Advertisement
Not a member of Pastebin yet?
Sign Up,
it unlocks many cool features!
- Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 02.08.2018
- Uruchomiony przez Pawel (administrator) DESKTOP-FPDRME6 (15-08-2018 18:26:40)
- Uruchomiony z C:\Users\Pawel\Downloads
- Załadowane profile: Pawel (Dostępne profile: defaultuser0 & Pawel)
- Platform: Windows 10 Pro Wersja 1803 17134.165 (X64) Język: Polski (Polska)
- Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome)
- Tryb startu: Normal
- Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
- ==================== Procesy (filtrowane) =================
- (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.)
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (HP) C:\Windows\System32\HPSIsvc.exe
- (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AAHM\1.00.30\aaHMSvc.exe
- (ICEpower a/s) C:\Windows\System32\ICEsoundService64.exe
- (ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AsusFanControlService\1.09.08\AsusFanControlService.exe
- () C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe
- (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
- (The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
- (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
- (Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
- (Intel(R) Corporation) C:\Program Files\Intel\Intel(R) Online Connect Access\LegacyCsLoaderService.exe
- (Intel(R) Corporation) C:\Program Files\Intel\Intel(R) Online Connect Access\IntelTechnologyAccessService.exe
- (TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
- () C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe
- (Intel Corporation) C:\Program Files\Intel\Intel(R) Online Connect\ioc.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
- (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
- (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
- (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- () C:\Program Files (x86)\AudioSwitch\AudioSwitch.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (IObit) C:\Program Files (x86)\IObit\Driver Booster\5.5.1\Pub\PubMonitor.exe
- (Microsoft Corporation) C:\Windows\System32\smartscreen.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
- ==================== Rejestr (filtrowane) ===========================
- (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.)
- HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
- HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9270208 2018-08-15] (Realtek Semiconductor)
- HKLM-x32\...\Run: [ConnectionCenter] => C:\Program Files (x86)\Citrix\ICA Client\concentr.exe [582032 2018-02-22] (Citrix Systems, Inc.)
- HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [401296 2018-02-22] (Citrix Systems, Inc.)
- HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA
- HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
- HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Corporation)
- HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [4701888 2017-02-02] (Disc Soft Ltd)
- HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Run: [Spotify] => C:\Users\Pawel\AppData\Roaming\Spotify\Spotify.exe [24528272 2018-08-09] (Spotify Ltd)
- HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [643200 2017-09-26] ()
- HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3206432 2018-08-09] (Valve Corporation)
- HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\MountPoints2: {aa9ef9bd-e965-11e6-b25f-f832e47116e8} - "F:\setup.exe"
- Startup: C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\AudioSwitch.lnk [2017-03-01]
- ShortcutTarget: AudioSwitch.lnk -> C:\Program Files (x86)\AudioSwitch\AudioSwitch.exe ()
- GroupPolicy: Ograniczenia ? <==== UWAGA
- ==================== Internet (filtrowane) ====================
- (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.)
- Hosts: 127.0.0.1 localhost
- Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{2da2592d-f6ce-41c7-ac78-7df270ae5980}: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{42cc0d90-bc60-4959-9537-2962cf43d1f6}: [DhcpNameServer] 192.168.1.1
- Tcpip\..\Interfaces\{e24f0b55-c6f2-4a70-a572-a760526c562e}: [DhcpNameServer] 192.168.1.1
- Internet Explorer:
- ==================
- BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-07-31] (Microsoft Corporation)
- BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-05-07] (Microsoft Corporation)
- Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-31] (Microsoft Corporation)
- Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-31] (Microsoft Corporation)
- Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-31] (Microsoft Corporation)
- Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-07-31] (Microsoft Corporation)
- Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll [2018-02-22] (Citrix Systems, Inc.)
- FireFox:
- ========
- FF HKLM-x32\...\Firefox\Extensions: [quickprint@hp.com] - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension
- FF Extension: (SmartPrintButton) - C:\Program Files (x86)\Hewlett-Packard\SmartPrint\QPExtension [2011-01-26] [Przestarzałe] [Brak podpisu cyfrowego]
- FF HKU\S-1-5-21-3906695049-374512793-3673757490-1001\...\Firefox\Extensions: [acewebextension_unlisted@acestream.org] - C:\Users\Pawel\AppData\Roaming\ACEStream\extensions\awe\firefox\acewebextension_unlisted.xpi => nie znaleziono
- FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll [2018-02-22] (Citrix Systems, Inc.)
- FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-04-03] (Microsoft Corporation)
- FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-03-02] (Microsoft Corporation)
- FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-07-30] (NVIDIA Corporation)
- FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-07-30] (NVIDIA Corporation)
- FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
- FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-18] (Google Inc.)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
- FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2018-05-29] (VideoLAN)
- FF Plugin HKU\S-1-5-21-3906695049-374512793-3673757490-1001: @acestream.net/acestreamplugin,version=3.1.28 -> C:\Users\Pawel\AppData\Roaming\ACEStream\player\npace_plugin.dll [Brak pliku]
- Chrome:
- =======
- CHR DefaultProfile: Default
- CHR HomePage: Default -> hxxps://www.facebook.com/?ref=logo
- CHR Session Restore: Default -> [funkcja włączona]
- CHR Profile: C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default [2018-08-15]
- CHR Extension: (Prezentacje) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-12]
- CHR Extension: (Dokumenty) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-12]
- CHR Extension: (Dysk Google) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-01-18]
- CHR Extension: (Authenticator) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2018-08-02]
- CHR Extension: (Signal Private Messenger) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\bikioccmkafdpakkkcpdbppfkghcmihk [2018-08-09]
- CHR Extension: (YouTube) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-01-18]
- CHR Extension: (uBlock Origin) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2018-08-14]
- CHR Extension: (Kalendarz Google) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-18]
- CHR Extension: (Arkusze) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-12]
- CHR Extension: (Nano Defender) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ggolfgbegefeeoocgjbmkembbncoadlb [2018-08-14]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-14]
- CHR Extension: (Google Kalendarz) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2018-04-05]
- CHR Extension: (Skipflix: Auto Skip Netflix Intro) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hapiefpnmbcochapdaokomnfiakholbc [2018-04-21]
- CHR Extension: (LastPass: Free Password Manager) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2018-08-11]
- CHR Extension: (AirDroid) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgndiocipalkpejnpafdbdlfdjihomd [2017-01-18]
- CHR Extension: (Flying Paint) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\iaddkdiibkddhdbcmmplkhcpgeinggfo [2018-07-16]
- CHR Extension: (Sprawdzanie poczty Google) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2017-01-18]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
- CHR Extension: (Gmail) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-01-18]
- CHR Extension: (Chrome Media Router) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-10]
- CHR Profile: C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1 [2018-08-14]
- CHR Extension: (Prezentacje) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-29]
- CHR Extension: (Dokumenty) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-29]
- CHR Extension: (Dysk Google) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-29]
- CHR Extension: (YouTube) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-29]
- CHR Extension: (Search by Image (by Google)) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dajedkncpodkggklbegccjpmnglmnflm [2018-07-29]
- CHR Extension: (Lucidchart Schematy - Desktop) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\djejicklhojeokkfmdelnempiecmdomj [2018-07-29]
- CHR Extension: (Arkusze) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-29]
- CHR Extension: (Dokumenty Google offline) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-07-31]
- CHR Extension: (AdBlock) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-07-29]
- CHR Extension: (Google Kalendarz) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gmbgaklkmjakoegficnlkhebmhkjfich [2018-07-29]
- CHR Extension: (Grammarly for Chrome) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\kbfnbcaeplbcioakkpcpgfkobkghlhen [2018-08-13]
- CHR Extension: (Sprawdzanie poczty Google) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mihcahmgecmbnbcchbopgniflfhgnkff [2018-07-29]
- CHR Extension: (Ace Script) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\mjbepbhonbojpoaenhckjocchgfiaofo [2018-07-29]
- CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-29]
- CHR Extension: (Gmail) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-29]
- CHR Extension: (Chrome Media Router) - C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-08-13]
- CHR Profile: C:\Users\Pawel\AppData\Local\Google\Chrome\User Data\System Profile [2018-07-29]
- CHR HKU\S-1-5-21-3906695049-374512793-3673757490-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [mjbepbhonbojpoaenhckjocchgfiaofo] - hxxps://clients2.google.com/service/update2/crx
- ==================== Usługi (filtrowane) ====================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.03\atkexComSvc.exe [933840 2017-01-22] ()
- R2 asHmComSvc; C:\Program Files (x86)\ASUS\AAHM\1.00.30\aaHMSvc.exe [975832 2017-01-25] (ASUSTeK Computer Inc.)
- R2 AsSysCtrlService; C:\Program Files (x86)\ASUS\AsSysCtrlService\1.00.22\AsSysCtrlService.exe [1360016 2017-01-18] () [Brak podpisu cyfrowego]
- R2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\1.09.08\AsusFanControlService.exe [610776 2017-01-24] (ASUSTeK Computer Inc.)
