - 007670219 _____ C:\Users\Admin\Downloads\Wise Driver Care Pro v2.2.1219.1009.rar
- 2018-11-02 20:54 - 2018-11-02 20:54 - 000066944 _____ C:\Users\Admin\AppData\Local\GDIPFONTCACHEV1.DAT
- 2018-11-02 20:51 - 2018-11-02 20:51 - 000294560 _____ C:\Windows\system32\FNTCACHE.DAT
- 2018-11-02 20:39 - 2018-11-02 20:39 - 000000000 ____D C:\Users\Admin\AppData\Roaming\dg
- 2018-11-02 20:22 - 2018-11-02 20:22 - 000000000 ____D C:\Windows\Dell
- 2018-11-02 20:22 - 2013-02-21 07:10 - 000489264 _____ (Alps Electric Co., Ltd.) C:\Windows\system32\Drivers\Apfiltr.sys
- 2018-11-02 20:22 - 2013-02-12 14:31 - 000114520 _____ (Alps Electric Co., Ltd.) C:\Windows\system32\Vxdif.dll
- 2018-11-02 20:15 - 2013-09-17 15:48 - 000795632 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3xhc.sys
- 2018-11-02 20:15 - 2013-09-17 15:48 - 000358896 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hub.sys
- 2018-11-02 20:15 - 2013-09-17 15:48 - 000020464 _____ (Intel Corporation) C:\Windows\system32\Drivers\iusb3hcs.sys
- 2018-11-02 20:13 - 2017-06-20 14:00 - 000893416 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorA.sys
- 2018-11-02 20:13 - 2017-06-20 14:00 - 000041440 _____ (Intel Corporation) C:\Windows\system32\Drivers\iaStorF.sys
- 2018-11-02 20:10 - 2018-11-02 20:11 - 000000000 ____D C:\mydrivers
- 2018-11-02 20:10 - 2007-02-11 20:43 - 000065536 _____ (O2Micro International) C:\Windows\system32\Drivers\o2flash.exe
- 2018-11-02 20:08 - 2018-11-02 20:08 - 000000000 ____D C:\ProgramData\Kingsoft
- 2018-11-02 19:57 - 2018-11-02 19:57 - 008025304 _____ (WiseCleaner.com ) C:\Users\Admin\Downloads\WiseDriverCareSetup.exe
- 2018-10-31 20:40 - 2018-10-31 20:41 - 009884608 ____N (WiseCleaner.com ) C:\Users\Admin\Downloads\Wise_Care_365_v5.1.8.509.exe
- 2018-10-21 15:35 - 2018-10-21 15:39 - 095185348 _____ C:\Users\Admin\Downloads\Stellar Data Recovery Technician 8.0.0.0.rar
- 2018-10-18 21:01 - 2018-10-18 21:01 - 000000000 ____D C:\Users\Admin\AppData\Roaming\VS Revo Group
- 2018-10-18 20:48 - 2018-10-18 20:48 - 000001095 _____ C:\Users\Admin\Desktop\Revo Uninstaller Pro.lnk
- 2018-10-18 20:48 - 2018-10-18 20:48 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
- 2018-10-18 20:47 - 2018-09-14 08:37 - 000000000 ____D C:\Users\Admin\Desktop\Revo.Pro.v4.0.0.crk
- 2018-10-18 20:45 - 2018-09-13 15:08 - 000000736 _____ C:\Users\Admin\Desktop\Install.cmd
- 2018-10-18 20:40 - 2018-10-18 20:42 - 021050217 _____ C:\Users\Admin\Downloads\Revo.Pro.v4.0.0.crk.rar
- 2018-10-17 18:55 - 2018-10-17 19:02 - 048182882 _____ C:\Users\Admin\Downloads\miflash_unlock-en-3.3.827.31.zip
- 2018-10-17 11:26 - 2018-10-17 11:30 - 037985895 _____ C:\Users\Admin\Downloads\Glary.Utilities.Pro.5.107.0.131.rar
- 2018-10-17 11:19 - 2018-10-17 11:19 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell
- 2018-10-17 09:59 - 2018-10-17 09:59 - 000936592 _____ C:\Users\Admin\Documents\mobilego-b_setup_full1871.exe
- 2018-10-17 09:44 - 2018-10-17 09:44 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
- 2018-10-17 09:44 - 2011-03-02 11:43 - 000175616 _____ C:\Windows\SysWOW64\unrar.dll
- 2018-10-17 09:38 - 2018-10-17 09:40 - 036496144 _____ (Grapefruit Software, LLC ) C:\Users\Admin\Documents\free-editor-2-0-1-0-en-win.exe
- 2018-10-17 09:05 - 2018-10-17 09:05 - 001349360 _____ (Solvusoft Corporation) C:\Users\Admin\Documents\Setup_FileViewPro_2018.exe
- 2018-10-17 08:58 - 2018-10-17 08:58 - 000000000 ____D C:\Users\Public\Documents\NativeFus_Log
- 2018-10-17 08:57 - 2018-10-18 20:54 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Samsung
- 2018-10-17 08:57 - 2018-10-18 20:54 - 000000000 ____D C:\Users\Admin\AppData\Local\Samsung
- 2018-10-17 08:57 - 2018-10-17 08:57 - 000000000 ____D C:\Users\Admin\Documents\samsung
- 2018-10-17 08:56 - 2014-04-30 18:43 - 004659712 _____ (Dmitry Streblechenko) C:\Windows\SysWOW64\Redemption.dll
- 2018-10-17 08:56 - 2014-04-30 18:43 - 000144664 _____ (MAPILab Ltd. & Add-in Express Ltd.) C:\Windows\SysWOW64\secman.dll
