Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 09.12.2018 Uruchomiony przez Azorek (administrator) AZORUNIA (12-12-2018 14:43:39) Uruchomiony z E:\Radek\Do uporządkowania\Dokumenty\Nowy folder (13)\programy\Bezpieczeństwo Załadowane profile: Azorek & UpdatusUser (Dostępne profile: Azorek & UpdatusUser) Platform: Windows 8.1 Pro (Update) (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Opera) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgcsrva.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe () C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgidsagenta.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgwdsvca.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgnsa.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgemca.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Framework\Common\avguix.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgui.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksdeui.exe (AVG Technologies CZ, s.r.o.) C:\Program Files (x86)\AVG\Av\avgrsa.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera_crashreporter.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (Opera Software) C:\Users\Azorek\AppData\Local\Programs\Opera\57.0.3098.91\opera.exe (NirSoft) E:\Radek\Do uporządkowania\Dokumenty\Nowy folder (13)\programy\Bezpieczeństwo\hashmyfiles-x64\HashMyFiles.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7203032 2013-10-22] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-07] (Intel Corporation) HKLM-x32\...\Run: [AvgUi] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [218896 2016-09-13] (AVG Technologies CZ, s.r.o.) HKLM-x32\...\Run: [AVG_UI] => C:\Program Files (x86)\AVG\Framework\Common\avguirna.exe [218896 2016-09-13] (AVG Technologies CZ, s.r.o.) HKU\S-1-5-21-2849577091-2096956033-3286416302-1001\...\Run: [Kaspersky Software Updater] => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe [1565008 2018-04-23] (AO Kaspersky Lab) HKU\S-1-5-21-2849577091-2096956033-3286416302-1001\...\Run: [GUDelayStartup] => C:\Program Files (x86)\Glary Utilities 5\StartupManager.exe [43984 2018-12-07] (Glarysoft Ltd) BootExecute: autocheck autochk * GroupPolicy: Ograniczenia ? <==== UWAGA ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{C794EB27-1539-4E12-8597-10ADBB73B942}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{F5E0251B-3CE5-4E50-8978-DED12333D2B9}: [NameServer] 8.8.8.8,8.8.4.4 Internet Explorer: ================== URLSearchHook: [S-1-5-21-2849577091-2096956033-3286416302-1002] UWAGA => Brak domyślnego URLSearchHook FireFox: ======== FF Plugin: @videolan.org/vlc,version=3.0.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-08-10] (VideoLAN) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-16] (Intel Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-12-10] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-12-10] (Google Inc.) Chrome: ======= CHR Profile: C:\Users\Azorek\AppData\Local\Google\Chrome\User Data\Default [2018-12-10] CHR Extension: (YouTube) - C:\Users\Azorek\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-12-10] CHR Extension: (Gmail) - C:\Users\Azorek\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-12-10] Opera: ======= OPR Extension: (Avast Online Security) - C:\Users\Azorek\AppData\Roaming\Opera Software\Opera Stable\Extensions\daanglpcpkjjlkhcbladppjphglbigam [2018-12-10] OPR Extension: (SoundCloud MP3 Downloader) - C:\Users\Azorek\AppData\Roaming\Opera Software\Opera Stable\Extensions\gciapfhigacgngjcnmnadhikefhngooi [2018-12-10] OPR Extension: (uBlock Origin) - C:\Users\Azorek\AppData\Roaming\Opera Software\Opera Stable\Extensions\kccohkcpppjjkkjppopfnflnebibpida [2018-12-10] OPR Extension: (YouTube™ Downloader Lite) - C:\Users\Azorek\AppData\Roaming\Opera Software\Opera Stable\Extensions\njnemcgegcggpnfiamegohgfagecldcg [2018-12-10] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.01.02\atkexComSvc.exe [936728 2013-05-07] () S3 AvgAMPS; C:\Program Files (x86)\AVG\Av\avgamps.exe [647864 2016-11-02] (AVG Technologies CZ, s.r.o.) R2 AVGIDSAgent; C:\Program Files (x86)\AVG\Av\avgidsagenta.exe [5337696 2016-11-02] (AVG Technologies CZ, s.r.o.) R2 avgsvc; C:\Program Files (x86)\AVG\Framework\Common\avgsvca.exe [1149712 2016-09-13] (AVG Technologies CZ, s.r.o.) R2 avgwd; C:\Program Files (x86)\AVG\Av\avgwdsvca.exe [727512 2016-11-02] (AVG Technologies CZ, s.r.o.) S3 GoogleChromeElevationService; C:\Program Files (x86)\Google\Chrome\Application\71.0.3578.80\elevation_service.exe [443872 2018-11-30] (Google Inc.) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-07] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [747520 2013-08-27] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [828376 2013-08-27] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-16] (Intel Corporation) R2 KSDE3.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 3.0\ksde.exe [617016 2018-02-28] (AO Kaspersky Lab) R3 ksu; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Software Updater\kl_platf.exe [1565008 2018-04-23] (AO Kaspersky Lab) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [347880 2014-11-21] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2014-11-21] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2012-08-22] () S0 Avgboota; C:\Windows\System32\DRIVERS\avgboota.sys [21632 2016-01-07] (AVG Technologies CZ, s.r.o.) R1 Avgdiska; C:\Windows\System32\DRIVERS\avgdiska.sys [163072 2016-05-13] (AVG Technologies CZ, s.r.o.) R1 AVGIDSDriver; C:\Windows\System32\DRIVERS\avgidsdrivera.sys [312576 2016-10-17] (AVG Technologies CZ, s.r.o.) R0 AVGIDSHA; C:\Windows\System32\DRIVERS\avgidsha.sys [267008 2016-10-05] (AVG Technologies CZ, s.r.o.) R1 Avgldx64; C:\Windows\System32\DRIVERS\avgldx64.sys [267520 2016-10-19] (AVG Technologies CZ, s.r.o.) R0 Avgloga; C:\Windows\System32\DRIVERS\avgloga.sys [360736 2016-02-16] (AVG Technologies CZ, s.r.o.) R0 Avgmfx64; C:\Windows\System32\DRIVERS\avgmfx64.sys [254208 2016-09-26] (AVG Technologies CZ, s.r.o.) R0 Avgrkx64; C:\Windows\System32\DRIVERS\avgrkx64.sys [52992 2016-06-01] (AVG Technologies CZ, s.r.o.) R0 avguniva; C:\Windows\System32\DRIVERS\avguniva.sys [77056 2016-06-20] (AVG Technologies CZ, s.r.o.) R1 Avgwfpa; C:\Windows\system32\DRIVERS\avgwfpa.sys [313096 2016-08-04] (AVG Technologies CZ, s.r.o.) R1 GUBootStartup; C:\Windows\System32\drivers\GUBootStartup.sys [28936 2018-12-10] (Glarysoft Ltd) R3 kltap; C:\Windows\system32\DRIVERS\kltap.sys [48080 2018-02-12] (The OpenVPN Project) R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-16] (Intel Corporation) S3 trufos; C:\Windows\System32\drivers\trufos.sys [439576 2018-12-12] (BitDefender S.R.L.) S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [35856 2014-11-21] (Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [257880 2014-11-21] (Microsoft Corporation) S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [123224 2014-11-21] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-12 14:41 - 2018-12-12 14:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2018-12-12 14:41 - 2018-12-12 14:41 - 000000000 ____D C:\Program Files\7-Zip 2018-12-12 12:56 - 2018-12-12 12:56 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\AVG 2018-12-12 12:55 - 2018-12-12 12:55 - 000000912 _____ C:\Users\Public\Desktop\AVG Protection.lnk 2018-12-12 12:55 - 2018-12-12 12:55 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\TuneUp Software 2018-12-12 12:55 - 2018-12-12 12:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AVG 2018-12-12 12:53 - 2018-12-12 12:53 - 000000000 ___HD C:\$AVG 2018-12-12 12:52 - 2018-12-12 14:20 - 000000000 ____D C:\ProgramData\MFAData 2018-12-12 12:52 - 2018-12-12 12:53 - 000000000 ____D C:\Program Files (x86)\AVG 2018-12-12 12:52 - 2018-12-12 12:52 - 000003600 _____ C:\Windows\System32\Tasks\AVG EUpdate Task 2018-12-12 12:52 - 2018-12-12 12:52 - 000000000 ____D C:\Users\Azorek\AppData\Local\MFAData 2018-12-12 12:49 - 2018-12-12 12:55 - 000000000 ____D C:\Users\Azorek\AppData\Local\Avg 2018-12-12 12:49 - 2018-12-12 12:53 - 000000000 ____D C:\ProgramData\Avg 2018-12-12 12:49 - 2018-12-12 12:52 - 000000000 ____D C:\Users\Azorek\AppData\Local\AvgSetupLog 2018-12-12 00:34 - 2018-12-12 00:34 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\SecureAge Technology 2018-12-12 00:21 - 2018-12-12 00:21 - 000000000 ____D C:\ProgramData\ClamAV 2018-12-12 00:20 - 2018-12-12 11:30 - 000000000 ____D C:\Program Files\SecureAge 2018-12-12 00:20 - 2018-12-12 00:20 - 000000029 _____ C:\Windows\Lic.xxx 2018-12-12 00:20 - 2018-12-12 00:20 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\Everything 2018-12-12 00:19 - 2018-12-12 00:19 - 000655872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr90.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000632064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr80.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000572928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp90.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000554240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp80.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000439576 _____ (BitDefender S.R.L.) C:\Windows\system32\Drivers\trufos.sys 2018-12-12 00:19 - 2018-12-12 00:19 - 000176760 _____ (MicroWorld Technologies Inc.) C:\Windows\SysWOW64\eEmpty.exe 2018-12-12 00:19 - 2018-12-12 00:19 - 000000000 ____D C:\ProgramData\SecureAge Technology 2018-12-12 00:19 - 2018-12-12 00:19 - 000000000 ____D C:\ProgramData\MicroWorld 2018-12-11 18:50 - 2018-12-11 18:50 - 000000000 ____D C:\boot-repair 2018-12-11 18:37 - 2018-12-11 22:52 - 000000408 ____N C:\ProgramData\ntuser.pol 2018-12-11 15:49 - 2018-12-11 15:49 - 000000000 ____D C:\ProgramData\arcabit 2018-12-11 15:48 - 2018-12-11 15:48 - 000000000 ____D C:\Program Files (x86)\NoVirusThanks 2018-12-11 15:45 - 2018-12-11 16:04 - 000028272 _____ C:\Windows\system32\Drivers\truesight.sys 2018-12-11 03:12 - 2018-12-11 03:12 - 000579473 _____ C:\Users\Azorek\AppData\Local\census.cache 