- S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6877224 2018-07-07] ()
- S3 c2wts; C:\Program Files\Windows Identity Foundation\v3.5\c2wtshost.exe [5632 2018-04-12] (Microsoft Corporation)
- R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8851496 2018-07-22] (Microsoft Corporation)
- S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [1471168 2017-02-02] (Disc Soft Ltd)
- S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [777856 2018-06-22] (EasyAntiCheat Ltd)
- R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [483808 2018-08-15] (ICEpower a/s)
- S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [742704 2017-09-21] (Intel(R) Corporation)
- U3 Intel(R) Online Connect; C:\Program Files\Intel\Intel(R) Online Connect\ioc.exe [25312 2016-11-01] (Intel Corporation)
- S2 Intel(R) Online Connect Helper; C:\Program Files\Intel\Intel(R) Online Connect\iocHelperService.exe [34528 2016-11-01] (Intel Corporation)
- S3 Intel(R) Online Connect Software Asset Manager; C:\Program Files (x86)\Intel\Intel(R) Online Connect Access\Intel(R) Software Asset Manager\bin\IntelSoftwareAssetManagerService.exe [18152 2016-10-14] (Intel Corporation)
- R2 Intel(R) TechnologyAccessLegacyCSLoader; C:\Program Files\Intel\Intel(R) Online Connect Access\LegacyCsLoaderService.exe [173288 2016-10-17] (Intel(R) Corporation)
- R2 Intel(R) TechnologyAccessService; C:\Program Files\Intel\Intel(R) Online Connect Access\IntelTechnologyAccessService.exe [496872 2016-10-17] (Intel(R) Corporation)
- S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [668472 2017-09-21] (Intel(R) Corporation)
- R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [197264 2017-09-25] (Intel Corporation)
- R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes)
- S3 MsMpiLaunchSvc; C:\Program Files\Microsoft MPI\Bin\msmpilaunchsvc.exe [27760 2016-06-13] () [Brak podpisu cyfrowego]
- R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation)
- S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764456 2018-07-19] (NVIDIA Corporation)
- S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [15872 2016-11-25] ( ) [Brak podpisu cyfrowego]
- R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [73856 2017-09-26] (The OpenVPN Project)
- S3 OpenVPNServiceLegacy; C:\Program Files\OpenVPN\bin\openvpnserv.exe [73856 2017-09-26] (The OpenVPN Project)
- S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-04-12] (Microsoft Corporation)
- S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
- S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [970240 2018-05-20] ()
- S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [286208 2018-07-06] (Microsoft Corporation)
- R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11644144 2018-07-23] (TeamViewer GmbH)
- S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4451616 2018-04-12] (Microsoft Corporation)
- S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105344 2018-04-12] (Microsoft Corporation)
- R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
- R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
- ===================== Sterowniki (filtrowane) ======================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- S3 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.)
- R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2017-01-18] ()
- R1 AsUpIO; C:\Windows\SysWow64\drivers\AsUpIO.sys [14464 2014-02-25] ()
- S3 BTWUSB; C:\WINDOWS\System32\Drivers\btwusb.sys [75560 2018-07-30] (Broadcom Corporation.)
- R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-02-02] (Disc Soft Ltd)
- R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-02-02] (Disc Soft Ltd)
- R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [152688 2018-06-19] (Malwarebytes)
- R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [31816 2018-08-15] (ELAN Microelectronic Corp.)
- S3 EvolveVirtualAdapter; C:\WINDOWS\System32\drivers\evolve.sys [21656 2018-08-09] (Echobit, LLC)
- R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2018-08-15] (REALiX(tm))
- S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.)
- R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [942128 2018-08-15] (Intel Corporation)
- R2 inpoutx64; C:\WINDOWS\System32\Drivers\inpoutx64.sys [15008 2018-04-15] (Highresolution Enterprises [www.highrez.co.uk])
- R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [191208 2018-08-15] (Malwarebytes)
- R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [114920 2018-08-15] (Malwarebytes)
- R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [48360 2018-08-15] (Malwarebytes)
- R0 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [253664 2018-08-15] (Malwarebytes)
- R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [102632 2018-08-15] (Malwarebytes)
- S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2012-09-26] (Marvell Semiconductor, Inc.)
- R1 ndisrd; C:\WINDOWS\system32\DRIVERS\ndisrfl.sys [59792 2016-09-13] (Intel Corporation)
- S3 Neo_VPN; C:\WINDOWS\System32\drivers\Neo6_x64_VPN.sys [37824 2018-06-22] (SoftEther Corporation)
- R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_52ac7eb8f32780d5\nvlddmkm.sys [17211376 2018-08-01] (NVIDIA Corporation)
- S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30656 2018-07-12] (NVIDIA Corporation)
- R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation)
- R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [65792 2018-04-24] (NVIDIA Corporation)
- R1 SeLow; C:\WINDOWS\system32\DRIVERS\SeLow_x64.sys [50624 2018-06-22] (SoftEther Corporation)
- S3 sshid; C:\WINDOWS\System32\drivers\sshid.sys [45928 2017-01-10] (SteelSeries ApS)
- U3 TrueSight; C:\Windows\System32\drivers\TrueSight.sys [24688 2018-08-15] ()
- S3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider)
- S3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [213080 2018-05-09] (Oracle Corporation)
- R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [222864 2018-05-09] (Oracle Corporation)
- S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [137920 2017-01-16] (Oracle Corporation)
- S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44616 2018-04-12] (Microsoft Corporation)
- S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [331680 2018-04-12] (Microsoft Corporation)
- S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [44032 2018-04-12] (Microsoft Corporation)
- S3 WinRing0_1_2_0; \??\C:\Users\Pawel\Downloads\RealTemp_370\WinRing0x64.sys [X]
- ==================== NetSvcs (filtrowane) ===================
- (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.)
