Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 20.12.2018 Uruchomiony przez Admin (administrator) FROST (22-12-2018 15:23:52) Uruchomiony z C:\Users\Michał\Downloads Załadowane profile: Michal & Admin (Dostępne profile: Michal & Donia & Cinek & Marcin & ramfeld.d & BubuLybu & Admin & defaultuser1 & Axles) Platform: Windows 10 Pro Wersja 1803 17134.472 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Edge) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AMD) C:\Windows\System32\DriverStore\FileRepository\c0322990.inf_amd64_06c9aec2ef966091\atiesrxx.exe (AMD) C:\Windows\System32\atieclxx.exe (Cybereason) C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFreeServiceHost.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Nalpeiron Ltd.) C:\Windows\SysWOW64\nlssrv32.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\MsMpEng.exe (Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe (DEVGURU Co., LTD.) C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe (Veeam Software AG) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe (CyberGhost S.A.) C:\Program Files\CyberGhost 6\CyberGhost.Service.exe (Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1812.3-0\NisSrv.exe (Microsoft Corporation) C:\Program Files\Microsoft SQL Server\110\LocalDB\Binn\sqlservr.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe (Sysinternals - www.sysinternals.com) C:\Users\Michał\Downloads\ProcessExplorer\procexp.exe (Cybereason) C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFree.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Sysinternals - www.sysinternals.com) C:\Users\MICHA~1\AppData\Local\Temp\PROCEXP64.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.) C:\Program Files\Common Files\logishrd\KHAL3\KHALMNPR.exe (Veeam Software AG) C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe (f.lux Software LLC) C:\Users\Michał\AppData\Local\FluxSoftware\Flux\flux.exe (hxxp://shotty.devs-on.net) C:\Program Files\Shotty\Shotty.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe (Andrey Gruber) E:\Dropbox\słuzbowe\PNotes.NET\PNotes.NET.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\msiexec.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation) HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [3113592 2015-08-26] (Logitech, Inc.) HKLM\...\Run: [StartupDelayer] => C:\Program Files\r2 Studios\Startup Delayer\Startup Launcher.exe [1254400 2015-12-18] (r2 Studios) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18383328 2018-02-08] (Realtek Semiconductor) HKLM\...\Run: [Veeam.EndPoint.Tray.exe] => C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Tray.exe [961800 2017-12-14] (Veeam Software AG) HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch HKLM-x32\...\Run: [KeePass 2 PreLoad] => C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [3268176 2018-09-10] (Dominik Reichl) HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [4049216 2018-12-13] (Dropbox, Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [595504 2016-01-29] (Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll (Logitech, Inc.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Run: [screenSHU] => C:\Program Files (x86)\screenSHU\screenSHU.exe [2112000 2013-09-04] () HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Run: [f.lux] => C:\Users\Michał\AppData\Local\FluxSoftware\Flux\flux.exe [1599224 2017-04-06] (f.lux Software LLC) HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [6881864 2018-07-18] (GOG.com) HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Run: [ACDSeeCommanderPro10] => C:\Program Files\ACD Systems\ACDSee Pro\10.0\ACDSeeCommanderPro10.exe [3412936 2016-10-14] () HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Run: [Shotty] => C:\Program Files\Shotty\Shotty.exe [724480 2017-12-16] (hxxp://shotty.devs-on.net) HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\MountPoints2: {65150e6a-e652-11e8-8364-bc5ff45eb0b4} - "G:\HiSuiteDownLoader.exe" HKU\S-1-5-21-979318943-1799875990-1358442597-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\avastSS.scr [53208 2016-09-24] (AVAST Software) HKU\S-1-5-21-979318943-1799875990-1358442597-1010\...\Run: [CyberGhost] => C:\Program Files\CyberGhost 6\CyberGhost.exe [1398352 2018-06-11] (CyberGhost S.A.) HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE -> Startup: C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Toddler Keys.lnk [2016-01-15] ShortcutTarget: Toddler Keys.lnk -> C:\Users\Michał\AppData\Roaming\Microsoft\Installer\{7339E7E7-FB6A-46EC-8303-D31E655EF617}\_154754de.exe () Startup: C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VeraCrypt.exe — skrót.lnk [2016-06-18] ShortcutTarget: VeraCrypt.exe — skrót.lnk -> C:\Program Files\VeraCrypt\VeraCrypt.exe (IDRIX) Startup: C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Toddler Keys.lnk [2016-01-15] ShortcutTarget: Toddler Keys.lnk -> C:\Users\Michał\AppData\Roaming\Microsoft\Installer\{7339E7E7-FB6A-46EC-8303-D31E655EF617}\_154754de.exe () Startup: C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\VeraCrypt.exe — skrót.lnk [2016-06-18] ShortcutTarget: VeraCrypt.exe — skrót.lnk -> C:\Program Files\VeraCrypt\VeraCrypt.exe (IDRIX) GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicyUsers\S-1-5-21-979318943-1799875990-1358442597-1006\User: Ograniczenia <==== UWAGA GroupPolicyUsers\S-1-5-21-979318943-1799875990-1358442597-1005\User: Ograniczenia <==== UWAGA GroupPolicyUsers\S-1-5-21-979318943-1799875990-1358442597-1001\User: Ograniczenia <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Hosts: W pliku Hosts jest więcej niż jedno wejście. Sprawdź sekcję Hosts w Addition.txt Tcpip\..\Interfaces\{871e6905-543a-4b38-8eca-0a04a8487de5}: [NameServer] 1.1.1.1,1.0.0.1 Internet Explorer: ================== HKU\S-1-5-21-979318943-1799875990-1358442597-1001\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://search.avast.com/AV772/search/web?q={searchTerms} HKU\S-1-5-21-979318943-1799875990-1358442597-1001\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp SearchScopes: HKLM-x32 -> DefaultScope {8C31F27B-BE8A-4e4b-A478-17760AF1F5D9} URL = hxxps://search.avast.com/AV772/search/web?q={searchTerms} SearchScopes: HKLM-x32 -> {8C31F27B-BE8A-4e4b-A478-17760AF1F5D9} URL = hxxps://search.avast.com/AV772/search/web?q={searchTerms} SearchScopes: HKU\S-1-5-21-979318943-1799875990-1358442597-1001 -> {8C31F27B-BE8A-4e4b-A478-17760AF1F5D9} URL = hxxps://search.avast.com/AV772/search/web?q={searchTerms} BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\ssv.dll [2018-06-03] (Oracle Corporation) BHO-x32: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2015-08-26] (Logitech, Inc.) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\jp2ssv.dll [2018-06-03] (Oracle Corporation) FireFox: ======== FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt FF Extension: (Logitech SetPoint) - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2016-06-09] [Przestarzałe] [Brak podpisu cyfrowego] FF HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Firefox\Extensions: [antff@antdownloadmanager.com] - C:\Program Files (x86)\Ant Download Manager\antFF\antFF2.xpi FF Extension: (antFF2) - C:\Program Files (x86)\Ant Download Manager\antFF\antFF2.xpi [2018-10-21] FF HKU\S-1-5-21-979318943-1799875990-1358442597-1001\...\Waterfox\Extensions: [antff@antdownloadmanager.com] - C:\Program Files (x86)\Ant Download Manager\antFF\antFF2.xpi FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_28_0_0_137.dll [2018-02-08] () FF Plugin: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_137.dll [2018-02-08] () FF Plugin-x32: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.) FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google) FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-10-13] (Google, Inc.) FF Plugin-x32: @java.com/DTPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\dtplugin\npDeployJava1.dll [2018-06-03] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.74.2 -> C:\Program Files (x86)\Java\jre1.8.0_74\bin\plugin2\npjp2.dll [2018-06-03] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-16] (Google Inc.) FF Plugin-x32: @tracker-software.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.) FF Plugin HKU\S-1-5-21-979318943-1799875990-1358442597-1001: @docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll [2017-08-10] (Tracker Software Products (Canada) Ltd.) Chrome: ======= CHR HKLM-x32\...