Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 16.01.2019 01 Uruchomiony przez jarek (administrator) JM (18-01-2019 15:59:26) Uruchomiony z C:\Users\jarek\Downloads Załadowane profile: jarek (Dostępne profile: jarek) Platform: Windows 10 Home Wersja 1803 17134.523 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Microsoft Corporation) C:\Windows\System32\LsaIso.exe (ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\igfxCUIService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe () C:\Program Files (x86)\PHotkey\PGFNEXSrv.exe (Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe (AOMEI Tech Co., Ltd.) C:\Program Files (x86)\AOMEI Backupper\ABService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\IntelCpHDCPSvc.exe (Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Dolby Laboratories, Inc.) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe (CHENGDU YIWO Tech Development Co., Ltd) C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\avp.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe (Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe (Intel Corporation) C:\Windows\System32\ibtsiva.exe (ICEpower a/s) C:\Windows\System32\ICEsoundService64.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe (Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe (Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\IntelCpHeciSvc.exe (Microsoft Corporation) C:\Windows\System32\vds.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe (Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe () C:\Program Files (x86)\PHotkey\MsgTranAgt.exe () C:\Program Files (x86)\PHotkey\MsgTranAgt64.exe () C:\Program Files (x86)\PHotkey\PHotkey.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_8a9535cd18c90bc3\igfxEM.exe () C:\Program Files (x86)\PHotkey\Atouch64.exe (ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe () C:\Program Files (x86)\PHotkey\Dolbyosd.exe () C:\Program Files (x86)\PHotkey\GPMTray.exe () C:\Program Files (x86)\PHotkey\KeyboardMonitorTool.exe (Microsoft Corporation) C:\Windows\SystemApps\Microsoft.LockApp_cw5n1h2txyewy\LockApp.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\avpui.exe () C:\Program Files (x86)\EaseUS\Todo Backup\bin\TodoBackupService.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe () C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe (ESET) C:\Program Files\ESET\ESET Security\egui.exe (Greenshot) C:\Program Files\Greenshot\Greenshot.exe () C:\Program Files\ACD Systems\ACDSee Pro\8.0\ACDSeeCommanderPro8.exe () C:\Program Files\ACD Systems\ACDSee Ultimate\12.0\ACDSeeCommanderUltimate12.exe (Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe (Adobe Inc.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Mister Group) C:\Program Files (x86)\System Explorer\SystemExplorer.exe (Mister Group) C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe (Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSATray.exe () C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe (Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe (Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe (Node.js) C:\Program Files (x86)\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349224 2016-10-16] (ELAN Microelectronics Corp.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18388928 2018-11-11] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1505728 2018-11-11] (Realtek Semiconductor) HKLM\...\Run: [DAX2_APP] => C:\Program Files\Dolby\Dolby DAX2\DAX2_APP\DolbyDAX2TrayIcon.exe [829632 2016-06-24] () HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2397120 2016-06-14] (NVIDIA Corporation) HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [177928 2018-11-29] (ESET) HKLM\...\Run: [ACUW12DE] => C:\Program Files\ACD Systems\ACDSee Ultimate\12.0\acdIDInTouch2.exe [2145752 2018-08-16] (ACD Systems) HKLM\...\Run: [ACPW08DE] => C:\Program Files\ACD Systems\ACDSee Pro\8.0\acdIDInTouch2.exe [1814800 2015-02-03] (ACD Systems) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2675176 2018-12-13] (Adobe Systems, Incorporated) HKLM\...\Run: [Greenshot] => C:\Program Files\Greenshot\Greenshot.exe [527792 2017-08-09] (Greenshot) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [319520 2018-12-06] (Intel Corporation) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Inc.) HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [588288 2016-01-08] (Nikon Corporation) HKLM-x32\...\Run: [SystemExplorerAutoStart] => "C:\Program Files (x86)\System Explorer\SystemExplorer.exe" /TRAY HKLM-x32\...\Run: [DSATray] => C:\Program Files (x86)\Intel Driver and Support Assistant\DsaTray.exe [126200 2019-01-02] (Intel) HKLM\...\Policies\Explorer: [ConfirmFileDelete] 1 HKU\S-1-5-21-1851146240-1794098927-3607146222-1001\...\Run: [ACDSeeCommanderPro8] => C:\Program Files\ACD Systems\ACDSee Pro\8.0\ACDSeeCommanderPro8.exe [2141192 2015-05-06] () HKU\S-1-5-21-1851146240-1794098927-3607146222-1001\...\Run: [ACDSeeCommanderUltimate12] => C:\Program Files\ACD Systems\ACDSee Ultimate\12.0\ACDSeeCommanderUltimate12.exe [4988392 2018-10-22] () HKU\S-1-5-21-1851146240-1794098927-3607146222-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [19554936 2018-11-28] (Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.98\Installer\chrmstp.exe [2019-01-14] (Google Inc.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{6967025f-e409-4b26-bac4-8f94790e04b6}: [DhcpNameServer] 192.168.178.1 Tcpip\..