- ==================== Jeden miesiąc - utworzone pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-08-15 18:26 - 2018-08-15 18:26 - 002412544 _____ (Farbar) C:\Users\Pawel\Downloads\FRST64.exe
- 2018-08-15 18:26 - 2018-08-15 18:26 - 000028623 _____ C:\Users\Pawel\Downloads\FRST.txt
- 2018-08-15 18:26 - 2018-08-15 18:26 - 000000000 ____D C:\FRST
- 2018-08-15 18:07 - 2018-08-15 18:07 - 000102632 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
- 2018-08-15 18:07 - 2018-08-15 18:07 - 000003038 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Pawel)
- 2018-08-15 18:04 - 2018-08-06 17:19 - 000836480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
- 2018-08-15 18:04 - 2018-08-06 17:19 - 000181120 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
- 2018-08-15 15:54 - 2018-08-15 15:54 - 000114920 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
- 2018-08-15 15:54 - 2018-08-15 15:54 - 000048360 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
- 2018-08-15 15:53 - 2018-08-15 15:53 - 072520672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
- 2018-08-15 15:53 - 2018-08-15 15:53 - 019206179 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
- 2018-08-15 15:53 - 2018-08-15 15:53 - 007178432 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 007101704 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 006270152 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 006156744 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
- 2018-08-15 15:53 - 2018-08-15 15:53 - 005346960 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003690856 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003677120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003452120 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003417976 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003306776 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003223832 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003215184 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 003128768 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 002930624 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 002444648 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 002197944 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001971328 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001965120 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001787920 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001598360 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001544216 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001516232 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001448736 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOv251gm.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001435104 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001382200 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001372352 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001353280 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001346568 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001337600 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001268984 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001259696 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001209528 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001164584 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOvlldpgm.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001159144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001133560 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001041208 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 001000616 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000994648 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000964984 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000873424 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000852096 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000751264 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000734736 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000715616 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000714432 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000692128 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000604760 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000541080 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000511608 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000483808 _____ (ICEpower a/s) C:\WINDOWS\system32\ICEsoundService64.exe
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000467120 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000453240 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000452696 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000448568 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000447144 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000416472 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000406416 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000392832 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000381368 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000378344 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000367576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000366080 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000360304 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000343672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000341112 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000341112 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000332976 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000327232 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000327232 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000315936 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000278232 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000266520 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000261200 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000261168 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000260176 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000231880 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000230664 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000220352 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000218232 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000203800 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000192944 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000190896 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000190896 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000179560 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000174904 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000169481 _____ C:\WINDOWS\system32\ICEsoundService.bin
