Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-04-2022 Uruchomiony przez domin (administrator) DESKTOP-50FJ8H9 (29-04-2022 09:57:10) Uruchomiony z C:\Users\domin\Downloads Załadowane profile: domin Platform: Microsoft Windows 10 Home Wersja 21H2 19044.1645 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MpCopyAccelerator.exe (explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <18> (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler.exe (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.132\GoogleCrashHandler64.exe (services.exe ->) (Even Balance, Inc. -> ) C:\Windows\SysWOW64\PnkBstrA.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.63.31001.0_x64__8wekyb3d8bbwe\gamingservices.exe (services.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_3.63.31001.0_x64__8wekyb3d8bbwe\gamingservicesnet.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe (services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe <2> (services.exe ->) (SIA AVB Disc Soft -> Disc Soft Ltd) C:\Program Files\reWASD\reWASDService.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\pacjsworker.exe <2> (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [707768 2022-03-10] (Oracle America, Inc. -> Oracle Corporation) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-3979895045-3499659679-482303315-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32612832 2022-04-21] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-3979895045-3499659679-482303315-1001\...\Run: [Spotify] => C:\Users\domin\AppData\Roaming\Spotify\Spotify.exe [19610600 2022-04-28] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3979895045-3499659679-482303315-1001\...\Run: [Discord] => C:\Users\domin\AppData\Local\Discord\Update.exe [1512616 2022-02-17] (Discord Inc. -> GitHub) HKU\S-1-5-21-3979895045-3499659679-482303315-1001\...\Run: [reWASD Engine] => C:\Program Files\reWASD\reWASDEngine.exe [20924144 2022-04-19] (SIA AVB Disc Soft -> Disc Soft Ltd) HKU\S-1-5-21-3979895045-3499659679-482303315-1001\...\Run: [Steam] => D:\Steam\steam.exe [4279208 2022-03-14] (Valve Corp. -> Valve Corporation) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\100.0.4896.127\Installer\chrmstp.exe [2022-04-20] (Google LLC -> Google LLC) GroupPolicy: Ograniczenia ? <==== UWAGA Policies: C:\ProgramData\NTUSER.pol: Ograniczenia <==== UWAGA HKLM\SOFTWARE\Policies\Microsoft\Edge: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {128D1AFD-6C63-469B-A9C8-056F11B520CC} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [662464 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {1404DD97-2138-4108-AB7C-FCE5D7C1F430} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [662464 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {19F30BF4-9317-4D35-AA5F-E9DBA592CEA1} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2069952 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {284814DA-29DB-409F-BA70-7BA073FEF941} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {3BD961EE-5FA3-4B81-9100-E540E8FC7AAD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {4A137E72-519E-42EB-B0C1-98982DF33056} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [510912 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {7E241CBD-73C5-4803-B522-026D1DD00326} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [522688 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log Task: {8D6FF190-36AE-43D4-AF11-5774B023052A} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [757184 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {B543AE93-472A-4B4A-9749-08ADE11563F0} - System32\Tasks\GoogleUpdateTaskMachineCore{219C403F-0CA2-4F31-AE22-9AAEB5461AE5} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-04-13] (Google LLC -> Google LLC) Task: {B9DC4622-10CF-4E5A-A7B8-1A54E2C1C193} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) Task: {C3B28EF7-01C4-445C-8963-E7CCBD1EEA59} - System32\Tasks\GoogleUpdateTaskMachineUA{B69A83A2-A0C8-48AB-95DB-B098CD2710E3} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156232 2022-04-13] (Google LLC -> Google LLC) Task: {C7F7F933-C1C6-433D-8C2F-BCAD812F8311} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [976832 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) Task: {C8360289-3FCC-4D29-ADBB-0EE1E4C8DB46} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe [469952 2018-03-24] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files (x86)\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log Task: {D26E59CD-D6AC-41C2-99EC-0BF0F9538B55} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MpCmdRun.exe [993000 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 31.11.173.2 89.228.4.126 Tcpip\..