\Chrome\Extension: [ofoeigeaodhbjogdigckajfhjbonaofg] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0322990.inf_amd64_06c9aec2ef966091\atiesrxx.exe [481768 2018-02-08] (AMD) R2 CG6Service; C:\Program Files\CyberGhost 6\CyberGhost.Service.exe [204880 2018-06-11] (CyberGhost S.A.) R2 CybereasonRansomFree; C:\Program Files (x86)\Cybereason\RansomFree\CybereasonRansomFreeServiceHost.exe [13824 2017-11-20] (Cybereason) [Brak podpisu cyfrowego] S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-05] (Dropbox, Inc.) S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2016-01-05] (Dropbox, Inc.) R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [51024 2018-12-13] (Dropbox, Inc.) S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [686664 2018-07-18] (GOG.com) S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [8942664 2018-07-18] (GOG.com) S4 Mezzmo; C:\Program Files (x86)\Conceiva\Mezzmo\MezzmoMediaServer.exe [5645056 2014-12-08] (Conceiva Pty. Ltd.) S4 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2104840 2016-02-08] (Electronic Arts) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-08-10] (Microsoft Corporation) S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] () R2 ss_conn_service; C:\Program Files\SAMSUNG\USB Drivers\25_escape\conn\ss_conn_service.exe [743688 2014-12-03] (DEVGURU Co., LTD.) S3 SystemExplorerHelpService; C:\Program Files (x86)\System Explorer\service\SystemExplorerService64.exe [820960 2014-12-20] (Mister Group) S4 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [6889232 2015-12-14] (TeamViewer GmbH) R2 VeeamEndpointBackupSvc; C:\Program Files\Veeam\Endpoint Backup\Veeam.EndPoint.Service.exe [120584 2017-12-14] (Veeam Software AG) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\NisSrv.exe [3880120 2018-12-11] (Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1812.3-0\MsMpEng.exe [114208 2018-12-11] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S0 amdkmafd; C:\WINDOWS\System32\drivers\amdkmafd.sys [49448 2016-08-18] (Advanced Micro Devices, Inc.) R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0322990.inf_amd64_06c9aec2ef966091\atikmdag.sys [41703912 2018-02-08] (Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0322990.inf_amd64_06c9aec2ef966091\atikmpag.sys [546280 2018-02-08] (Advanced Micro Devices, Inc.) R0 asstahci64; C:\WINDOWS\System32\drivers\asstahci64.sys [88936 2017-01-28] (Asmedia Technology) S3 aswTap; C:\WINDOWS\System32\drivers\aswTap.sys [53904 2017-02-20] (The OpenVPN Project) R1 HWiNFO32; C:\Windows\SysWOW64\drivers\HWiNFO64A.SYS [26528 2016-01-05] (REALiX(tm)) R3 ISCT; C:\WINDOWS\System32\drivers\ISCTD64.sys [46568 2017-10-26] () S3 mt7612US; C:\WINDOWS\System32\drivers\mt7612US.sys [377864 2015-12-09] (MediaTek Inc.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1024848 2018-02-08] (Realtek ) R0 SmartDefragDriver; C:\WINDOWS\System32\Drivers\SmartDefragDriver.sys [30744 2017-03-09] (IObit) R1 VBoxNetAdp; C:\WINDOWS\System32\drivers\VBoxNetAdp6.sys [131144 2017-04-18] (Oracle Corporation) R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [205952 2017-04-18] (Oracle Corporation) S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [138896 2016-10-18] (Oracle Corporation) S3 VeeamFSR; C:\Program Files\Veeam\Endpoint Backup\VeeamFSR.sys [123336 2017-12-14] (Veeam Software AG) R1 veracrypt; C:\WINDOWS\System32\drivers\veracrypt.sys [467368 2016-10-22] (IDRIX) S3 VirtualDK; C:\Program Files\Veeam\Endpoint Backup\vdk.sys [50632 2017-12-14] (Ken Kato) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46680 2018-12-11] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [330936 2018-12-11] (Microsoft Corporation) S3 wdm_usb; C:\WINDOWS\system32\DRIVERS\usb2ser.sys [159936 2016-08-16] (MBB) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [62136 2018-12-11] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-22 15:20 - 2018-12-22 15:20 - 000000000 ____D C:\Users\Admin\AppData\Local\Adobe 2018-12-22 15:12 - 2018-12-22 15:24 - 000018222 _____ C:\Users\Michał\Downloads\FRST.txt 2018-12-22 15:07 - 2018-12-22 15:07 - 002420224 _____ (Farbar) C:\Users\Michał\Downloads\FRST64.exe 2018-12-22 15:04 - 2018-12-22 15:04 - 000602112 _____ (OldTimer Tools) C:\Users\Michał\Downloads\OTL.exe 2018-12-22 15:00 - 2018-12-22 15:00 - 007320272 _____ (Malwarebytes) C:\Users\Michał\Downloads\adwcleaner_7.2.6.0.exe 2018-12-22 14:57 - 2018-12-22 14:57 - 000511212 ____N C:\Users\Acvsxn1\your ways prisoners approximately.xlsx 2018-12-22 14:57 - 2018-12-22 14:57 - 000509384 ____N C:\Users\szki7no\earliest boating approach.xlsx 2018-12-22 14:57 - 2018-12-22 14:57 - 000225358 ____N C:\Users\Acvsxn1\appraise.maid.face.mdb 2018-12-22 14:57 - 2018-12-22 14:57 - 000220620 ____N C:\Users\szki7no\literallyreservedsleptreserved.mdb 2018-12-22 14:57 - 2018-12-22 14:57 - 000072183 ____N C:\Users\Acvsxn1\fellowship_clock.xls 2018-12-22 14:57 - 2018-12-22 14:57 - 000070873 ____N C:\Users\szki7no\gentle flowers.xls 2018-12-22 14:57 - 2018-12-22 14:57 - 000056810 ____N C:\Users\Acvsxn1\probablypiano.pem 2018-12-22 14:57 - 2018-12-22 14:57 - 000051868 ____N C:\Users\szki7no\male_illuminate_exponent_complaint.pem 2018-12-22 14:57 - 2018-12-22 14:57 - 000029205 ____N C:\Users\szki7no\dealing.free.affairs.transportation.txt 2018-12-22 14:57 - 2018-12-22 14:57 - 000028862 ____N C:\Users\Acvsxn1\dry congress deliberate.txt 2018-12-22 14:57 - 2018-12-22 14:57 - 000017324 ____N C:\Users\szki7no\grown fold ditch keeping.sql 2018-12-22 14:57 - 2018-12-22 14:57 - 000012397 ____N C:\Users\Acvsxn1\classical pursue.sql 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 __SHD C:\Users\Michał\Desktop\0K, this directory is for Ransomware detection (just leave it here) 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ___HD C:\Users\szki7no 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ___HD C:\Users\Michał\Documents\Zqtransfers22 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ___HD C:\Users\Michał\Documents\Ajtransfers30 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ___HD C:\Users\Acvsxn1 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ____D C:\Xcached68 2018-12-22 14:57 - 2018-12-22 14:57 - 000000000 ____D C:\acdocuments43 2018-12-22 14:41 - 2018-12-22 14:41 - 000906016 _____ (O&O Software GmbH) C:\Users\Michał\Desktop\OOSU10new.exe 2018-12-21 17:37 - 2018-12-14 13:24 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2018-12-21 17:37 - 2018-12-14 08:29 - 006567472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2018-12-21 17:37 - 2018-12-14 08:29 - 001130760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2018-12-21 17:37 - 2018-12-14 08:25 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2018-12-21 17:37 - 2018-12-14 08:23 - 001221432 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2018-12-21 17:37 - 2018-12-14 08:23 - 001029944 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2018-12-21 17:37 - 2018-12-14 08:23 - 000566568 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2018-12-21 17:37 - 2018-12-14 08:23 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2018-12-21 17:37 - 2018-12-14 08:23 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2018-12-21 17:37 - 2018-12-14 08:22 - 009084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-12-21 17:37 - 2018-12-14 08:22 - 007520104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2018-12-21 17:37 - 2018-12-14 08:21 - 001457240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-12-21 17:37 - 2018-12-14 08:21 - 001257672 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-12-21 17:37 - 2018-12-14 08:21 - 001140480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2018-12-21 17:37 - 2018-12-14 08:21 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2018-12-21 17:37 - 2018-12-14 08:21 - 000982912 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2018-12-21 17:37 - 2018-12-14 08:13 - 005775872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2018-12-21 17:37 - 2018-12-14 08:12 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2018-12-21 17:37 - 2018-12-14 08:10 - 001295360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2018-12-21 17:37 - 2018-12-14 08:07 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-12-21 17:37 - 2018-12-14 07:55 - 003396608 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2018-12-21 17:37 - 2018-12-14 07:55 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2018-12-21 17:37 - 2018-12-14 07:54 - 006032384 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll 2018-12-21 17:37 - 2018-12-14 07:54 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2018-12-21 17:37 - 2018-12-14 07:54 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2018-12-21 17:37 - 2018-12-14 07:53 - 007573504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2018-12-21 17:37 - 2018-12-14 07:52 - 002173440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2018-12-21 17:37 - 2018-12-14 07:52 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2018-12-21 17:37 - 2018-12-14 07:51 - 001551360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2018-12-21 17:37 - 2018-12-14 07:50 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-12-21 17:37 - 2018-12-14 06:34 - 000001312 _____ C:\WINDOWS\system32\tcbres.wim 2018-12-18 21:06 - 2018-12-18 21:06 - 000000000 ____D C:\Users\Axles\Documents\My Games 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\WhatsApp 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\VS Revo Group 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\VEGAS Pro 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\VEGAS 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\Ubisoft Game Launcher 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\TypeRider 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\Turtl 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\TileDataLayer 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\techland 2018-12-18 21:02 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\TeamViewer 2018-12-18 21:01 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\Steam 2018-12-18 21:01 - 2018-12-18 21:01 - 000000000 ____D C:\Users\Axles\AppData\Local\SquirrelTemp 2018-12-18 21:01 - 2018-12-18 21:01 - 000000000 ____D C:\Users\Axles\AppData\Local\Spotify 2018-12-18 21:01 - 2018-12-18 21:01 - 000000000 ____D C:\Users\Axles\AppData\Local\Sony 2018-12-18 21:01 - 2018-12-18 21:01 - 000000000 ____D C:\Users\Axles\AppData\Local\smtube 2018-12-18 21:01 - 2018-12-18 21:01 - 000000000 ____D C:\Users\Axles\AppData\Local\Shotty 2018-12-18 21:01 - 2016-08-15 17:13 - 000000000 ____D C:\Users\Axles\AppData\Local\PeerDistRepub 2018-12-18 21:01 - 2016-01-05 13:31 - 000000000 ____D C:\Users\Axles\AppData\Local\PackageStaging 2018-12-18 21:00 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\PackageManagement 2018-12-18 21:00 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\Origin 2018-12-18 21:00 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\OneDrive 