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000158656 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000157312 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000154320 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000139720 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000122280 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000118552 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000116504 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000105272 _____ C:\WINDOWS\system32\audioLibVc.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000093864 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000090880 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000090136 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000088280 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000083584 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000075504 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
- 2018-08-15 15:53 - 2018-08-15 15:53 - 000023656 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
- 2018-08-15 15:52 - 2018-08-15 15:52 - 001804688 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
- 2018-08-15 15:52 - 2018-08-15 15:52 - 000942128 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorAC.sys
- 2018-08-15 15:52 - 2018-08-15 15:52 - 000466296 _____ (ASMedia Technology Inc) C:\WINDOWS\system32\Drivers\asmtxhci.sys
- 2018-08-15 15:52 - 2018-08-15 15:52 - 000227456 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys
- 2018-08-15 15:52 - 2018-08-15 15:52 - 000155504 _____ (ASMedia Technology Inc) C:\WINDOWS\system32\Drivers\asmthub3.sys
- 2018-08-15 15:52 - 2018-08-15 15:52 - 000031816 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDSMBus.sys
- 2018-08-15 15:50 - 2018-08-15 15:50 - 000000000 ____D C:\WINDOWS\IObit
- 2018-08-15 15:50 - 2018-08-15 15:50 - 000000000 ____D C:\ProgramData\ProductData
- 2018-08-15 15:49 - 2018-08-15 18:12 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\IObit
- 2018-08-15 15:49 - 2018-08-15 15:53 - 000002367 _____ C:\Users\Public\Desktop\Driver Booster 5.lnk
- 2018-08-15 15:49 - 2018-08-15 15:50 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\IObit
- 2018-08-15 15:49 - 2018-08-15 15:50 - 000000000 ____D C:\ProgramData\IObit
- 2018-08-15 15:49 - 2018-08-15 15:49 - 000027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
- 2018-08-15 15:49 - 2018-08-15 15:49 - 000003394 _____ C:\WINDOWS\System32\Tasks\Driver Booster Scheduler
- 2018-08-15 15:49 - 2018-08-15 15:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 5
- 2018-08-15 15:49 - 2018-08-15 15:49 - 000000000 ____D C:\Program Files (x86)\IObit
- 2018-08-15 15:46 - 2018-08-15 15:49 - 020024376 _____ (IObit ) C:\Users\Pawel\Downloads\driver_booster_setup.exe
- 2018-08-15 15:20 - 2018-08-15 15:20 - 000000053 _____ C:\Users\Pawel\Downloads\googlec442c72b42ee5c9a.html
- 2018-08-15 15:20 - 2018-08-15 15:20 - 000000053 _____ C:\Users\Pawel\Downloads\google765e16367b4a7339.html
- 2018-08-15 15:18 - 2018-08-15 15:18 - 000011148 _____ C:\Users\Pawel\.bash_history
- 2018-08-15 14:01 - 2018-08-15 14:01 - 000001100 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++.lnk
- 2018-08-15 14:01 - 2018-08-15 14:01 - 000000000 ____D C:\Users\Pawel\AppData\Local\Notepad++
- 2018-08-15 13:55 - 2018-08-15 13:55 - 000000768 _____ C:\DelFix.txt
- 2018-08-15 13:21 - 2018-08-15 13:21 - 000024688 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
- 2018-08-15 13:20 - 2018-08-15 13:21 - 000000000 ____D C:\ProgramData\RogueKiller
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000253664 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000191208 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000001920 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000000000 ____D C:\ProgramData\Malwarebytes
- 2018-08-15 12:16 - 2018-08-15 12:16 - 000000000 ____D C:\Program Files\Malwarebytes
- 2018-08-15 12:16 - 2018-06-19 14:09 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
- 2018-08-15 12:12 - 2018-08-15 18:26 - 000000000 _RSHD C:\ProgramData\{8deda938-5980-77fc-8309-69841fd24c5c}
- 2018-08-15 12:10 - 2018-08-15 18:26 - 000000000 _RSHD C:\ProgramData\{a50c8acb-9993-d583-f978-9655071568a6}
- 2018-08-15 12:04 - 2018-08-15 18:26 - 000000000 _RSHD C:\ProgramData\{19ba2b01-8cd4-e5fb-a9a8-42d924e3c493}
- 2018-08-15 12:04 - 2018-08-15 12:20 - 000000000 ____D C:\WINDOWS\SysWOW64\hcdenbl
- 2018-08-15 12:04 - 2018-08-15 12:20 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\Sound Volume Control
- 2018-08-15 12:04 - 2018-08-15 12:20 - 000000000 ____D C:\Program Files (x86)\TEdest
- 2018-08-13 16:49 - 2018-08-13 16:49 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3906695049-374512793-3673757490-1001
- 2018-08-13 16:49 - 2018-08-13 16:49 - 000002407 _____ C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
- 2018-08-11 14:54 - 2018-08-11 14:54 - 000001042 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 13.lnk
- 2018-08-11 14:54 - 2018-08-11 14:54 - 000001030 _____ C:\Users\Public\Desktop\TeamViewer 13.lnk
- 2018-08-11 09:45 - 2018-08-11 09:45 - 000000660 _____ C:\Users\Pawel\Desktop\Cheat Engine.lnk
- 2018-08-11 09:45 - 2018-08-11 09:45 - 000000000 ____D C:\Users\Pawel\Documents\My Cheat Tables
- 2018-08-11 09:45 - 2018-08-11 09:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Cheat Engine 6.8.1
- 2018-08-10 15:49 - 2018-08-10 15:49 - 000000000 ____D C:\Program Files\Echobit
- 2018-08-09 21:24 - 2018-08-09 21:24 - 000021656 _____ (Echobit, LLC) C:\WINDOWS\system32\Drivers\evolve.sys
- 2018-08-09 21:23 - 2018-08-09 21:23 - 000000000 ____D C:\Users\Pawel\AppData\Local\Echobit
- 2018-08-09 21:23 - 2018-08-09 21:23 - 000000000 ____D C:\ProgramData\Echobit
- 2018-08-09 19:32 - 2018-08-09 19:29 - 000013365 _____ C:\Users\Pawel\Downloads\broda.ovpn
- 2018-08-05 18:01 - 2018-08-05 18:01 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Owlchemy Labs
- 2018-08-05 16:53 - 2018-08-05 16:53 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\SUPERHOT_Team
- 2018-08-05 12:57 - 2018-08-05 12:57 - 000001132 __RSH C:\ProgramData\ntuser.pol
- 2018-08-05 10:44 - 2018-08-05 10:44 - 000000000 ____D C:\Users\Pawel\AppData\Local\Fallout4VR
- 2018-08-05 10:39 - 2018-08-05 10:39 - 000000592 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOOM VFR.lnk
- 2018-08-05 10:39 - 2018-08-05 10:39 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\AppContainer