\Interfaces\{92bfc3df-e911-4928-b457-82f22a370372}: [DhcpNameServer] 31.11.173.2 89.228.4.126 Edge: ======= Edge Profile: C:\Users\domin\AppData\Local\Microsoft\Edge\User Data\Default [2022-04-24] FireFox: ======== FF DefaultProfile: j8mtid60.default FF ProfilePath: C:\Users\domin\AppData\Roaming\Mozilla\Firefox\Profiles\j8mtid60.default [2022-04-24] FF ProfilePath: C:\Users\domin\AppData\Roaming\Mozilla\Firefox\Profiles\lyukfbnj.default-release [2022-04-24] FF Plugin: @java.com/DTPlugin,version=11.331.2 -> C:\Program Files\Java\jre1.8.0_331\bin\dtplugin\npDeployJava1.dll [2022-04-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.331.2 -> C:\Program Files\Java\jre1.8.0_331\bin\plugin2\npjp2.dll [2022-04-24] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Brak podpisu cyfrowego] FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-03-24] (NVIDIA Corporation PE Sign v2016 -> NVIDIA Corporation) [Brak podpisu cyfrowego] Chrome: ======= CHR Profile: C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default [2022-04-29] CHR Notifications: Default -> hxxps://forum.dobreprogramy.pl; hxxps://www.facebook.com CHR Extension: (Nordic Forest) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\amekpplpfocpmaimnmgfjoibodpjedie [2022-04-28] CHR Extension: (uBlock Origin) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2022-04-13] CHR Extension: (I don't care about cookies) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihnjjcciajhdojfnbdddfaoknhalnja [2022-04-13] CHR Extension: (Return YouTube Dislike) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\gebbhagfogifgggkldgodflihgfeippi [2022-04-28] CHR Extension: (Dokumenty Google offline) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-04-13] CHR Extension: (SponsorBlock na YouTube - Pomiń fragmenty sponsorowane) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\mnjggcdmjocbbbhaepdhchncahnbgone [2022-04-18] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\domin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-04-13] CHR Profile: C:\Users\domin\AppData\Local\Google\Chrome\User Data\System Profile [2022-04-28] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [813032 2022-04-14] (EasyAntiCheat Oy -> Epic Games, Inc) S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934368 2022-03-03] (Epic Games Inc. -> Epic Games, Inc.) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76888 2022-04-28] (Even Balance, Inc. -> ) R2 reWASDService; C:\Program Files\reWASD\reWASDService.exe [2879728 2022-04-19] (SIA AVB Disc Soft -> Disc Soft Ltd) S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2584528 2022-04-13] (Rockstar Games, Inc. -> Rockstar Games) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R0 hidgamemap; C:\Windows\System32\drivers\hidgamemap.sys [340728 2022-04-19] (AVB Disc Soft, SIA -> Disc Soft Ltd) S3 MDA_NTDRV; C:\Windows\system32\MDA_NTDRV.sys [21208 2022-04-28] (北京铠信神州科技有限责任公司 -> ) S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49600 2022-04-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [443664 2022-04-13] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-13] (Microsoft Windows -> Microsoft Corporation) S3 MpKsl4675935c; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{6917F8AB-8DDE-431F-852E-7E9F71E2EBDD}\MpKslDrv.sys [X] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-04-29 09:57 - 2022-04-29 09:57 - 000014082 _____ C:\Users\domin\Downloads\FRST.txt 2022-04-29 09:56 - 2022-04-29 09:56 - 000000000 ____D C:\Users\domin\Downloads\FRST-OlderVersion 2022-04-29 09:55 - 2022-04-29 09:57 - 000000000 ____D C:\FRST 2022-04-29 09:55 - 2022-04-29 09:56 - 002366976 _____ (Farbar) C:\Users\domin\Downloads\FRST64.exe 2022-04-28 21:57 - 2022-04-28 21:57 - 002249913 _____ (EFD Software ) C:\Users\domin\Downloads\hdtunepro_575_trial.exe 2022-04-28 21:57 - 2022-04-28 21:57 - 000001102 _____ C:\Users\domin\Desktop\HD Tune Pro.lnk 2022-04-28 21:57 - 2022-04-28 21:57 - 000000000 ____D C:\Users\domin\AppData\Roaming\HD Tune Pro 2022-04-28 21:57 - 2022-04-28 21:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune Pro 2022-04-28 21:57 - 2022-04-28 21:57 - 000000000 ____D C:\Program Files (x86)\HD Tune Pro 2022-04-28 21:51 - 2022-04-15 16:08 - 000002241 _____ C:\Users\domin\Desktop\Discord.lnk 2022-04-28 21:44 - 2022-04-28 21:44 - 000021208 _____ C:\Windows\system32\MDA_NTDRV.sys 2022-04-28 21:42 - 2022-04-28 21:43 - 020447394 _____ C:\Users\domin\Downloads\mscanner-free.zip 2022-04-28 21:36 - 2022-04-28 21:36 - 000000000 ____D C:\Users\domin\AppData\Local\mbam 2022-04-28 21:33 - 2022-04-28 21:33 - 002443448 _____ (Malwarebytes) C:\Users\domin\Downloads\MBSetup.exe 2022-04-28 21:17 - 2022-04-28 21:17 - 000000000 ___HD C:\$Windows.