- 2018-10-17 08:55 - 2018-10-18 20:54 - 000000000 ____D C:\Program Files (x86)\Samsung
- 2018-10-17 08:55 - 2018-10-18 20:53 - 000000000 ____D C:\ProgramData\Samsung
- 2018-10-17 08:54 - 2018-10-17 08:54 - 000000000 ____D C:\Users\Admin\AppData\Local\Downloaded Installations
- 2018-10-17 08:53 - 2018-10-17 08:54 - 075714480 _____ (Samsung Electronics Co., Ltd.) C:\Users\Admin\Documents\KiesSetup.exe
- 2018-10-10 21:00 - 2018-09-19 09:08 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
- 2018-10-10 21:00 - 2018-09-18 20:08 - 000396888 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
- 2018-10-10 21:00 - 2018-09-18 19:10 - 000348976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
- 2018-10-10 21:00 - 2018-09-18 06:52 - 025735168 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
- 2018-10-10 21:00 - 2018-09-18 06:38 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
- 2018-10-10 21:00 - 2018-09-18 06:38 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
- 2018-10-10 21:00 - 2018-09-18 06:27 - 002902016 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
- 2018-10-10 21:00 - 2018-09-18 06:26 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
- 2018-10-10 21:00 - 2018-09-18 06:25 - 000576512 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
- 2018-10-10 21:00 - 2018-09-18 06:25 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
- 2018-10-10 21:00 - 2018-09-18 06:25 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
- 2018-10-10 21:00 - 2018-09-18 06:25 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
- 2018-10-10 21:00 - 2018-09-18 06:19 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
- 2018-10-10 21:00 - 2018-09-18 06:18 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
- 2018-10-10 21:00 - 2018-09-18 06:16 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
- 2018-10-10 21:00 - 2018-09-18 06:15 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
- 2018-10-10 21:00 - 2018-09-18 06:15 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
- 2018-10-10 21:00 - 2018-09-18 06:14 - 005779456 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
- 2018-10-10 21:00 - 2018-09-18 06:14 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
- 2018-10-10 21:00 - 2018-09-18 06:14 - 000794624 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
- 2018-10-10 21:00 - 2018-09-18 06:09 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
- 2018-10-10 21:00 - 2018-09-18 06:06 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
- 2018-10-10 21:00 - 2018-09-18 06:01 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
- 2018-10-10 21:00 - 2018-09-18 06:00 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
- 2018-10-10 21:00 - 2018-09-18 06:00 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
- 2018-10-10 21:00 - 2018-09-18 05:57 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
- 2018-10-10 21:00 - 2018-09-18 05:57 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
- 2018-10-10 21:00 - 2018-09-18 05:55 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
- 2018-10-10 21:00 - 2018-09-18 05:53 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
- 2018-10-10 21:00 - 2018-09-18 05:45 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
- 2018-10-10 21:00 - 2018-09-18 05:43 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
- 2018-10-10 21:00 - 2018-09-18 05:42 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
- 2018-10-10 21:00 - 2018-09-18 05:41 - 002136064 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
- 2018-10-10 21:00 - 2018-09-18 05:41 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
- 2018-10-10 21:00 - 2018-09-18 05:39 - 015283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
- 2018-10-10 21:00 - 2018-09-18 05:35 - 004510720 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
- 2018-10-10 21:00 - 2018-09-18 05:33 - 020278784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
- 2018-10-10 21:00 - 2018-09-18 05:31 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