\Interfaces\{fe6536e6-229f-4385-8f81-6c9d03fdaab7}: [DhcpNameServer] 192.168.178.1 Internet Explorer: ================== HKU\S-1-5-21-1851146240-1794098927-3607146222-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://go.microsoft.com/fwlink/p/?LinkId=619797&pc=UE01&ocid=UE01DHP HKU\S-1-5-21-1851146240-1794098927-3607146222-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-01-11] (Microsoft Corporation) Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-01-11] (Microsoft Corporation) Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-01-11] (Microsoft Corporation) Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-01-11] (Microsoft Corporation) Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-01-11] (Microsoft Corporation) Edge: ====== Edge Extension: (Tłumacz dla Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.48.0_neutral__8wekyb3d8bbwe [2019-01-06] FireFox: ======== FF DefaultProfile: lkgzvrjp.default FF ProfilePath: C:\Users\jarek\AppData\Roaming\Mozilla\Firefox\Profiles\lkgzvrjp.default [2019-01-18] FF Extension: (Google Code Correction) - C:\Users\jarek\AppData\Roaming\Mozilla\Firefox\Profiles\lkgzvrjp.default\features\{ae030277-b0fc-404c-9901-4392b6fe163c}\google-code-correction@mozilla.org.xpi [2019-01-07] [Przestarzałe] FF Extension: (Youtube Unblocker Remediation) - C:\Users\jarek\AppData\Roaming\Mozilla\Firefox\Profiles\lkgzvrjp.default\features\{ae030277-b0fc-404c-9901-4392b6fe163c}\malware-remediation@mozilla.org.xpi [2019-01-07] [Przestarzałe] FF Extension: (Telemetry coverage) - C:\Users\jarek\AppData\Roaming\Mozilla\Firefox\Profiles\lkgzvrjp.default\features\{ae030277-b0fc-404c-9901-4392b6fe163c}\telemetry-coverage-bug1487578@mozilla.org.xpi [2019-01-07] [Przestarzałe] FF HKLM\...\Firefox\Extensions: [light_plugin_F88CEF8523DE460F9FA1D6E48BF8D340@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\FFExt\light_plugin_firefox\addon.xpi FF Extension: (Kaspersky Protection) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\FFExt\light_plugin_firefox\addon.xpi [2018-12-17] FF HKLM-x32\...\Firefox\Extensions: [light_plugin_F88CEF8523DE460F9FA1D6E48BF8D340@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\FFExt\light_plugin_firefox\addon.xpi FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-12-17] (Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-14] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.23\npGoogleUpdate3.dll [2019-01-14] (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems) FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2019-01-06] <==== UWAGA (Linkuje do pliku *.cfg) FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2019-01-06] <==== UWAGA Chrome: ======= CHR Profile: C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default [2019-01-18] CHR Extension: (Tłumacz Google) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2018-12-20] CHR Extension: (Kaspersky Protection) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\amkpcclbbgegoafihnpgomddadjhcadd [2018-12-17] CHR Extension: (Dysk Google) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-12-16] CHR Extension: (YouTube) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-16] CHR Extension: (AdBlock) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-01-17] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-12-16] CHR Extension: (Gmail) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-12-17] CHR Extension: (Chrome Media Router) - C:\Users\jarek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-12-16] CHR Profile: C:\Users\jarek\AppData\Local\Google\Chrome\User Data\System Profile [2019-01-06] CHR HKLM\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd CHR HKLM-x32\...\Chrome\Extension: [amkpcclbbgegoafihnpgomddadjhcadd] - hxxps://chrome.google.com/webstore/detail/amkpcclbbgegoafihnpgomddadjhcadd ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2917864 2018-12-13] (Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2709480 2018-12-13] (Adobe Systems, Incorporated) R2 AVP19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\avp.exe [619640 2018-02-28] (AO Kaspersky Lab) R2 Backupper Service; C:\Program Files (x86)\AOMEI Backupper\ABService.exe [29912 2015-09-15] (AOMEI Tech Co., Ltd.) [Brak podpisu cyfrowego] R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9619816 2019-01-04] (Microsoft Corporation) R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [197120 2017-07-13] (Dolby Laboratories, Inc.) R2 DSAService; C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [23288 2019-01-02] (Intel) R2 EaseUS Agent; C:\Program Files (x86)\EaseUS\Todo Backup\bin\Agent.exe [36904 2015-12-10] (CHENGDU YIWO Tech Development Co., Ltd) [Brak podpisu cyfrowego] R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2302160 2018-11-29] (ESET) R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2302160 2018-11-29] (ESET) R2 ETDService; C:\Program Files\Elantech\ETDService.exe [110824 2016-10-16] (ELAN Microelectronics Corp.) R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163712 2016-06-14] (NVIDIA Corporation) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [17440 2018-12-06] (Intel Corporation) R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [541800 2018-09-26] (Intel Corporation) R2 ICEsoundService; C:\WINDOWS\system32\ICEsoundService64.exe [483816 2018-11-11] (ICEpower a/s) S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel Corporation) S3 klvssbridge64_19.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Anti-Virus 19.0.0\x64\vssbridge64.exe [414352 2018-12-17] (AO Kaspersky Lab) S2 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (AO Kaspersky Lab) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268704 2016-05-03] () R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-06-14] (NVIDIA Corporation) S3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [3632576 2016-06-14] (NVIDIA Corporation) S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2521024 2016-06-14] (NVIDIA Corporation) R2 PGFNEXSrv; C:\Program Files (x86)\PHotkey\PGFNEXSrv.exe [135680 2014-08-07] () [Brak podpisu cyfrowego] S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] () R3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3880120 2018-12-23] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [114208 2018-12-23] (Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3732896 2016-05-03] (Intel® Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 ambakdrv; C:\WINDOWS\System32\ambakdrv.sys [30648 2015-02-26] () [Brak podpisu cyfrowego] R2 ammntdrv; C:\WINDOWS\system32\ammntdrv.sys [151480 2015-02-26] () [Brak podpisu cyfrowego] R2 amwrtdrv; C:\WINDOWS\system32\amwrtdrv.sys [17848 2015-02-26] () [Brak podpisu cyfrowego] S3 clwvd6; C:\WINDOWS\system32\DRIVERS\clwvd6.sys [41400 2015-08-31] (CyberLink Corporation) R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [243400 2018-01-27] (AO Kaspersky Lab) S3 dg_ssudbus; C:\WINDOWS\System32\drivers\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [143448 2018-11-29] (ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [107896 2018-11-29] (ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15872 2018-10-17] (ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [188832 2018-10-17] (ESET) R2 ekbdflt; C:\WINDOWS\System32\drivers\ekbdflt.sys [50144 2018-08-27] (ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [82304 2018-10-17] (ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [109864 2018-10-17] (ESET) R3 ETDMiniPTP; C:\WINDOWS\System32\drivers\ETDMiniPTP.sys [25832 2016-07-13] (ELAN Microelectronic Corp.) U5 iaStorA; C:\Windows\System32\Drivers\iaStorA.sys [791560 2016-06-01] (Intel Corporation) R0 iaStorAC; C:\WINDOWS\System32\drivers\iaStorAC.sys [1094792 2018-12-06] (Intel Corporation) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [143288 2018-09-26] (Intel Corporation) R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [73416 2018-12-17] (AO Kaspersky Lab) R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [123152 2018-12-17] (AO Kaspersky Lab) R1 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [89168 2018-12-17] (AO Kaspersky Lab) S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [29208 2017-03-30] (AO Kaspersky Lab) R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [219744 2018-12-17] (AO Kaspersky Lab) R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [1214752 2018-10-02] (AO Kaspersky Lab) S3 klids; C:\ProgramData\Kaspersky Lab\AVP19.0.0\Bases\klids.sys [190784 2018-12-17] (AO Kaspersky Lab) R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1113696 2018-12-17] (AO Kaspersky Lab) R1 klim6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57032 2018-02-12] (AO Kaspersky Lab) R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [58048 2018-01-15] (AO Kaspersky Lab) R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [83496 2017-12-11] (AO Kaspersky Lab) R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [50648 2017-05-30] (AO Kaspersky Lab) S3 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [45768 2018-12-17] (AO Kaspersky Lab) S3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [48080 2018-02-12] (The OpenVPN Project) R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [238528 2018-12-17] (AO Kaspersky Lab) S3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [100136 2019-01-17] (AO Kaspersky Lab) R3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [289856 2018-12-17] (AO Kaspersky Lab) R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [110640 2018-12-17] (AO Kaspersky Lab) R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [193168 2018-12-17] (AO Kaspersky Lab) S4 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [100552 2018-02-17] (AO Kaspersky Lab) R1 klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [176976 2018-12-17] (AO Kaspersky Lab) R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [203968 2018-02-24] (AO Kaspersky Lab) S3 Netwtw06; C:\WINDOWS\system32\DRIVERS\Netwtw06.sys [7754240 2017-09-05] (Intel Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvpm.inf_amd64_9fe230956a2364cf\nvlddmkm.sys [17036560 2018-04-12] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-06-14] (NVIDIA Corporation) S3 NVSWCFilter; C:\WINDOWS\System32\drivers\nvswcfilter.sys [28344 2016-05-12] (Windows (R) Win 7 DDK provider) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation) S3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57792 2017-10-11] (NVIDIA Corporation) R2 PEGAGFN; C:\Program Files (x86)\PHotkey\PEGAGFN.sys [14344 2009-09-11] (PEGATRON) R3 PegaRadioSwitch; C:\WINDOWS\System32\drivers\PegaRadioSwitch.sys [34096 2015-11-18] (Windows (R) Win 7 DDK provider) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [937728 2016-06-20] (Realtek ) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [416472 2016-05-17] (Realsil Semiconductor Corporation) S3 ssudqcfilter; C:\WINDOWS\System32\drivers\ssudqcfilter.sys [64912 2017-05-18] (QUALCOMM Incorporated) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46680 2018-12-23] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [330936 2018-12-23] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [62136 2018-12-23] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-01-18 15:59 - 2019-01-18 16:00 - 000026696 _____ C:\Users\jarek\Downloads\FRST.txt 2019-01-18 15:59 - 2019-01-18 15:59 - 000000000 ____D C:\FRST 2019-01-18 15:56 - 2019-01-18 15:57 - 002427904 _____ (Farbar) C:\Users\jarek\Downloads\FRST64.exe 2019-01-18 15:53 - 2019-01-18 15:53 - 000232424 _____ C:\Users\jarek\Desktop\2019-01-18 15_53_32-Window.tiff 2019-01-17 22:31 - 2016-01-19 12:06 - 016967025 _____ C:\Users\jarek\Desktop\DSC_3219.NEF 2019-01-17 22:28 - 2015-10-10 15:50 - 017562997 _____ C:\Users\jarek\Desktop\DSC_7483.NEF 2019-01-17 22:18 - 2015-10-10 21:58 - 023994675 _____ C:\Users\jarek\Desktop\DSC_7423.NEF 2019-01-17 21:37 - 2019-01-17 21:37 - 002692782 _____ (Opanda Studio ) C:\Users\jarek\Downloads\IExif_2.3_en.exe 2019-01-17 19:16 - 2019-01-17 19:16 - 000000000 ____D C:\Users\jarek\AppData\Local\ElevatedDiagnostics 2019-01-17 19:15 - 2019-01-17 19:15 - 000000656 _____ C:\Users\jarek\Downloads\wu10.diagcab 2019-01-17 18:56 - 2018-09-20 05:12 - 001483576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2019-01-17 18:45 - 2019-01-17 18:45 - 000000000 ____D C:\Users\jarek\AppData\LocalLow\Sun 2019-01-17 18:42 - 2019-01-17 18:42 - 000003834 _____ C:\WINDOWS\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 2019-01-17 18:36 - 2019-01-17 18:36 - 000002343 _____ C:\Users\Public\Desktop\Intel® Rapid Storage Technology.lnk 2019-01-17 18:36 - 2019-01-17 18:36 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2019-01-17 18:36 - 2019-01-17 18:36 - 000000000 ____D C:\Program Files\Common Files\Intel Corporation 2019-01-17 18:33 - 2019-01-17 18:33 - 000000000 ____D C:\Users\jarek\Intel 2019-01-17 18:21 - 2019-01-17 18:21 - 000014295 _____ C:\Users\jarek\Downloads\Detailed-System-Report.html 2019-01-17 18:20 - 2019-01-17 18:22 - 000000000 ____D C:\Users\jarek\Downloads\Intel Driver and Support Assistant 2019-01-17 18:18 - 2019-01-17 18:20 - 000000000 ____D C:\Program Files (x86)\Intel Driver and Support Assistant 2019-01-17 18:18 - 2019-01-17 18:18 - 000003762 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 2019-01-17 18:18 - 2019-01-17 18:18 - 000003528 _____ C:\WINDOWS\System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon 2019-01-17 18:18 - 2019-01-17 18:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver and Support Assistant 2019-01-17 13:27 - 2019-01-17 13:27 - 000001110 _____ C:\Users\jarek\Desktop\Adobe Lightroom Classic CC.lnk 2019-01-17 13:27 - 2019-01-17 13:27 - 000001110 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom Classic CC.lnk 2019-01-17 13:23 - 2019-01-17 13:24 - 002184873 _____ (PortableApps.com) C:\Users\jarek\Downloads\SystemExplorerPortable_7.1.0.paf.exe 2019-01-17 13:12 - 2019-01-17 13:13 - 001917528 _____ (Mister Group ) C:\Users\jarek\Downloads\SystemExplorerSetup.exe 2019-01-17 12:39 - 2019-01-17 12:39 - 000001064 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Lightroom CC.lnk 2019-01-17 12:39 - 2019-01-17 12:39 - 000001052 _____ C:\Users\jarek\Desktop\Lightroom CC.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk 2019-01-17 00:59 - 2019-01-17 00:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2019-01-17 00:52 - 2019-01-17 00:52 - 000322370 _____ C:\Users\jarek\Downloads\General Terms and Conditions of Business of cleverbridge AG and cleverbridge, Inc.pdf 2019-01-17 00:52 - 2019-01-17 00:52 - 000119602 _____ C:\Users\jarek\Downloads\AKD-73668382622.pdf 2019-01-17 00:52 - 2019-01-17 00:52 - 000100136 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys 2019-01-16 21:56 - 2018-11-17 23:30 - 900018536 _____ C:\Users\jarek\Desktop\FUCK.tif 2019-01-16 21:10 - 2019-01-16 21:10 - 000001416 _____ C:\Users\Public\Desktop\EaseUS Todo Backup Free 9.1.lnk 2019-01-16 21:10 - 2019-01-16 21:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Todo Backup Free 9.1 2019-01-16 21:09 - 2019-01-16 21:09 - 000000000 ____D C:\Program Files (x86)\EaseUS 2019-01-16 21:09 - 2015-12-10 06:14 - 000024104 _____ (CHENGDU YIWO Tech Development Co., Ltd) C:\WINDOWS\system32\fbnative.exe 2019-01-16 21:00 - 2019-01-16 21:04 - 000001024 ____H C:\SYSTAG.BIN 2019-01-16 20:59 - 2019-01-16 21:04 - 000000082 _____ C:\WINDOWS\SysWOW64\winsevr.dat 2019-01-16 20:59 - 2019-01-16 21:03 - 000000000 ____D C:\ProgramData\AomeiBR 2019-01-16 20:59 - 2019-01-16 20:59 - 000001138 _____ C:\Users\Public\Desktop\AOMEI Backupper Standard.lnk 2019-01-16 20:59 - 2019-01-16 20:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Backupper 2019-01-16 20:58 - 2019-01-16 20:59 - 000000000 ____D C:\Program Files (x86)\AOMEI Backupper 2019-01-16 20:58 - 2015-02-26 00:00 - 000151480 _____ C:\WINDOWS\system32\ammntdrv.sys 2019-01-16 20:58 - 2015-02-26 00:00 - 000030648 _____ C:\WINDOWS\system32\ambakdrv.sys 2019-01-16 20:58 - 2015-02-26 00:00 - 000017848 _____ C:\WINDOWS\system32\amwrtdrv.sys 2019-01-16 20:49 - 2019-01-16 20:49 - 000000000 ____D C:\Program Files (x86)\Secunia 2019-01-16 20:46 - 2016-05-25 13:11 - 004596296 _____ (UltimateOutsider) C:\Users\jarek\Desktop\GWX_control_panel.exe 2019-01-15 16:30 - 2019-01-17 18:35 - 000000000 ____D C:\Users\jarek\Desktop\Notatki 2019-01-14 20:50 - 2019-01-14 21:23 - 000000140 _____ C:\WINDOWS\restoro.ini 2019-01-14 20:29 - 2019-01-17 13:15 - 000001163 _____ C:\Users\Public\Desktop\System Explorer.lnk 2019-01-14 20:29 - 2019-01-17 13:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\System Explorer 2019-01-14 20:29 - 2019-01-14 21:35 - 000000000 ____D C:\ProgramData\SystemExplorer 2019-01-14 20:29 - 2019-01-14 20:29 - 002124128 _____ (Mister Group ) C:\Users\jarek\Downloads\SystemExplorerSetup_[www.programosy.pl].exe 2019-01-14 20:29 - 2019-01-14 20:29 - 000000000 ____D C:\Program Files (x86)\System Explorer 2019-01-14 20:24 - 2019-01-14 20:24 - 000456936 _____ C:\Users\jarek\Downloads\Niepotwierdzony 831767.crdownload 2019-01-14 19:15 - 2019-01-14 19:15 - 044792320 _____ (Agnitum, Ltd. ) C:\Users\jarek\Downloads\Outpost_Firewall.exe 2019-01-14 19:15 - 2019-01-14 19:15 - 000000000 ____D C:\ProgramData\Agnitum 2019-01-14 18:48 - 2019-01-14 18:48 - 000002387 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-01-14 18:48 - 2019-01-14 18:48 - 000002346 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2019-01-14 18:47 - 2019-01-14 18:47 - 000003568 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2019-01-14 18:47 - 2019-01-14 18:47 - 000003444 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2019-01-12 16:31 - 2019-01-12 18:20 - 000000000 ____D C:\Users\jarek\Downloads\Komunia 2019-01-12 15:10 - 2019-01-12 15:10 - 000126279 _____ C:\Users\jarek\Downloads\takeout-20190112T141016Z-001.zip 2019-01-11 23:45 - 2019-01-11 23:45 - 000000677 _____ C:\Users\Public\Desktop\EaseUS Data Recovery Wizard.lnk 2019-01-11 23:45 - 2019-01-11 23:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EaseUS Data Recovery Wizard 2019-01-10 16:50 - 2019-01-10 16:50 - 000000000 ____D C:\Users\jarek\AppData\Roaming\WD Discovery 2019-01-10 16:50 - 2019-01-10 16:50 - 000000000 ____D C:\Users\jarek\.wdc 2019-01-09 16:54 - 2019-01-09 16:55 - 097449152 _____ (CHENGDU YIWO Tech Development Co., Ltd ) C:\Users\jarek\Downloads\tb_free.exe 2019-01-09 16:53 - 2019-01-01 14:50 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-01-09 16:53 - 2019-01-01 14:47 - 000225792 _____ (Microsoft Corporation) C:\WINDOWS\system32\windowslivelogin.dll 2019-01-09 16:53 - 2019-01-01 14:46 - 012710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-01-09 16:53 - 2019-01-01 14:45 - 000714752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll 2019-01-09 16:53 - 2019-01-01 14:45 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcredprov.dll 2019-01-09 16:53 - 2019-01-01 14:43 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-01-09 16:53 - 2019-01-01 14:20 - 011902976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-01-09 16:53 - 2019-01-01 14:20 - 000165888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windowslivelogin.dll 2019-01-09 16:53 - 2019-01-01 14:18 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll 2019-01-09 