~WS 2022-04-28 17:50 - 2022-04-28 17:50 - 009486864 _____ C:\Users\domin\Documents\botlucky-client.exe 2022-04-28 17:29 - 2022-04-28 17:29 - 000000199 _____ C:\Users\domin\Desktop\Counter-Strike Global Offensive.url 2022-04-28 16:14 - 2022-04-28 16:14 - 000000112 ___SH C:\bootTel.dat 2022-04-28 12:19 - 2022-04-28 16:35 - 000281688 _____ C:\Windows\SysWOW64\PnkBstrB.xtr 2022-04-28 12:19 - 2022-04-28 12:19 - 000000000 ____D C:\Users\domin\AppData\Local\PunkBuster 2022-04-28 12:18 - 2022-04-28 16:35 - 000281688 _____ C:\Windows\SysWOW64\PnkBstrB.exe 2022-04-28 12:18 - 2022-04-28 16:33 - 000282512 _____ C:\Windows\SysWOW64\PnkBstrB.ex0 2022-04-28 12:18 - 2022-04-28 16:33 - 000076888 _____ C:\Windows\SysWOW64\PnkBstrA.exe 2022-04-28 11:41 - 2022-04-28 12:03 - 000000000 ____D C:\Users\domin\AppData\Roaming\qBittorrent 2022-04-28 11:41 - 2022-04-28 11:41 - 000000000 ____D C:\Users\domin\AppData\Local\qBittorrent 2022-04-28 11:40 - 2022-04-28 11:40 - 000000000 ____D C:\Program Files\qBittorrent 2022-04-28 11:24 - 2022-04-28 11:24 - 000001146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk 2022-04-28 11:24 - 2022-04-28 11:24 - 000000000 ____D C:\Program Files\PCHealthCheck 2022-04-27 21:32 - 2022-04-27 21:32 - 000000000 ____D C:\Users\domin\AppData\Local\CSPPI 2022-04-27 20:51 - 2022-04-27 21:32 - 000000000 ____D C:\Users\domin\AppData\Local\Softdeluxe 2022-04-27 20:51 - 2022-04-27 20:51 - 000000000 ____D C:\Users\domin\AppData\Local\cache 2022-04-27 20:45 - 2022-04-27 20:46 - 000000000 ____D C:\Users\domin\AppData\Local\HTTP Downloader 2022-04-26 14:09 - 2022-04-28 17:27 - 000000000 ____D C:\Users\domin\AppData\Local\Ubisoft Game Launcher 2022-04-26 14:09 - 2022-04-28 12:02 - 000000000 ____D C:\Program Files (x86)\Ubisoft 2022-04-26 14:09 - 2022-04-26 14:09 - 000000000 ____D C:\ProgramData\Ubisoft 2022-04-25 15:03 - 2022-04-25 15:03 - 000000000 ____D C:\Users\domin\AppData\Local\Steam 2022-04-25 15:01 - 2022-04-25 15:01 - 000000549 _____ C:\Users\Public\Desktop\Steam.lnk 2022-04-25 15:01 - 2022-04-25 15:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2022-04-25 14:06 - 2022-04-28 20:38 - 000000000 ____D C:\Users\domin\AppData\Roaming\LuckyCharms 2022-04-25 12:32 - 2022-04-25 12:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DoNotSpy10 2021 2022-04-25 12:32 - 2022-04-25 12:32 - 000000000 ____D C:\Program Files (x86)\DoNotSpy10 2021 2022-04-24 19:00 - 2022-04-21 21:26 - 000002253 _____ C:\Users\domin\Desktop\Google Chrome.lnk 2022-04-24 18:58 - 2022-04-24 19:00 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38 2022-04-24 18:58 - 2022-04-24 18:58 - 000000000 ____D C:\Users\domin\AppData\Roaming\Mozilla 2022-04-24 18:58 - 2022-04-24 18:58 - 000000000 ____D C:\Users\domin\AppData\Local\Mozilla 2022-04-24 15:11 - 2022-04-24 15:11 - 000000000 ____D C:\Users\domin\.cache 2022-04-24 14:40 - 2022-04-24 14:40 - 000192736 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll 2022-04-24 14:40 - 2022-04-24 14:40 - 000000000 ____D C:\Users\domin\AppData\Roaming\Sun 2022-04-24 14:40 - 2022-04-24 14:40 - 000000000 ____D C:\Users\domin\AppData\LocalLow\Sun 2022-04-24 14:40 - 2022-04-24 14:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2022-04-24 14:39 - 2022-04-24 14:39 - 000000000 ____D C:\Program Files\Java 2022-04-24 14:22 - 2022-04-24 18:59 - 000000000 ____D C:\Users\domin\AppData\LocalLow\Mozilla 2022-04-24 14:01 - 2022-04-24 14:01 - 000000000 ____D C:\Users\domin\AppData\Local\IdleMasterExtended 2022-04-24 13:54 - 2022-04-25 14:53 - 000000000 ____D C:\SteamLibrary 2022-04-24 13:33 - 2022-04-24 13:48 - 000000000 ____D C:\Users\domin\AppData\Roaming\KmCrashHandler 2022-04-24 09:52 - 2022-04-24 09:56 - 000000000 ____D C:\Users\domin\AppData\Roaming\AnyDesk 2022-04-23 17:14 - 2022-04-23 17:55 - 000000000 ____D C:\Users\domin\Documents\Kiddions 2022-04-22 20:46 - 2022-04-28 22:11 - 078118912 _____ C:\Windows\system32\config\SOFTWARE 2022-04-22 20:42 - 2022-04-22 20:46 - 000000000 ____D C:\Windows\Microsoft Antimalware 2022-04-22 20:37 - 2022-04-22 20:37 - 000007606 _____ C:\Users\domin\AppData\Local\Resmon.ResmonCfg 2022-04-22 19:26 - 2022-04-22 19:26 - 005911387 _____ C:\Users\domin\Documents\ShareBot.7z 2022-04-22 16:30 - 2022-04-22 16:30 - 000024552 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_693560535167.dll 2022-04-22 15:33 - 2022-04-22 15:33 - 000024552 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_26725464898980.dll 2022-04-22 15:26 - 2022-04-22 15:26 - 000000000 ____D C:\Users\domin\.idlerc 2022-04-22 14:43 - 2022-04-22 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amnesia Rebirth 2022-04-22 13:52 - 2022-04-22 13:53 - 000000000 ____D C:\Users\domin\AppData\Local\PAYDAY 2 2022-04-22 13:52 - 2022-04-22 13:52 - 000000000 ____D C:\Program Files (x86)\AGEIA Technologies 2022-04-22 11:08 - 2022-04-22 11:34 - 000000000 ____D C:\Users\domin\AppData\Roaming\CitizenFX 2022-04-21 21:12 - 2022-04-25 21:05 - 000000000 _____ C:\ProgramData\OptiFine_1.8.9_HD_U_M5.jar 2022-04-21 17:17 - 2022-04-21 17:29 - 000000000 ____D C:\Users\domin\AppData\Roaming\lunarclient 2022-04-21 17:17 - 2022-04-21 17:20 - 000000000 ____D C:\Users\domin\.lunarclient 2022-04-21 17:17 - 2022-04-21 17:17 - 000000000 ____D C:\Users\domin\AppData\Local\lunarclient-updater 2022-04-21 15:24 - 2022-04-21 15:24 - 000000000 ____D C:\Users\domin\AppData\Local\Fallout3 2022-04-19 18:37 - 2022-04-19 18:37 - 000000000 ____D C:\$WINDOWS.