- 2018-10-10 21:00 - 2018-09-18 05:23 - 001555968 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
- 2018-10-10 21:00 - 2018-09-18 05:21 - 000497664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
- 2018-10-10 21:00 - 2018-09-18 05:21 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
- 2018-10-10 21:00 - 2018-09-18 05:20 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
- 2018-10-10 21:00 - 2018-09-18 05:20 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
- 2018-10-10 21:00 - 2018-09-18 05:19 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
- 2018-10-10 21:00 - 2018-09-18 05:18 - 002295808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
- 2018-10-10 21:00 - 2018-09-18 05:15 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
- 2018-10-10 21:00 - 2018-09-18 05:15 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
- 2018-10-10 21:00 - 2018-09-18 05:14 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
- 2018-10-10 21:00 - 2018-09-18 05:13 - 000662016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
- 2018-10-10 21:00 - 2018-09-18 05:13 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
- 2018-10-10 21:00 - 2018-09-18 05:12 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
- 2018-10-10 21:00 - 2018-09-18 05:10 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
- 2018-10-10 21:00 - 2018-09-18 05:06 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
- 2018-10-10 21:00 - 2018-09-18 05:03 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
- 2018-10-10 21:00 - 2018-09-18 05:02 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
- 2018-10-10 21:00 - 2018-09-18 05:02 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
- 2018-10-10 21:00 - 2018-09-18 05:00 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
- 2018-10-10 21:00 - 2018-09-18 04:59 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
- 2018-10-10 21:00 - 2018-09-18 04:58 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
- 2018-10-10 21:00 - 2018-09-18 04:57 - 004494848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
- 2018-10-10 21:00 - 2018-09-18 04:57 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
- 2018-10-10 21:00 - 2018-09-18 04:53 - 013679616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
- 2018-10-10 21:00 - 2018-09-18 04:52 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
- 2018-10-10 21:00 - 2018-09-18 04:51 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
- 2018-10-10 21:00 - 2018-09-18 04:50 - 002059776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
- 2018-10-10 21:00 - 2018-09-18 04:50 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
- 2018-10-10 21:00 - 2018-09-18 04:37 - 004037632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
- 2018-10-10 21:00 - 2018-09-18 04:34 - 001330176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
- 2018-10-10 21:00 - 2018-09-18 04:31 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
- 2018-10-10 21:00 - 2018-09-11 19:28 - 003227136 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
- 2018-10-10 21:00 - 2018-09-11 19:23 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
- 2018-10-10 21:00 - 2018-09-11 19:22 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
- 2018-10-10 21:00 - 2018-09-09 02:02 - 005552328 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
- 2018-10-10 21:00 - 2018-09-09 02:02 - 001680072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000986824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000708296 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000265416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000262344 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000154824 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
- 2018-10-10 21:00 - 2018-09-09 02:02 - 000095432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