2018-12-18 21:00 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\Ndemic Creations 2018-12-18 21:00 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\My Games 2018-12-18 21:00 - 2018-11-03 14:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Notepad++ 2018-12-18 20:59 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\Mozilla 2018-12-18 20:58 - 2018-12-18 20:59 - 000000000 ____D C:\Users\Axles\AppData\Local\MiPhoneManager 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\mime 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Meltytech 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\MAGIX 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Macromedia 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\kdenlive 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Introversion 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Icecream 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Hero_Siege 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\GWX 2018-12-18 20:58 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\gtk-2.0 2018-12-18 20:57 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\AppData\Local\Google 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\GOG.com 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\GlassWire 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\gegl-0.2 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Gas Powered Games 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\GalaxyCommunicationService 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\fontconfig 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\FluxSoftware 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\FastStone 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\FalloutNV 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Evernote 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\ElevatedDiagnostics 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Downloaded Installations 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Daedalic Entertainment 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Cyberlink 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\CyberGhost 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Cybereason 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\CrawlerNG 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\CrashRpt 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Crashpad 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\CrashDumps 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Cosmochoria 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Conceiva 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Comms 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Coin 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Chromium 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\ChomikBox 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\CEF 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Caveblazers 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\cache 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Blizzard Entertainment 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Bethesda.net Launcher 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Battle.net 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\BANDAI NAMCO Entertainment 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\ATI 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Apps\Windows 7 USB DVD Download Tool 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Apps\2.0 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Apple 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\AI_Devs 2018-12-18 20:57 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\Adobe 2018-12-18 20:57 - 2018-06-03 09:33 - 000000000 ____D C:\Users\Axles\AppData\Local\Facebook 2018-12-18 20:57 - 2017-04-22 18:46 - 000000000 ____D C:\Users\Axles\AppData\Local\DBG 2018-12-18 20:57 - 2017-01-13 19:33 - 000000000 ____D C:\Users\Axles\AppData\Local\Clover 2018-12-18 20:57 - 2016-07-30 12:23 - 000000000 ____D C:\Users\Axles\AppData\Local\Android 2018-12-18 20:57 - 2016-07-18 16:36 - 000000000 ____D C:\Users\Axles\AppData\Local\ActiveSync 2018-12-18 20:57 - 2016-01-07 17:53 - 000000000 __SHD C:\Users\Axles\AppData\Local\EmieUserList 2018-12-18 20:57 - 2016-01-07 17:53 - 000000000 __SHD C:\Users\Axles\AppData\Local\EmieSiteList 2018-12-18 20:53 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\ACD Systems 2018-12-18 20:53 - 2018-09-22 04:11 - 000000600 _____ C:\Users\Axles\AppData\Local\PUTTY.RND 2018-12-18 20:53 - 2018-08-13 15:02 - 000004166 _____ C:\Users\Axles\AppData\Local\recently-used.xbel 2018-12-18 20:53 - 2017-09-16 20:02 - 000003764 _____ C:\Users\Axles\AppData\Local\kdenliverc 2018-12-18 20:53 - 2017-09-16 20:02 - 000000535 _____ C:\Users\Axles\AppData\Local\user-places.xbel 2018-12-18 20:53 - 2017-09-16 20:02 - 000000000 _____ C:\Users\Axles\AppData\Local\user-places.xbel.tbcache 2018-12-18 20:53 - 2017-04-29 19:01 - 000007623 _____ C:\Users\Axles\AppData\Local\Resmon.ResmonCfg 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Xiaomi 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Wise Auto Shutdown 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\WhatsApp 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\vlc 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\VeraCrypt 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\VEGAS Pro 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\VEGAS 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Trimble Connect for SketchUp 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\TeamViewer 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Sun 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\stickies 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Spotify 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Sony 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Skype 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\SketchUp 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Return2Games_WIP21_tmp 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Return2Games_WIP21 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Red Alert 3 Uprising 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\PTGui 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\PhotoScape 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Origin 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Oracle 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\onOne Software 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\NuGet 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Notepad++ 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\NAPS2 2018-12-18 20:51 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\NapiProjekt 2018-12-18 20:51 - 2016-05-23 17:14 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Publish Providers 2018-12-18 20:50 - 2018-12-18 20:51 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Mozilla 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\minmaxgames 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Xiaomi 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows 7 USB DVD Download Tool 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Toddler Keys 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Stickies 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HaoZip 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GlucoContro Home 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\MediaInfo 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\MAGIX 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Logishrd 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\LibreOffice 2018-12-18 20:50 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\library_dir 2018-12-18 20:50 - 2018-03-25 15:59 - 000001518 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Time-Lapse Tool.lnk 2018-12-18 20:50 - 2017-12-17 20:13 - 000001180 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk 2018-12-18 20:50 - 2017-12-16 21:08 - 000001989 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Shotty.lnk 2018-12-18 20:50 - 2017-06-07 14:28 - 000000279 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Kosz.lnk 2018-12-18 20:50 - 2017-06-02 20:29 - 000001846 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2018-12-18 20:50 - 2017-05-02 07:20 - 000000918 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Start Tor Browser.lnk 2018-12-18 20:50 - 2017-04-06 17:14 - 000002166 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk 2018-12-18 20:50 - 2016-10-09 06:59 - 000002076 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CyberGhost 6.lnk 2018-12-18 20:50 - 2016-01-18 16:28 - 000001066 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\screenSHU.lnk 2018-12-18 20:50 - 2016-01-18 16:17 - 000002097 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\MiFlash.lnk 2018-12-18 20:50 - 2016-01-06 09:32 - 000001946 _____ C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\HaoZip.lnk 2018-12-18 20:49 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Kodi 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\KeePass 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\kdenlive 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\JPEGsnoop 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\JetBrains 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\java 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\IObit 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Hulubulu 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\HaoZip 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\GameSave