~BT 2022-04-19 18:22 - 2022-04-19 18:22 - 000340728 _____ (Disc Soft Ltd) C:\Windows\system32\Drivers\hidgamemap.sys 2022-04-19 18:22 - 2022-04-19 18:22 - 000000000 ____D C:\Users\Public\Documents\reWASD 2022-04-19 18:22 - 2022-04-19 18:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\reWASD 2022-04-19 18:22 - 2022-04-19 18:22 - 000000000 ____D C:\Program Files\reWASD 2022-04-19 17:16 - 2022-04-19 17:16 - 000000000 ____D C:\Users\domin\AppData\LocalLow\Monomi Park 2022-04-19 16:57 - 2022-04-19 18:05 - 000000266 __RSH C:\ProgramData\ntuser.pol 2022-04-19 15:32 - 2022-04-19 15:32 - 000000000 ____D C:\Users\domin\AppData\Local\Skyrim Special Edition MS 2022-04-19 13:31 - 2022-04-19 13:31 - 000000000 ____D C:\ProgramData\Oracle 2022-04-19 13:23 - 2022-04-28 11:37 - 000001208 _____ C:\Users\domin\Desktop\Badlion Client.lnk 2022-04-19 13:23 - 2022-04-25 21:05 - 000001942 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Badlion Client.lnk 2022-04-19 13:23 - 2022-04-23 20:26 - 000000000 ____D C:\Users\domin\AppData\Roaming\Badlion Client 2022-04-19 13:23 - 2022-04-23 20:21 - 000000000 ____D C:\ProgramData\BadlionClient 2022-04-19 13:23 - 2022-04-19 13:23 - 000000000 ____D C:\Users\domin\AppData\Local\@badlionnative-desktop-updater 2022-04-19 13:23 - 2022-04-19 13:23 - 000000000 ____D C:\Program Files\Badlion Client 2022-04-19 13:19 - 2022-04-24 15:21 - 000000000 ____D C:\Users\domin\AppData\Roaming\.minecraft 2022-04-19 13:18 - 2022-04-28 21:15 - 000000000 ____D C:\XboxGames 2022-04-19 13:18 - 2022-04-19 13:18 - 000000028 ____H C:\.GamingRoot 2022-04-19 13:03 - 2022-04-19 13:04 - 000000000 ____D C:\Users\domin\AppData\Local\Disc_Soft_Ltd 2022-04-19 13:01 - 2022-04-19 18:22 - 000000000 ____D C:\ProgramData\Disc-Soft 2022-04-19 12:54 - 2022-04-19 12:53 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll 2022-04-19 11:34 - 2022-04-28 18:56 - 000000000 ____D C:\Users\domin\AppData\Local\CrashDumps 2022-04-19 10:56 - 2022-04-19 11:05 - 000000000 ____D C:\Users\domin\AppData\Roaming\FLT 2022-04-19 10:56 - 2022-04-19 10:56 - 000000000 ____D C:\Users\domin\AppData\Roaming\Warner Bros. Interactive Entertainment 2022-04-18 12:41 - 2022-04-22 11:08 - 000000000 ____D C:\Users\domin\AppData\Local\DigitalEntitlements 2022-04-17 21:38 - 2022-04-17 21:38 - 000000000 ____D C:\Users\domin\AppData\Local\GameAnalytics 2022-04-17 18:43 - 2022-04-17 18:43 - 000000000 ____D C:\Users\domin\AppData\Local\VALORANT 2022-04-17 18:39 - 2022-04-25 21:20 - 000000001 _____ C:\Windows\vgkbootstatus.dat 2022-04-17 14:42 - 2022-04-24 18:58 - 000000000 ____D C:\Users\domin\AppData\Local\BraveSoftware 2022-04-16 10:22 - 2022-04-16 10:22 - 000000047 _____ C:\Users\domin\AppData\Roaming\.crystalinst 2022-04-16 10:21 - 2022-04-16 10:22 - 000000000 ____D C:\Users\domin\AppData\Local\CrystalLauncherInstallerNX 2022-04-15 20:07 - 2022-04-15 20:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip 2022-04-15 20:07 - 2022-04-15 20:07 - 000000000 ____D C:\Program Files\7-Zip 2022-04-15 17:04 - 2022-04-15 17:04 - 000000000 ____D C:\Users\domin\AppData\Local\AMDSoftwareInstaller 2022-04-15 17:04 - 2022-04-15 17:04 - 000000000 ____D C:\ProgramData\AMD 2022-04-15 17:04 - 2022-04-15 17:04 - 000000000 ____D C:\Program Files\AMD 2022-04-15 16:08 - 2022-04-15 16:08 - 000000000 ____D C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc 2022-04-15 16:07 - 2022-04-28 22:11 - 000000000 ____D C:\Users\domin\AppData\Roaming\discord 2022-04-15 16:07 - 2022-04-28 21:51 - 000000000 ____D C:\Users\domin\AppData\Local\Discord 2022-04-15 16:07 - 2022-04-15 16:08 - 000000000 ____D C:\Users\domin\AppData\Local\SquirrelTemp 2022-04-15 14:34 - 2022-04-15 14:34 - 000000000 ____D C:\Users\domin\AppData\Local\NVIDIA 2022-04-15 14:33 - 2022-04-15 14:33 - 000000000 ____D C:\Program Files (x86)\Geeks3D 2022-04-15 13:55 - 2022-04-25 12:19 - 000000000 ____D C:\Windows\Minidump 2022-04-14 21:14 - 2022-04-14 21:14 - 000000000 ____D C:\Users\domin\AppData\Local\4A Games 2022-04-14 21:12 - 2022-04-14 21:12 - 000000000 ____D C:\Users\domin\AppData\Roaming\NVIDIA 2022-04-14 19:18 - 2022-04-28 11:27 - 000000000 ____D C:\Users\domin\spicetify-cli 2022-04-14 19:18 - 2022-04-28 11:27 - 000000000 ____D C:\Users\domin\.spicetify 2022-04-14 18:58 - 2022-04-28 11:28 - 000000000 ____D C:\Users\domin\AppData\Local\Spotify 2022-04-14 18:58 - 2022-04-14 18:58 - 000001850 _____ C:\Users\domin\Desktop\Spotify.lnk 2022-04-14 18:58 - 2022-04-14 18:58 - 000001836 _____ C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Spotify.lnk 2022-04-14 18:57 - 2022-04-28 11:34 - 000000000 ____D C:\Users\domin\AppData\Roaming\Spotify 2022-04-14 18:36 - 2022-04-14 18:36 - 000001485 _____ C:\Users\Public\Desktop\GeForce Experience.lnk 2022-04-14 18:35 - 2022-04-14 18:35 - 000004308 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000004088 _____ C:\Windows\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000004000 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000003940 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000003894 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000003866 _____ C:\Windows\system32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000003858 _____ C:\Windows\system32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000003654 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2022-04-14 18:35 - 2022-04-14 18:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2022-04-14 18:35 - 2018-03-24 03:19 - 002480064 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2022-04-14 18:35 - 2018-03-24 03:19 - 002137024 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2022-04-14 18:35 - 2018-03-24 03:19 - 001310144 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2022-04-14 18:35 - 2018-03-24 01:05 - 000138120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2022-04-14 18:34 - 2022-04-14 18:34 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2022-04-14 18:34 - 2022-04-14 18:34 - 000000000 ____D C:\Program Files (x86)\VulkanRT 2022-04-14 18:34 - 2018-03-25 18:17 - 000541784 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll 2022-04-14 18:34 - 2018-03-25 18:17 - 000447576 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll 2022-04-14 18:34 - 2018-03-24 03:19 - 000189784 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2022-04-14 18:34 - 2018-03-24 03:19 - 000152408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2022-04-14 18:34 - 2018-03-24 03:19 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2022-04-14 18:34 - 2018-03-24 03:19 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2022-04-14 18:34 - 2018-03-24 01:02 - 005952392 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 002596320 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 001767824 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 000633224 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 000451040 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 000123840 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2022-04-14 18:34 - 2018-03-24 01:02 - 000083072 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2022-04-14 18:34 - 2018-03-21 13:22 - 008114212 _____ C:\Windows\system32\nvcoproc.bin 2022-04-14 18:34 - 2017-12-09 00:25 - 000798520 _____ C:\Windows\SysWOW64\vulkan-1.dll 2022-04-14 18:34 - 2017-12-09 00:25 - 000490808 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2022-04-14 18:34 - 2017-12-09 00:24 - 000928568 _____ C:\Windows\system32\vulkan-1.dll 2022-04-14 18:34 - 2017-12-09 00:24 - 000591672 _____ C:\Windows\system32\vulkaninfo.exe 2022-04-14 18:29 - 2018-03-25 18:15 - 000998424 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2022-04-14 18:29 - 2018-03-25 18:15 - 000950016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 004318112 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 003719096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 001985112 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439135.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 001683712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439135.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 001138720 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2022-04-14 18:29 - 2018-03-25 18:14 - 001065888 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2022-04-14 18:29 - 2018-03-25 18:13 - 040278608 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2022-04-14 18:29 - 2018-03-25 18:13 - 035188992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2022-04-14 18:29 - 2018-03-25 18:10 - 013571520 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2022-04-14 18:29 - 2018-03-25 18:10 - 011132384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2022-04-14 18:29 - 2018-03-25 18:09 - 019855144 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2022-04-14 18:29 - 2018-03-25 18:09 - 016496776 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2022-04-14 18:29 - 2018-03-25 18:09 - 001153744 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2022-04-14 18:29 - 2018-03-25 18:09 - 000902096 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2022-04-14 18:29 - 2018-03-25 18:08 - 012967056 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2022-04-14 18:29 - 2018-03-25 18:08 - 011001504 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2022-04-14 18:29 - 2018-03-25 18:08 - 004633920 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2022-04-14 18:29 - 2018-03-25 18:08 - 003939624 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2022-04-14 18:29 - 2018-03-24 03:19 - 001682288 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2022-04-14 18:29 - 2018-03-24 03:19 - 000226760 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2022-04-14 18:29 - 2018-03-24 03:19 - 000059240 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2022-04-14 18:29 - 2018-03-24 03:19 - 000058816 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2022-04-14 18:29 - 2018-03-24 03:19 - 000048407 _____ C:\Windows\system32\nvinfo.pb 2022-04-14 18:29 - 2018-03-24 03:19 - 000045600 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2022-04-14 18:26 - 2022-04-14 18:26 - 000000000 ____D C:\NVIDIA 2022-04-14 17:50 - 2022-04-14 17:50 - 000024552 _____ (EasyAntiCheat Oy) C:\Windows\system32\eac_usermode_59285561440960.dll 2022-04-14 17:49 - 2022-04-14 17:49 - 000000341 _____ C:\Users\domin\Desktop\Fortnite.url 2022-04-14 17:48 - 2022-04-14 17:48 - 000000000 ___SH C:\Users\Public\Shared Files 2022-04-14 17:41 - 2022-04-14 17:41 - 000000000 ____D C:\Users\domin\AppData\Local\CrashReportClient 2022-04-14 17:40 - 2022-04-14 17:41 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat 2022-04-14 17:40 - 2022-04-14 17:40 - 000000000 ____D C:\Users\domin\AppData\Roaming\EasyAntiCheat 2022-04-14 17:40 - 2022-04-14 17:40 - 000000000 ____D C:\Users\domin\AppData\Local\FortniteGame 2022-04-13 20:55 - 2022-04-13 20:57 - 000000000 ____D C:\Users\domin\AppData\Local\Rockstar Games 2022-04-13 20:55 - 2022-04-13 20:56 - 000000000 ____D C:\Users\domin\Documents\Rockstar Games 2022-04-13 20:55 - 2022-04-13 20:55 - 000000000 ____D C:\ProgramData\Rockstar Games 2022-04-13 20:54 - 2022-04-13 20:54 - 000000000 ____D C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games 2022-04-13 20:53 - 2022-04-13 20:56 - 000000000 ____D C:\Program Files\Rockstar Games 2022-04-13 20:53 - 2022-04-13 20:56 - 000000000 ____D C:\Program Files (x86)\Rockstar Games 2022-04-13 20:45 - 2022-04-13 20:45 - 000000368 _____ C:\Users\domin\Desktop\Grand Theft Auto V.url 2022-04-13 18:27 - 2022-04-22 14:08 - 000000000 ____D C:\Program Files\Epic Games 2022-04-13 18:26 - 2022-04-26 15:43 - 000000000 ____D C:\ProgramData\Package Cache 2022-04-13 18:26 - 2022-04-15 12:25 - 000000000 ____D C:\Users\domin\AppData\Local\NVIDIA Corporation 2022-04-13 18:24 - 2022-04-27 21:32 - 000000000 ____D C:\Users\domin\AppData\Local\UnrealEngine 2022-04-13 18:24 - 2022-04-13 18:24 - 000000000 ____D C:\Users\domin\AppData\Local\UnrealEngineLauncher 2022-04-13 18:24 - 2022-04-13 18:24 - 000000000 ____D C:\Users\domin\AppData\Local\Epic Games 2022-04-13 18:23 - 2022-04-27 21:32 - 000000000 ____D C:\ProgramData\Epic 2022-04-13 18:23 - 2022-04-25 18:45 - 000001290 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2022-04-13 18:23 - 2022-04-13 18:24 - 000000000 ____D C:\Program Files (x86)\Epic Games 2022-04-13 18:23 - 2022-04-13 18:23 - 000001350 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk 2022-04-13 15:29 - 2022-04-21 15:59 - 000000032 _____ C:\Users\domin\AppData\Roaming\.machineId 2022-04-13 15:29 - 2022-04-13 18:24 - 000000000 ____D C:\Users\domin\AppData\Local\EpicGamesLauncher 2022-04-13 15:10 - 2022-04-13 15:10 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2022-04-13 15:10 - 2022-04-13 15:10 - 000000000 ____D C:\Program Files\Reference Assemblies 2022-04-13 15:10 - 2022-04-13 15:10 - 000000000 ____D C:\Program Files\MSBuild 2022-04-13 15:10 - 2022-04-13 15:10 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2022-04-13 15:10 - 2022-04-13 15:10 - 000000000 ____D C:\Program Files (x86)\MSBuild 2022-04-13 15:08 - 2022-04-13 15:08 - 000000000 ____D C:\Users\domin\AppData\Local\CEF 2022-04-13 15:07 - 2022-04-28 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2022-04-13 15:07 - 2022-04-28 11:00 - 000000000 ____D C:\ProgramData\Riot Games 2022-04-13 15:07 - 2022-04-17 18:42 - 000000000 ____D C:\Users\domin\AppData\Local\Riot Games 2022-04-13 15:07 - 2022-04-13 15:07 - 000000000 ____D C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games 2022-04-13 15:06 - 2022-04-13 15:06 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime 2022-04-13 14:51 - 2022-04-28 21:18 - 000000000 ____D C:\Windows\Panther 2022-04-13 14:31 - 2022-04-29 09:53 - 000000000 ____D C:\Program Files (x86)\Google 2022-04-13 14:31 - 2022-04-26 14:11 - 000000000 ____D C:\Program Files\Google 2022-04-13 14:31 - 2022-04-25 20:49 - 000002253 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2022-04-13 14:31 - 2022-04-20 15:39 - 000003646 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{B69A83A2-A0C8-48AB-95DB-B098CD2710E3} 2022-04-13 14:31 - 2022-04-20 15:39 - 000003522 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{219C403F-0CA2-4F31-AE22-9AAEB5461AE5} 2022-04-13 14:31 - 2022-04-13 15:04 - 000000000 ____D C:\Users\domin\AppData\Local\Google 2022-04-13 14:27 - 2022-04-13 14:27 - 000000000 ___HD C:\$WinREAgent 2022-04-13 14:24 - 2022-04-13 14:24 - 000000000 ____D C:\Windows\SystemTemp 2022-04-13 14:18 - 2022-04-13 14:18 - 000523776 _____ (curl, hxxps://curl.se/) C:\Windows\system32\curl.exe 2022-04-13 14:18 - 2022-04-13 14:18 - 000464384 _____ (curl, hxxps://curl.se/) C:\Windows\SysWOW64\curl.exe 2022-04-13 14:18 - 2022-04-13 14:18 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll 2022-04-13 14:18 - 2022-04-13 14:18 - 000011803 _____ C:\Windows\system32\DrtmAuthTxt.wim 2022-04-13 14:17 - 2022-04-13 14:17 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll 2022-04-13 14:17 - 2022-04-13 14:17 - 002254336 _____ C:\Windows\system32\dwmscene.dll 2022-04-13 14:17 - 2022-04-13 14:17 - 000272896 _____ C:\Windows\system32\TpmTool.exe 2022-04-13 14:17 - 2022-04-13 14:17 - 000223744 _____ C:\Windows\SysWOW64\TpmTool.exe 2022-04-13 14:17 - 2022-04-13 14:17 - 000162816 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe 2022-04-13 14:17 - 2022-04-13 14:17 - 000060928 _____ C:\Windows\system32\runexehelper.exe 2022-04-13 14:17 - 2022-04-13 14:17 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll 2022-04-13 14:16 - 2022-04-13 14:16 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll 2022-04-13 14:14 - 2022-04-13 14:14 - 000000000 ____D C:\Users\domin\AppData\Local\Comms 2022-04-13 14:05 - 2022-04-13 14:05 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2022-04-13 14:02 - 2022-04-13 14:04 - 000000000 ____D C:\Windows\system32\MRT 2022-04-13 13:59 - 2022-04-21 15:03 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3979895045-3499659679-482303315-1001 2022-04-13 13:59 - 2022-04-21 15:03 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3979895045-3499659679-482303315-1001 2022-04-13 13:59 - 2022-04-19 13:03 - 000000000 ____D C:\Users\domin\AppData\Local\PlaceholderTileLogoFolder 2022-04-13 13:59 - 2022-04-13 13:59 - 000000000 ___RD C:\Users\domin\OneDrive 2022-04-13 13:59 - 2022-04-13 13:59 - 000000000 ___HD C:\OneDriveTemp 2022-04-13 13:59 - 2022-04-13 13:59 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2022-04-13 13:58 - 2022-04-29 09:57 - 001767980 _____ C:\Windows\system32\PerfStringBackup.INI 2022-04-13 13:58 - 2022-04-29 09:51 - 000000000 ____D C:\ProgramData\NVIDIA 2022-04-13 13:58 - 2022-04-14 18:37 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2022-04-13 13:58 - 2022-04-14 18:35 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2022-04-13 13:58 - 2022-04-14 18:35 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2022-04-13 13:57 - 2022-04-28 14:12 - 000000000 ____D C:\Users\domin\AppData\Local\D3DSCache 2022-04-13 13:57 - 2022-04-24 21:17 - 000000000 ____D C:\Users\domin\AppData\Local\Packages 2022-04-13 13:57 - 2022-04-24 13:32 - 000000000 ____D C:\Users\domin\AppData\Local\VirtualStore 2022-04-13 13:57 - 2022-04-21 15:08 - 000000000 ____D C:\ProgramData\Packages 2022-04-13 13:57 - 2022-04-13 14:26 - 000000000 ____D C:\Users\domin\AppData\Local\ConnectedDevicesPlatform 2022-04-13 13:57 - 2022-04-13 13:59 - 000000000 __RHD C:\Users\Public\AccountPictures 2022-04-13 13:57 - 2022-04-13 13:57 - 000000000 ___RD C:\Users\domin\3D Objects 2022-04-13 13:57 - 2022-04-13 13:57 - 000000000 ____D C:\Users\domin\AppData\Roaming\Adobe 2022-04-13 13:57 - 2022-04-13 13:57 - 000000000 ____D C:\Users\domin\AppData\Local\Publishers 2022-04-13 13:57 - 2022-04-13 13:57 - 000000000 ____D C:\Users\domin\AppData\Local\PackageStaging 2022-04-13 13:56 - 2022-04-28 21:16 - 000000000 ____D C:\Users\domin 2022-04-13 13:56 - 2022-04-21 15:03 - 000002423 _____ C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2022-04-13 13:56 - 2022-04-13 13:56 - 000000020 ___SH C:\Users\domin\ntuser.ini 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Ustawienia lokalne 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Szablony 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Moje dokumenty 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Menu Start 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Documents\Moje wideo 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Documents\Moje obrazy 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Documents\Moja muzyka 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\Dane aplikacji 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\AppData\Local\Tymczasowe pliki internetowe 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\AppData\Local\Historia 2022-04-13 13:56 - 2022-04-13 13:56 - 000000000 _SHDL C:\Users\domin\AppData\Local\Dane aplikacji 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Szablony 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Moje dokumenty 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Menu Start 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\Dane aplikacji 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Szablony 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Pulpit 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Menu Start 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Dokumenty 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\ProgramData\Dane aplikacji 2022-04-13 13:54 - 2022-04-13 13:54 - 000000000 _SHDL C:\Documents and Settings 2022-04-13 13:52 - 2022-04-23 12:54 - 000002448 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2022-04-13 13:51 - 2022-04-29 09:51 - 000008192 ___SH C:\DumpStack.log.tmp 2022-04-13 13:51 - 2022-04-29 09:51 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2022-04-13 13:51 - 2022-04-28 21:10 - 000000000 ____D C:\Windows\system32\SleepStudy 2022-04-13 13:51 - 2022-04-28 20:58 - 000003566 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2022-04-13 13:51 - 2022-04-28 20:58 - 000003442 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2022-04-13 13:51 - 2022-04-13 14:26 - 000258584 _____ C:\Windows\system32\FNTCACHE.DAT 2022-04-13 13:51 - 2022-04-13 14:24 - 000000000 ____D C:\Windows\system32\Drivers\wd 2022-04-13 13:51 - 2022-04-13 13:51 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2022-04-13 13:51 - 2022-04-13 13:51 - 000000000 ____D C:\Windows\ServiceProfiles ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2022-04-29 09:57 - 2019-12-07 17:08 - 000784334 _____ C:\Windows\system32\perfh015.dat 2022-04-29 09:57 - 2019-12-07 17:08 - 000152230 _____ C:\Windows\system32\perfc015.dat 2022-04-29 09:57 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF 2022-04-29 09:54 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness 2022-04-29 09:51 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2022-04-28 22:11 - 2019-12-07 11:03 - 000262144 _____ C:\Windows\system32\config\BBI 2022-04-28 21:41 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP 2022-04-28 16:55 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp 2022-04-28 11:48 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps 2022-04-19 16:57 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\system32\GroupPolicy 2022-04-19 16:57 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2022-04-18 20:41 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2022-04-14 18:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Help 2022-04-14 17:47 - 2019-12-07 11:14 - 000000000 __SHD C:\Users\Public\Libraries 2022-04-14 13:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat 2022-04-13 22:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\NDF 2022-04-13 15:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\MUI 2022-04-13 15:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\MUI 2022-04-13 14:50 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr 2022-04-13 14:24 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender 2022-04-13 14:24 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing 2022-04-13 14:14 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState 2022-04-13 14:13 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog 2022-04-13 13:56 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2022-04-13 13:55 - 2019-12-07 17:10 - 000000000 ____D C:\Windows\system32\FxsTmp 2022-04-13 13:55 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool 2022-04-13 13:54 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate 2022-04-13 13:54 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT 2022-04-13 13:52 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM ==================== Pliki w katalogu głównym wybranych folderów ======== 2022-04-16 10:22 - 2022-04-16 10:22 - 000000047 _____ () C:\Users\domin\AppData\Roaming\.crystalinst 2022-04-13 15:29 - 2022-04-21 15:59 - 000000032 _____ () C:\Users\domin\AppData\Roaming\.machineId 2022-04-22 20:37 - 2022-04-22 20:37 - 000007606 _____ () C:\Users\domin\AppData\Local\Resmon.ResmonCfg ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================