- 2018-10-10 21:00 - 2018-09-09 02:01 - 001664320 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 002851840 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 002009600 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 001211904 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000094208 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
- 2018-10-10 21:00 - 2018-09-09 01:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 001461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000405504 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
- 2018-10-10 21:00 - 2018-09-09 01:58 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\cdd.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:57 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:46 - 004054216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
- 2018-10-10 21:00 - 2018-09-09 01:46 - 003959496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
- 2018-10-10 21:00 - 2018-09-09 01:46 - 001314072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000275968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000070144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
- 2018-10-10 21:00 - 2018-09-09 01:44 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 001391104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
- 2018-10-10 21:00 - 2018-09-09 01:43 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:42 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:25 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
- 2018-10-10 21:00 - 2018-09-09 01:25 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
- 2018-10-10 21:00 - 2018-09-09 01:25 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
- 2018-10-10 21:00 - 2018-09-09 01:25 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
- 2018-10-10 21:00 - 2018-09-09 01:21 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
- 2018-10-10 21:00 - 2018-09-09 01:21 - 000129024 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\videoprt.sys
- 2018-10-10 21:00 - 2018-09-09 01:20 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
- 2018-10-10 21:00 - 2018-09-09 01:18 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
- 2018-10-10 21:00 - 2018-09-09 01:16 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000064512 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdk8.sys
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelppm.sys
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\processr.sys
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\amdppm.sys
- 2018-10-10 21:00 - 2018-09-09 01:15 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
- 2018-10-10 21:00 - 2018-09-09 01:13 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
- 2018-10-10 21:00 - 2018-09-09 01:13 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
- 2018-10-10 21:00 - 2018-09-09 01:13 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
- 2018-10-10 21:00 - 2018-09-09 01:13 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
- 2018-10-10 21:00 - 2018-09-09 01:12 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
- 2018-10-10 21:00 - 2018-09-09 01:12 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:12 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:12 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
- 2018-10-10 21:00 - 2018-09-09 01:12 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
- 2018-10-10 21:00 - 2018-08-28 07:24 - 014637568 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
- 2018-10-10 21:00 - 2018-08-28 07:24 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
- 2018-10-10 21:00 - 2018-08-28 07:24 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
- 2018-10-10 21:00 - 2018-08-28 07:24 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
- 2018-10-10 21:00 - 2018-08-28 07:24 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
- 2018-10-10 21:00 - 2018-08-28 07:09 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
- 2018-10-10 21:00 - 2018-08-28 07:09 - 011411968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
- 2018-10-10 21:00 - 2018-08-28 06:52 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