2018-12-11 03:11 - 2018-12-11 03:11 - 000278632 _____ C:\Users\Azorek\AppData\Local\ars.cache 2018-12-11 02:58 - 2018-12-11 02:58 - 000000010 _____ C:\Users\Azorek\AppData\Local\sponge.last.runtime.cache 2018-12-11 02:55 - 2018-12-11 02:55 - 000000000 ____D C:\Windows\Trend Micro 2018-12-11 02:55 - 2018-12-11 02:55 - 000000000 ____D C:\ProgramData\Trend Micro 2018-12-11 02:54 - 2018-12-11 02:54 - 000000036 _____ C:\Users\Azorek\AppData\Local\housecall.guid.cache 2018-12-11 02:54 - 2017-10-17 17:40 - 000334488 _____ (Trend Micro Inc.) C:\Windows\system32\Drivers\tmcomm.sys 2018-12-11 02:30 - 2018-12-12 14:43 - 000000000 ____D C:\FRST 2018-12-11 01:05 - 2018-12-11 01:09 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\vlc 2018-12-11 01:04 - 2018-12-11 01:04 - 000000887 _____ C:\Users\Public\Desktop\VLC media player.lnk 2018-12-11 01:04 - 2018-12-11 01:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2018-12-11 01:03 - 2018-12-11 01:03 - 000000000 ____D C:\Program Files\VideoLAN 2018-12-10 21:00 - 2018-12-10 21:02 - 000000000 ____D C:\AdwCleaner 2018-12-10 20:53 - 2018-12-10 20:56 - 000000000 ____D C:\Users\Azorek\Doctor Web 2018-12-10 20:53 - 2018-12-10 20:53 - 000000000 ____D C:\ProgramData\Doctor Web 2018-12-10 20:51 - 2018-12-10 20:51 - 056110320 _____ (Google Inc.) C:\Users\Azorek\Downloads\Google_Chrome_(64bit)_v71.0.3578.80.exe 2018-12-10 20:49 - 2018-12-10 20:49 - 181954400 _____ C:\Users\Azorek\Downloads\kypo76ty.exe 2018-12-10 20:42 - 2018-12-10 20:42 - 000001108 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5.lnk 2018-12-10 20:42 - 2018-12-10 20:42 - 000001096 _____ C:\Users\Public\Desktop\Glary Utilities 5.lnk 2018-12-10 20:41 - 2018-12-10 20:45 - 000000000 ____D C:\Program Files (x86)\Glary Utilities 5 2018-12-10 20:41 - 2018-12-10 20:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Glary Utilities 5 2018-12-10 20:41 - 2018-12-10 20:41 - 000028936 _____ (Glarysoft Ltd) C:\Windows\system32\Drivers\GUBootStartup.sys 2018-12-10 20:41 - 2018-12-10 20:41 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\GlarySoft 2018-12-10 20:41 - 2018-12-10 20:41 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\DiskDefrag 2018-12-10 20:18 - 2018-12-10 20:18 - 017432216 _____ (Glarysoft Ltd) C:\Users\Azorek\Downloads\gu5setup.exe 2018-12-10 19:10 - 2018-12-10 19:10 - 000000000 ____D C:\Users\Azorek\AppData\Local\CEF 2018-12-10 19:08 - 2018-12-10 19:08 - 000001253 _____ C:\Users\Public\Desktop\Kaspersky Software Updater.lnk 2018-12-10 19:07 - 2018-12-10 19:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Software Updater 2018-12-10 19:06 - 2018-12-10 19:06 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files 2018-12-10 18:55 - 2018-11-27 02:33 - 000592416 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe 2018-12-10 18:46 - 2018-12-12 12:55 - 000000000 ____D C:\Program Files\Common Files\AV 2018-12-10 18:46 - 2018-12-10 18:46 - 000001204 _____ C:\Users\Public\Desktop\Kaspersky Secure Connection.lnk 2018-12-10 18:46 - 2018-12-10 18:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection 2018-12-10 18:43 - 2018-12-12 14:20 - 000000000 ____D C:\ProgramData\Kaspersky Lab 2018-12-10 18:43 - 2018-12-12 12:50 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab 2018-12-10 18:43 - 2018-12-10 18:44 - 003044920 _____ (Kaspersky Lab) C:\Users\Azorek\Downloads\ksu2.0.1.65en_ru_de_pl_es_cs_nl_it_fr_zh-hans_pt_ko_zh-hant_tr_ar_vi_id_fa_hi_14198.exe 2018-12-10 18:42 - 2018-12-10 18:42 - 002545888 _____ (Kaspersky Lab) C:\Users\Azorek\Downloads\kfa19.0.0.1088abpl_15119.exe 2018-12-10 18:26 - 2018-12-10 18:26 - 000001037 _____ C:\Users\Public\Desktop\Hasleo WinToUSB.lnk 2018-12-10 18:26 - 2018-12-10 18:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hasleo WinToUSB 2018-12-10 18:26 - 2018-12-10 18:26 - 000000000 ____D C:\Program Files\Hasleo 2018-12-10 18:04 - 2018-12-10 18:06 - 1999503360 _____ C:\Users\Azorek\Downloads\ubuntu-18.10-desktop-amd64.iso 2018-12-10 18:03 - 2018-12-10 18:03 - 005707870 _____ (Hasleo Software. ) C:\Users\Azorek\Downloads\WinToUSB_Free.exe 2018-12-10 17:59 - 2018-12-10 17:59 - 000004104 _____ C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1544461169 2018-12-10 17:59 - 2018-12-10 17:59 - 000001306 _____ C:\Users\Azorek\Desktop\Przeglądarka Opera.lnk 2018-12-10 17:59 - 2018-12-10 17:59 - 000001306 _____ C:\Users\Azorek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2018-12-10 17:59 - 2018-12-10 17:59 - 000000000 ____D C:\Users\Azorek\AppData\Local\Opera Software 2018-12-10 17:58 - 2018-12-10 17:58 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\Opera Software 2018-12-10 17:57 - 2018-12-10 17:57 - 001969208 _____ (Opera Software) C:\Users\Azorek\Downloads\OperaSetup.exe 2018-12-10 17:56 - 2018-12-10 17:56 - 000000020 ___SH C:\Users\UpdatusUser\ntuser.ini 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Ustawienia lokalne 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Szablony 