Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 06.06.2018 01 Uruchomiony przez Paweł_2 (administrator) CREDT (06-06-2018 18:28:03) Uruchomiony z C:\Users\Paweł_2\Desktop Załadowane profile: Paweł_2 (Dostępne profile: Paweł_2) Platform: Windows 8.1 Pro (Update) (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: FF) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\WTabletServiceCon.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TabletUser.exe (Wacom Technology) C:\Program Files\Tablet\Pen\WacomHost.exe (Microsoft Corporation) C:\Windows\System32\SkyDrive.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_TouchUser.exe (Wacom Technology, Corp.) C:\Program Files\Tablet\Pen\Pen_Tablet.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (CMedia) C:\Program Files\ASUS Xonar DG Audio\Customapp\AsusAudioCenter.exe () C:\Windows\SysWOW64\HsMgr.exe () C:\Windows\System\HsMgr64.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Antivirus\AVGUI.exe (Disc Soft Ltd) D:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\WWAHost.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [Cmaudio8788] => C:\WINDOWS\syswow64\RunDll32.exe C:\WINDOWS\Syswow64\cmicnfgp.dll,CMICtrlWnd HKLM\...\Run: [Cmaudio8788GX] => C:\WINDOWS\syswow64\HsMgr.exe [200704 2008-07-11] () HKLM\...\Run: [Cmaudio8788GX64] => C:\WINDOWS\system\HsMgr64.exe [282112 2008-07-11] () HKLM\...\Run: [AVGUI.exe] => C:\Program Files (x86)\AVG\Antivirus\AvLaunch.exe [291568 2018-05-19] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [] => [X] HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [590144 2015-02-28] (Razer Inc.) HKLM-x32\...\Run: [GrooveMonitor] => D:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation) HKLM-x32\...\Run: [AvgUi] => "C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe" /lps=fmw HKLM-x32\...\Run: [QuickTime Task] => C:\Program Files (x86)\QuickTime\QTTask.exe [421888 2015-12-09] (Apple Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [588704 2018-03-28] (Oracle Corporation) HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\Run: [DAEMON Tools Lite] => D:\Program Files\DAEMON Tools Lite\DTLite.exe [5583120 2015-02-27] (Disc Soft Ltd) HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\Run: [com.squirrel.slack.slack] => C:\Users\Paweł_2\AppData\Local\slack\Update.exe [1584656 2018-04-05] () HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\MountPoints2: {04e2dd48-3c73-11e5-beb1-002522b0329a} - "L:\setup.exe" HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\MountPoints2: {40c3acd9-cfaa-11e4-be8e-002522b0329a} - "J:\autorun.exe" HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\MountPoints2: {915fd132-d850-11e4-be96-002522b0329a} - "H:\setup.exe" HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\...\MountPoints2: {ab0b4f99-ce47-11e4-be8c-002522b0329a} - "I:\setup.exe" HKU\S-1-5-21-2335595343-1543453366-1712255261-1004\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Ribbons.scr [132608 2014-10-29] (Microsoft Corporation) GroupPolicy: Ograniczenia ? <==== UWAGA GroupPolicy\User: Ograniczenia ? <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 10.9.8.7 87.239.216.6 8.8.8.8 192.168.1.1 Tcpip\..\Interfaces\{9CA0629F-C9C3-4E1B-9A7C-F5958DB51DD2}: [DhcpNameServer] 10.9.8.7 87.239.216.6 8.8.8.8 192.168.1.1 Internet Explorer: ================== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_171\bin\ssv.dll [2018-04-22] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-22] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-04-22] (Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-22] (Oracle Corporation) FireFox: ======== FF DefaultProfile: 7lcu067t.default FF ProfilePath: C:\Users\Paweł_2\AppData\Roaming\Mozilla\Firefox\Profiles\7lcu067t.default [2018-06-06] FF Homepage: Mozilla\Firefox\Profiles\7lcu067t.default -> www.google.pl FF Extension: (FireFTP) - C:\Users\Paweł_2\AppData\Roaming\Mozilla\Firefox\Profiles\7lcu067t.default\Extensions\{a7c6cf7f-112c-4500-a7ea-39801a327e5f} [2017-01-24] [Przestarzałe] FF Extension: (Video DownloadHelper) - C:\Users\Paweł_2\AppData\Roaming\Mozilla\Firefox\Profiles\7lcu067t.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-06-05] FF Extension: (Adblock Plus) - C:\Users\Paweł_2\AppData\Roaming\Mozilla\Firefox\Profiles\7lcu067t.