- 2018-10-10 21:00 - 2018-08-28 06:52 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
- 2018-10-10 21:00 - 2018-08-28 06:52 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
- 2018-10-10 21:00 - 2018-08-16 03:18 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\UtcResources.dll
- 2018-10-10 21:00 - 2018-08-13 22:49 - 001391856 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
- 2018-10-10 21:00 - 2018-08-13 16:54 - 000687616 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
- 2018-10-10 21:00 - 2018-08-12 21:32 - 000140976 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
- 2018-10-10 21:00 - 2018-08-12 21:27 - 000680960 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
- 2018-10-10 21:00 - 2018-08-08 16:54 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
- 2018-10-10 21:00 - 2018-08-08 16:54 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
- 2018-10-10 21:00 - 2018-08-08 16:40 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
- 2018-10-10 21:00 - 2018-08-08 16:40 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
- 2018-10-09 20:39 - 2018-10-09 20:39 - 000000000 ____D C:\ProgramData\SystemAcCrux
- ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-11-07 21:57 - 2011-04-12 14:21 - 000691856 _____ C:\Windows\system32\perfh015.dat
- 2018-11-07 21:57 - 2011-04-12 14:21 - 000131604 _____ C:\Windows\system32\perfc015.dat
- 2018-11-07 21:57 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
- 2018-11-07 21:51 - 2009-07-14 05:45 - 000031888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
- 2018-11-07 21:51 - 2009-07-14 05:45 - 000031888 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
- 2018-11-07 21:47 - 2009-07-14 06:13 - 001670518 _____ C:\Windows\system32\PerfStringBackup.INI
- 2018-11-07 21:42 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
- 2018-11-07 21:38 - 2018-03-17 14:32 - 000000000 ____D C:\Users\Admin\AppData\Roaming\MPC-BE
- 2018-11-07 21:33 - 2018-06-01 22:29 - 000003892 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1474574789
- 2018-11-07 21:07 - 2017-10-07 15:47 - 000000000 ____D C:\Users\Admi
- 2018-11-07 21:02 - 2009-07-14 03:34 - 000000215 _____ C:\Windows\system.ini
- 2018-11-07 20:03 - 2016-09-22 21:06 - 000000000 ____D C:\Program Files (x86)\Opera
- 2018-11-07 17:17 - 2016-05-12 12:50 - 001643124 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
- 2018-11-07 08:47 - 2017-07-13 22:01 - 000000000 ____D C:\Users\Admin\Documents\SP-HAH - Airbus A320-233 - Small Planet Airlines - Flightradar24_files
- 2018-11-07 06:49 - 2017-09-05 00:42 - 000051448 _____ C:\Program Files (x86)\AutoMapa EU.md5
- 2018-11-07 06:49 - 2016-09-26 12:58 - 001966351 _____ C:\AutoMapaSetupLog.txt
- 2018-11-07 06:48 - 2017-11-13 09:58 - 000000000 ____D C:\Program Files (x86)\AutoMapa EU
- 2018-11-06 11:55 - 2016-11-07 11:28 - 000000000 ____D C:\Users\Admin\AppData\Local\Facebook
- 2018-11-06 10:42 - 2016-11-22 10:28 - 000000000 ____D C:\Users\Admin\AppData\Local\ElevatedDiagnostics
- 2018-11-03 08:22 - 2017-07-24 18:54 - 000002986 _____ C:\Windows\System32\Tasks\GU5SkipUAC
- 2018-11-03 08:21 - 2017-07-24 18:56 - 000003634 _____ C:\Windows\System32\Tasks\GlaryUpdate 5
- 2018-11-03 08:13 - 2016-08-11 10:33 - 000000000 ____D C:\ProgramData\Package Cache
- 2018-11-03 08:13 - 2016-05-12 12:39 - 000000000 ____D C:\ProgramData\Intel
- 2018-11-02 20:31 - 2016-05-12 12:39 - 000000000 ____D C:\Program Files (x86)\Intel
- 2018-11-02 20:30 - 2016-05-12 12:39 - 000000000 ____D C:\Program Files\Intel
- 2018-11-02 20:22 - 2016-09-22 21:10 - 000000000 ____D C:\Program Files\DellTPad
- 2018-11-02 20:12 - 2016-05-12 12:45 - 000000000 ____D C:\Program Files\DIFX
- 2018-10-31 20:42 - 2017-07-24 18:54 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk
- 2018-10-31 20:42 - 2017-07-24 18:54 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5
- 2018-10-31 20:38 - 2018-06-14 16:26 - 000003516 _____ C:\Windows\System32\Tasks\BlueStacksHelper