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Moje dokumenty 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Menu Start 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Moje wideo 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Moje obrazy 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Documents\Moja muzyka 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\Dane aplikacji 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Historia 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 _SHDL C:\Users\UpdatusUser\AppData\Local\Dane aplikacji 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 ____D C:\Users\UpdatusUser 2018-12-10 17:56 - 2018-12-10 17:56 - 000000000 ____D C:\Program Files (x86)\AGEIA Technologies 2018-12-10 17:56 - 2014-11-21 00:11 - 000000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2018-12-10 17:56 - 2014-11-21 00:11 - 000000369 _____ C:\Users\UpdatusUser\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2018-12-10 17:56 - 2012-12-19 06:42 - 000031672 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2018-12-10 17:56 - 2012-12-19 06:41 - 000194488 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2018-12-10 17:56 - 2012-12-18 09:31 - 001510328 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2018-12-10 17:55 - 2018-12-10 17:56 - 000000000 ____D C:\ProgramData\NVIDIA 2018-12-10 17:55 - 2017-11-09 05:06 - 000540600 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2018-12-10 17:55 - 2017-11-09 05:06 - 000446392 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 006398240 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 003477280 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 002555680 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 001016096 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 000877856 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe 2018-12-10 17:55 - 2013-03-15 05:16 - 000237856 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 000076064 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2018-12-10 17:55 - 2013-03-15 05:16 - 000063776 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2018-12-10 17:55 - 2013-03-13 17:24 - 003065455 _____ C:\Windows\system32\nvcoproc.bin 2018-12-10 17:54 - 2018-12-10 17:56 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-12-10 17:54 - 2018-12-10 17:54 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-12-10 17:54 - 2017-11-09 03:57 - 000046182 _____ C:\Windows\system32\nvinfo.pb 2018-12-10 17:54 - 2013-03-15 06:53 - 001807136 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6431422.dll 2018-12-10 17:54 - 2013-03-15 06:53 - 001510176 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6431422.dll 2018-12-10 17:52 - 2018-12-10 17:56 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-12-10 16:44 - 2018-12-10 16:44 - 001760416 _____ C:\Windows\SysWOW64\PerfStringBackup.INI 2018-12-10 16:44 - 2018-12-10 16:44 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\Intel Corporation 2018-12-10 16:43 - 2018-12-10 16:43 - 000000000 ____D C:\Users\Azorek\Intel 2018-12-10 16:43 - 2018-12-10 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel 2018-12-10 16:43 - 2018-12-10 16:43 - 000000000 ____D C:\ProgramData\Intel 2018-12-10 16:43 - 2018-12-10 16:43 - 000000000 ____D C:\Program Files\Intel 2018-12-10 16:43 - 2013-09-16 12:17 - 000016344 _____ (Intel Corporation) C:\Windows\system32\Drivers\IntelMEFWVer.dll 2018-12-10 16:42 - 2018-12-10 16:42 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_TeeDriverx64_01011.Wdf 2018-12-10 16:42 - 2013-09-16 12:17 - 001795952 _____ (Microsoft Corporation) C:\Windows\system32\WdfCoInstaller01011.dll 2018-12-10 16:42 - 2013-09-16 12:17 - 000099288 _____ (Intel Corporation) C:\Windows\system32\Drivers\TeeDriverx64.sys 2018-12-10 16:41 - 2013-07-26 08:07 - 000827096 _____ (Realtek ) C:\Windows\system32\Drivers\Rt630x64.sys 2018-12-10 16:41 - 2013-07-26 08:07 - 000074456 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll 2018-12-10 16:38 - 2018-12-10 16:38 - 000000000 ____N C:\ProgramData\DP45977C.lfl 2018-12-10 16:38 - 2018-12-10 16:38 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2018-12-10 16:38 - 2018-12-10 16:38 - 000000000 ____D C:\Program Files\Realtek 2018-12-10 16:37 - 2018-12-10 16:42 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2018-12-10 16:37 - 2018-12-10 16:41 - 000000000 ____D C:\Program Files (x86)\Realtek 2018-12-10 16:37 - 2018-12-10 16:38 - 000000000 ___HD C:\Program Files (x86)\Temp 2018-12-10 16:37 - 2013-10-22 13:38 - 003692632 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys 2018-12-10 16:37 - 2013-10-22 10:40 - 000673037 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT 2018-12-10 16:37 - 2013-10-22 10:11 - 000151256 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll 2018-12-10 16:37 - 2013-10-22 02:42 - 037850112 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoRes64.dat 2018-12-10 16:37 - 2013-10-21 03:46 - 002587352 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkAPO64.dll 2018-12-10 16:37 - 2013-10-18 09:41 - 001286360 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll 2018-12-10 16:37 - 2013-10-15 20:43 - 000209096 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll 2018-12-10 16:37 - 2013-10-11 05:47 - 000113576 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll 2018-12-10 16:37 - 2013-10-11 04:31 - 000947760 _____ (Sony Corporation) C:\Windows\system32\SFSS_APO.dll 2018-12-10 16:37 - 2013-10-07 04:05 - 002810072 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll 2018-12-10 16:37 - 2013-10-06 17:26 - 000501184 _____ (DTS) C:\Windows\system32\DTSU2PLFX64.dll 2018-12-10 16:37 - 2013-10-06 17:26 - 000487360 _____ (DTS) C:\Windows\system32\DTSU2PGFX64.dll 2018-12-10 16:37 - 2013-10-06 17:26 - 000415680 _____ (DTS) C:\Windows\system32\DTSU2PREC64.dll 2018-12-10 16:37 - 2013-10-02 10:10 - 000617176 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll 2018-12-10 16:37 - 2013-10-02 02:43 - 000754488 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMSettingsIPC.dll 2018-12-10 16:37 - 2013-10-02 02:39 - 005538072 _____ (ASUSTeKcomputer.Inc Inc) C:\Windows\system32\RTKSMlfx.dll 2018-12-10 16:37 - 2013-09-26 09:11 - 001021656 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll 2018-12-10 16:37 - 2013-09-13 11:44 - 002080472 ____N (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll 2018-12-10 16:37 - 2013-09-09 21:02 - 006217904 _____ (Dolby Laboratories) C:\Windows\system32\DDPP64A.dll 2018-12-10 16:37 - 2013-09-09 21:02 - 000313520 _____ (Dolby Laboratories) C:\Windows\system32\DDPO64A.dll 2018-12-10 16:37 - 2013-09-09 21:01 - 001938608 _____ (Dolby Laboratories) C:\Windows\system32\DDPD64A.dll 2018-12-10 16:37 - 2013-09-09 21:01 - 000260272 _____ (Dolby Laboratories) C:\Windows\system32\DDPA64.dll 2018-12-10 16:37 - 2013-09-09 08:32 - 005681192 _____ C:\Windows\system32\Drivers\rtvienna.dat 2018-12-10 16:37 - 2013-08-23 20:14 - 001014016 _____ (SRS Labs, Inc.) C:\Windows\system32\slcnt64.dll 2018-12-10 16:37 - 2013-08-23 20:14 - 000897792 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll 2018-12-10 16:37 - 2013-08-23 20:14 - 000722688 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll 2018-12-10 16:37 - 2013-08-23 20:14 - 000244480 _____ (TODO: ) C:\Windows\system32\slprp64.dll 2018-12-10 16:37 - 2013-08-20 10:37 - 000605496 _____ C:\Windows\system32\audioLibVc.dll 2018-12-10 16:37 - 2013-08-14 09:36 - 001325312 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO5064.dll 2018-12-10 16:37 - 2013-08-14 09:36 - 000662784 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVolumeSDAPO.dll 2018-12-10 16:37 - 2013-08-14 09:35 - 001084160 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO4064.dll 2018-12-10 16:37 - 2013-08-14 09:35 - 000907008 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxVoiceAPO2064.dll 2018-12-10 16:37 - 2013-08-14 09:35 - 000663296 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO30.dll 2018-12-10 16:37 - 2013-08-07 10:34 - 000765184 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxSpeechAPO64.dll 2018-12-10 16:37 - 2013-08-05 11:11 - 002743328 _____ (Fortemedia Corporation) C:\Windows\system32\FMAPO64.dll 2018-12-10 16:37 - 2013-07-28 03:48 - 027518208 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnA64.dll 2018-12-10 16:37 - 2013-07-24 03:07 - 002032896 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioEQ64.dll 2018-12-10 16:37 - 2013-07-23 08:40 - 003610880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioVnN64.dll 2018-12-10 16:37 - 2013-07-23 08:40 - 002103040 _____ (Waves Audio Ltd.) C:\Windows\system32\WavesGUILib64.dll 2018-12-10 16:37 - 2013-07-23 08:39 - 014048512 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek64.dll 2018-12-10 16:37 - 2013-07-23 08:39 - 001916672 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioRealtek264.dll 2018-12-10 16:37 - 2013-07-23 08:39 - 000922880 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPOShell64.dll 2018-12-10 16:37 - 2013-07-23 08:39 - 000790272 _____ (Waves Audio Ltd.) C:\Windows\SysWOW64\MaxxAudioAPOShell.dll 2018-12-10 16:37 - 2013-06-25 05:47 - 000871856 _____ (TOSHIBA Corporation) C:\Windows\system32\tossaeapo64.dll 2018-12-10 16:37 - 2013-06-25 05:47 - 000162224 _____ (TOSHIBA Corporation) C:\Windows\system32\toseaeapo64.dll 2018-12-10 16:37 - 2013-06-25 05:46 - 000582056 _____ (TOSHIBA Corporation) C:\Windows\system32\tosasfapo64.dll 2018-12-10 16:37 - 2013-06-21 04:01 - 000109848 _____ C:\Windows\system32\AcpiServiceVnA64.dll 2018-12-10 16:37 - 2013-04-24 10:16 - 001662024 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl 2018-12-10 16:37 - 2013-04-03 07:13 - 000906800 _____ (Sony Corporation) C:\Windows\system32\MISS_APO.dll 2018-12-10 16:37 - 2012-08-31 12:18 - 007164176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEP64A.dll 2018-12-10 16:37 - 2012-08-31 12:17 - 000434960 _____ (Dolby Laboratories) C:\Windows\system32\R4EED64A.dll 2018-12-10 16:37 - 2012-08-31 12:17 - 000141584 _____ (Dolby Laboratories) C:\Windows\system32\R4EEL64A.dll 2018-12-10 16:37 - 2012-08-31 12:17 - 000124176 _____ (Dolby Laboratories) C:\Windows\system32\R4EEA64A.dll 2018-12-10 16:37 - 2012-08-31 12:17 - 000075024 _____ (Dolby Laboratories) C:\Windows\system32\R4EEG64A.dll 2018-12-10 16:37 - 2012-03-08 04:47 - 000108640 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll 2018-12-10 16:37 - 2012-01-30 04:43 - 000836544 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo264.dll 2018-12-10 16:37 - 2012-01-10 03:20 - 000065944 _____ (TOSHIBA CORPORATION.) C:\Windows\system32\tepeqapo64.dll 2018-12-10 16:37 - 2011-12-20 08:32 - 000331880 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll 2018-12-10 16:37 - 2011-11-22 09:28 - 000014952 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll 2018-12-10 16:37 - 2011-09-02 07:21 - 000221024 _____ (Synopsys, Inc.) C:\Windows\system32\SFNHK64.dll 2018-12-10 16:37 - 2011-09-02 07:21 - 000081248 _____ (Synopsys, Inc.) C:\Windows\system32\SFCOM64.dll 2018-12-10 16:37 - 2011-09-02 07:21 - 000078688 _____ (Synopsys, Inc.) C:\Windows\system32\SFAPO64.dll 2018-12-10 16:37 - 2011-08-23 10:00 - 000603984 _____ (Knowles Acoustics ) C:\Windows\system32\KAAPORT64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 001756264 _____ (DTS) C:\Windows\system32\DTSS2SpeakerDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 001568360 _____ (DTS) C:\Windows\system32\DTSS2HeadphoneDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 001486952 _____ (DTS) C:\Windows\system32\DTSBoostDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000728680 _____ (DTS) C:\Windows\system32\DTSBassEnhancementDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000712296 _____ (DTS) C:\Windows\system32\DTSSymmetryDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000693352 _____ (DTS) C:\Windows\system32\DTSVoiceClarityDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000491112 _____ (DTS) C:\Windows\system32\DTSNeoPCDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000432744 _____ (DTS) C:\Windows\system32\DTSLimiterDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000428648 _____ (DTS) C:\Windows\system32\DTSGainCompensatorDLL64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000242792 _____ (DTS) C:\Windows\system32\DTSLFXAPO64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000242792 _____ (DTS) C:\Windows\system32\DTSGFXAPO64.dll 2018-12-10 16:37 - 2011-05-31 02:42 - 000241768 _____ (DTS) C:\Windows\system32\DTSGFXAPONS64.dll 2018-12-10 16:37 - 2011-03-17 05:17 - 001361336 _____ (TOSHIBA Corporation) C:\Windows\system32\tosade.dll 2018-12-10 16:37 - 2011-03-07 10:11 - 000148416 _____ (TOSHIBA Corporation) C:\Windows\system32\tadefxapo.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000375128 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000310104 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000204120 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000101208 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll 2018-12-10 16:37 - 2010-11-08 00:31 - 000078680 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll 2018-12-10 16:37 - 2010-11-03 11:30 - 000149608 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll 2018-12-10 16:37 - 2010-09-27 02:34 - 000318808 _____ (Waves Audio Ltd.) C:\Windows\system32\MaxxAudioAPO20.dll 2018-12-10 16:37 - 2010-07-22 09:48 - 000074064 _____ (Virage Logic Corporation / Sonic Focus) C:\Windows\SysWOW64\SFCOM.dll 2018-12-10 16:37 - 2009-11-24 02:55 - 000518896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll 2018-12-10 16:37 - 2009-11-24 02:55 - 000211184 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSH64.dll 2018-12-10 16:37 - 2009-11-24 02:55 - 000198896 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSHP64.dll 2018-12-10 16:37 - 2009-11-24 02:55 - 000155888 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll 2018-12-10 16:33 - 2018-12-10 16:43 - 000000000 ____D C:\Program Files (x86)\Intel 2018-12-10 16:33 - 2018-12-10 16:33 - 000000000 ____D C:\Windows\AsusInstAll 2018-12-10 16:33 - 2013-08-05 04:50 - 000053248 ____N (Windows XP Bundled build C-Centric Single User) C:\Windows\SysWOW64\CSVer.dll 2018-12-10 16:32 - 2018-12-10 20:55 - 000002326 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2018-12-10 16:32 - 2018-12-10 20:55 - 000002285 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2018-12-10 16:32 - 2018-12-10 16:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_ASMBSW_01_11_00.Wdf 2018-12-10 16:32 - 2018-12-10 16:32 - 000000000 ____D C:\Program Files\ASUS 2018-12-10 16:32 - 2018-12-10 16:32 - 000000000 ____D C:\Program Files (x86)\ASUS 2018-12-10 16:32 - 2018-12-10 16:32 - 000000000 ____D C:\Intel 2018-12-10 16:32 - 2012-08-22 10:54 - 000015232 _____ C:\Windows\SysWOW64\Drivers\AsIO.sys 2018-12-10 16:32 - 2012-08-17 03:57 - 002356592 _____ (Microsoft Corporation) C:\Windows\system32\WudfUpdate_01011.dll 2018-12-10 16:32 - 2010-06-29 08:41 - 000028672 _____ (ASUSTek Computer Inc.) C:\Windows\SysWOW64\AsIO.dll 2018-12-10 16:31 - 2018-12-12 14:23 - 000003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2849577091-2096956033-3286416302-1001 2018-12-10 16:31 - 2018-12-10 18:39 - 000003482 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA 2018-12-10 16:31 - 2018-12-10 18:39 - 000003354 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore 2018-12-10 16:31 - 2018-12-10 17:56 - 000000000 ____D C:\Users\Azorek\AppData\Local\Google 2018-12-10 16:31 - 2018-12-10 16:49 - 000039438 _____ C:\Windows\Ascd_log.ini 2018-12-10 16:31 - 2018-12-10 16:32 - 000000000 ____D C:\Program Files (x86)\Google 2018-12-10 16:31 - 2018-12-10 16:31 - 000001769 _____ C:\Windows\Language_trs.ini 2018-12-10 16:31 - 2018-12-10 16:31 - 000000000 _____ C:\Windows\scd.ini 2018-12-10 16:31 - 2018-12-10 16:31 - 000000000 _____ C:\Windows\Ascd_err.ini 2018-12-10 16:30 - 2018-12-10 16:30 - 000029300 _____ C:\Windows\Ascd_tmp.ini 2018-12-10 16:30 - 2009-04-02 13:30 - 000010296 _____ C:\Windows\SysWOW64\Drivers\ASUSHWIO.SYS 2018-12-10 16:27 - 2018-12-10 16:27 - 000000448 _____ C:\Users\Azorek\Desktop\Ten komputer — skrót.lnk 2018-12-10 16:26 - 2018-12-11 18:11 - 000000000 ____D C:\Users\Azorek\AppData\Local\Packages 2018-12-10 16:26 - 2018-12-11 18:03 - 000000000 ____D C:\Users\Azorek 2018-12-10 16:26 - 2018-12-10 16:26 - 000001454 _____ C:\Users\Azorek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk 2018-12-10 16:26 - 2018-12-10 16:26 - 000000020 ___SH C:\Users\Azorek\ntuser.ini 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Ustawienia lokalne 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Szablony 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Moje dokumenty 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Menu Start 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Documents\Moje wideo 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Documents\Moje obrazy 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Documents\Moja muzyka 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\Dane aplikacji 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\AppData\Local\Historia 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 _SHDL C:\Users\Azorek\AppData\Local\Dane aplikacji 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 ___DL C:\Users\Azorek\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 ____D C:\Users\Azorek\AppData\Roaming\Adobe 2018-12-10 16:26 - 2018-12-10 16:26 - 000000000 ____D C:\Users\Azorek\AppData\Local\VirtualStore 2018-12-10 16:26 - 2014-11-21 00:11 - 000000369 _____ C:\Users\Azorek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk 2018-12-10 16:26 - 2014-11-21 00:11 - 000000369 _____ C:\Users\Azorek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk 2018-12-10 16:23 - 2018-12-10 16:23 - 000000000 ____D C:\Windows\CSC 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Szablony 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Moje dokumenty 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Menu Start 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\Dane aplikacji 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\Documents\Moje wideo 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\Documents\Moje obrazy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\Documents\Moja muzyka 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Szablony 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Pulpit 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Menu Start 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Dokumenty 2018-12-10 16:18 - 2018-12-10 16:18 - 000000000 ___DL C:\ProgramData\Dane aplikacji 2018-12-10 16:15 - 2018-12-10 16:15 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2018-12-10 16:14 - 2018-12-10 16:26 - 000000000 ____D C:\Windows\Panther ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-12-12 14:24 - 2014-11-21 00:03 - 001738750 _____ C:\Windows\system32\PerfStringBackup.INI 2018-12-12 14:24 - 2014-11-20 23:04 - 000770326 _____ C:\Windows\system32\perfh015.dat 2018-12-12 14:24 - 2014-11-20 23:04 - 000156028 _____ C:\Windows\system32\perfc015.dat 2018-12-12 14:24 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf 2018-12-12 14:17 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-12-12 14:16 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI 2018-12-12 12:57 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\ELAM 2018-12-12 12:55 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\ELAMBKUP 2018-12-12 12:21 - 2013-08-22 16:36 - 000000000 ___HD C:\Program Files\WindowsApps 2018-12-12 12:21 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\AppReadiness 2018-12-12 00:19 - 2013-08-22 14:25 - 000000208 _____ C:\Windows\win.ini 2018-12-11 18:37 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2018-12-11 18:37 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\system32\GroupPolicy 2018-12-10 20:21 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\LiveKernelReports 2018-12-10 18:53 - 2013-08-22 16:20 - 000000000 ____D C:\Windows\CbsTemp 2018-12-10 18:50 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2018-12-10 17:55 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\Help 2018-12-10 16:43 - 2013-08-22 16:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2018-12-10 16:28 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\system32\NDF 2018-12-10 16:23 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\rescache 2018-12-10 16:18 - 2013-08-22 16:36 - 000000000 ____D C:\Program Files\Windows NT ==================== Pliki w katalogu głównym wybranych folderów ======= 2018-12-11 03:11 - 2018-12-11 03:11 - 000278632 _____ () C:\Users\Azorek\AppData\Local\ars.cache 2018-12-11 03:12 - 2018-12-11 03:12 - 000579473 _____ () C:\Users\Azorek\AppData\Local\census.cache 2018-12-11 02:54 - 2018-12-11 02:54 - 000000036 _____ () C:\Users\Azorek\AppData\Local\housecall.guid.cache 2018-12-11 02:58 - 2018-12-11 02:58 - 000000010 _____ () C:\Users\Azorek\AppData\Local\sponge.last.runtime.cache Niektóre pliki w TEMP: ==================== 2018-12-12 00:18 - 2018-09-13 22:44 - 000053960 _____ (Bitdefender) C:\Users\Azorek\AppData\Local\Temp\bdcore.dll 2018-12-12 00:18 - 2014-03-24 03:29 - 000085736 _____ (BitDefender) C:\Users\Azorek\AppData\Local\Temp\bdnimbus32.dll 2018-12-12 00:18 - 2015-09-02 10:20 - 000010416 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\bdupdateservice.dll 2018-12-12 00:18 - 2017-12-21 16:45 - 001460424 _____ (Bitdefender) C:\Users\Azorek\AppData\Local\Temp\BDUpdateServiceCom.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000064744 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\DEVCON.EXE 2018-12-12 00:19 - 2018-12-12 00:19 - 000176760 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\eEmpty.exe 2018-12-12 00:18 - 2018-11-02 18:52 - 001614608 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\EncDec.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 001547544 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\esupdate.exe 2018-12-12 00:18 - 2009-07-17 13:39 - 000043776 _____ (Kaspersky Lab) C:\Users\Azorek\AppData\Local\Temp\FSSync.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 000302976 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\Getvlist.exe 2018-12-12 00:18 - 2018-11-02 18:53 - 000052408 _____ (Kaspersky Lab.) C:\Users\Azorek\AppData\Local\Temp\ipc.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 001230272 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\lickey.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 000265568 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\msvclnt.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000554240 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\msvcp80.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000572928 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\msvcp90.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000632064 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\msvcr80.dll 2018-12-12 00:19 - 2018-12-12 00:19 - 000655872 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\msvcr90.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 005983144 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\msvl64.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 000259304 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\msvlclnt.dll 2018-12-12 00:18 - 2018-11-02 18:53 - 003218432 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\mwavdwnl.exe 2018-12-12 00:18 - 2018-11-02 18:53 - 003022592 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\MWAVL.exe 2018-12-12 00:19 - 2018-11-02 18:52 - 004042864 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\mwavscan.exe 2018-12-12 00:18 - 2018-11-02 18:53 - 001614608 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\mwunzip.dll 2018-12-12 00:19 - 2018-11-02 18:53 - 000023488 _____ (Microsoft Corporation) C:\Users\Azorek\AppData\Local\Temp\red32.dll 2018-12-12 00:19 - 2018-11-02 18:53 - 000983408 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\Reload.exe 2018-12-12 00:19 - 2018-02-19 09:53 - 000534704 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\scan.dll 2018-12-12 00:19 - 2018-11-02 18:53 - 000202656 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\setpriv.exe 2018-12-12 00:19 - 2018-11-02 16:46 - 002828920 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\test2.exe 2018-12-12 00:19 - 2018-12-12 00:19 - 000459344 _____ (BitDefender S.R.L.) C:\Users\Azorek\AppData\Local\Temp\trufos.dll 2018-12-12 00:19 - 2018-11-02 18:53 - 001719144 _____ (MicroWorld Technologies Inc.) C:\Users\Azorek\AppData\Local\Temp\ViewTCP.exe 2018-12-10 16:42 - 2006-05-24 05:10 - 000455600 _____ (Macrovision Corporation) C:\Users\Azorek\AppData\Local\Temp\_is9214.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-12-10 16:14 ==================== Koniec FRST.txt ============================