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-05-25] FF Extension: (TLS 1.3 gradual roll-out fallback-limit) - C:\Users\Paweł_2\AppData\Roaming\Mozilla\Firefox\Profiles\7lcu067t.default\features\{403b5275-d64e-4f5d-849c-6a23efb00620}\tls13-version-fallback-rollout-bug1462099@mozilla.org.xpi [2018-05-31] [Przestarzałe] FF HKLM-x32\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt => nie znaleziono FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_29_0_0_171.dll [2018-05-09] () FF Plugin: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-22] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-22] (Oracle Corporation) FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=2.2.0 -> D:\Program Files\VideoLAN\VLC\npvlc.dll [2015-02-27] (VideoLAN) FF Plugin: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin: wacom.com/WacomTabletPlugin -> C:\Program Files\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_29_0_0_171.dll [2018-05-09] () FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-22] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-22] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-12-16] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-12-16] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-19] (Google Inc.) FF Plugin-x32: @wacom.com/wtPlugin,version=2.1.0.7 -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin-x32: wacom.com/WacomTabletPlugin -> C:\Program Files (x86)\TabletPlugins\npWacomTabletPlugin.dll [2014-03-25] (Wacom) FF Plugin HKU\S-1-5-21-2335595343-1543453366-1712255261-1004: ubisoft.com/uplaypc -> C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\npuplaypc.dll [2018-05-22] () Chrome: ======= CHR DefaultProfile: Default CHR StartupUrls: Default -> "hxxps://www.google.pl/" CHR Profile: C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default [2018-05-16] CHR Extension: (Dokumenty) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-16] CHR Extension: (Dysk Google) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-06] CHR Extension: (YouTube) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-05] CHR Extension: (Google Search) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-05] CHR Extension: (Dokumenty Google offline) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-06] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-16] CHR Extension: (Gmail) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-10-05] CHR Extension: (Chrome Media Router) - C:\Users\Paweł_2\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-05-16] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AVG Antivirus; C:\Program Files (x86)\AVG\Antivirus\AVGSvc.exe [318328 2018-05-19] (AVG Technologies CZ, s.r.o.) S3 avgbIDSAgent; C:\Program Files (x86)\AVG\Antivirus\x64\aswidsagenta.exe [7670672 2018-05-19] (AVG Technologies CZ, s.r.o.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6877224 2018-06-05] () R3 Disc Soft Lite Bus Service; D:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1272592 2015-02-27] (Disc Soft Ltd) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [526888 2018-05-06] (EasyAntiCheat Ltd) S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [Brak podpisu cyfrowego] S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6440736 2018-03-03] (Malwarebytes) S3 Microsoft Office Groove Audit Service; D:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [64856 2009-02-26] (Microsoft Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation) S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [187072 2015-02-05] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation) R2 WTabletServiceCon; C:\Program Files\Tablet\Pen\WTabletServiceCon.exe [656664 2014-08-19] (Wacom Technology, Corp.) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Dr.Fone for Android\DriverInstall.exe [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 avgArPot; C:\WINDOWS\System32\drivers\avgArPot.sys [189032 2018-05-19] (AVG Technologies CZ, s.r.o.) R1 avgbidsdriver; C:\WINDOWS\System32\drivers\avgbidsdrivera.sys [220600 2018-05-19] (AVG Technologies CZ, s.r.o.) R0 avgbidsh; C:\WINDOWS\System32\drivers\avgbidsha.sys [192536 2018-05-19] (AVG Technologies CZ, s.r.o.) R0 avgblog; C:\WINDOWS\System32\drivers\avgbloga.sys [336848 2018-05-19] (AVG Technologies CZ, s.r.o.) R0 avgbuniv; C:\WINDOWS\System32\drivers\avgbuniva.sys [50776 2018-05-19] (AVG Technologies CZ, s.r.o.) S3 avgHwid; C:\WINDOWS\System32\drivers\avgHwid.sys [39352 2018-05-19] (AVG Technologies CZ, s.r.o.) R2 avgMonFlt; C:\WINDOWS\System32\drivers\avgMonFlt.sys [151504 2018-05-19] (AVG Technologies CZ, s.r.o.) R1 avgRdr; C:\WINDOWS\System32\drivers\avgRdr2.sys [103744 2018-05-19] (AVG Technologies CZ, s.r.o.) R0 avgRvrt; C:\WINDOWS\System32\drivers\avgRvrt.sys [78352 2018-05-19] (AVG Technologies CZ, s.r.o.) R1 avgSnx; C:\WINDOWS\System32\drivers\avgSnx.sys [1020112 2018-05-19] (AVG Technologies CZ, s.r.o.) R1 avgSP; C:\WINDOWS\System32\drivers\avgSP.sys [452904 2018-05-19] (AVG Technologies CZ, s.r.o.) S2 avgStm; C:\WINDOWS\System32\drivers\avgStm.sys [198368 2018-05-19] (AVG Technologies CZ, s.r.o.) R0 avgVmm; C:\WINDOWS\System32\drivers\avgVmm.sys [373944 2018-05-19] (AVG Technologies CZ, s.r.o.) R3 cmudaxp; C:\WINDOWS\system32\drivers\cmudaxp.sys [2735616 2013-12-11] (C-Media Inc) S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30352 2015-03-19] (Disc Soft Ltd) R3 nvoclk64; C:\WINDOWS\system32\DRIVERS\nvoclk64.sys [42088 2009-09-15] (NVIDIA Corp.) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31168 2018-03-24] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [59240 2018-03-24] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [58816 2018-03-24] (NVIDIA Corporation) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [37184 2015-02-05] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [129600 2014-10-23] (Razer, Inc.) S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] () S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2014-08-16] (Apple, Inc.) [Brak podpisu cyfrowego] S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Corporation) R3 WUDFWpdComp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [226304 2014-10-29] (Microsoft Corporation) S3 xb1usb; C:\WINDOWS\System32\drivers\xb1usb.sys [42760 2016-02-23] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-06-06 18:28 - 2018-06-06 18:28 - 000017701 _____ C:\Users\Paweł_2\Desktop\FRST.txt 2018-06-06 18:27 - 2018-06-06 18:28 - 000000000 ____D C:\FRST 2018-06-06 18:26 - 2018-06-06 18:26 - 002413056 _____ (Farbar) C:\Users\Paweł_2\Desktop\FRST64.exe 2018-06-06 16:10 - 2018-06-06 16:10 - 000000000 ____D C:\Users\Paweł_2\Desktop\hwi_584 2018-06-06 15:55 - 2018-06-06 16:41 - 000000000 ____D C:\Users\Paweł_2\Desktop\bluescreenview 2018-06-06 15:36 - 2018-06-06 15:36 - 000410424 _____ C:\WINDOWS\Minidump\060618-7093-01.dmp 2018-06-06 15:31 - 2018-06-06 15:31 - 000228172 _____ C:\Users\Paweł_2\AppData\Local\recently-used.xbel 2018-06-05 12:51 - 2018-06-05 12:51 - 000030888 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll 2018-06-05 12:51 - 2018-06-05 12:51 - 000029352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll 2018-06-05 12:51 - 2018-06-05 12:51 - 000019088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll 2018-06-05 12:51 - 2018-06-05 12:51 - 000019088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll 2018-06-04 21:23 - 2018-06-04 21:23 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2018-06-04 21:23 - 2017-12-16 00:47 - 000143960 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvStreaming.exe 2018-06-04 21:23 - 2017-09-14 01:20 - 000798008 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2018-06-04 21:23 - 2017-09-14 01:20 - 000490296 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2018-06-04 21:23 - 2017-09-14 01:19 - 000927544 _____ C:\WINDOWS\system32\vulkan-1.dll 2018-06-04 21:23 - 2017-09-14 01:19 - 000591160 _____ C:\WINDOWS\system32\vulkaninfo.exe 2018-06-04 21:21 - 2017-12-16 02:21 - 040237456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 036305200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 035157488 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 029347640 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 023266400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 019526512 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvwgf2um.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 019039976 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 018208784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dumx.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 016854840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2018-06-04 21:21 - 2017-12-16 02:21 - 015028168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvd3dum.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 013867656 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 013255032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 011782096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 010883744 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 003809072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 003799032 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 003347952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 001990128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438871.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 001674736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438871.