- 2018-10-31 19:20 - 2016-05-12 14:48 - 000002230 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-10-31 19:20 - 2016-05-12 14:48 - 000002189 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2018-10-31 19:16 - 2018-01-19 15:32 - 000143448 _____ (ESET) C:\Windows\system32\Drivers\eamonm.sys
- 2018-10-31 19:16 - 2018-01-19 15:32 - 000109864 _____ (ESET) C:\Windows\system32\Drivers\epfwwfp.sys
- 2018-10-31 19:16 - 2018-01-19 15:31 - 000188832 _____ (ESET) C:\Windows\system32\Drivers\ehdrv.sys
- 2018-10-31 19:15 - 2016-08-11 10:34 - 000000000 ___HD C:\Windows\system32\WLANProfiles
- 2018-10-28 22:59 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\NDF
- 2018-10-19 21:28 - 2017-07-25 20:17 - 000000000 ___HD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup-Disabled
- 2018-10-18 20:54 - 2016-10-03 17:07 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Wondershare
- 2018-10-18 20:54 - 2016-10-03 17:07 - 000000000 ____D C:\Users\Admin\.android
- 2018-10-18 20:54 - 2016-10-03 17:07 - 000000000 ____D C:\Program Files (x86)\Wondershare
- 2018-10-18 20:33 - 2016-05-12 13:52 - 000003334 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
- 2018-10-18 20:33 - 2016-05-12 13:52 - 000003206 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
- 2018-10-18 20:32 - 2016-11-19 10:51 - 000004478 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
- 2018-10-17 11:19 - 2016-05-12 13:52 - 000000000 ____D C:\Users\Admin\AppData\Local\Deployment
- 2018-10-17 10:00 - 2016-10-03 17:06 - 000000000 ____D C:\Users\Public\Documents\Wondershare
- 2018-10-17 08:56 - 2016-05-12 12:41 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
- 2018-10-15 22:48 - 2010-11-21 04:27 - 000559880 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
- 2018-10-15 19:09 - 2017-07-24 18:54 - 000001080 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk
- 2018-10-11 21:16 - 2016-09-19 22:13 - 000000000 ____D C:\Windows\system32\MRT
- 2018-10-11 21:00 - 2016-09-19 22:13 - 136745976 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
- 2018-10-08 21:32 - 2017-03-07 21:29 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
- ==================== Pliki w katalogu głównym wybranych folderów =======
- 2017-09-05 00:42 - 2018-11-07 06:49 - 000051448 _____ () C:\Program Files (x86)\AutoMapa EU.md5
- 2016-09-06 12:26 - 2016-09-06 12:26 - 000000779 _____ () C:\Users\Admin\AppData\Roaming\gdscan.log
- 2016-09-22 18:01 - 2016-09-22 18:01 - 010758512 _____ (EaseUS ) C:\Users\Admin\AppData\Roaming\setup.exe
- 2018-03-21 14:38 - 2018-03-21 14:38 - 000003584 _____ () C:\Users\Admin\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
- 2016-09-22 18:14 - 2016-09-22 18:14 - 000000001 _____ () C:\Users\Admin\AppData\Local\llftool.4.40.agreement
- 2017-01-17 15:51 - 2017-01-17 15:51 - 000000831 _____ () C:\Users\Admin\AppData\Local\Nox_crash.log
- 2018-11-03 20:37 - 2018-11-03 20:37 - 000007597 _____ () C:\Users\Admin\AppData\Local\Resmon.ResmonCfg
- 2017-03-07 21:05 - 2017-03-07 21:05 - 000003185 _____ () C:\Users\Admin\AppData\Local\unins000.dat
- 2017-03-07 21:05 - 2017-03-07 21:05 - 000011761 _____ () C:\Users\Admin\AppData\Local\unins000.msg
- ==================== Bamital & volsnap ======================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo
- C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo
- C:\Windows\explorer.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo
- C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo
- C:\Windows\system32\services.exe => Plik podpisany cyfrowo
- C:\Windows\system32\User32.dll => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo
- C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo
- C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo
- C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo
- C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
- C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
- LastRegBack: 2018-09-24 08:25
- ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement