Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 21.01.2018 Uruchomiony przez Radek (administrator) DESKTOP-2SUVB3J (27-01-2018 10:59:10) Uruchomiony z C:\Users\Radek\Desktop Załadowane profile: Radek (Dostępne profile: Radek) Platform: Windows 10 Home Wersja 1703 15063.250 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe () C:\Windows\jmesoft\Service.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler.exe (Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.7\GoogleCrashHandler64.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Cisco Systems, Inc.) C:\Program Files\Immunet\6.0.8\sfc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Microsoft Corporation) C:\Windows\System32\wlanext.exe (MSI) C:\Windows\SysWOW64\muachost.exe (CyberLink Corp.) C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe (Lenovo) C:\Windows\jmesoft\hotkey.exe (Immunet) C:\Program Files\Immunet\6.0.8\iptray.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AdobeGCClient.exe (TeamSpeak Systems GmbH) C:\Program Files\TeamSpeak 3 Client\ts3client_win64.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.Device.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-06-23] (Intel Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18381792 2017-06-29] (Realtek Semiconductor) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated) HKLM-x32\...\Run: [CLMLServer] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc.exe [103720 2009-12-04] (CyberLink) HKLM-x32\...\Run: [jmekey] => C:\Windows\jmesoft\hotkey.exe [118784 2013-07-24] (Lenovo) HKLM-x32\...\Run: [RazerCortex] => C:\Program Files (x86)\Razer\Razer Cortex\CortexLauncher.exe [222160 2016-09-28] (Razer Inc.) HKLM-x32\...\Run: [CancelAutoPlay_df] => C:\Program Files (x86)\Hostless Modem\USB device MF63\CancelAutoPlay_df.exe [446208 2013-08-28] () HKLM-x32\...\Run: [jmesoft] => C:\Windows\jmesoft\ServiceLoader.exe [28672 2011-08-16] () HKLM-x32\...\Run: [CheckNDISPortF0acE3] => C:\Program Files (x86)\Hostless Modem\USB device MF63\CheckNDISPort_df.exe [459008 2013-08-28] () HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-07-13] (Adobe Systems Incorporated) HKLM-x32\...\Run: [Immunet Protect] => C:\Program Files\Immunet\6.0.8\iptray.exe [3844288 2018-01-26] (Immunet) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3111712 2017-12-15] (Valve Corporation) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27716568 2017-05-03] (Skype Technologies S.A.) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [GG] => C:\Users\Radek\AppData\Local\GG\Application\gghub.exe [4078144 2016-07-04] (GG Network S.A.) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [VPN Unlimited] => C:\Program Files (x86)\VPN Unlimited\vpn-unlimited-launcher.exe [398168 2017-05-18] (KeepSolid Inc.) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [FACEIT] => C:\Program Files\FACEIT\FACEIT.exe [81046232 2017-10-31] (FACEIT Ltd.) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\Run: [Screenpresso] => C:\Users\Radek\AppData\Local\Learnpulse\Screenpresso\Screenpresso.exe [13275200 2017-12-18] (Learnpulse) HKU\S-1-5-21-2421068207-1365740216-3391458864-1001\...\RunOnce: [FlashPlayerUpdate] => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_27_0_0_183_pepper.exe [1319424 2017-10-27] (Adobe Systems Incorporated) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{292fe138-47b7-4643-b8e9-e7d6167539a1}: [DhcpNameServer] 192.168.8.1 192.168.8.1 Tcpip\..\Interfaces\{af86434f-ed6a-4a60-84f1-a88e353a39b9}: [DhcpNameServer] 192.168.43.1 Tcpip\..\Interfaces\{b88ef633-967c-4ce0-8922-60475a172cd1}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{e62feb7e-01ae-40a5-abc8-db89582fa9e9}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_112\bin\ssv.dll [2016-12-21] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_112\bin\jp2ssv.dll [2016-12-21] (Oracle Corporation) Toolbar: HKLM - Brak nazwy - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - Brak pliku Toolbar: HKLM-x32 - Brak nazwy - {B821BF60-5C2D-41EB-92DC-3E4CCD3A22E4} - Brak pliku FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\dtplugin\npDeployJava1.dll [2016-12-21] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.112.2 -> C:\Program Files\Java\jre1.8.0_112\bin\plugin2\npjp2.dll [2016-12-21] (Oracle Corporation) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-07-13] (Adobe Systems) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2017-09-16] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2017-09-16] (NVIDIA Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.7\npGoogleUpdate3.dll [2017-11-13] (Google Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-07-13] (Adobe Systems) Chrome: ======= CHR Profile: C:\Users\Radek\AppData\Local\Google\Chrome\User Data\Default [2018-01-27] CHR Extension: (Social Blade) - C:\Users\Radek\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfidkbgamfhdgmedldkagjopnbobdmdn [2018-01-27] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Radek\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-12-14] CHR Extension: (Chrome Media Router) - C:\Users\Radek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-12-14] CHR Profile: C:\Users\Radek\AppData\Local\Google\Chrome\User Data\System Profile [2017-12-14] Opera: ======= StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S4 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [814688 2017-07-13] (Adobe Systems Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2257016 2017-08-23] (Adobe Systems, Incorporated) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6971400 2018-01-10] () S3 EasyAntiCheat; C:\WINDOWS\SysWOW64\EasyAntiCheat.exe [382504 2017-11-23] (EasyAntiCheat Ltd) S2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-06-23] (Intel Corporation) R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [68408 2017-11-12] (Lenovo Group Limited) R2 ImmunetProtect_6.0.8; C:\Program Files\Immunet\6.0.8\sfc.exe [1250880 2018-01-26] (Cisco Systems, Inc.) R2 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223520 2015-07-10] (Intel Corporation) R2 JME Keyboard; C:\Windows\jmesoft\Service.exe [32768 2011-08-16] () [Brak podpisu cyfrowego] S2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [54200 2016-05-27] (Micro-Star INT'L CO., LTD.) S3 npggsvc; C:\WINDOWS\SysWOW64\GameMon.des [7987104 2017-04-10] (INCA Internet Co., Ltd.) S4 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2017-07-19] () S4 RzKLService; C:\Program Files (x86)\Razer\Razer Cortex\RzKLService.exe [133376 2016-09-28] (Razer Inc.) S3 scan; C:\Program Files\Immunet\tetra\scan.dll [652568 2018-01-26] (Bitdefender) S4 VPNUnlimitedService; C:\Program Files (x86)\VPN Unlimited\vpn-unlimited-daemon.exe [62296 2017-05-18] (KeepSolid Inc.) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugin" ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 bcmfn; C:\WINDOWS\System32\drivers\bcmfn.sys [9728 2015-10-30] (Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego] S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-05-05] (Disc Soft Ltd) S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-05-05] (Disc Soft Ltd) S3 EagleX64; C:\WINDOWS\system32\drivers\EagleX64.sys [140088 2017-11-24] (AhnLab, Inc.) R0 FACEIT; C:\WINDOWS\System32\Drivers\FACEIT.sys [9087480 2017-11-23] () R3 GeneStor; C:\WINDOWS\system32\DRIVERS\GeneStor.sys [188840 2015-08-29] (GenesysLogic) S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (FINTEK Corp.) R2 ImmunetNetworkMonitorDriver; C:\WINDOWS\System32\Drivers\ImmunetNetworkMonitor.sys [119608 2018-01-26] (Cisco Systems, Inc.) R1 ImmunetProtectDriver; C:\WINDOWS\System32\Drivers\immunetprotect.sys [113976 2018-01-26] (Cisco Systems, Inc.) R1 ImmunetSelfProtectDriver; C:\WINDOWS\System32\Drivers\immunetselfprotect.sys [77624 2018-01-26] (Cisco Systems, Inc.) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_63f40b686fe9309f\nvlddmkm.sys [15619320 2017-09-18] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48248 2017-09-16] (NVIDIA Corporation) S3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57976 2017-09-16] (NVIDIA Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1009128 2017-08-20] (Realtek ) R3 RtkBtFilter; C:\WINDOWS\system32\DRIVERS\RtkBtfilter.sys [598784 2015-06-15] (Realtek Semiconductor Corporation) R3 RTWlanE; C:\WINDOWS\system32\DRIVERS\rtwlane.sys [6382080 2016-11-11] (Realtek Semiconductor Corporation ) S3 rzendpt; C:\WINDOWS\System32\drivers\rzendpt.sys [52240 2016-10-30] (Razer Inc) R2 rzpmgrk; C:\WINDOWS\system32\drivers\rzpmgrk.sys [45752 2017-07-19] (Razer, Inc.) R2 rzpnk; C:\WINDOWS\system32\drivers\rzpnk.sys [139704 2017-08-19] (Razer, Inc.) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2016-10-18] () R3 Trufos; C:\WINDOWS\System32\Drivers\trufos.sys [442848 2018-01-26] (BitDefender S.R.L.) R3 VBAudioVACMME; C:\WINDOWS\system32\DRIVERS\vbaudio_cable64_win7.sys [41192 2014-09-02] (Windows (R) Win 7 DDK provider) R3 VBAudioVMVAIOMME; C:\WINDOWS\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2017-08-05] (Windows (R) Win 7 DDK provider) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] ("CyberLink) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-01-27 10:59 - 2018-01-27 11:00 - 000015671 _____ C:\Users\Radek\Desktop\FRST.txt 2018-01-27 10:56 - 2018-01-27 10:56 - 000000000 ___HD C:\Users\Public\Documents\AdobeGC 2018-01-26 20:09 - 2018-01-27 11:00 - 000000000 ____D C:\Program Files\Immunet 2018-01-26 20:09 - 2018-01-26 20:09 - 000442848 _____ (BitDefender S.R.L.) C:\WINDOWS\system32\Drivers\trufos.sys 2018-01-26 20:09 - 2018-01-26 20:09 - 000119608 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\ImmunetNetworkMonitor.sys 2018-01-26 20:09 - 2018-01-26 20:09 - 000113976 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\immunetprotect.sys 2018-01-26 20:09 - 2018-01-26 20:09 - 000077624 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\immunetselfprotect.sys 2018-01-26 20:09 - 2018-01-26 20:09 - 000071088 _____ (Cisco Systems, Inc.) C:\WINDOWS\system32\Drivers\ImmunetUtilDriver.sys 2018-01-26 20:09 - 2018-01-26 20:09 - 000000961 _____ C:\Users\Public\Desktop\Immunet.lnk 2018-01-26 20:09 - 2018-01-26 20:09 - 000000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ImmunetNetworkMonitor_01009.Wdf 2018-01-26 20:09 - 2018-01-26 20:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Immunet 2018-01-26 20:07 - 2018-01-26 20:09 - 000000000 ____D C:\ProgramData\Immunet 2018-01-26 18:15 - 2018-01-26 19:16 - 000000068 _____ C:\Users\Radek\Desktop\WIWW.txt 2018-01-26 17:58 - 2018-01-13 16:24 - 000000000 ____D C:\Users\Radek\Desktop\KairosMT2.pl - Oficjalny client 2018-01-26 17:55 - 2018-01-26 17:57 - 1628232878 _____ C:\Users\Radek\Desktop\KairosMT2.pl - Oficjalny client.rar 2018-01-26 17:44 - 2018-01-26 17:46 - 000008475 _____ C:\Users\Radek\Desktop\Fixlog.txt 2018-01-26 16:39 - 2018-01-27 10:59 - 000000000 ____D C:\FRST 2018-01-26 16:39 - 2018-01-26 16:39 - 002393088 _____ (Farbar) C:\Users\Radek\Desktop\FRST64.exe 2018-01-26 16:28 - 2018-01-26 16:28 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigndab4fb93fa9aa792 2018-01-26 16:27 - 2018-01-26 16:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign832e845475168bd7 2018-01-26 16:27 - 2018-01-26 16:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign52157dd98047053b 2018-01-26 16:27 - 2018-01-26 16:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign3843c498fb804ccb 2018-01-26 16:14 - 2018-01-26 17:56 - 000000000 ____D C:\AdwCleaner 2018-01-26 15:31 - 2018-01-26 15:31 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign9c30f609e69e5ee5 2018-01-26 15:30 - 2018-01-26 15:30 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8240510118760559 2018-01-26 15:27 - 2018-01-26 15:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign9ff526f73ba3bdb3 2018-01-26 15:27 - 2018-01-26 15:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8effc523bc6d1268 2018-01-26 15:27 - 2018-01-26 15:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign633a2a52e52b3c0f 2018-01-26 15:26 - 2018-01-26 15:26 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign89a0da14503ebe0f 2018-01-26 15:26 - 2018-01-26 15:26 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign70e8bd2fbc2c39bc 2018-01-25 22:11 - 2018-01-25 22:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign4ae45f5a7aca7454 2018-01-25 22:11 - 2018-01-25 22:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign2c1ee220b150164d 2018-01-25 22:10 - 2018-01-25 22:10 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignf6506a0e78e9cddb 2018-01-25 22:10 - 2018-01-25 22:10 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8558d0fc87ba898d 2018-01-25 22:10 - 2018-01-25 22:10 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign0a7f7e3582b1f716 2018-01-25 19:40 - 2018-01-25 19:40 - 000000036 _____ C:\Users\Radek\Desktop\TS.txt 2018-01-25 17:04 - 2018-01-25 17:04 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign07613a962ddbd8d3 2018-01-25 16:59 - 2018-01-25 16:59 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign5e5df5d4ea118753 2018-01-25 16:59 - 2018-01-25 16:59 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign35ce492958608de8 2018-01-25 16:58 - 2018-01-25 16:58 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignd65418f2fac2ac2e 2018-01-25 16:58 - 2018-01-25 16:58 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign4c28186803d2dd59 2018-01-25 16:57 - 2018-01-25 16:57 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign2cfb1f47fe4b0c0e 2018-01-25 16:57 - 2018-01-25 16:57 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign1956ec70645e2e14 2018-01-24 17:35 - 2018-01-25 19:21 - 000000115 _____ C:\Users\Radek\Desktop\WIN.txt 2018-01-22 23:12 - 2018-01-24 20:39 - 000000146 _____ C:\Users\Radek\Desktop\Kody na SM.txt 2018-01-20 17:11 - 2018-01-20 17:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignd88b15c6f25363e9 2018-01-20 17:11 - 2018-01-20 17:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigncadcd2fc0d24bc18 2018-01-20 17:11 - 2018-01-20 17:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign7085c4272c95f7df 2018-01-20 17:10 - 2018-01-20 17:10 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigne47d61129245403b 2018-01-20 17:10 - 2018-01-20 17:10 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign7c4fd0944c9121a9 2018-01-17 22:54 - 2018-01-17 22:54 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigne5502f7791b2b7e3 2018-01-17 22:54 - 2018-01-17 22:54 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigncab3a129711ffa34 2018-01-17 22:14 - 2018-01-17 22:14 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign362012a6307c6a66 2018-01-17 22:14 - 2018-01-17 22:14 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign26c05174bc3fcec1 2018-01-17 22:13 - 2018-01-17 22:13 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigndd19aab66b8d9c4c 2018-01-17 22:13 - 2018-01-17 22:13 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8fca2f2a933b91d7 2018-01-17 22:13 - 2018-01-17 22:13 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign881c90e6c6a33c16 2018-01-17 15:37 - 2018-01-17 15:37 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign1d2c649ac6a10f2d 2018-01-17 15:36 - 2018-01-17 15:43 - 000000000 ____D C:\Users\Radek\Desktop\JurgusPack 2018-01-17 15:36 - 2018-01-17 15:36 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignf4d7e54259e13496 2018-01-17 15:36 - 2018-01-17 15:36 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign9a47b1b66fe13a41 2018-01-17 15:36 - 2018-01-17 15:36 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign37d6066ab0bc7988 2018-01-16 14:18 - 2018-01-16 14:18 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign13c2dd105f5209c4 2018-01-16 14:15 - 2018-01-16 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign47dc2bc78c027a5b 2018-01-16 14:15 - 2018-01-16 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign0c92cae0018ec894 2018-01-16 14:15 - 2018-01-16 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign0b1501570d5fe5de 2018-01-16 14:11 - 2018-01-16 14:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigna9434d9abcb1eec3 2018-01-16 14:11 - 2018-01-16 14:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8a6b2ca2d8ec36bf 2018-01-16 14:11 - 2018-01-16 14:11 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign08a36e3b369b14df 2018-01-12 18:30 - 2018-01-12 18:30 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignd7fe343934f06542 2018-01-12 18:30 - 2018-01-12 18:30 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignc1e9bcc438dd9587 2018-01-12 18:30 - 2018-01-12 18:30 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign9eb480eac670e08c 2018-01-12 12:17 - 2018-01-12 12:17 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign3d5e83f32e2e2bf2 2018-01-12 12:17 - 2018-01-12 12:17 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign3607b1621a54fd61 2018-01-12 11:55 - 2018-01-12 11:55 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigncbbcabc5a761d037 2018-01-12 11:52 - 2018-01-12 11:52 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigna481da9ccfbcad1b 2018-01-12 11:52 - 2018-01-12 11:52 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign7c56fe37da32696f 2018-01-12 11:52 - 2018-01-12 11:52 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign69c1cf33aa39e400 2018-01-12 11:52 - 2018-01-12 11:52 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign05f027b744673938 2018-01-10 20:56 - 2018-01-10 01:54 - 000000231 ___SH C:\Users\Public\Libraries.ini 2018-01-10 18:27 - 2018-01-10 18:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigna4056ee8ea5d0d69 2018-01-10 18:27 - 2018-01-10 18:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8334bad6ca78ceb3 2018-01-10 18:27 - 2018-01-10 18:27 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign52e5db7f58b1ef3e 2018-01-10 18:26 - 2018-01-10 18:26 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigne9c6d1cb7f91a3c0 2018-01-10 18:26 - 2018-01-10 18:26 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignb55aa8915d03c9d6 2018-01-08 18:45 - 2018-01-08 18:45 - 000000000 ____D C:\ProgramData\Twitch 2018-01-07 22:43 - 2018-01-07 22:43 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignfad690d36032e951 2018-01-07 22:43 - 2018-01-07 22:43 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignc3c6497436a658e9 2018-01-07 22:43 - 2018-01-07 22:43 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign23b78f695f654bcb 2018-01-07 22:42 - 2018-01-07 22:42 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign82d5978c08d6ae37 2018-01-07 22:42 - 2018-01-07 22:42 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign067961b21ce9d5bb 2018-01-06 19:49 - 2018-01-06 19:53 - 000000000 ____D C:\Users\Radek\AppData\LocalLow\Daybreak Game Company 2018-01-06 19:49 - 2018-01-06 19:49 - 000000000 ____D C:\Users\Radek\AppData\Local\SCE 2018-01-06 19:49 - 2018-01-06 19:49 - 000000000 ____D C:\Users\Radek\AppData\Local\Daybreak Game Company 2018-01-06 14:16 - 2018-01-06 14:16 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigne4459d982b13c39b 2018-01-06 14:16 - 2018-01-06 14:16 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign2501d108d856941e 2018-01-06 14:15 - 2018-01-06 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignbc78705013a80460 2018-01-06 14:15 - 2018-01-06 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignb92816e695e5c0c6 2018-01-06 14:15 - 2018-01-06 14:15 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign6d0eb994560ec9fe 2018-01-04 18:20 - 2018-01-04 18:20 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8583af7bccfff1ad 2018-01-04 18:20 - 2018-01-04 18:20 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign5e038d7dd08b3c69 2018-01-04 18:20 - 2018-01-04 18:20 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign15e2303d2c2e9b7b 2018-01-04 18:19 - 2018-01-04 18:19 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigne2ac910b25a8126e 2018-01-04 18:19 - 2018-01-04 18:19 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignbae4286047764866 2018-01-02 23:16 - 2018-01-02 23:16 - 000000000 ____D C:\ProgramData\HP 2018-01-02 18:39 - 2018-01-02 18:39 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsignb1bf04d3fd38d049 2018-01-02 18:39 - 2018-01-02 18:39 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign466c461f66861ab4 2018-01-02 18:39 - 2018-01-02 18:39 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign307a4114dc2223b9 2018-01-02 18:38 - 2018-01-02 18:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign803bd9092aed1361 2018-01-02 18:38 - 2018-01-02 18:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign312bb07a35096884 2017-12-31 15:55 - 2017-12-31 15:55 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigna6b6314e1150bbfd 2017-12-31 15:38 - 2017-12-31 15:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign93da491e1d138e0d 2017-12-31 15:38 - 2017-12-31 15:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign628ec8d613e127f7 2017-12-31 15:38 - 2017-12-31 15:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign4d5db8a4dceaa2ef 2017-12-31 15:38 - 2017-12-31 15:38 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign05a4e1d65fd89d0e 2017-12-31 15:37 - 2017-12-31 15:37 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign6a8c1f03bc20ea33 2017-12-31 15:37 - 2017-12-31 15:37 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign676a20b39f63f5b4 2017-12-29 11:43 - 2017-12-29 11:43 - 000002119 _____ C:\Users\Public\Desktop\Action!.lnk 2017-12-28 23:46 - 2017-12-28 23:46 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign7379c1cbd224efe6 2017-12-28 23:46 - 2017-12-28 23:46 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign63f9467b37c9ff6e 2017-12-28 18:59 - 2017-12-28 18:59 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsigndec89dd11c77f633 2017-12-28 18:59 - 2017-12-28 18:59 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign7af9efb935916b23 2017-12-28 18:59 - 2017-12-28 18:59 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign45b3f58577ae4545 2017-12-28 18:58 - 2017-12-28 18:58 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign8a12ae99f0601b75 2017-12-28 18:58 - 2017-12-28 18:58 - 000000000 ____D C:\Users\Radek\AppData\Local\Tempzxpsign69cdc68b4c33dc9e ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-01-27 10:58 - 2016-11-16 13:22 - 000849474 _____ C:\WINDOWS\system32\InstallUtil.InstallLog 2018-01-27 10:57 - 2017-02-04 21:17 - 000000000 ____D C:\Users\Radek\AppData\Roaming\TS3Client 2018-01-27 10:56 - 2017-08-17 10:54 - 000000000 ____D C:\Users\Radek\AppData\Local\Adobe 2018-01-27 10:55 - 2017-04-27 23:38 - 000004226 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{404ABE89-A0CA-49A3-B5A6-ED0EBB41FB54} 2018-01-26 23:12 - 2017-08-05 22:15 - 000004544 _____ C:\Users\Radek\AppData\Roaming\VoiceMeeterDefault.xml 2018-01-26 23:12 - 2017-04-27 23:23 - 000000000 ____D C:\Users\Radek 2018-01-26 23:12 - 2017-04-27 23:18 - 000000000 ____D C:\ProgramData\NVIDIA 2018-01-26 23:11 - 2017-08-30 00:58 - 000000000 ____D C:\Users\Radek\AppData\Local\osu! 2018-01-26 23:10 - 2016-10-15 18:39 - 000000000 ____D C:\Program Files (x86)\Steam 2018-01-26 19:52 - 2017-05-03 12:34 - 000000000 ____D C:\Users\Radek\AppData\Roaming\obs-studio 2018-01-26 19:45 - 2016-12-23 16:33 - 000000000 ____D C:\Users\Radek\AppData\Roaming\GG 2018-01-26 17:47 - 2017-04-27 23:38 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2018-01-26 17:47 - 2017-04-27 23:14 - 000393384 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2018-01-26 17:46 - 2017-03-18 12:40 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2018-01-26 17:46 - 2017-01-29 13:23 - 000000000 ____D C:\Program Files (x86)\Panda Security 2018-01-26 17:44 - 2017-05-27 13:41 - 000000000 ___RD C:\Users\Radek\Desktop\Główny 2018-01-26 17:34 - 2017-03-18 22:03 - 000000000 ____D C:\WINDOWS\system32\NDF 2018-01-26 17:32 - 2017-11-09 17:17 - 000000000 ____D C:\Users\Radek\Desktop\ALLSTREAM 2018-01-26 16:57 - 2017-04-23 09:12 - 000000000 ___HD C:\$GetCurrent 2018-01-26 16:55 - 2017-01-29 13:20 - 000000000 ____D C:\ProgramData\Panda Security 2018-01-26 16:54 - 2017-03-18 22:01 - 000000000 ____D C:\WINDOWS\INF 2018-01-26 16:54 - 2017-01-29 13:23 - 000000000 ____D C:\Users\Radek\AppData\Roaming\Panda Security 2018-01-26 16:54 - 2015-07-10 12:04 - 000000000 ____D C:\WINDOWS\system32\GroupPolicy 2018-01-26 16:52 - 2016-10-15 23:03 - 000000000 ____D C:\Users\Radek\AppData\Local\CrashDumps 2018-01-26 15:58 - 2017-10-05 13:31 - 000000000 ____D C:\ProgramData\panda_url_filtering 2018-01-26 15:11 - 2017-04-27 23:38 - 000000000 ____D C:\WINDOWS\System32\Tasks\Lenovo 2018-01-26 15:11 - 2016-10-15 19:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo 2018-01-26 15:11 - 2016-01-15 19:18 - 000000000 ____D C:\Program Files\Lenovo 2018-01-26 15:11 - 2016-01-15 19:14 - 000000000 ____D C:\ProgramData\Lenovo 2018-01-25 16:04 - 2017-07-01 16:56 - 000000000 ____D C:\Users\Radek\AppData\Local\Mirillis 2018-01-24 20:11 - 2017-11-25 19:58 - 000004000 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1511636315 2018-01-24 20:11 - 2017-11-25 19:58 - 000001085 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2018-01-24 20:11 - 2017-08-24 19:16 - 000000000 ____D C:\Program Files\Opera 2018-01-23 23:12 - 2017-04-27 23:14 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2018-01-23 20:48 - 2017-02-04 21:32 - 000000168 _____ C:\Users\Radek\Documents\ClownfishForTeamspeak.ini 2018-01-22 19:23 - 2017-07-07 16:53 - 000000000 ____D C:\Users\Radek\Desktop\PangeaYt2 2018-01-19 20:25 - 2016-11-15 21:09 - 000000000 ____D C:\Users\Radek\AppData\Roaming\.minecraft 2018-01-19 16:58 - 2017-05-20 19:25 - 000000000 ____D C:\Users\Radek\AppData\Local\Battle.net 2018-01-19 16:58 - 2017-05-20 19:23 - 000000000 ____D C:\Program Files (x86)\Blizzard App 2018-01-18 21:59 - 2017-12-22 20:30 - 000000015 _____ C:\Users\Radek\Desktop\57186.txt 2018-01-18 19:05 - 2017-12-10 20:05 - 000000000 ____D C:\Program Files (x86)\Tamidia 2018-01-14 22:29 - 2017-01-15 18:59 - 000000000 ____D C:\Users\Radek\AppData\Roaming\Skype 2018-01-14 17:55 - 2017-10-20 05:49 - 876264087 _____ C:\WINDOWS\MEMORY.DMP 2018-01-14 17:55 - 2017-05-27 10:48 - 000000000 ____D C:\WINDOWS\Minidump 2018-01-11 20:21 - 2017-05-21 19:16 - 000000000 ____D C:\Program Files (x86)\Overwatch 2018-01-10 20:53 - 2016-10-15 22:12 - 000000000 ____D C:\Users\Radek\AppData\Local\NVIDIA Corporation 2018-01-10 20:52 - 2017-09-29 17:13 - 000000000 ____D C:\Users\Radek\AppData\Local\UnrealEngine 2018-01-08 14:25 - 2017-02-24 17:53 - 000000000 ____D C:\Users\Radek\AppData\Roaming\Glador 2018-01-07 16:01 - 2017-07-14 14:05 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server 2018-01-07 09:40 - 2017-03-18 21:51 - 000000000 ____D C:\WINDOWS\CbsTemp 2018-01-06 10:31 - 2016-10-15 18:38 - 000002285 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-01-03 20:29 - 2016-10-21 14:31 - 000788760 _____ C:\WINDOWS\system32\Drivers\EasyAntiCheat.sys ==================== Pliki w katalogu głównym wybranych folderów ======= 2017-08-05 22:15 - 2018-01-26 23:12 - 000004544 _____ () C:\Users\Radek\AppData\Roaming\VoiceMeeterDefault.xml 2017-02-03 02:18 - 2017-02-03 11:04 - 000000147 _____ () C:\Users\Radek\AppData\Local\Autosofted License.txt 2017-12-03 22:52 - 2017-12-03 22:52 - 000001230 _____ () C:\Users\Radek\AppData\Local\recently-used.xbel ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-01-17 15:48 ==================== Koniec FRST.txt ============================