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 001135464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 001100600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 001031984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000981816 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000933168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000895968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmcumd.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000885680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000407248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvumdshim.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000225208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys 2018-06-04 21:21 - 2017-12-16 02:21 - 000171896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvinitx.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000154392 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglshim64.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000149552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvinit.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000132072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglshim32.dll 2018-06-04 21:21 - 2017-12-16 02:21 - 000045496 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap64.dll 2018-06-04 21:16 - 2017-12-16 01:15 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2018-06-04 21:16 - 2017-12-16 00:34 - 005964688 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 002589168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 001767408 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 000608056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 000450544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 000123704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2018-06-04 21:16 - 2017-12-16 00:34 - 000082928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2018-06-04 21:16 - 2017-12-14 20:17 - 007917671 _____ C:\WINDOWS\system32\nvcoproc.bin 2018-06-04 21:16 - 2017-11-09 05:06 - 000540600 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll 2018-06-04 21:16 - 2017-11-09 05:06 - 000446392 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll 2018-05-30 13:12 - 2018-05-30 13:12 - 000000000 ____D C:\Users\Paweł_2\AppData\Local\BattlEye 2018-05-21 21:09 - 2018-05-21 21:09 - 000011776 ___SH C:\Users\Paweł_2\Downloads\Thumbs.db 2018-05-19 19:23 - 2018-05-19 19:23 - 000377584 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\avgBoot.exe 2018-05-19 01:03 - 2018-06-06 15:31 - 000000000 ____D C:\Users\Paweł_2\Desktop\GRA WYŚCIGOWA TOP DRIVES 2018-05-14 12:18 - 2018-05-14 12:18 - 000598531 _____ C:\Users\Paweł_2\Desktop\Harmonogram_zajec_sda.pdf 2018-05-09 16:39 - 2018-05-28 14:43 - 000014331 _____ C:\Users\Paweł_2\Desktop\TERMINARZ MŚ 2018.xlsx 2018-05-09 07:01 - 2018-04-22 10:04 - 025744896 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2018-05-09 07:01 - 2018-04-22 09:24 - 020286464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2018-05-09 07:00 - 2018-04-22 11:02 - 000803696 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2018-05-09 07:00 - 2018-04-22 10:06 - 000612600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2018-05-09 07:00 - 2018-04-22 09:40 - 002902016 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2018-05-09 07:00 - 2018-04-22 09:38 - 000578048 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2018-05-09 07:00 - 2018-04-22 09:32 - 005779456 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2018-05-09 07:00 - 2018-04-22 09:26 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2018-05-09 07:00 - 2018-04-22 09:26 - 000794624 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2018-05-09 07:00 - 2018-04-22 09:04 - 000499712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2018-05-09 07:00 - 2018-04-22 09:00 - 002295296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2018-05-09 07:00 - 2018-04-22 08:57 - 001033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll 2018-05-09 07:00 - 2018-04-22 08:54 - 000661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2018-05-09 07:00 - 2018-04-22 08:53 - 000620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2018-05-09 07:00 - 2018-04-22 08:51 - 000262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll 2018-05-09 07:00 - 2018-04-22 08:49 - 000809472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll 2018-05-09 07:00 - 2018-04-22 08:48 - 015283200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2018-05-09 07:00 - 2018-04-22 08:46 - 002135552 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl 2018-05-09 07:00 - 2018-04-22 08:33 - 003241472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2018-05-09 07:00 - 2018-04-22 08:32 - 000880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll 2018-05-09 07:00 - 2018-04-22 08:31 - 004496896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2018-05-09 07:00 - 2018-04-22 08:29 - 000230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll 2018-05-09 07:00 - 2018-04-22 08:27 - 000696320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll 2018-05-09 07:00 - 2018-04-22 08:27 - 000333312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll 2018-05-09 07:00 - 2018-04-22 08:26 - 013679616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2018-05-09 07:00 - 2018-04-22 08:26 - 002059776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl 2018-05-09 07:00 - 2018-04-22 08:22 - 001546240 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2018-05-09 07:00 - 2018-04-22 08:11 - 000800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll 2018-05-09 07:00 - 2018-04-22 08:08 - 002767872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2018-05-09 07:00 - 2018-04-22 08:04 - 001314304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2018-05-09 07:00 - 2018-04-22 08:03 - 000710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll 2018-05-09 07:00 - 2018-04-15 18:55 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx 2018-05-09 07:00 - 2018-04-15 18:16 - 000536576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx 2018-05-09 07:00 - 2018-04-11 03:03 - 007406936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2018-05-09 07:00 - 2018-04-11 03:02 - 001676056 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2018-05-09 07:00 - 2018-04-11 03:02 - 001536112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2018-05-09 07:00 - 2018-04-10 20:51 - 004169216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2018-05-09 07:00 - 2018-04-10 20:27 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\itircl.dll 2018-05-09 07:00 - 2018-04-10 20:13 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\itss.dll 2018-05-09 07:00 - 2018-04-10 19:01 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itircl.dll 2018-05-09 07:00 - 2018-04-10 18:50 - 000151040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\itss.dll 2018-05-09 07:00 - 2018-04-07 18:17 - 000445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll 2018-05-09 07:00 - 2018-04-07 17:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll 2018-05-09 07:00 - 2018-04-07 17:41 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSpkg.dll 2018-05-09 07:00 - 2018-04-07 17:23 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSpkg.dll 2018-05-09 07:00 - 2018-04-07 17:20 - 001707008 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll 2018-05-09 07:00 - 2018-04-07 17:10 - 001344512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll 2018-05-09 07:00 - 2018-04-07 17:06 - 000522752 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll 2018-05-09 07:00 - 2018-04-07 17:01 - 000414720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll 2018-05-09 07:00 - 2018-04-06 23:27 - 000376656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2018-05-09 07:00 - 2018-03-24 17:57 - 001101824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvidcrl.dll 2018-05-09 07:00 - 2018-03-24 17:40 - 001171456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe 2018-05-09 07:00 - 2018-03-24 17:34 - 000856064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvidcrl.dll 2018-05-09 07:00 - 2018-03-24 17:22 - 001086976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe 2018-05-09 07:00 - 2018-03-24 16:56 - 007033344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2018-05-09 07:00 - 2018-03-24 16:54 - 006214144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2018-05-09 07:00 - 2018-03-16 00:29 - 000136904 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe 2018-05-09 07:00 - 2018-03-10 22:55 - 000137968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncrypt.dll 2018-05-09 07:00 - 2018-03-10 21:04 - 000120376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncrypt.dll 2018-05-09 07:00 - 2018-03-10 19:51 - 000685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys 2018-05-09 07:00 - 2018-03-10 19:47 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll 2018-05-09 07:00 - 2018-03-10 19:47 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll 2018-05-09 07:00 - 2018-03-10 19:43 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wu.upgrade.ps.dll 2018-05-09 07:00 - 2018-03-10 18:46 - 000840192 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2018-05-09 07:00 - 2018-03-10 18:44 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll 2018-05-09 07:00 - 2018-03-10 18:35 - 000696832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2018-05-09 07:00 - 2018-03-10 18:35 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll 2018-05-09 07:00 - 2018-03-10 18:33 - 003717632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2018-05-09 07:00 - 2018-03-10 18:22 - 000035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe 2018-05-09 07:00 - 2018-03-10 18:21 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll 2018-05-09 07:00 - 2018-03-10 18:21 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe 2018-05-09 07:00 - 2018-03-10 18:20 - 000124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll 2018-05-09 07:00 - 2018-03-10 18:18 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll 2018-05-09 07:00 - 2018-03-10 18:18 - 000409088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll 2018-05-09 07:00 - 2018-03-10 18:18 - 000095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll 2018-05-09 07:00 - 2018-03-10 18:18 - 000081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll 2018-05-09 07:00 - 2018-03-10 18:17 - 002240512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll 2018-05-09 07:00 - 2018-03-10 18:17 - 000897024 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll 2018-05-09 07:00 - 2018-03-09 20:57 - 000276816 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys 2018-05-09 07:00 - 2018-03-03 18:24 - 001725952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtctm.dll 2018-05-09 07:00 - 2018-03-03 18:18 - 000894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcprx.dll 2018-05-09 07:00 - 2018-03-03 18:18 - 000322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msdtcuiu.dll 2018-05-09 07:00 - 2018-03-03 18:15 - 000050688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xolehlp.dll 2018-05-09 07:00 - 2018-03-03 18:04 - 000741888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcprx.dll 2018-05-09 07:00 - 2018-03-03 18:04 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdtcuiu.dll 2018-05-09 07:00 - 2018-02-14 23:45 - 001308336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2018-05-09 07:00 - 2018-02-14 16:47 - 000747520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-06-06 18:22 - 2016-11-19 18:43 - 000000000 ____D C:\Users\Paweł_2\AppData\LocalLow\Mozilla 2018-06-06 16:53 - 2014-10-23 09:38 - 000001068 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job 2018-06-06 16:28 - 2017-07-25 11:26 - 001202688 ___SH C:\Users\Paweł_2\Desktop\Thumbs.db 2018-06-06 15:46 - 2014-09-24 17:08 - 001726878 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2018-06-06 15:46 - 2014-09-24 16:35 - 000763146 _____ C:\WINDOWS\system32\perfh015.dat 2018-06-06 15:46 - 2014-09-24 16:35 - 000151872 _____ C:\WINDOWS\system32\perfc015.dat 2018-06-06 15:46 - 2013-08-22 15:36 - 000000000 ____D C:\WINDOWS\Inf 2018-06-06 15:42 - 2017-07-23 14:45 - 000000000 __RDO C:\Users\Paweł_2\OneDrive 2018-06-06 15:42 - 2014-10-23 21:36 - 000000000 ____D C:\ProgramData\NVIDIA 2018-06-06 15:41 - 2015-03-18 00:26 - 000000000 ____D C:\Users\Paweł_2 2018-06-06 15:41 - 2013-08-22 16:45 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-06-06 15:41 - 2013-08-22 15:25 - 000524288 ___SH C:\WINDOWS\system32\config\BBI 2018-06-06 15:36 - 2015-06-01 22:21 - 000000000 ____D C:\WINDOWS\Minidump 2018-06-06 15:31 - 2015-03-23 12:31 - 000000000 ____D C:\Users\Paweł_2\AppData\Local\gtk-2.0 2018-06-06 15:31 - 2015-03-19 18:58 - 000000000 ____D C:\Users\Paweł_2\.gimp-2.8 2018-06-06 14:42 - 2018-01-14 15:02 - 000040410 _____ C:\Users\Paweł_2\Desktop\TOP DRIVES.xlsx 2018-06-05 16:55 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\rescache 2018-06-05 12:57 - 2012-07-26 09:59 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-06-05 12:56 - 2015-02-10 22:51 - 000000000 ____D C:\Program Files (x86)\MSBuild 2018-06-05 12:56 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2018-06-05 12:56 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\MUI 2018-06-05 12:29 - 2017-02-09 21:14 - 000000000 ____D C:\Users\Paweł_2\AppData\Local\CrashDumps 2018-06-05 00:20 - 2015-03-18 17:58 - 000003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2335595343-1543453366-1712255261-1004 2018-06-04 23:36 - 2018-04-12 12:28 - 000007656 _____ C:\Users\Paweł_2\AppData\Local\Resmon.ResmonCfg 