- 2018-08-03 18:07 - 2018-07-30 19:50 - 000132488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe
- 2018-08-03 18:06 - 2018-08-01 11:50 - 004352880 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 003769016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 002002448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6439882.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 001565048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 001467920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6439882.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 001420576 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 001218528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 001094128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 000749936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvDecMFTMjpeg.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 000628920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 000608544 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvDecMFTMjpeg.dll
- 2018-08-03 18:06 - 2018-08-01 11:50 - 000518488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 040346808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 035250008 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 031250184 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 025966552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 013728728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 011273816 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 001159120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 000906808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 000816392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 000654760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
- 2018-08-03 18:06 - 2018-08-01 11:49 - 000635968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 017756224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 015170808 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 001358720 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFThevc.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 001349384 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 001071568 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFThevc.dll
- 2018-08-03 18:06 - 2018-08-01 11:48 - 001065688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll
- 2018-08-03 18:06 - 2018-08-01 11:47 - 004858224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
- 2018-08-03 18:06 - 2018-08-01 11:47 - 004128280 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
- 2018-08-03 18:06 - 2018-07-30 21:14 - 000044271 _____ C:\WINDOWS\system32\nvinfo.pb
- 2018-08-01 17:10 - 2018-08-01 18:03 - 000000000 ____D C:\Users\Pawel\AppData\Local\Room Designer VR
- 2018-08-01 17:10 - 2018-08-01 17:10 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\DefaultCompany
- 2018-07-31 18:27 - 2018-07-31 18:27 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Schell Games
- 2018-07-31 17:58 - 2018-08-05 18:01 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\SmartSteamEmu
- 2018-07-31 17:42 - 2018-07-31 17:42 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Mixed Realms
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002610 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype dla firm.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002513 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002501 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002486 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002483 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002480 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000002437 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
- 2018-07-31 17:03 - 2018-07-31 17:03 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Narzędzia pakietu Microsoft Office
- 2018-07-31 07:30 - 2018-07-31 07:30 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Free Lives
- 2018-07-30 22:42 - 2018-07-30 22:42 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Hyperbolic Magnetism
- 2018-07-30 21:47 - 2018-07-30 21:47 - 000000000 ____D C:\Users\Pawel\AppData\Local\2018
- 2018-07-30 20:59 - 2018-07-30 20:59 - 000083352 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwsecfl.sys
- 2018-07-30 20:59 - 2018-07-30 20:59 - 000075560 _____ (Broadcom Corporation.) C:\WINDOWS\system32\Drivers\btwusb.sys
- 2018-07-30 20:25 - 2018-07-30 20:25 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\HTC
- 2018-07-30 19:24 - 2018-08-01 18:14 - 000000000 ____D C:\Users\Pawel\AppData\LocalLow\Valve
- 2018-07-30 17:11 - 2018-07-30 17:11 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\HTC
- 2018-07-30 17:10 - 2018-07-30 17:10 - 000000000 ____D C:\Users\Pawel\AppData\Local\ViveDashboard
- 2018-07-30 17:10 - 2018-07-30 17:10 - 000000000 ____D C:\Users\Pawel\AppData\Local\SteamVR
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-30 16:54 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
- 2018-07-30 16:54 - 2018-07-19 22:20 - 002340392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
- 2018-07-30 16:54 - 2018-07-19 22:20 - 001936424 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
- 2018-07-30 16:54 - 2018-06-08 03:59 - 000069544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
- 2018-07-30 16:54 - 2018-04-24 19:29 - 000065792 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
- 2018-07-30 16:47 - 2018-07-30 16:47 - 000000000 ____D C:\Users\Pawel\Documents\steamvr
- 2018-07-30 16:47 - 2018-07-30 16:47 - 000000000 ____D C:\Users\Pawel\AppData\Local\openvr
- 2018-07-30 16:46 - 2018-07-30 16:46 - 000122112 _____ (Broadcom Corporation.) C:\WINDOWS\system32\btw_ci.dll
- 2018-07-30 16:46 - 2018-07-30 16:46 - 000109252 _____ C:\WINDOWS\system32\Drivers\BCM20703A1_001.001.005.0214.0481.hex
- 2018-07-30 16:43 - 2018-07-30 21:47 - 000000000 ____D C:\ProgramData\HTC
- 2018-07-30 16:43 - 2018-07-30 17:10 - 000000000 ____D C:\Users\Pawel\AppData\Local\Htc
- 2018-07-29 17:41 - 2018-08-09 16:05 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikacje Chrome
- 2018-07-29 17:39 - 2018-07-29 17:41 - 000002482 _____ C:\Users\Pawel\Desktop\Ewelina - Chrome.lnk
- 2018-07-29 17:39 - 2018-07-29 17:39 - 000002438 _____ C:\Users\Pawel\Desktop\Paweł - Chrome.lnk
- 2018-07-19 07:24 - 2018-07-19 07:24 - 000000000 ____D C:\ProgramData\Packages
- 2018-07-17 08:07 - 2018-07-17 08:34 - 000000000 ____D C:\Users\Pawel\AppData\Local\TeamViewer
- ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ========
- (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.)