Manager 3 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\FreeFileSync 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Foxit Software 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Foxit AgentInformation 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\FastStone 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\EurekaLog 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\e-Deklaracje.A1909296681C7ACEFE45687D3A64758C8659BF46.1 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\e-Deklaracje 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\EasyAntiCheat 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Dropbox 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\com.northwayGames.Incredipede 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\com.game.whiskeybarrelstudios.ssmedieval 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\com.efile.epity 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\calibre 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Battle.net 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\ATI 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Apple Computer 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\anyburn 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Anvsoft 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\AntDM 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Amanita-Design.Samorost3 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\ADBDriverInstaller 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\ACD Systems 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\abelhadigital.com 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\3909 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\11bitstudios 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\.minecraft 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Two Point Studios 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Sun 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\STUDIO EVIL 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Robot Gentleman 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Pixel Crow 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Mozilla 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\IObit 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Iceflake Studios 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Google 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Evernote 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Chondrite Games 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Apple Computer 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\AMD 2018-12-18 20:49 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\LocalLow\Adobe 2018-12-18 20:49 - 2018-09-22 04:35 - 000002554 _____ C:\Users\Axles\AppData\Roaming\sessionsummary.txt 2018-12-18 20:49 - 2018-07-02 20:28 - 457466891 _____ C:\Users\Axles\AppData\Roaming\.minecraft3.zip 2018-12-18 20:49 - 2017-08-09 08:17 - 000000000 ____D C:\Users\Axles\AppData\Roaming\hugin 2018-12-18 20:49 - 2016-07-09 07:25 - 000000443 _____ C:\Users\Axles\AppData\Roaming\CSharpAnalytics-MeasurementSession 2018-12-18 20:49 - 2016-07-09 07:25 - 000000134 _____ C:\Users\Axles\AppData\Roaming\CSharpAnalytics-MeasurementQueue 2018-12-18 20:49 - 2016-03-25 19:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\AtomZombieData 2018-12-18 20:49 - 2016-01-07 17:53 - 000000000 __SHD C:\Users\Axles\AppData\LocalLow\EmieUserList 2018-12-18 20:49 - 2016-01-07 17:53 - 000000000 __SHD C:\Users\Axles\AppData\LocalLow\EmieSiteList 2018-12-18 20:46 - 2018-11-22 19:17 - 000000202 _____ C:\Users\Axles\Desktop\Castle Crashers.url 2018-12-18 20:46 - 2018-11-22 10:29 - 000000202 _____ C:\Users\Axles\Desktop\Don't Starve.url 2018-12-18 20:46 - 2018-11-16 21:52 - 000001283 _____ C:\Users\Axles\Desktop\nativelog.txt 2018-12-18 20:46 - 2018-11-03 15:20 - 000000202 _____ C:\Users\Axles\Desktop\The Binding of Isaac Rebirth grać z konta Admin.url 2018-12-18 20:46 - 2018-09-04 13:49 - 000001045 _____ C:\Users\Axles\Desktop\HostsMan.lnk 2018-12-18 20:46 - 2018-09-04 07:20 - 000000887 _____ C:\Users\Axles\Desktop\Pety SF.ods — skrót .lnk 2018-12-18 20:46 - 2018-09-04 07:20 - 000000887 _____ C:\Users\Axles\Desktop\Pety SF.ods — skrót (2) .lnk 2018-12-18 20:46 - 2018-09-03 17:58 - 000000202 _____ C:\Users\Axles\Desktop\Two Point Hospital.url 2018-12-18 20:46 - 2018-08-30 14:48 - 000021138 _____ C:\Users\Axles\Desktop\Pety SF.ods 2018-12-18 20:46 - 2018-08-13 19:05 - 000001867 _____ C:\Users\Axles\Desktop\CrawlerNG.exe — skrót .lnk 2018-12-18 20:46 - 2018-07-20 09:55 - 000001508 _____ C:\Users\Axles\Desktop\Xbox.lnk 2018-12-18 20:46 - 2018-07-19 20:56 - 000001644 _____ C:\Users\Axles\Desktop\Minecraft.lnk 2018-12-18 20:46 - 2018-07-15 07:30 - 000002267 _____ C:\Users\Axles\Desktop\WhatsApp.lnk 2018-12-18 20:46 - 2018-06-25 10:25 - 000003099 _____ C:\Users\Axles\Desktop\GlucoContro Home.lnk 2018-12-18 20:46 - 2018-05-30 20:08 - 000001955 _____ C:\Users\Axles\Desktop\CyberGhost 6.lnk 2018-12-18 20:46 - 2018-04-11 17:18 - 000000202 _____ C:\Users\Axles\Desktop\Dungeon of the Endless.url 2018-12-18 20:46 - 2018-03-26 18:04 - 000000202 _____ C:\Users\Axles\Desktop\Legend of Grimrock.url 2018-12-18 20:46 - 2018-03-25 15:59 - 000001516 _____ C:\Users\Axles\Desktop\Time-Lapse Tool.lnk 2018-12-18 20:46 - 2018-03-21 16:50 - 000003373 _____ C:\Users\Axles\Desktop\OOSU10.ini 2018-12-18 20:46 - 2018-01-29 15:55 - 000128152 _____ (Gibson Research Corp.) C:\Users\Axles\Desktop\InSpectre.exe 2018-12-18 20:46 - 2018-01-28 13:33 - 000000202 _____ C:\Users\Axles\Desktop\Darkest Dungeon.url 2018-12-18 20:46 - 2017-10-25 19:36 - 000083806 _____ C:\Users\Axles\Desktop\DxDiag.txt 2018-12-18 20:46 - 2017-10-21 17:02 - 000001911 _____ C:\Users\Axles\Desktop\Kodi.lnk 2018-12-18 20:46 - 2017-10-18 18:32 - 000001941 _____ C:\Users\Axles\Desktop\Launch The Witcher 3 - Wild Hunt.lnk 2018-12-18 20:46 - 2017-09-23 10:38 - 000000202 _____ C:\Users\Axles\Desktop\Swords and Sandals Medieval.url 2018-12-18 20:46 - 2017-09-17 07:13 - 000001080 _____ C:\Users\Axles\Desktop\kdenlive.exe — skrót .lnk 2018-12-18 20:46 - 2017-09-08 07:45 - 000000202 _____ C:\Users\Axles\Desktop\Caveblazers.url 2018-12-18 20:46 - 2017-08-30 14:43 - 000000202 _____ C:\Users\Axles\Desktop\Samorost 3.url 2018-12-18 20:46 - 2017-08-20 09:32 - 000020458 _____ C:\Users\Axles\Desktop\Zastosowanie boraxu.odt 2018-12-18 20:46 - 2017-08-09 08:17 - 000001089 _____ C:\Users\Axles\Desktop\hugin.exe — skrót .lnk 2018-12-18 20:46 - 2017-06-27 10:11 - 000001360 _____ C:\Users\Axles\Desktop\This War Of Mine — skrót.lnk 2018-12-18 20:46 - 2017-06-26 08:07 - 000000202 _____ C:\Users\Axles\Desktop\Life is Strange.url 2018-12-18 20:46 - 2017-06-18 19:51 - 000238335 _____ C:\Users\Axles\Desktop\dl-55produktow.pdf 2018-12-18 20:46 - 2017-06-02 20:29 - 000001860 _____ C:\Users\Axles\Desktop\Spotify.lnk 2018-12-18 20:46 - 2017-05-02 07:20 - 000000870 _____ C:\Users\Axles\Desktop\Start Tor Browser.lnk 2018-12-18 20:46 - 2017-04-21 07:45 - 005771216 _____ (MicroCreative) C:\Users\Axles\Desktop\RemoteAssistant365_3_9_1205.exe 2018-12-18 20:46 - 2017-04-19 18:01 - 000696896 _____ (O&O Software GmbH) C:\Users\Axles\Desktop\OOSU10.exe 2018-12-18 20:46 - 2017-04-11 20:08 - 000001277 _____ C:\Users\Axles\Desktop\Any Video Converter.lnk 2018-12-18 20:46 - 2017-04-11 15:37 - 000001580 _____ C:\Users\Axles\Desktop\witcher3.exe — skrót .lnk 2018-12-18 20:46 - 2017-02-22 16:26 - 000002605 _____ C:\Users\Axles\Desktop\Windows 7 USB DVD Download Tool.lnk 2018-12-18 20:46 - 2017-02-18 09:29 - 000096728 _____ C:\Users\Axles\Desktop\Konsola1.msc 2018-12-18 20:46 - 2017-01-09 18:52 - 000361153 _____ C:\Users\Axles\Desktop\orzeczenie-2.odt 2018-12-18 20:46 - 2016-12-15 18:36 - 000001279 _____ C:\Users\Axles\Desktop\Uplay.lnk 2018-12-18 20:46 - 2016-11-18 16:12 - 000001314 _____ C:\Users\Axles\Desktop\Axence netTools 5.lnk 2018-12-18 20:46 - 2016-10-20 15:29 - 000001387 _____ C:\Users\Axles\Desktop\photorec_win.exe — skrót .lnk 2018-12-18 20:46 - 2016-08-18 19:08 - 000159398 _____ C:\Users\Axles\Desktop\Wyniki krwi.pdf 2018-12-18 20:46 - 2016-07-24 20:29 - 000001479 _____ C:\Users\Axles\Desktop\Adobe DNG Converter.exe — skrót.lnk 2018-12-18 20:46 - 2016-07-24 20:29 - 000001405 _____ C:\Users\Axles\Desktop\MiPCSuite.lnk 2018-12-18 20:46 - 2016-07-24 20:29 - 000001247 _____ C:\Users\Axles\Desktop\Dropbox.lnk 2018-12-18 20:46 - 2016-07-24 20:29 - 000001048 _____ C:\Users\Axles\Desktop\PhotoScape.lnk 2018-12-18 20:46 - 2016-07-24 20:29 - 000001036 _____ C:\Users\Axles\Desktop\screenSHU.lnk 2018-12-18 20:46 - 2016-07-14 18:02 - 001736640 _____ C:\Users\Axles\Desktop\artefakt.odt 2018-12-18 20:46 - 2016-04-23 19:45 - 002375680 _____ (Farbar) C:\Users\Axles\Desktop\FRST64.exe 2018-12-18 20:46 - 2016-01-05 13:54 - 000000009 _____ C:\Users\Axles\Desktop\111.txt 2018-12-18 20:45 - 2018-12-18 20:46 - 000000000 ____D C:\Users\Axles\RemoteAssistant365 2018-12-18 20:45 - 2018-12-18 20:46 - 000000000 ____D C:\Users\Axles\Desktop\Z telefonu Xperia 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\Wise Auto Shutdown 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\Video and screen capture 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\VeraCrypt 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\Tor Browser 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\TCPView 2018-12-18 20:45 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles\Desktop\świąteczne piosenki 2018-12-18 20:44 - 2018-12-18 20:58 - 000000000 ____D C:\Users\Axles\Desktop\Share vbox 2018-12-18 20:44 - 2018-12-18 20:44 - 000000000 ____D C:\Users\Axles\Desktop\folderchangesview 2018-12-18 20:44 - 2018-12-18 20:44 - 000000000 ____D C:\Users\Axles\Desktop\EKUZ 2018-12-18 20:44 - 2018-12-18 20:44 - 000000000 ____D C:\Users\Axles\Desktop\Dziadek 2018-12-18 20:44 - 2018-12-18 20:44 - 000000000 ____D C:\Users\Axles\Desktop\Anyburn 2018-12-18 20:44 - 2018-09-04 15:21 - 000000000 ____D C:\Users\Axles\Desktop\panorama 2018-12-18 20:42 - 2018-12-18 21:04 - 000000000 ____D C:\Users\Axles\AppData\Local\Dropbox 2018-12-18 20:41 - 2018-12-18 21:06 - 000000000 ____D C:\Users\Axles\AppData\Local\D3DSCache 2018-12-18 20:41 - 2018-12-18 21:02 - 000000000 ____D C:\Users\Axles\AppData\Local\VirtualStore 2018-12-18 20:41 - 2018-12-18 21:00 - 000000000 ____D C:\Users\Axles\AppData\Local\Packages 2018-12-18 20:41 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\ConnectedDevicesPlatform 2018-12-18 20:41 - 2018-12-18 20:57 - 000000000 ____D C:\Users\Axles\AppData\Local\AMD 2018-12-18 20:41 - 2018-12-18 20:50 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Logitech 2018-12-18 20:41 - 2018-12-18 20:49 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Adobe 2018-12-18 20:41 - 2018-12-18 20:45 - 000000000 ____D C:\Users\Axles 2018-12-18 20:41 - 2018-12-18 20:42 - 000000000 ____D C:\Users\Axles\AppData\Local\PlaceholderTileLogoFolder 2018-12-18 20:41 - 2018-12-18 20:41 - 000001417 _____ C:\Users\Axles\Desktop\Microsoft Edge.lnk 2018-12-18 20:41 - 2018-12-18 20:41 - 000000020 ___SH C:\Users\Axles\ntuser.ini 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Ustawienia lokalne 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Szablony 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Moje dokumenty 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Menu Start 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Documents\Moje wideo 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Documents\Moje obrazy 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Documents\Moja muzyka 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\Dane aplikacji 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\AppData\Local\Tymczasowe pliki internetowe 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\AppData\Local\Historia 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 _SHDL C:\Users\Axles\AppData\Local\Dane aplikacji 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 ___RD C:\Users\Axles\3D Objects 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 ___HD C:\Users\Axles\MicrosoftEdgeBackups 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Cybereason 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 ____D C:\Users\Axles\AppData\Local\Publishers 2018-12-18 20:41 - 2018-12-18 20:41 - 000000000 ____D C:\Users\Axles\AppData\Local\MicrosoftEdge 2018-12-18 20:41 - 2017-04-26 19:04 - 000000000 ____D C:\Users\Axles\AppData\Roaming\Macromedia 2018-12-17 20:27 - 2018-12-17 20:31 - 000000000 ____D C:\Users\Admin\AppData\Local\Shadowlings 2018-12-17 20:19 - 2018-12-22 15:22 - 000000000 ____D C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2018-12-15 19:59 - 2018-12-15 19:59 - 000000000 ____D C:\Users\Admin\AppData\Local\Introversion 2018-12-14 18:13 - 2018-12-14 18:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox 2018-12-13 18:50 - 2018-12-08 13:47 - 001786896 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntVirtualization.dll 2018-12-13 18:50 - 2018-12-08 13:42 - 004527800 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe 2018-12-13 18:50 - 2018-12-08 13:42 - 001616824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2018-12-13 18:50 - 2018-12-08 13:41 - 002394960 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL 2018-12-13 18:50 - 2018-12-08 13:29 - 013572608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll 2018-12-13 18:50 - 2018-12-08 13:28 - 012710400 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-12-13 18:50 - 2018-12-08 13:28 - 006586880 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll 2018-12-13 18:50 - 2018-12-08 13:28 - 004708864 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll 2018-12-13 18:50 - 2018-12-08 13:27 - 005657600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll 2018-12-13 18:50 - 2018-12-08 13:25 - 012500992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll 2018-12-13 18:50 - 2018-12-08 13:25 - 011902976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-12-13 18:50 - 2018-12-08 13:23 - 003649024 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2018-12-13 18:50 - 2018-12-08 13:23 - 002892288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2018-12-13 18:50 - 2018-12-08 09:07 - 005625352 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2018-12-13 18:50 - 2018-12-08 09:06 - 001017168 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2adec.dll 2018-12-13 18:50 - 2018-12-08 09:05 - 007436216 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2018-12-13 18:50 - 2018-12-08 09:05 - 002822656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2018-12-13 18:50 - 2018-12-08 09:05 - 002463384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll 2018-12-13 18:50 - 2018-12-08 09:04 - 004404720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2018-12-13 18:50 - 2018-12-08 09:04 - 002371296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2018-12-13 18:50 - 2018-12-08 09:04 - 001943328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll 2018-12-13 18:50 - 2018-12-08 09:04 - 001188512 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-12-13 18:50 - 2018-12-08 09:04 - 000416024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll 2018-12-13 18:50 - 2018-12-08 08:49 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2018-12-13 18:50 - 2018-12-08 08:47 - 000861744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2adec.dll 2018-12-13 18:50 - 2018-12-08 08:46 - 002331480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll 2018-12-13 18:50 - 2018-12-08 08:46 - 001989040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll 2018-12-13 18:50 - 2018-12-08 08:46 - 000457056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSAudDecMFT.dll 2018-12-13 18:50 - 2018-12-08 08:45 - 006043496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2018-12-13 18:50 - 2018-12-08 08:45 - 004789952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll 2018-12-13 18:50 - 2018-12-08 08:45 - 002307240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVDECOD.DLL 2018-12-13 18:50 - 2018-12-08 08:45 - 001620472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll 2018-12-13 18:50 - 2018-12-08 08:45 - 001379816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll 2018-12-13 18:50 - 2018-12-08 08:42 - 022715392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-12-13 18:50 - 2018-12-08 08:42 - 009084928 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll 2018-12-13 18:50 - 2018-12-08 08:41 - 007057408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll 2018-12-13 18:50 - 2018-12-08 08:40 - 004710912 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll 2018-12-13 18:50 - 2018-12-08 08:40 - 004384768 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2018-12-13 18:50 - 2018-12-08 08:38 - 022016000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2018-12-13 18:50 - 2018-12-08 08:38 - 003392000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2018-12-13 18:50 - 2018-12-08 08:38 - 002739200 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2018-12-13 18:50 - 2018-12-08 08:37 - 002825728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapGeocoder.dll 2018-12-13 18:50 - 2018-12-08 08:36 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2018-12-13 18:50 - 2018-12-08 08:36 - 002364928 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpcServices.dll 2018-12-13 18:50 - 2018-12-08 08:36 - 001768448 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2018-12-13 18:50 - 2018-12-08 08:35 - 002126336 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFramework.dll 2018-12-13 18:50 - 2018-12-08 08:35 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2018-12-13 18:50 - 2018-12-08 08:33 - 019405312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-12-13 18:50 - 2018-12-08 08:33 - 002904064 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-12-13 18:50 - 2018-12-08 08:33 - 001457152 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2018-12-13 18:50 - 2018-12-08 08:33 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll 2018-12-13 18:50 - 2018-12-08 08:30 - 002966528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll 2018-12-13 18:50 - 2018-12-08 08:29 - 005883904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll 2018-12-13 18:50 - 2018-12-08 08:29 - 002700288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2018-12-13 18:50 - 2018-12-08 08:28 - 002258944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2018-12-13 18:50 - 2018-11-09 07:15 - 021388752 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2018-12-13 18:50 - 2018-11-09 06:59 - 008623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2018-12-13 18:50 - 2018-11-09 06:57 - 004491264 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsrchvw.exe 2018-12-13 18:50 - 2018-11-09 06:55 - 001254400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll 2018-12-13 18:50 - 2018-11-09 06:55 - 000878592 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll 2018-12-13 18:50 - 2018-11-09 06:32 - 020383832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2018-12-13 18:50 - 2018-11-09 06:17 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll 2018-12-13 18:50 - 2018-11-09 03:56 - 001213472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe 2018-12-13 18:50 - 2018-11-09 03:48 - 003179760 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll 2018-12-13 18:50 - 2018-11-09 03:48 - 001613288 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3D12.dll 2018-12-13 18:50 - 2018-11-09 03:47 - 002765344 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-12-13 18:50 - 2018-11-09 03:47 - 002571128 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2018-12-13 18:50 - 2018-11-09 03:21 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-12-13 18:50 - 2018-11-09 03:21 - 001627136 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2018-12-13 18:50 - 2018-11-09 03:19 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2018-12-13 18:50 - 2018-11-09 03:18 - 003320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll 2018-12-13 18:50 - 2018-11-09 03:18 - 001487360 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll 2018-12-13 18:50 - 2018-11-09 03:16 - 004939776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-12-13 18:50 - 2018-11-09 03:16 - 002224640 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2018-12-13 18:50 - 2018-11-09 03:16 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpasvc.dll 2018-12-13 18:50 - 2018-11-09 03:15 - 000943616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll 2018-12-13 18:50 - 2018-11-09 03:07 - 002417976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll 2018-12-13 18:50 - 2018-11-09 02:46 - 002253184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-12-13 18:50 - 2018-11-09 02:46 - 001980776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2018-12-13 18:50 - 2018-11-09 02:29 - 003711488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-12-13 18:50 - 2018-11-09 02:28 - 002900992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll 2018-12-13 18:50 - 2018-11-09 02:26 - 004514816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-12-13 18:49 - 2018-12-08 13:48 - 000034104 _____ C:\WINDOWS\system32\SyncAppvPublishingServer.exe 2018-12-13 18:49 - 2018-12-08 13:47 - 001627656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVIntegration.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 001422864 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 001048712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 001038352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPolicy.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000954384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVManifest.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000830480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVOrchestration.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000825352 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntStreamingManager.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000750096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVReporting.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000670224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVCatalog.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000652296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVPublishing.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000645320 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000495632 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransportDSA.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000399880 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVScripting.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000258064 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVFileSystemMetadata.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000231440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVShNotify.exe 2018-12-13 18:49 - 2018-12-08 13:47 - 000228368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamMap.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000201744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVStreamingUX.dll 2018-12-13 18:49 - 2018-12-08 13:47 - 000180752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVDllSurrogate.exe 2018-12-13 18:49 - 2018-12-08 13:47 - 000173072 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVNice.exe 2018-12-13 18:49 - 2018-12-08 13:46 - 000549760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppResolver.dll 2018-12-13 18:49 - 2018-12-08 13:43 - 000304144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mssecflt.sys 2018-12-13 18:49 - 2018-12-08 13:42 - 001634944 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2018-12-13 18:49 - 2018-12-08 13:41 - 000481880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll 2018-12-13 18:49 - 2018-12-08 13:40 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2018-12-13 18:49 - 2018-12-08 13:39 - 000444416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppResolver.dll 2018-12-13 18:49 - 2018-12-08 13:29 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2018-12-13 18:49 - 2018-12-08 13:27 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.SecureAssessment.dll 2018-12-13 18:49 - 2018-12-08 13:27 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storqosflt.sys 2018-12-13 18:49 - 2018-12-08 13:27 - 000068608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdBth.dll 2018-12-13 18:49 - 2018-12-08 13:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdBth.dll 2018-12-13 18:49 - 2018-12-08 13:23 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll 2018-12-13 18:49 - 2018-12-08 13:23 - 001661440 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2018-12-13 18:49 - 2018-12-08 13:23 - 000503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll 2018-12-13 18:49 - 2018-12-08 13:23 - 000471040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcSpecfc.dll 2018-12-13 18:49 - 2018-12-08 13:22 - 001586176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll 2018-12-13 18:49 - 2018-12-08 13:22 - 001469952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2018-12-13 18:49 - 2018-12-08 13:22 - 000577024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2018-12-13 18:49 - 2018-12-08 09:12 - 000272408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll 2018-12-13 18:49 - 2018-12-08 09:12 - 000269336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll 2018-12-13 18:49 - 2018-12-08 09:12 - 000092688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys 2018-12-13 18:49 - 2018-12-08 09:07 - 001328632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpx.dll 2018-12-13 18:49 - 2018-12-08 09:07 - 001063416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi 2018-12-13 18:49 - 2018-12-08 09:06 - 000777512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2018-12-13 18:49 - 2018-12-08 09:06 - 000709936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2018-12-13 18:49 - 2018-12-08 09:06 - 000491416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2018-12-13 18:49 - 2018-12-08 09:06 - 000433168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys 2018-12-13 18:49 - 2018-12-08 09:06 - 000249088 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 001935008 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 001209888 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 001018880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys 2018-12-13 18:49 - 2018-12-08 09:05 - 000793592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2018-12-13 18:49 - 2018-12-08 09:05 - 000706040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys 2018-12-13 18:49 - 2018-12-08 09:05 - 000594224 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe 2018-12-13 18:49 - 2018-12-08 09:05 - 000421176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xbgmengine.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 000413920 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 000171008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2018-12-13 18:49 - 2018-12-08 09:05 - 000130312 _____ (Microsoft Corporation) C:\WINDOWS\system32\rmclient.dll 2018-12-13 18:49 - 2018-12-08 09:05 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fileinfo.sys 2018-12-13 18:49 - 2018-12-08 09:04 - 002590296 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVDECOD.DLL 2018-12-13 18:49 - 2018-12-08 09:04 - 001150312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVP9DEC.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2018-12-13 18:49 - 2018-12-08 09:04 - 000527160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000413176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2018-12-13 18:49 - 2018-12-08 09:04 - 000375608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2018-12-13 18:49 - 2018-12-08 09:04 - 000335672 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000268280 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000158624 _____ (Microsoft Corporation) C:\WINDOWS\system32\vertdll.dll 2018-12-13 18:49 - 2018-12-08 09:04 - 000128824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys 2018-12-13 18:49 - 2018-12-08 09:04 - 000058168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\iorate.sys 2018-12-13 18:49 - 2018-12-08 09:04 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser_broker.exe 2018-12-13 18:49 - 2018-12-08 08:47 - 000785760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2018-12-13 18:49 - 2018-12-08 08:46 - 001397104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVP9DEC.dll 2018-12-13 18:49 - 2018-12-08 08:46 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2018-12-13 18:49 - 2018-12-08 08:46 - 000101192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rmclient.dll 2018-12-13 18:49 - 2018-12-08 08:45 - 001805656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll 2018-12-13 18:49 - 2018-12-08 08:45 - 001011872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll 2018-12-13 18:49 - 2018-12-08 08:45 - 000567256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll 2018-12-13 18:49 - 2018-12-08 08:45 - 000356864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2018-12-13 18:49 - 2018-12-08 08:45 - 000129296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll 2018-12-13 18:49 - 2018-12-08 08:39 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnsruprov.dll 2018-12-13 18:49 - 2018-12-08 08:38 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\eeprov.dll 2018-12-13 18:49 - 2018-12-08 08:38 - 000310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wc_storage.dll 2018-12-13 18:49 - 2018-12-08 08:38 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageLiveTileTask.exe 2018-12-13 18:49 - 2018-12-08 08:38 - 000085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationFrameworkInternalPS.dll 2018-12-13 18:49 - 2018-12-08 08:38 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wcnfs.sys 2018-12-13 18:49 - 2018-12-08 08:38 - 000055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000395776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000386048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Diagnostics.