2018-06-04 21:25 - 2018-04-26 15:02 - 000000000 ____D C:\Users\Paweł_2\Desktop\Z PULPITU 7 2018-06-04 21:25 - 2016-01-26 23:25 - 000000000 ____D C:\Users\Paweł_2\Desktop\Gry nieużywane 2018-06-04 21:23 - 2017-01-16 20:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-06-04 21:23 - 2014-10-23 21:36 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-06-04 21:23 - 2014-10-23 21:36 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-06-04 21:16 - 2014-10-23 21:36 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-06-04 21:16 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\Help 2018-06-04 21:05 - 2016-10-15 17:20 - 000000000 ____D C:\Users\Paweł_2\AppData\Roaming\discord 2018-06-04 15:48 - 2018-01-26 11:03 - 000000000 ____D C:\Users\Paweł_2\AppData\Roaming\Slack 2018-06-03 03:51 - 2015-03-18 23:06 - 000000000 ____D C:\Users\Paweł_2\AppData\Roaming\foobar2000 2018-05-29 00:51 - 2017-01-19 17:28 - 000000000 ____D C:\Users\Paweł_2\Desktop\GTA Online 2018-05-28 14:20 - 2018-04-04 23:33 - 000009470 _____ C:\Users\Paweł_2\Desktop\POŻYCZONE.xlsx 2018-05-28 13:40 - 2015-03-19 19:48 - 000000000 ____D C:\Users\Paweł_2\AppData\Roaming\vlc 2018-05-25 14:53 - 2015-09-26 19:08 - 000000000 ____D C:\Users\Paweł_2\AppData\Roaming\Audacity 2018-05-24 12:10 - 2015-05-22 11:19 - 000000000 ____D C:\Users\Paweł_2\AppData\Local\Avg 2018-05-24 12:10 - 2013-08-22 16:44 - 000493496 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-05-24 12:09 - 2015-10-28 17:24 - 000000000 ____D C:\ProgramData\Avg 2018-05-24 12:09 - 2015-03-19 18:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-05-24 12:09 - 2015-03-19 18:10 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox 2018-05-24 12:09 - 2015-03-18 23:39 - 000000000 ____D C:\Program Files (x86)\AVG 2018-05-22 13:27 - 2015-05-19 21:38 - 000000000 ____D C:\Users\Paweł_2\AppData\Local\Ubisoft Game Launcher 2018-05-22 13:25 - 2015-05-11 17:39 - 000000000 ____D C:\Users\Paweł_2\Desktop\Progsy 2018-05-19 19:23 - 2018-01-14 13:38 - 000189032 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgArPot.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000452904 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSP.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000373944 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgVmm.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000198368 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgStm.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000151504 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgMonFlt.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000103744 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRdr2.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000078352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgRvrt.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000039352 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgHwid.sys 2018-05-19 19:23 - 2017-05-17 20:07 - 000003916 _____ C:\WINDOWS\System32\Tasks\Antivirus Emergency Update 2018-05-19 19:22 - 2017-05-17 20:07 - 001020112 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgSnx.sys 2018-05-19 19:22 - 2017-05-17 20:07 - 000336848 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbloga.sys 2018-05-19 19:22 - 2017-05-17 20:07 - 000220600 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsdrivera.sys 2018-05-19 19:22 - 2017-05-17 20:07 - 000192536 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbidsha.sys 2018-05-19 19:22 - 2017-05-17 20:07 - 000050776 _____ (AVG Technologies CZ, s.r.o.) C:\WINDOWS\system32\Drivers\avgbuniva.sys 2018-05-19 02:21 - 2015-02-07 22:48 - 000003482 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA1d0431772a6af7b 2018-05-19 02:21 - 2014-10-23 09:38 - 000003354 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2018-05-19 02:15 - 2018-01-04 14:09 - 003776597 _____ C:\Users\Paweł_2\Desktop\GRA WYŚCIGOWA.xlsx 2018-05-18 13:58 - 2015-03-19 18:10 - 000001175 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2018-05-17 01:02 - 2017-05-11 15:20 - 000000000 ____D C:\Users\Paweł_2\Desktop\Chasing the Dream 2 2018-05-16 21:53 - 2014-10-23 09:38 - 000002250 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-05-09 16:03 - 2015-03-29 23:00 - 000000000 ____D C:\Users\Paweł_2\Desktop\Chasing The Dream 2018-05-09 11:32 - 2014-10-23 20:05 - 000000000 ____D C:\WINDOWS\system32\MRT 2018-05-09 11:30 - 2017-10-11 12:39 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT-KB890830.exe 2018-05-09 11:30 - 2016-04-13 18:42 - 141696960 