- 2018-08-15 18:13 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
- 2018-08-15 18:06 - 2018-05-13 08:57 - 001966262 _____ C:\WINDOWS\system32\PerfStringBackup.INI
- 2018-08-15 18:06 - 2018-04-12 17:54 - 000854170 _____ C:\WINDOWS\system32\perfh015.dat
- 2018-08-15 18:06 - 2018-04-12 17:54 - 000187278 _____ C:\WINDOWS\system32\perfc015.dat
- 2018-08-15 18:06 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF
- 2018-08-15 18:06 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp
- 2018-08-15 18:04 - 2017-05-26 07:10 - 000000000 ____D C:\ProgramData\NVIDIA
- 2018-08-15 18:02 - 2017-01-18 21:28 - 000000000 ____D C:\Program Files (x86)\Steam
- 2018-08-15 15:54 - 2018-05-13 09:00 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
- 2018-08-15 15:54 - 2018-04-11 23:04 - 000262144 _____ C:\WINDOWS\system32\config\BBI
- 2018-08-15 15:54 - 2017-02-04 16:54 - 000000000 ____D C:\Program Files (x86)\TeamViewer
- 2018-08-15 15:53 - 2017-12-02 21:36 - 000000000 ____D C:\WINDOWS\system32\RTCOM
- 2018-08-15 15:53 - 2017-12-02 21:36 - 000000000 ____D C:\WINDOWS\system32\DAX3
- 2018-08-15 15:53 - 2017-05-26 07:10 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
- 2018-08-15 15:53 - 2017-05-26 07:10 - 000000000 ____D C:\WINDOWS\system32\DAX2
- 2018-08-15 15:49 - 2017-08-02 07:04 - 000000000 ____D C:\Users\Pawel\AppData\Local\Spotify
- 2018-08-15 15:23 - 2017-01-30 22:50 - 000000600 _____ C:\Users\Pawel\AppData\Roaming\winscp.rnd
- 2018-08-15 15:18 - 2018-05-13 08:57 - 000000000 ____D C:\Users\Pawel
- 2018-08-15 14:45 - 2018-05-13 08:55 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
- 2018-08-15 14:21 - 2017-08-02 07:04 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\Spotify
- 2018-08-15 14:02 - 2017-01-18 21:42 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\TS3Client
- 2018-08-15 14:01 - 2017-03-31 20:38 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\Notepad++
- 2018-08-15 13:43 - 2017-02-02 18:37 - 000000000 ____D C:\Users\Pawel\AppData\Local\CrashDumps
- 2018-08-15 12:24 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\registration
- 2018-08-15 12:10 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
- 2018-08-15 12:10 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\Macromed
- 2018-08-15 12:05 - 2018-04-18 17:24 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\uTorrent
- 2018-08-15 12:01 - 2017-05-26 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DoNotSpy10
- 2018-08-15 12:01 - 2017-05-26 16:06 - 000000000 ____D C:\Program Files (x86)\DoNotSpy10
- 2018-08-15 10:21 - 2018-05-13 08:55 - 000400800 _____ C:\WINDOWS\system32\FNTCACHE.DAT
- 2018-08-15 10:21 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness
- 2018-08-15 09:01 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
- 2018-08-14 21:07 - 2017-01-21 22:55 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\vlc
- 2018-08-14 19:36 - 2017-01-18 21:42 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
- 2018-08-13 17:54 - 2018-05-19 16:01 - 000000000 ____D C:\Users\Pawel\AppData\Local\D3DSCache
- 2018-08-13 16:49 - 2017-01-18 21:16 - 000000000 ___RD C:\Users\Pawel\OneDrive
- 2018-08-12 16:37 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports
- 2018-08-12 16:37 - 2017-02-02 19:46 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\DAEMON Tools Lite
- 2018-08-11 14:54 - 2018-05-13 08:57 - 000000000 ____D C:\Users\defaultuser0
- 2018-08-10 06:52 - 2017-01-18 21:24 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
- 2018-08-10 06:52 - 2017-01-18 21:24 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk
- 2018-08-09 22:04 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF
- 2018-08-09 20:42 - 2018-04-16 20:19 - 000000000 ____D C:\Users\Pawel\Documents\My Games
- 2018-08-09 20:42 - 2017-02-04 15:14 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\FiraxisLive
- 2018-08-04 16:14 - 2017-10-28 17:33 - 000000000 ____D C:\Users\Pawel\AppData\Local\NVIDIA
- 2018-08-04 15:08 - 2017-01-18 21:31 - 000000000 ____D C:\Users\Pawel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