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000358912 _____ (Microsoft Corporation) C:\WINDOWS\system32\DataUsageHandlers.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthserv.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\appsruprov.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000157696 _____ (Microsoft Corporation) C:\WINDOWS\system32\energyprov.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2018-12-13 18:49 - 2018-12-08 08:37 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 003381248 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapRouter.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 000566784 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2018-12-13 18:49 - 2018-12-08 08:36 - 000356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\dusmsvc.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 000227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2018-12-13 18:49 - 2018-12-08 08:36 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll 2018-12-13 18:49 - 2018-12-08 08:36 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mmcss.sys 2018-12-13 18:49 - 2018-12-08 08:35 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2018-12-13 18:49 - 2018-12-08 08:35 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 001023488 _____ (Microsoft Corporation) C:\WINDOWS\system32\ShareHost.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 000693248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 000684544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2018-12-13 18:49 - 2018-12-08 08:34 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\defragsvc.dll 2018-12-13 18:49 - 2018-12-08 08:33 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll 2018-12-13 18:49 - 2018-12-08 08:33 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2018-12-13 18:49 - 2018-12-08 08:33 - 000823296 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll 2018-12-13 18:49 - 2018-12-08 08:33 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2018-12-13 18:49 - 2018-12-08 08:32 - 001032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll 2018-12-13 18:49 - 2018-12-08 08:32 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll 2018-12-13 18:49 - 2018-12-08 08:32 - 000796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2018-12-13 18:49 - 2018-12-08 08:32 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-12-13 18:49 - 2018-12-08 08:32 - 000406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2018-12-13 18:49 - 2018-12-08 08:30 - 006647296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll 2018-12-13 18:49 - 2018-12-08 08:30 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2018-12-13 18:49 - 2018-12-08 08:29 - 000311296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Diagnostics.dll 2018-12-13 18:49 - 2018-12-08 08:29 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2018-12-13 18:49 - 2018-12-08 08:28 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2018-12-13 18:49 - 2018-12-08 08:28 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2018-12-13 18:49 - 2018-12-08 08:28 - 000288768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 002449408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapRouter.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 001986560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapGeocoder.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Connectivity.dll 2018-12-13 18:49 - 2018-12-08 08:27 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll 2018-12-13 18:49 - 2018-12-08 08:26 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpcServices.dll 2018-12-13 18:49 - 2018-12-08 08:26 - 000848384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ShareHost.dll 2018-12-13 18:49 - 2018-12-08 08:25 - 000978944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll 2018-12-13 18:49 - 2018-12-08 08:25 - 000856576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2018-12-13 18:49 - 2018-12-08 08:25 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll 2018-12-13 18:49 - 2018-12-08 08:25 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll 2018-12-13 18:49 - 2018-12-08 08:25 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2018-12-13 18:49 - 2018-12-08 08:24 - 000795648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.OnlineId.dll 2018-12-13 18:49 - 2018-12-08 08:24 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2018-12-13 18:49 - 2018-12-08 08:24 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-12-13 18:49 - 2018-12-08 08:24 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2018-12-13 18:49 - 2018-11-09 07:00 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2018-12-13 18:49 - 2018-11-09 06:58 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll 2018-12-13 18:49 - 2018-11-09 06:57 - 000208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\sensrsvc.dll 2018-12-13 18:49 - 2018-11-09 06:56 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll 2018-12-13 18:49 - 2018-11-09 06:56 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\ninput.dll 2018-12-13 18:49 - 2018-11-09 06:56 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSoftwareInstallationClient.dll 2018-12-13 18:49 - 2018-11-09 06:54 - 001535488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe 2018-12-13 18:49 - 2018-11-09 06:22 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2018-12-13 18:49 - 2018-11-09 06:20 - 007987712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2018-12-13 18:49 - 2018-11-09 06:20 - 003397632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsrchvw.exe 2018-12-13 18:49 - 2018-11-09 06:19 - 000181248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll 2018-12-13 18:49 - 2018-11-09 06:18 - 000344576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-12-13 18:49 - 2018-11-09 06:18 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ninput.dll 2018-12-13 18:49 - 2018-11-09 03:49 - 000723416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll 2018-12-13 18:49 - 2018-11-09 03:49 - 000565048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS 2018-12-13 18:49 - 2018-11-09 03:49 - 000368656 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll 2018-12-13 18:49 - 2018-11-09 03:48 - 002719736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2018-12-13 18:49 - 2018-11-09 03:48 - 000899920 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll 2018-12-13 18:49 - 2018-11-09 03:48 - 000766704 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll 2018-12-13 18:49 - 2018-11-09 03:48 - 000745472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fvevol.sys 2018-12-13 18:49 - 2018-11-09 03:48 - 000375296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys 2018-12-13 18:49 - 2018-11-09 03:47 - 002062392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll 2018-12-13 18:49 - 2018-11-09 03:47 - 001285432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys 2018-12-13 18:49 - 2018-11-09 03:47 - 000930616 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe 2018-12-13 18:49 - 2018-11-09 03:47 - 000537912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys 2018-12-13 18:49 - 2018-11-09 03:22 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll 2018-12-13 18:49 - 2018-11-09 03:22 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll 2018-12-13 18:49 - 2018-11-09 03:21 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2018-12-13 18:49 - 2018-11-09 03:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys 2018-12-13 18:49 - 2018-11-09 03:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll 2018-12-13 18:49 - 2018-11-09 03:20 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll 2018-12-13 18:49 - 2018-11-09 03:20 - 000399872 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthAvctpSvc.dll 2018-12-13 18:49 - 2018-11-09 03:20 - 000193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndiswan.sys 2018-12-13 18:49 - 2018-11-09 03:20 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll 2018-12-13 18:49 - 2018-11-09 03:19 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-12-13 18:49 - 2018-11-09 03:19 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2018-12-13 18:49 - 2018-11-09 03:18 - 000573952 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll 2018-12-13 18:49 - 2018-11-09 03:18 - 000514048 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll 2018-12-13 18:49 - 2018-11-09 03:18 - 000300032 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll 2018-12-13 18:49 - 2018-11-09 03:17 - 