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2018-05-09 00:06 - 2018-03-14 12:06 - 000004560 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-05-09 00:06 - 2015-07-14 13:47 - 000004388 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater 2018-05-09 00:06 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2018-05-09 00:06 - 2013-08-22 17:36 - 000000000 ____D C:\WINDOWS\system32\Macromed ==================== Pliki w katalogu głównym wybranych folderów ======= 2018-06-06 15:31 - 2018-06-06 15:31 - 000228172 _____ () C:\Users\Paweł_2\AppData\Local\recently-used.xbel 2018-04-12 12:28 - 2018-06-04 23:36 - 000007656 _____ () C:\Users\Paweł_2\AppData\Local\Resmon.ResmonCfg Niektóre pliki w TEMP: ==================== 2015-07-17 18:13 - 2007-06-03 22:53 - 000633928 _____ (Electronic Arts Inc.) C:\Users\Paweł_2\AppData\Local\Temp\AutoRun.exe 2015-07-17 18:13 - 2007-06-03 22:53 - 000588872 _____ (Electronic Arts Inc.) C:\Users\Paweł_2\AppData\Local\Temp\AutoRunGUI.dll 2015-10-28 17:23 - 2015-10-28 17:23 - 002892128 _____ (AVG Technologies) C:\Users\Paweł_2\AppData\Local\Temp\avg-cfb3ab46-b2c5-4009-a316-0e2f01b3e941.exe 2016-04-18 14:50 - 2016-03-23 16:57 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_081968128814.exe 2016-06-02 18:23 - 2016-04-22 10:01 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_081979501857.exe 2016-02-23 11:14 - 2016-01-12 17:23 - 000179624 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_08246704720.exe 2016-06-24 00:37 - 2016-05-18 13:03 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_08329419316.exe 2016-07-30 18:19 - 2016-06-21 18:49 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_08661487068.exe 2016-08-24 17:10 - 2016-07-20 14:01 - 000186640 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_08913382280.exe 2016-02-09 16:21 - 2015-12-08 08:23 - 000091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_0892241770.exe 2016-01-12 02:59 - 2015-11-12 17:54 - 000091048 _____ (AVG Technologies CZ, s.r.o.) C:\Users\Paweł_2\AppData\Local\Temp\avguirn_08943640196.exe 2015-03-22 18:11 - 2017-02-19 13:40 - 000065536 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dialogs.dll 2015-05-24 18:36 - 2015-05-25 22:22 - 000196608 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dyndata_7270014.dll 2015-07-17 18:54 - 2015-07-17 18:54 - 000208896 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dyndata_7330005.dll 2017-02-09 21:11 - 2017-02-19 13:44 - 000208896 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dyndata_7340014.dll 2015-04-12 18:26 - 2015-05-19 19:07 - 000204800 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dyndata_7380014.dll 2015-03-22 18:11 - 2015-09-23 10:37 - 000204800 _____ (Sony DADC Austria AG) C:\Users\Paweł_2\AppData\Local\Temp\drm_dyndata_7400009.dll 2015-07-17 18:13 - 2007-06-03 22:53 - 000879688 _____ () C:\Users\Paweł_2\AppData\Local\Temp\EAInstall.dll 2015-08-12 16:11 - 2007-06-03 22:53 - 000322632 _____ (Electronic Arts Inc.) C:\Users\Paweł_2\AppData\Local\Temp\eauninstall.exe 2015-07-17 18:13 - 2007-06-03 22:53 - 000109640 _____ (Microsoft Corporation) C:\Users\Paweł_2\AppData\Local\Temp\GameuxInstallHelper.dll 2015-08-12 16:11 - 2007-06-03 22:53 - 000097352 _____ (Electronic Arts) C:\Users\Paweł_2\AppData\Local\Temp\Harry Potter and the Order of the Phoenix_uninst.exe 2018-04-22 23:42 - 2018-04-22 23:42 - 001884616 _____ (Oracle Corporation) C:\Users\Paweł_2\AppData\Local\Temp\jre-8u171-windows-au.exe 2015-03-23 21:44 - 2014-03-25 00:55 - 000099096 _____ () C:\Users\Paweł_2\AppData\Local\Temp\LMkRstPt.exe 2017-12-30 12:39 - 2018-03-24 01:05 - 000880024 _____ (NVIDIA Corporation) C:\Users\Paweł_2\AppData\Local\Temp\nvSCPAPI64.dll 2018-04-26 14:50 - 2017-10-27 18:06 - 000370296 _____ (NVIDIA Corporation) C:\Users\Paweł_2\AppData\Local\Temp\nvStInst.exe 2015-09-23 10:33 - 2009-12-04 02:01 - 000076560 _____ (Microsoft Corporation) C:\Users\Paweł_2\AppData\Local\Temp\setup.exe 2015-08-09 21:48 - 2015-08-09 21:48 - 024340680 _____ (Ubisoft) C:\Users\Paweł_2\AppData\Local\Temp\ubiC03B.tmp.exe 2015-12-20 20:03 - 2015-12-20 20:03 - 013977352 _____ (Microsoft Corporation) C:\Users\Paweł_2\AppData\Local\Temp\vcredist_2015_Update_1_x86.exe 2017-03-19 17:08 - 2017-03-19 17:08 - 014773216 _____ (Microsoft Corporation) C:\Users\Paweł_2\AppData\Local\Temp\vcredist_x64.exe 2015-10-29 20:02 - 2007-01-20 03:46 - 000455600 ____R (Macrovision Corporation) C:\Users\Paweł_2\AppData\Local\Temp\_is1D07.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-06-04 12:35 ==================== Koniec FRST.txt ============================