16:53 - 2019-01-01 14:17 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcredprov.dll 2019-01-09 16:53 - 2019-01-01 08:14 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-01-09 16:53 - 2019-01-01 08:14 - 001063224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2019-01-09 16:53 - 2019-01-01 08:14 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-01-09 16:53 - 2019-01-01 08:14 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-01-09 16:53 - 2019-01-01 08:14 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-01-09 16:53 - 2019-01-01 08:14 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-01-09 16:53 - 2019-01-01 08:13 - 003292152 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll 2019-01-09 16:53 - 2019-01-01 08:13 - 001363536 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll 2019-01-09 16:53 - 2019-01-01 08:13 - 000709728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2019-01-09 16:53 - 2019-01-01 08:13 - 000436024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-01-09 16:53 - 2019-01-01 08:13 - 000170808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-01-09 16:53 - 2019-01-01 08:12 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-01-09 16:53 - 2019-01-01 08:12 - 007520104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-01-09 16:53 - 2019-01-01 08:12 - 002765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-01-09 16:53 - 2019-01-01 08:12 - 002465792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2019-01-09 16:53 - 2019-01-01 08:12 - 002421288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2019-01-09 16:53 - 2019-01-01 08:12 - 000713272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2019-01-09 16:53 - 2019-01-01 08:12 - 000268304 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2019-01-09 16:53 - 2019-01-01 08:12 - 000128824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2019-01-09 16:53 - 2019-01-01 08:12 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe 2019-01-09 16:53 - 2019-01-01 07:55 - 025856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-01-09 16:53 - 2019-01-01 07:50 - 022715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-01-09 16:53 - 2019-01-01 07:50 - 004383744 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-01-09 16:53 - 2019-01-01 07:48 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe 2019-01-09 16:53 - 2019-01-01 07:48 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys 2019-01-09 16:53 - 2019-01-01 07:48 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Print.Workflow.Source.dll 2019-01-09 16:53 - 2019-01-01 07:47 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-01-09 16:53 - 2019-01-01 07:47 - 000433152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2019-01-09 16:53 - 2019-01-01 07:46 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MicrosoftAccountTokenProvider.dll 2019-01-09 16:53 - 2019-01-01 07:46 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-01-09 16:53 - 2019-01-01 07:46 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2019-01-09 16:53 - 2019-01-01 07:45 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-01-09 16:53 - 2019-01-01 07:45 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-01-09 16:53 - 2019-01-01 07:45 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll 2019-01-09 16:53 - 2019-01-01 07:44 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2019-01-09 16:53 - 2019-01-01 07:44 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-01-09 16:53 - 2019-01-01 07:44 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-01-09 16:53 - 2019-01-01 07:44 - 000662528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidprov.dll 2019-01-09 16:53 - 2019-01-01 07:44 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Graphics.Printing.Workflow.dll 2019-01-09 16:53 - 2019-01-01 07:43 - 001805312 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-01-09 16:53 - 2019-01-01 07:42 - 004939776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2019-01-09 16:53 - 2019-01-01 07:42 - 002247680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll 2019-01-09 16:53 - 2019-01-01 07:42 - 001371136 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll 2019-01-09 16:53 - 2019-01-01 07:42 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll 2019-01-09 16:53 - 2019-01-01 07:41 - 001159680 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-01-09 16:53 - 2019-01-01 07:41 - 000899072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-01-09 16:53 - 2019-01-01 07:41 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2019-01-09 16:53 - 2019-01-01 07:41 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 006571584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 002478664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 002253696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 001989040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 000880048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 000581808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2019-01-09 16:53 - 2019-01-01 07:37 - 000381240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-01-09 16:53 - 2019-01-01 07:29 - 022016512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-01-09 16:53 - 2019-01-01 07:22 - 019405312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-01-09 16:53 - 2019-01-01 07:17 - 000153088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MicrosoftAccountTokenProvider.dll 2019-01-09 16:53 - 2019-01-01 07:16 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-01-09 16:53 - 2019-01-01 07:16 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2019-01-09 16:53 - 2019-01-01 07:16 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll 2019-01-09 16:53 - 2019-01-01 07:15 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2019-01-09 16:53 - 2019-01-01 07:15 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-01-09 16:53 - 2019-01-01 07:15 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-01-09 16:53 - 2019-01-01 07:15 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll 2019-01-09 16:53 - 2019-01-01 07:14 - 004514816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2019-01-09 16:53 - 2019-01-01 07:14 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-01-09 16:53 - 2019-01-01 07:14 - 000330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Graphics.Printing.Workflow.dll 2019-01-09 16:53 - 2019-01-01 07:13 - 001628160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-01-09 16:53 - 2019-01-01 07:13 - 000594432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Web.dll 2019-01-09 16:53 - 2019-01-01 07:13 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-01-09 16:53 - 2019-01-01 07:12 - 001036288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll 2019-01-09 16:53 - 2019-01-01 07:12 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2019-01-09 16:53 - 2019-01-01 07:12 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-01-09 16:53 - 2019-01-01 07:12 - 000516608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidprov.dll 2019-01-09 16:53 - 2019-01-01 06:23 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim 2019-01-09 16:53 - 2018-12-19 05:49 - 000352768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-01-07 17:04 - 2019-01-07 17:04 - 000000000 ____D C:\ProgramData\SystemAcCrux 2019-01-07 17:04 - 2019-01-07 17:04 - 000000000 ____D C:\Program Files\EaseUS 2019-01-06 16:26 - 2019-01-06 16:27 - 001122450 _____ C:\TDSSKiller.3.1.0.25_06.01.2019_16.26.50_log.txt 2019-01-06 16:21 - 2019-01-06 16:21 - 000008900 _____ C:\TDSSKiller.3.1.0.25_06.01.2019_16.21.24_log.txt 2019-01-06 16:19 - 2019-01-06 16:19 - 000000436 _____ C:\TDSSKiller.3.1.0.24_06.01.2019_16.19.05_log.txt 2019-01-06 16:03 - 2019-01-16 22:26 - 000000687 _____ C:\Users\jarek\Desktop\Total Commander 64 bit.lnk 2019-01-06 16:03 - 2019-01-15 19:46 - 000000000 ____D C:\Users\jarek\AppData\Roaming\GHISLER 2019-01-06 16:03 - 2019-01-06 16:03 - 000000673 _____ C:\Users\jarek\Desktop\Total Commander.lnk 2019-01-06 15:19 - 2019-01-06 15:19 - 000000000 _____ C:\Users\jarek\Documents\emncpsrb.flv 2019-01-06 15:13 - 2019-01-06 15:13 - 000001187 _____ C:\Users\jarek\Desktop\save2pc.lnk 2019-01-06 15:13 - 2019-01-06 15:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\save2pc 2019-01-06 15:13 - 2019-01-06 15:13 - 000000000 ____D C:\Program Files (x86)\FDRLab 2019-01-06 15:09 - 2019-01-06 15:09 - 000320144 _____ (Mozilla) C:\Users\jarek\Downloads\Firefox Installer(1).exe 2019-01-06 15:08 - 2019-01-06 15:09 - 000320144 _____ (Mozilla) C:\Users\jarek\Downloads\Firefox Installer.exe 2019-01-06 15:03 - 2019-01-14 18:44 - 000000000 ____D C:\Program Files\Mozilla Firefox 2019-01-06 15:03 - 2019-01-06 15:08 - 000000000 ____D C:\Users\jarek\AppData\Local\Mozilla 2019-01-06 15:03 - 2019-01-06 15:03 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Mozilla 2019-01-06 15:03 - 2019-01-06 15:03 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2019-01-06 12:07 - 2019-01-06 13:14 - 000000000 ____D C:\Users\jarek\Desktop\CCEnchancer 2019-01-05 15:26 - 2019-01-16 22:00 - 000000000 ____D C:\Users\jarek\AppData\Local\GHISLER 2019-01-05 13:20 - 2019-01-05 13:38 - 000000000 ____D C:\Users\jarek\Desktop\FAls 2019-01-05 12:39 - 2019-01-06 13:14 - 000000000 ____D C:\EEK 2019-01-05 12:29 - 2019-01-05 12:29 - 000000000 ____D C:\Users\jarek\AppData\Local\Zemana 2019-01-05 12:27 - 2019-01-06 13:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ClipGrab 2019-01-05 12:27 - 2019-01-06 13:14 - 000000000 ____D C:\Program Files (x86)\ClipGrab 2019-01-05 12:16 - 2019-01-06 16:03 - 000000000 ____D C:\totalcmd 2019-01-05 11:42 - 2019-01-06 13:14 - 000000000 ____D C:\Program Files\HWiNFO64 2019-01-03 12:59 - 2019-01-03 12:59 - 000000000 ____D C:\ProgramData\CanonBJ 2019-01-01 19:18 - 2019-01-01 19:19 - 000000163 _____ C:\Users\jarek\Desktop\Gra o tron.txt 2018-12-29 12:16 - 2018-12-29 12:16 - 000001411 _____ C:\Users\jarek\Desktop\Display — skrót .lnk 2018-12-26 19:48 - 2018-12-27 23:32 - 000000000 ____D C:\Users\jarek\Desktop\Nowy folder (3) 2018-12-25 00:26 - 2019-01-15 00:28 - 000555058 _____ C:\Users\jarek\Desktop\09D9B390-1E38-4516-AA5F-3B810E1E9CEF.dng 2018-12-24 21:16 - 2018-12-24 21:17 - 014213460 _____ C:\Users\jarek\Downloads\Kudlawiec_i_in.pdf 2018-12-24 21:16 - 2018-12-24 21:17 - 014213460 _____ C:\Users\jarek\Downloads\Kudlawiec_i_in (2).pdf 2018-12-24 21:16 - 2018-12-24 21:17 - 014213460 _____ C:\Users\jarek\Downloads\Kudlawiec_i_in (1).pdf 2018-12-24 16:57 - 2018-12-24 16:57 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2018-12-22 12:48 - 2018-12-22 12:48 - 000001158 _____ C:\Users\jarek\Desktop\darktable.lnk 2018-12-22 00:30 - 2019-01-06 13:14 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Greenshot 2018-12-22 00:30 - 2018-12-22 00:30 - 000000000 ____D C:\Users\jarek\AppData\Local\Greenshot 2018-12-22 00:29 - 2018-12-22 00:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Greenshot 2018-12-22 00:29 - 2018-12-22 00:29 - 000000000 ____D C:\Program Files\Greenshot 2018-12-21 21:17 - 2018-12-21 21:17 - 000001210 _____ C:\Users\jarek\AppData\Local\recently-used.xbel 2018-12-21 21:08 - 2018-12-21 21:08 - 000000000 ____D C:\Users\jarek\AppData\Local\gtk-3.0 2018-12-21 21:07 - 2019-01-13 21:17 - 000000000 ____D C:\Users\jarek\AppData\Local\darktable 2018-12-21 21:07 - 2018-12-22 12:56 - 000000000 ____D C:\Users\jarek\.dbus-keyrings 2018-12-21 20:58 - 2018-12-21 20:59 - 063922397 _____ C:\Users\jarek\Downloads\darktable-2.4.4-win64.exe 2018-12-21 14:09 - 2018-12-21 14:09 - 000000000 ____D C:\ProgramData\Nikon 2018-12-21 00:30 - 2018-12-21 00:30 - 000000268 ___RH C:\Users\jarek\AppData\Roaming\Guitar 2018-12-21 00:30 - 2018-12-21 00:30 - 000000268 ___RH C:\ProgramData\Help 2018-12-21 00:30 - 2018-12-21 00:30 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Nikon 2018-12-21 00:30 - 2018-12-21 00:30 - 000000000 ____D C:\ProgramData\Organs 2018-12-21 00:23 - 2018-12-21 00:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nikon Message Center 2 2018-12-21 00:23 - 2018-12-21 00:23 - 000000000 ____D C:\Program Files (x86)\Nikon 2018-12-21 00:22 - 2018-12-21 00:22 - 000002160 _____ C:\Users\Public\Desktop\Picture Control Utility 2.lnk 2018-12-21 00:22 - 2018-12-21 00:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Picture Control Utility 2 2018-12-21 00:21 - 2018-12-21 00:22 - 000000000 ____D C:\Program Files\Nikon 2018-12-21 00:21 - 2018-12-21 00:22 - 000000000 ____D C:\Program Files\Common Files\Nikon 2018-12-21 00:21 - 2018-12-21 00:21 - 000002185 _____ C:\Users\Public\Desktop\Camera Control Pro 2.lnk 2018-12-21 00:21 - 2018-12-21 00:21 - 000000000 ____D C:\WINDOWS\Downloaded Installations 2018-12-21 00:21 - 2018-12-21 00:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Camera Control Pro 2 2018-12-21 00:21 - 2018-12-21 00:21 - 000000000 _____ C:\ProgramData\PKP_DLeh.DAT 2018-12-21 00:21 - 2018-12-21 00:21 - 000000000 _____ C:\ProgramData\PKP_DLdz.DAT 2018-12-21 00:20 - 2018-12-21 00:30 - 000000020 ____H C:\ProgramData\PKP_DLdy.DAT 2018-12-21 00:20 - 2018-12-21 00:21 - 000000000 ____D C:\ProgramData\Ultima_T15 2018-12-21 00:20 - 2018-12-21 00:21 - 000000000 ____D C:\ProgramData\EnterNHelp 2018-12-20 23:39 - 2018-12-21 00:04 - 000000000 ____D C:\Users\jarek\AppData\Roaming\SoftPerfect Network Scanner 2018-12-20 23:38 - 2018-12-20 23:38 - 006143200 _____ (SoftPerfect Pty Ltd ) C:\Users\jarek\Downloads\netscan_setup.exe 2018-12-20 21:53 - 2018-12-20 21:53 - 000000000 ____D C:\Users\jarek\Documents\Ashampoo Burning Studio 14 2018-12-20 21:18 - 2019-01-16 21:36 - 000000000 ____D C:\Users\jarek\Desktop\Nowy folder (2) 2018-12-20 21:14 - 2019-01-17 23:27 - 000004210 _____ C:\WINDOWS\System32\Tasks\CCleaner Update 2018-12-20 21:14 - 2019-01-06 13:19 - 000000000 ____D C:\Program Files\CCleaner 2018-12-20 21:14 - 2019-01-06 13:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2018-12-20 21:14 - 2018-12-20 21:14 - 000002866 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC 2018-12-20 21:14 - 2018-12-20 21:14 - 000000867 _____ C:\Users\Public\Desktop\CCleaner.lnk 2018-12-20 21:13 - 2018-12-20 21:14 - 018177128 _____ (Piriform Software Ltd) C:\Users\jarek\Downloads\ccsetup550.exe 2018-12-20 21:10 - 2019-01-06 13:15 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ashampoo 2018-12-20 21:10 - 2018-12-20 21:52 - 000001542 _____ C:\Users\jarek\Desktop\Ashampoo Burning Studio 14 Compact Mode.lnk 2018-12-20 21:10 - 2018-12-20 21:10 - 000001380 _____ C:\Users\jarek\Desktop\Ashampoo Burning Studio 14.lnk 2018-12-20 21:10 - 2018-12-20 21:10 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Ashampoo 2018-12-20 21:10 - 2018-12-20 21:10 - 000000000 ____D C:\Users\jarek\AppData\Local\ashampoo 2018-12-20 21:09 - 2019-01-06 13:14 - 000000000 ____D C:\Program Files (x86)\Ashampoo 2018-12-20 21:09 - 2018-12-20 21:10 - 000000000 ____D C:\ProgramData\Ashampoo 2018-12-20 21:03 - 2018-12-20 21:05 - 184266496 _____ (Ashampoo GmbH & Co. KG ) C:\Users\jarek\Downloads\ashampoo_burning_studio_14_e14.1.2_sm (1).exe 2018-12-20 18:34 - 2018-12-20 18:35 - 001317922 _____ C:\Users\jarek\Downloads\Amper_odpychanie.flv 2018-12-20 14:15 - 2018-12-27 23:16 - 000000000 ____D C:\Users\jarek\Desktop\dokument 2018-12-19 20:45 - 2018-12-19 20:45 - 004015890 _____ C:\Users\jarek\Downloads\BA_Solo_Milk_082018_Book_Gesamt.pdf 2018-12-19 19:38 - 2018-12-14 08:29 - 001130760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2018-12-19 19:38 - 2018-12-14 08:25 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2018-12-19 19:38 - 2018-12-14 08:21 - 001457240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-12-19 19:38 - 2018-12-14 08:21 - 001257672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-12-19 19:38 - 2018-12-14 08:21 - 001140480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-12-19 19:38 - 2018-12-14 08:21 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2018-12-19 19:38 - 2018-12-14 08:21 - 000982912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-12-19 19:38 - 2018-12-14 08:10 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2018-12-19 19:38 - 2018-12-14 08:07 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-12-19 19:38 - 2018-12-14 07:55 - 003396608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-12-19 19:38 - 2018-12-14 07:55 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2018-12-19 19:38 - 2018-12-14 07:54 - 006032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2018-12-19 19:38 - 2018-12-14 07:54 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2018-12-19 19:38 - 2018-12-14 07:52 - 002173440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-12-19 19:38 - 2018-12-14 07:52 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2018-12-19 19:38 - 2018-12-14 07:51 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-12-19 19:38 - 2018-12-14 07:50 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll ==================== Jeden miesiąc (zmodyfikowane) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-01-18 15:50 - 2018-12-16 20:39 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-01-18 15:15 - 2018-12-17 02:42 - 000000000 ___RD C:\Users\jarek\Creative Cloud Files 2019-01-18 15:15 - 2018-12-17 01:55 - 000000000 ____D C:\Users\jarek\AppData\Local\Adobe 2019-01-18 15:14 - 2018-12-17 11:45 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2019-01-18 15:14 - 2018-12-16 21:20 - 000000000 __SHD C:\Users\jarek\IntelGraphicsProfiles 2019-01-18 01:15 - 2018-12-16 21:50 - 000000000 ____D C:\ProgramData\NVIDIA 2019-01-18 00:15 - 2018-12-16 21:49 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-01-17 23:23 - 2018-12-16 20:42 - 000783576 _____ C:\WINDOWS\system32\perfh015.dat 2019-01-17 23:23 - 2018-12-16 20:42 - 000730616 _____ C:\WINDOWS\system32\perfh007.dat 2019-01-17 23:23 - 2018-12-16 20:42 - 000151702 _____ C:\WINDOWS\system32\perfc015.dat 2019-01-17 23:23 - 2018-12-16 20:42 - 000149266 _____ C:\WINDOWS\system32\perfc007.dat 2019-01-17 23:23 - 2018-12-16 20:38 - 000000000 ____D C:\WINDOWS\INF 2019-01-17 23:23 - 2016-07-25 10:47 - 002645348 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-01-17 23:18 - 2018-12-16 22:03 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-01-17 23:18 - 2018-12-16 20:35 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-01-17 23:18 - 2018-12-16 20:34 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2019-01-17 19:20 - 2018-12-16 21:53 - 000000000 ____D C:\Users\jarek\AppData\Local\D3DSCache 2019-01-17 19:16 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-01-17 18:57 - 2018-12-16 23:55 - 000001527 _____ C:\WINDOWS\system32\config\VSMIDK 2019-01-17 18:42 - 2018-12-16 21:50 - 000000000 ____D C:\ProgramData\Intel 2019-01-17 18:35 - 2018-12-16 21:49 - 000000000 ____D C:\Program Files\Intel 2019-01-17 18:35 - 2016-07-25 12:13 - 000000000 ____D C:\Program Files\Common Files\Intel 2019-01-17 18:33 - 2018-12-16 21:14 - 000000000 ____D C:\Users\jarek 2019-01-17 18:33 - 2016-07-25 11:59 - 000000000 ____D C:\Program Files (x86)\Intel 2019-01-17 18:18 - 2016-07-25 11:55 - 000000000 ____D C:\ProgramData\Package Cache 2019-01-17 13:28 - 2018-12-17 02:03 - 000000000 ____D C:\ProgramData\Adobe 2019-01-17 13:28 - 2018-12-16 21:20 - 000000000 ____D C:\Users\jarek\AppData\Roaming\Adobe 2019-01-17 13:27 - 2018-12-17 02:09 - 000000000 ____D C:\Program Files\Adobe 2019-01-17 12:43 - 2018-12-18 16:01 - 000000000 ____D C:\Users\jarek\AppData\Local\CrashDumps 2019-01-17 12:24 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-01-17 01:40 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2019-01-17 00:58 - 2016-07-25 15:10 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2019-01-17 00:55 - 2018-12-16 20:39 - 000000000 ___HD C:\Program Files\WindowsApps 2019-01-16 21:29 - 2018-12-16 20:34 - 000032768 _____ C:\WINDOWS\system32\config\ELAM 2019-01-15 00:27 - 2018-12-17 02:42 - 000002852 _____ C:\WINDOWS\System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-jarekmac@outlook.com 2019-01-14 22:25 - 2018-12-16 21:50 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2019-01-14 21:56 - 2018-12-16 21:27 - 000002920 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1851146240-1794098927-3607146222-1001 2019-01-14 18:48 - 2018-12-16 22:07 - 000000000 ____D C:\Program Files (x86)\Google 2019-01-13 23:06 - 2018-12-16 21:22 - 000000000 ____D C:\Users\jarek\AppData\Local\PlaceholderTileLogoFolder 2019-01-13 23:06 - 2018-12-16 21:20 - 000000000 ____D C:\Users\jarek\AppData\Local\Packages 2019-01-13 01:41 - 2018-12-17 12:57 - 000000000 ____D C:\Users\jarek\Desktop\HDR Photomatx 2019-01-11 08:55 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\TextInput 2019-01-11 08:55 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-01-09 17:07 - 2018-12-16 23:13 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-01-09 16:58 - 2016-07-25 11:13 - 132790320 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-01-06 17:34 - 2018-12-17 17:04 - 000000000 ____D C:\AdwCleaner 2019-01-06 14:38 - 2018-12-17 02:04 - 000001414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Creative Cloud.lnk 2019-01-06 14:38 - 2018-12-17 02:04 - 000001402 _____ C:\Users\Public\Desktop\Adobe Creative Cloud.lnk 2019-01-06 14:37 - 2018-12-17 02:03 - 000000000 ____D C:\Program Files (x86)\Adobe 2019-01-06 14:34 - 2018-12-16 21:20 - 000000000 ____D C:\Users\jarek\AppData\Local\VirtualStore 2019-01-06 14:32 - 2018-12-16 21:20 - 000000000 ____D C:\Users\jarek\AppData\Local\ConnectedDevicesPlatform 2019-01-06 13:15 - 2016-07-25 12:13 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles 2019-01-06 13:05 - 2018-12-16 20:46 - 000000000 ____D C:\WINDOWS\InfusedApps 2019-01-06 13:03 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\registration 2019-01-02 20:41 - 2018-12-16 20:41 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-01-02 20:41 - 2018-12-16 20:41 - 000179600 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-12-31 19:28 - 2018-12-16 22:45 - 000007599 _____ C:\Users\jarek\AppData\Local\resmon.resmoncfg 2018-12-29 11:58 - 2018-12-16 20:34 - 000524288 _____ C:\WINDOWS\system32\config\BBI(20) 2018-12-29 11:28 - 2018-12-16 21:50 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-12-29 11:26 - 2018-12-17 14:14 - 000001458 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2018-12-28 19:36 - 2018-12-17 01:35 - 000000000 ____D C:\Users\jarek\AppData\Local\ACD Systems 2018-12-23 22:50 - 2018-12-16 22:03 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-12-23 22:50 - 2018-12-16 20:39 - 000000000 ____D C:\Program Files\Windows Defender 2018-12-23 22:40 - 2016-07-25 11:12 - 000592616 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-12-21 00:22 - 2018-12-17 01:34 - 000000000 ____D C:\Users\jarek\AppData\Local\Downloaded Installations 2018-12-20 21:16 - 2018-12-16 20:46 - 000000000 ____D C:\WINDOWS\Panther 2018-12-20 18:35 - 2018-12-17 02:41 - 000000000 ____D C:\Users\jarek\Documents\Adobe 2018-12-19 22:13 - 2018-12-16 21:23 - 000000000 ___RD C:\Users\jarek\OneDrive 2018-12-19 22:13 - 2018-12-16 21:14 - 000002415 _____ C:\Users\jarek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-12-19 12:47 - 2018-12-16 20:39 - 000000000 ____D C:\WINDOWS\appcompat ==================== Pliki w katalogu głównym wybranych folderów ======= 2018-12-21 00:30 - 2018-12-21 00:30 - 000000268 ___RH () C:\Users\jarek\AppData\Roaming\Guitar 2018-12-17 02:03 - 2018-12-17 02:03 - 000000410 _____ () C:\Users\jarek\AppData\Local\oobelibMkey.log 2018-12-21 21:17 - 2018-12-21 21:17 - 000001210 _____ () C:\Users\jarek\AppData\Local\recently-used.xbel 2018-12-16 22:45 - 2018-12-31 19:28 - 000007599 _____ () C:\Users\jarek\AppData\Local\resmon.resmoncfg Niektóre pliki w TEMP: ==================== 2019-01-14 21:23 - 2017-12-19 04:22 - 005014392 _____ (NVIDIA Corporation) C:\Users\jarek\AppData\Local\Temp\NVI2_29.DLL 2019-01-14 19:15 - 2015-09-10 18:57 - 002883336 _____ (Agnitum Ltd.) C:\Users\jarek\AppData\Local\Temp\op_install32.dll 2019-01-14 20:50 - 2019-01-14 20:51 - 013312344 _____ (Restoro) C:\Users\jarek\AppData\Local\Temp\RestoroSetup.exe 2019-01-14 19:15 - 2015-09-10 18:05 - 000311296 _____ (Agnitum Ltd.) C:\Users\jarek\AppData\Local\Temp\w7_gui.dll 2019-01-14 19:15 - 2015-09-10 17:53 - 000265728 _____ (Agnitum Ltd.) C:\Users\jarek\AppData\Local\Temp\w7_gui32.dll 2019-01-14 19:15 - 2015-09-10 18:05 - 001397760 _____ (Agnitum Ltd.) C:\Users\jarek\AppData\Local\Temp\xp_gui.dll 2019-01-14 19:15 - 2015-09-10 17:53 - 001332224 _____ (Agnitum Ltd.) C:\Users\jarek\AppData\Local\Temp\xp_gui32.dll ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-12-16 21:49 ==================== Koniec FRST.txt ============================