002584576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll 2018-12-13 18:49 - 2018-11-09 03:17 - 001069568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2018-12-13 18:49 - 2018-11-09 03:16 - 001225216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll 2018-12-13 18:49 - 2018-11-09 03:16 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll 2018-12-13 18:49 - 2018-11-09 03:15 - 000933888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2018-12-13 18:49 - 2018-11-09 03:15 - 000884224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll 2018-12-13 18:49 - 2018-11-09 03:15 - 000505344 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2018-12-13 18:49 - 2018-11-09 03:07 - 001299704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3D12.dll 2018-12-13 18:49 - 2018-11-09 02:48 - 000550728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll 2018-12-13 18:49 - 2018-11-09 02:47 - 000295224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll 2018-12-13 18:49 - 2018-11-09 02:46 - 002161008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll 2018-12-13 18:49 - 2018-11-09 02:46 - 000829960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe 2018-12-13 18:49 - 2018-11-09 02:46 - 000721024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll 2018-12-13 18:49 - 2018-11-09 02:46 - 000573504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll 2018-12-13 18:49 - 2018-11-09 02:31 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2018-12-13 18:49 - 2018-11-09 02:31 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll 2018-12-13 18:49 - 2018-11-09 02:30 - 000142848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll 2018-12-13 18:49 - 2018-11-09 02:30 - 000082944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll 2018-12-13 18:49 - 2018-11-09 02:29 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-12-13 18:49 - 2018-11-09 02:29 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll 2018-12-13 18:49 - 2018-11-09 02:29 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2018-12-13 18:49 - 2018-11-09 02:27 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll 2018-12-13 18:49 - 2018-11-09 02:26 - 001110528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll 2018-12-13 18:49 - 2018-11-09 02:26 - 000873472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2018-12-13 18:49 - 2018-11-09 02:26 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2018-12-13 18:49 - 2018-11-09 02:25 - 000713216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll 2018-12-13 18:49 - 2018-11-09 02:25 - 000705024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll 2018-12-13 06:12 - 2018-12-13 06:12 - 000051024 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe 2018-12-13 06:12 - 2018-12-13 06:12 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-stable.sys 2018-12-13 06:12 - 2018-12-13 06:12 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-dev.sys 2018-12-13 06:12 - 2018-12-13 06:12 - 000047800 _____ (Dropbox, Inc.) C:\WINDOWS\system32\Drivers\dbx-canary.sys 2018-12-10 17:55 - 2018-12-10 17:55 - 000001241 _____ C:\Users\Admin\Desktop\nativelog.txt 2018-12-10 17:55 - 2018-12-10 17:55 - 000000000 ____D C:\Users\Admin\AppData\Roaming\.minecraft 2018-11-28 14:24 - 2018-12-22 14:53 - 000000000 ____D C:\Users\Michał\Desktop\świąteczne piosenki 2018-11-24 14:22 - 2018-11-24 14:22 - 000000000 ____D C:\Users\Michał\Documents\Klei 2018-11-22 19:17 - 2018-11-22 19:17 - 000000202 _____ C:\Users\Michał\Desktop\Castle Crashers.url 2018-11-22 11:03 - 2018-11-22 19:17 - 000000000 ____D C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2018-11-22 10:29 - 2018-11-22 10:29 - 000000202 _____ C:\Users\Michał\Desktop\Don't Starve.url ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-22 15:23 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2018-12-22 15:23 - 2018-04-12 00:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2018-12-22 15:23 - 2016-04-23 19:46 - 000000000 ____D C:\FRST 2018-12-22 15:23 - 2016-01-06 15:32 - 000000000 ____D C:\Program Files (x86)\Adobe 2018-12-22 15:21 - 2018-04-04 18:14 - 000000000 ____D C:\Users\Admin\AppData\Local\Ubisoft Game Launcher 2018-12-22 15:20 - 2016-01-05 14:21 - 000000000 ____D C:\ProgramData\Conceiva 2018-12-22 15:19 - 2018-11-07 17:11 - 000000000 ____D C:\Users\Admin\AppData\Local\Google 2018-12-22 15:19 - 2018-08-10 17:05 - 000000000 ____D C:\Users\Michał\AppData\Local\D3DSCache 2018-12-22 15:19 - 2017-07-15 15:14 - 000000000 ____D C:\Users\Michał\AppData\Roaming\WhatsApp 2018-12-22 15:19 - 2017-07-15 15:14 - 000000000 ____D C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2018-12-22 15:19 - 2017-07-15 15:14 - 000000000 ____D C:\Users\Michał\AppData\Local\WhatsApp 2018-12-22 15:19 - 2016-03-25 18:49 - 000000000 ____D C:\Program Files (x86)\Google 2018-12-22 15:12 - 2016-01-06 09:32 - 000000000 ____D C:\Users\Michał\AppData\Roaming\HaoZip 2018-12-22 15:04 - 2018-08-10 17:06 - 001763504 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-12-22 15:04 - 2018-04-12 16:54 - 000782334 _____ C:\WINDOWS\system32\perfh015.dat 2018-12-22 15:04 - 2018-04-12 16:54 - 000151496 _____ C:\WINDOWS\system32\perfc015.dat 2018-12-22 15:04 - 2018-04-12 00:36 - 000000000 ____D C:\WINDOWS\INF 2018-12-22 14:58 - 2016-11-19 07:48 - 000000000 ____D C:\Users\Michał\AppData\LocalLow\Mozilla 2018-12-22 14:57 - 2018-08-10 17:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-12-22 14:57 - 2018-04-11 22:04 - 001048576 _____ C:\WINDOWS\system32\config\BBI 2018-12-22 14:57 - 2017-04-19 18:52 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin 2018-12-22 14:56 - 2017-04-19 19:12 - 000004388 _____ C:\Users\Michał\Desktop\OOSU10.ini 2018-12-22 14:54 - 2016-01-05 14:36 - 000000000 ____D C:\Users\Michał\.smplayer 2018-12-22 14:19 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\TextInput 2018-12-22 14:19 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2018-12-21 19:40 - 2018-08-10 16:56 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-12-21 17:38 - 2018-04-12 00:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-12-18 20:49 - 2017-12-05 21:48 - 000000000 ____D C:\Users\Michał\Downloads\ProcessExplorer 2018-12-18 20:46 - 2018-08-10 16:57 - 000000000 ____D C:\Users\Michał 2018-12-18 20:41 - 2016-04-27 06:35 - 000000000 __RHD C:\Users\Public\AccountPictures 2018-12-18 19:52 - 2018-08-10 17:04 - 000003356 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-979318943-1799875990-1358442597-1010 2018-12-18 19:52 - 2018-08-10 16:57 - 000002412 _____ C:\Users\Admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-12-18 19:52 - 2018-03-18 15:59 - 000000000 ___RD C:\Users\Admin\OneDrive 2018-12-18 18:34 - 2018-08-10 17:04 - 000003358 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-979318943-1799875990-1358442597-1001 2018-12-18 18:34 - 2018-08-10 16:57 - 000002415 _____ C:\Users\Michał\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2018-12-18 15:50 - 2018-03-18 15:58 - 000000000 ____D C:\Users\Admin\AppData\Local\PlaceholderTileLogoFolder 2018-12-17 20:51 - 2018-03-18 15:58 - 000000000 ____D C:\Users\Admin\AppData\Local\Packages 2018-12-17 20:27 - 2018-11-03 17:23 - 000000000 ____D C:\Users\Admin\AppData\Local\D3DSCache 2018-12-17 16:22 - 2018-04-12 00:38 - 000000000 ___HD C:\Program Files\WindowsApps 2018-12-16 20:22 - 2018-02-18 10:10 - 000000000 ____D C:\Users\Michał\AppData\Local\PlaceholderTileLogoFolder 2018-12-16 19:01 - 2018-02-17 13:09 - 000000000 ____D C:\Users\Michał\AppData\Local\Packages 2018-12-15 18:35 - 2018-02-09 16:58 - 000000000 ____D C:\Users\Michał\AppData\LocalLow\Adobe 2018-12-14 20:40 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2018-12-14 18:14 - 2016-01-05 13:46 - 000000000 ____D C:\Program Files (x86)\Dropbox 2018-12-14 14:20 - 2018-02-17 14:09 - 000000000 ___RD C:\Users\Michał\3D Objects 2018-12-14 14:19 - 2018-03-18 15:58 - 000000000 ___RD C:\Users\Admin\3D Objects 2018-12-14 14:18 - 2018-08-10 16:56 - 000522408 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-12-13 21:52 - 2018-04-12 00:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2018-12-13 21:52 - 2018-04-12 00:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2018-12-13 21:52 - 2018-04-12 00:38 - 000000000 ____D C:\WINDOWS\ShellComponents 2018-12-11 16:01 - 2018-03-21 16:56 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2018-12-11 16:01 - 2016-09-22 17:29 - 000592616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2018-12-07 18:28 - 2018-01-12 17:00 - 000000000 ____D C:\Program Files\rempl 2018-12-03 20:10 - 2017-04-20 18:15 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-12-03 20:10 - 2016-01-05 13:36 - 000001152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-12-03 20:10 - 2016-01-05 13:36 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-12-01 05:01 - 2018-04-12 00:41 - 000835688 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2018-12-01 05:01 - 2018-04-12 00:41 - 000179808 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2018-11-25 12:57 - 2018-11-16 15:55 - 000001037 _____ C:\Users\Public\Desktop\NAPS2.lnk 2018-11-25 12:57 - 2018-11-16 15:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NAPS2 2018-11-25 12:57 - 2018-11-16 15:55 - 000000000 ____D C:\Program Files (x86)\NAPS2 Niektóre pliki w TEMP: ==================== 2018-12-18 21:02 - 2018-12-18 18:30 - 001458856 _____ (Sysinternals - www.sysinternals.com) C:\Users\Axles\AppData\Local\Temp\PROCEXP64.exe 2018-10-13 16:17 - 2018-12-22 14:57 - 001458856 _____ (Sysinternals - www.sysinternals.com) C:\Users\Michał\AppData\Local\Temp\PROCEXP64.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-08-10 16:56 ==================== Koniec FRST.txt ============================