- 2018-08-03 18:08 - 2018-01-28 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
- 2018-08-03 18:08 - 2017-05-26 07:10 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
- 2018-08-03 18:07 - 2018-05-26 23:42 - 000000000 ____D C:\Program Files (x86)\VulkanRT
- 2018-08-03 17:50 - 2018-04-12 18:07 - 000000000 ____D C:\Users\Pawel\AppData\Local\Citrix
- 2018-08-01 21:08 - 2018-04-25 01:04 - 000000087 _____ C:\Users\Pawel\.minttyrc
- 2018-07-31 17:03 - 2017-01-23 19:58 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
- 2018-07-30 21:47 - 2017-01-18 21:17 - 000000000 ____D C:\ProgramData\Package Cache
- 2018-07-30 19:41 - 2018-06-09 23:31 - 000124216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 005947600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 002612264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 001767632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 000634352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 000450768 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
- 2018-07-30 19:41 - 2017-05-26 07:10 - 000082800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
- 2018-07-30 17:10 - 2017-02-02 23:31 - 000000000 ____D C:\Temp
- 2018-07-30 16:57 - 2017-05-26 07:09 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
- 2018-07-30 16:54 - 2017-05-26 07:09 - 000000000 ____D C:\Program Files\NVIDIA Corporation
- 2018-07-24 19:06 - 2018-01-12 13:06 - 000000012 _____ C:\pipe11.dat
- 2018-07-24 11:03 - 2017-05-26 07:10 - 008253772 _____ C:\WINDOWS\system32\nvcoproc.bin
- 2018-07-19 22:20 - 2018-05-25 21:56 - 001311784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
- 2018-07-19 19:44 - 2017-07-08 17:56 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
- 2018-07-17 17:15 - 2017-10-26 22:33 - 000000000 ____D C:\Users\Pawel\AppData\Local\Packages
- ==================== Pliki w katalogu głównym wybranych folderów =======
- 2017-02-26 22:53 - 2017-02-26 22:55 - 000004487 _____ () C:\Users\Pawel\AppData\Roaming\VoiceMeeterDefault.xml
- 2017-01-30 22:50 - 2018-08-15 15:23 - 000000600 _____ () C:\Users\Pawel\AppData\Roaming\winscp.rnd
- 2017-01-19 21:36 - 2018-07-09 23:26 - 000000600 _____ () C:\Users\Pawel\AppData\Local\PUTTY.RND
- 2018-06-30 13:27 - 2018-06-30 13:27 - 000002070 _____ () C:\Users\Pawel\AppData\Local\recently-used.xbel
- Niektóre pliki w TEMP:
- ====================
- 2018-08-14 19:47 - 2018-08-14 19:47 - 000000000 _____ () C:\Users\Pawel\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
- 2018-08-15 12:04 - 2018-08-15 12:04 - 000240640 _____ () C:\Users\Pawel\AppData\Local\Temp\8AAF.tmp.exe
- 2018-08-14 19:47 - 2018-08-14 19:47 - 000000017 _____ () C:\Users\Pawel\AppData\Local\Temp\956845f42324b8a765fcc84106202e8a.dll
- 2018-08-15 12:04 - 2018-08-15 12:04 - 000601088 _____ () C:\Users\Pawel\AppData\Local\Temp\devenv.exe
- 2018-08-15 13:20 - 2018-07-06 09:25 - 001945784 _____ (Microsoft Corporation) C:\Users\Pawel\AppData\Local\Temp\dllnt_dump.dll
- 2018-08-15 12:04 - 2018-08-15 12:12 - 000484352 _____ () C:\Users\Pawel\AppData\Local\Temp\lame_enc.dll
- 2018-08-15 14:01 - 2018-08-15 14:01 - 004264384 _____ (Don HO don.h@free.fr) C:\Users\Pawel\AppData\Local\Temp\npp.7.5.8.Installer.exe
- 2018-08-15 12:04 - 2018-08-15 12:04 - 000175104 _____ () C:\Users\Pawel\AppData\Local\Temp\REGVAL_14082018_1778.exe
- 2018-08-14 12:09 - 2018-08-14 12:09 - 022533900 _____ () C:\Users\Pawel\AppData\Local\Temp\setup.dll
- 2018-08-14 19:36 - 2018-08-14 19:36 - 015301888 _____ (Microsoft Corporation) C:\Users\Pawel\AppData\Local\Temp\vcredist_x64.exe
- ==================== Bamital & volsnap ======================
- (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.)
- C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo
- C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo
- C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo
- LastRegBack: 2018-05-13 08:55
- ==================== Koniec FRST.txt ============================
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement