Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 13-05-2021 Uruchomiony przez Rafte (administrator) DESKTOP-A0CBEEJ (13-05-2021 13:51:55) Uruchomiony z C:\Users\Rafte\Downloads Załadowane profile: Rafte Platform: Windows 10 Home Wersja 2004 19041.928 (X64) Język: Polski (Polska) Domyślna przeglądarka: Edge Tryb startu: Normal ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0361132.inf_amd64_1f7832db1fb1721f\B361196\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0361132.inf_amd64_1f7832db1fb1721f\B361196\atiesrxx.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <11> (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Rafte\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\Rafte\AppData\Local\Microsoft\Teams\current\Teams.exe <10> (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3> (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8483032 2015-05-28] (Realtek Semiconductor Corp -> Realtek Semiconductor) HKU\S-1-5-21-4253589527-2357655543-3448869504-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Rafte\AppData\Local\Microsoft\Teams\Update.exe [2453728 2021-05-12] (Microsoft 3rd Party Application Component -> Microsoft Corporation) HKU\S-1-5-21-4253589527-2357655543-3448869504-1001\...\Run: [Steam] => D:\steam\steam.exe [4087528 2021-04-12] (Valve -> Valve Corporation) HKU\S-1-5-21-4253589527-2357655543-3448869504-1001\...\Run: [EpicGamesLauncher] => D:\epic\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33031648 2021-05-13] (Epic Games Inc. -> Epic Games, Inc.) HKU\S-1-5-21-4253589527-2357655543-3448869504-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [33698888 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC) ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {16A1DBD5-5477-4EA3-85C8-2A49FF210E12} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-21] (Microsoft Corporation -> Microsoft Corporation) Task: {205A01C3-1D86-4896-8C1E-F9E90CFF76FA} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [696304 2021-05-04] (Mozilla Corporation -> Mozilla Foundation) Task: {5DC6DC62-DCD5-4FD5-9239-62ADE113140D} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141144 2021-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {6995F3E8-43A6-4BCA-AE70-226D669F2C77} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5229504 2021-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {79E06AFC-37DD-43DB-BE20-82BED3A463BA} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC) Task: {92A7FDBC-A3E5-457B-BA56-859F55AA2649} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [5229504 2021-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {9A790A2C-CC4D-4C6A-ADF7-E54370F170A1} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-04-22] (Piriform Software Ltd -> Piriform) Task: {AFDDF4F4-9E09-4F4F-A0E5-890C54A91A59} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23103392 2021-04-21] (Microsoft Corporation -> Microsoft Corporation) Task: {CD5563D1-5978-4BD8-B3CF-175C8796134F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [141144 2021-05-13] (Microsoft Corporation -> Microsoft Corporation) Task: {D7905701-5833-4E67-8D00-C42FD8645DB4} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [28082760 2021-04-22] (Piriform Software Ltd -> Piriform Software Ltd) Task: {DEF19DDA-908B-4AFF-BEBD-2120F73CD88F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{25da8a96-b8c3-42f4-a13b-6337003dfcf2}: [DhcpNameServer] 192.168.0.1 Edge: ======= Edge DefaultProfile: Default Edge Profile: C:\Users\Rafte\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-13] Edge Session Restore: Default -> [funkcja włączona] Edge Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Rafte\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ndcileolkflehcjpmjnfbnaibdcgglog [2021-05-12] FireFox: ======== FF DefaultProfile: d9fki6eq.default FF ProfilePath: C:\Users\Rafte\AppData\Roaming\Mozilla\Firefox\Profiles\d9fki6eq.default [2021-05-12] FF ProfilePath: C:\Users\Rafte\AppData\Roaming\Mozilla\Firefox\Profiles\ahxb232m.default-release [2021-05-13] FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2021-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-05-10] (VideoLAN -> VideoLAN) FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2021-05-13] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2021-05-13] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default [2021-05-13] CHR StartupUrls: Default -> "hxxps://mail.ru/cnt/10445?gp=811570","hxxps://www.google.com/" CHR Session Restore: Default -> [funkcja włączona] CHR Extension: (Prezentacje) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-05-12] CHR Extension: (Dokumenty) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-05-12] CHR Extension: (Dysk Google) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-05-12] CHR Extension: (YouTube) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-05-12] CHR Extension: (Adblock dla Youtube™) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2021-05-12] CHR Extension: (Arkusze) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-05-12] CHR Extension: (Dokumenty Google offline) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-12] CHR Extension: (AdBlock — najlepszy bloker reklam) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2021-05-12] CHR Extension: (Swpanel plugin) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\jimocieobonbdejkgkhkpobjoddmpjnk [2021-05-12] CHR Extension: (Usługa zwrotu gotówki LetyShops) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\lphicbbhfmllgmomkkhjfkpbdlncafbn [2021-05-12] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-12] CHR Extension: (Gmail) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-05-12] CHR Extension: (Chrome Media Router) - C:\Users\Rafte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-12] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8798600 2021-04-21] (Microsoft Corporation -> Microsoft Corporation) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7391408 2021-05-13] (Malwarebytes Inc -> Malwarebytes) S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-05-13] (Microsoft Windows Publisher -> Microsoft Corporation) S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-05-13] (Microsoft Windows Publisher -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) S3 asmthub3; C:\Windows\System32\drivers\asmthub3.sys [140032 2013-06-24] (MCCI Corporation -> ASMedia Technology Inc) S3 asmtxhci; C:\Windows\System32\drivers\asmtxhci.sys [420608 2013-06-24] (MCCI Corporation -> ASMedia Technology Inc) S3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2015-10-19] (Disc Soft Ltd -> Disc Soft Ltd) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [199128 2021-05-13] (Malwarebytes Inc -> Malwarebytes) S3 IreulBus; C:\Windows\System32\drivers\IreulBus.sys [52984 2019-05-17] (Rainway, Inc. -> Rainway, Inc.) S3 Kinonih; C:\Windows\System32\drivers\kinonih.sys [32256 2016-06-22] (Kinoni Oy -> Kinoni) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [220752 2021-05-13] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [19912 2021-05-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [198888 2021-05-13] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [77496 2021-05-13] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [248992 2021-05-13] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [157944 2021-05-13] (Malwarebytes Inc -> Malwarebytes) R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software) S3 ssudqcfilter; C:\Windows\System32\drivers\ssudqcfilter.sys [64880 2020-04-24] (Samsung Electronics Co., Ltd. -> QUALCOMM Incorporated) R3 SteamStreamingMicrophone; C:\Windows\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> ) R3 SteamStreamingSpeakers; C:\Windows\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> ) S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49560 2021-05-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [421088 2021-05-13] (Microsoft Windows -> Microsoft Corporation) S3 wdm_usb; C:\Windows\System32\drivers\usb2ser.sys [151184 2016-07-15] (NGO -> MBB) S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [72928 2021-05-13] (Microsoft Windows -> Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) (filtrowane) ========= (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-05-13 13:44 - 2021-05-13 13:52 - 000014136 _____ C:\Users\Rafte\Downloads\FRST.txt 2021-05-13 13:42 - 2021-05-13 13:42 - 000000000 ____D C:\Users\Rafte\Downloads\FRST-OlderVersion 2021-05-13 11:13 - 2021-05-13 11:13 - 000000000 ____D C:\Users\Rafte\Documents\League of Legends 2021-05-13 11:11 - 2021-05-13 11:13 - 000000000 ____D C:\ProgramData\Riot Games 2021-05-13 11:11 - 2021-05-13 11:12 - 000001681 _____ C:\Users\Public\Desktop\League of Legends.lnk 2021-05-13 11:11 - 2021-05-13 11:11 - 069746200 _____ (Riot Games, Inc.) C:\Users\Rafte\Downloads\Install League of Legends eune.exe 2021-05-13 11:11 - 2021-05-13 11:11 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-05-13 11:11 - 2021-05-13 11:11 - 000000000 ____D C:\Users\Rafte\AppData\Local\Riot Games 2021-05-13 11:11 - 2021-05-13 11:11 - 000000000 ____D C:\Riot Games 2021-05-13 11:11 - 2021-05-13 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Riot Games 2021-05-13 10:48 - 2021-05-13 10:48 - 000000000 ____D C:\Users\Rafte\AppData\Local\ElevatedDiagnostics 2021-05-13 10:43 - 2021-05-13 10:43 - 000000000 ____D C:\Users\Rafte\AppData\LocalLow\Twirlbound 2021-05-13 10:17 - 2021-05-13 10:17 - 000571752 _____ (WinTools.Info) C:\Users\Rafte\Downloads\precisestress.exe 2021-05-13 10:15 - 2021-05-13 10:15 - 000004963 _____ C:\Users\Rafte\Desktop\raportmalware.txt 2021-05-13 10:14 - 2021-05-13 10:14 - 000004825 _____ C:\Users\Rafte\Desktop\malware.txt 2021-05-13 09:43 - 2021-05-13 13:46 - 000023965 _____ C:\Users\Rafte\Desktop\Addition.txt 2021-05-13 09:40 - 2021-05-13 13:52 - 000000000 ____D C:\FRST 2021-05-13 09:40 - 2021-05-13 13:44 - 000051670 _____ C:\Users\Rafte\Desktop\FRST.txt 2021-05-13 09:39 - 2021-05-13 13:42 - 002299392 _____ (Farbar) C:\Users\Rafte\Downloads\FRST64.exe 2021-05-13 09:37 - 2021-05-13 09:37 - 063704816 _____ (IObit ) C:\Users\Rafte\Downloads\IObit-Malware-Fighter-Setup.exe 2021-05-13 09:09 - 2021-05-13 09:32 - 000000000 ____D C:\Users\Rafte\AppData\LocalLow\IGDump 2021-05-13 09:09 - 2021-05-13 09:09 - 000000000 ____D C:\Users\Rafte\AppData\Local\CrashDumps 2021-05-13 08:47 - 2021-05-13 11:31 - 000000000 ____D C:\Program Files\CCleaner 2021-05-13 08:47 - 2021-05-13 08:47 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update 2021-05-13 08:47 - 2021-05-13 08:47 - 000002888 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC 2021-05-13 08:47 - 2021-05-13 08:47 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk 2021-05-13 08:39 - 2021-05-13 08:39 - 000000112 ___SH C:\bootTel.dat 2021-05-13 08:39 - 2021-05-13 08:39 - 000000000 __SHD C:\found.000 2021-05-13 08:24 - 2021-05-13 08:26 - 000077496 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2021-05-13 08:24 - 2021-05-13 08:24 - 000248992 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2021-05-13 08:24 - 2021-05-13 08:24 - 000220752 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2021-05-13 08:24 - 2021-05-13 08:24 - 000198888 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2021-05-13 08:24 - 2021-05-13 08:24 - 000157944 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2021-05-13 08:24 - 2021-05-13 08:24 - 000002040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2021-05-13 08:24 - 2021-05-13 08:24 - 000002028 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2021-05-13 08:24 - 2021-05-13 08:24 - 000000000 ____D C:\Users\Rafte\AppData\Local\mbam 2021-05-13 08:24 - 2021-05-13 08:23 - 000199128 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys 2021-05-13 08:24 - 2021-05-13 08:23 - 000019912 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamElam.sys 2021-05-13 08:23 - 2021-05-13 08:23 - 000000000 ____D C:\ProgramData\Malwarebytes 2021-05-13 08:23 - 2021-05-13 08:23 - 000000000 ____D C:\Program Files\Malwarebytes 2021-05-13 08:20 - 2021-05-13 08:21 - 000000000 ____D C:\AdwCleaner 2021-05-13 07:46 - 2021-05-13 07:46 - 000000000 ____D C:\Users\Rafte\AppData\Local\ESET 2021-05-13 01:52 - 2021-05-13 01:57 - 000002463 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002421 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002420 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002408 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000002400 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk 2021-05-13 01:52 - 2021-05-13 01:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2021-05-13 01:46 - 2021-05-13 01:46 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2021-05-13 01:42 - 2021-05-13 01:57 - 000000000 ____D C:\Program Files\Microsoft Office 2021-05-13 01:42 - 2021-05-13 01:42 - 000000000 ____D C:\Program Files\Microsoft Office 15 2021-05-13 01:31 - 2021-05-13 01:31 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools 2021-05-13 01:29 - 2021-05-13 01:31 - 000000000 ____D C:\Windows\system32\MRT 2021-05-13 01:27 - 2021-05-13 01:27 - 000000000 ___HD C:\$WinREAgent 2021-05-13 00:04 - 2021-05-13 00:04 - 000000254 _____ C:\Users\Rafte\Desktop\Pine.url 2021-05-13 00:01 - 2021-05-13 00:01 - 000000000 ____D C:\Users\Rafte\AppData\Local\NVIDIA Corporation 2021-05-13 00:01 - 2021-05-13 00:01 - 000000000 ____D C:\ProgramData\Package Cache 2021-05-13 00:00 - 2021-05-13 00:00 - 000000000 ____D C:\Users\Rafte\AppData\Local\UnrealEngineLauncher 2021-05-13 00:00 - 2021-05-13 00:00 - 000000000 ____D C:\Users\Rafte\AppData\Local\UnrealEngine 2021-05-13 00:00 - 2021-05-13 00:00 - 000000000 ____D C:\Users\Rafte\AppData\Local\EpicGamesLauncher 2021-05-12 23:59 - 2021-05-13 00:01 - 000000000 ____D C:\ProgramData\Epic 2021-05-12 23:59 - 2021-05-12 23:59 - 000000897 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk 2021-05-12 23:59 - 2021-05-12 23:59 - 000000897 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk 2021-05-12 23:54 - 2021-05-12 23:54 - 000000000 ____D C:\Users\Rafte\AppData\Local\Steam 2021-05-12 23:54 - 2021-05-12 23:54 - 000000000 ____D C:\Users\Rafte\AppData\Local\CEF 2021-05-12 23:50 - 2021-05-12 23:50 - 000000553 _____ C:\Users\Public\Desktop\Steam.lnk 2021-05-12 23:50 - 2021-05-12 23:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2021-05-12 23:49 - 2021-05-12 23:50 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\WhatsApp 2021-05-12 23:49 - 2021-05-12 23:49 - 000002208 _____ C:\Users\Rafte\Desktop\WhatsApp.lnk 2021-05-12 23:49 - 2021-05-12 23:49 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WhatsApp 2021-05-12 23:49 - 2021-05-12 23:49 - 000000000 ____D C:\Users\Rafte\AppData\Local\WhatsApp 2021-05-12 23:46 - 2021-05-13 11:36 - 000000000 ____D C:\Program Files (x86)\SpeedFan 2021-05-12 23:46 - 2021-05-12 23:46 - 000001087 _____ C:\Users\Rafte\Desktop\SpeedFan.lnk 2021-05-12 23:42 - 2021-05-12 23:42 - 000000000 ____D C:\Users\Rafte\Desktop\Pracka i dyplom 2021-05-12 23:42 - 2021-05-12 23:42 - 000000000 ____D C:\Users\Rafte\Desktop\Nowy folder (2) 2021-05-12 23:42 - 2021-05-12 23:42 - 000000000 ____D C:\Users\Rafte\Desktop\Misio Rudy Piesek 2021-05-12 23:42 - 2021-05-12 23:42 - 000000000 ____D C:\Users\Rafte\Desktop\Inne 2021-05-12 23:41 - 2021-05-12 23:42 - 000000000 ____D C:\Users\Rafte\Desktop\Natalinka 2021-05-12 23:41 - 2021-05-12 23:41 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2021-05-12 23:15 - 2021-05-12 23:46 - 000000045 _____ C:\Windows\SysWOW64\initdebug.nfo 2021-05-12 23:14 - 2021-05-12 23:49 - 000000000 ____D C:\Users\Rafte\AppData\Local\SquirrelTemp 2021-05-12 23:14 - 2021-05-12 23:14 - 000002375 _____ C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Teams.lnk 2021-05-12 23:14 - 2021-05-12 23:14 - 000002367 _____ C:\Users\Rafte\Desktop\Microsoft Teams.lnk 2021-05-12 23:14 - 2021-05-12 23:14 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Teams 2021-05-12 23:13 - 2021-05-12 23:13 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-05-12 23:13 - 2021-05-12 23:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2021-05-12 23:13 - 2021-05-12 23:13 - 000000000 ____D C:\Program Files\WinRAR 2021-05-12 23:06 - 2021-05-12 23:06 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\vlc 2021-05-12 22:59 - 2020-11-17 23:49 - 000107048 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys 2021-05-12 22:58 - 2021-05-12 23:05 - 000000923 _____ C:\Users\Public\Desktop\VLC media player.lnk 2021-05-12 22:58 - 2021-05-12 22:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN 2021-05-12 22:57 - 2021-05-12 22:57 - 000000000 ____D C:\Program Files\VideoLAN 2021-05-12 22:56 - 2021-05-13 13:40 - 000000000 ____D C:\Users\Rafte\AppData\LocalLow\Mozilla 2021-05-12 22:56 - 2021-05-13 13:40 - 000000000 ____D C:\ProgramData\Mozilla 2021-05-12 22:56 - 2021-05-12 22:56 - 000001012 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk 2021-05-12 22:56 - 2021-05-12 22:56 - 000001000 _____ C:\Users\Public\Desktop\Firefox.lnk 2021-05-12 22:56 - 2021-05-12 22:56 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla 2021-05-12 22:56 - 2021-05-12 22:56 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Mozilla 2021-05-12 22:56 - 2021-05-12 22:56 - 000000000 ____D C:\Users\Rafte\AppData\Local\Mozilla 2021-05-12 22:56 - 2021-05-12 22:56 - 000000000 ____D C:\Program Files\Mozilla Firefox 2021-05-12 22:56 - 2021-05-12 22:56 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2021-05-12 22:55 - 2021-05-12 22:55 - 000000000 ____D C:\Users\Rafte\AppData\Local\Comms 2021-05-12 22:54 - 2021-05-12 22:54 - 000003568 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA 2021-05-12 22:54 - 2021-05-12 22:54 - 000003444 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore 2021-05-12 22:54 - 2021-05-12 22:54 - 000002336 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2021-05-12 22:54 - 2021-05-12 22:54 - 000002295 _____ C:\Users\Public\Desktop\Google Chrome.lnk 2021-05-12 22:54 - 2021-05-12 22:54 - 000000000 ____D C:\Program Files\Google 2021-05-12 22:54 - 2021-05-12 22:54 - 000000000 ____D C:\Program Files (x86)\Google 2021-05-12 22:53 - 2021-05-13 10:47 - 000000000 ____D C:\Users\Rafte\AppData\Local\Google 2021-05-12 22:41 - 2021-05-13 13:36 - 000000000 ____D C:\Users\Rafte\AppData\Local\PlaceholderTileLogoFolder 2021-05-12 22:40 - 2021-05-13 11:35 - 000000000 ___RD C:\Users\Rafte\OneDrive 2021-05-12 22:40 - 2021-05-12 22:40 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4253589527-2357655543-3448869504-1001 2021-05-12 22:40 - 2021-05-12 22:40 - 000000000 ___HD C:\OneDriveTemp 2021-05-12 22:39 - 2021-05-12 22:39 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2021-05-12 22:38 - 2021-05-13 13:36 - 000000000 ____D C:\Users\Rafte\AppData\Local\Packages 2021-05-12 22:38 - 2021-05-13 11:13 - 000000000 ____D C:\Users\Rafte\AppData\Local\D3DSCache 2021-05-12 22:38 - 2021-05-13 10:40 - 000000000 ____D C:\Users\Rafte\AppData\Local\AMD 2021-05-12 22:38 - 2021-05-13 01:48 - 000000000 ____D C:\Users\Rafte\AppData\Local\ConnectedDevicesPlatform 2021-05-12 22:38 - 2021-05-12 22:55 - 000000000 ____D C:\ProgramData\Packages 2021-05-12 22:38 - 2021-05-12 22:39 - 000000000 __RHD C:\Users\Public\AccountPictures 2021-05-12 22:38 - 2021-05-12 22:38 - 000000000 ___RD C:\Users\Rafte\3D Objects 2021-05-12 22:38 - 2021-05-12 22:38 - 000000000 ____D C:\Users\Rafte\AppData\Roaming\Adobe 2021-05-12 22:38 - 2021-05-12 22:38 - 000000000 ____D C:\Users\Rafte\AppData\LocalLow\AMD 2021-05-12 22:38 - 2021-05-12 22:38 - 000000000 ____D C:\Users\Rafte\AppData\Local\VirtualStore 2021-05-12 22:38 - 2021-05-12 22:38 - 000000000 ____D C:\Users\Rafte\AppData\Local\Publishers 2021-05-12 22:36 - 2021-05-13 08:41 - 000000000 ____D C:\Users\Rafte 2021-05-12 22:36 - 2021-05-12 22:40 - 000002418 _____ C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2021-05-12 22:36 - 2021-05-12 22:36 - 000000020 ___SH C:\Users\Rafte\ntuser.ini 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Ustawienia lokalne 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Szablony 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Moje dokumenty 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Menu Start 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Documents\Moje wideo 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Documents\Moje obrazy 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Documents\Moja muzyka 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\Dane aplikacji 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\AppData\Local\Tymczasowe pliki internetowe 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\AppData\Local\Historia 2021-05-12 22:36 - 2021-05-12 22:36 - 000000000 _SHDL C:\Users\Rafte\AppData\Local\Dane aplikacji 2021-05-12 22:28 - 2021-05-13 11:33 - 002650170 _____ C:\Windows\system32\PerfStringBackup.INI 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Public\Documents\Moje wideo 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Public\Documents\Moje obrazy 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Public\Documents\Moja muzyka 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Szablony 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Moje dokumenty 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Menu Start 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Documents\Moje wideo 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Documents\Moje obrazy 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Documents\Moja muzyka 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\Dane aplikacji 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\AppData\Local\Tymczasowe pliki internetowe 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\Default User 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Users\All Users 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Szablony 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Pulpit 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Menu Start 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Dokumenty 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\ProgramData\Dane aplikacji 2021-05-12 22:23 - 2021-05-12 22:23 - 000000000 _SHDL C:\Documents and Settings 2021-05-12 22:17 - 2021-05-13 01:16 - 000065536 _____ C:\Windows\system32\spu_storage.bin 2021-05-12 22:17 - 2021-05-12 22:59 - 000000000 ____D C:\Program Files\AMD 2021-05-12 22:17 - 2021-05-12 22:17 - 000000000 ____H C:\ProgramData\DP45977C.lfl 2021-05-12 22:17 - 2021-05-12 22:17 - 000000000 ____D C:\Windows\SysWOW64\RTCOM 2021-05-12 22:17 - 2021-05-12 22:17 - 000000000 ____D C:\Program Files\Realtek 2021-05-12 22:17 - 2021-05-12 22:17 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies 2021-05-12 22:16 - 2021-05-13 07:35 - 000002455 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk 2021-05-12 22:16 - 2021-05-13 07:35 - 000002293 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk 2021-05-12 22:16 - 2021-05-12 22:17 - 000003510 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA 2021-05-12 22:16 - 2021-05-12 22:17 - 000003386 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore 2021-05-12 22:15 - 2021-05-13 11:29 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2021-05-12 22:15 - 2021-05-13 01:27 - 000000000 ____D C:\Windows\system32\Drivers\wd 2021-05-12 22:14 - 2021-05-13 11:29 - 000008192 ___SH C:\DumpStack.log.tmp 2021-05-12 22:14 - 2021-05-13 11:29 - 000000000 ____D C:\Windows\system32\SleepStudy 2021-05-12 22:14 - 2021-05-13 01:59 - 000278432 _____ C:\Windows\system32\FNTCACHE.DAT 2021-05-12 22:14 - 2021-05-12 22:14 - 000000000 ____D C:\Windows\system32\AMD 2021-05-12 22:14 - 2021-05-12 22:14 - 000000000 ____D C:\Windows\ServiceProfiles 2021-05-12 21:18 - 2021-05-13 08:51 - 000000000 ____D C:\Windows\Panther 2021-05-12 21:09 - 2021-05-12 22:24 - 000000000 ____D C:\Windows.old 2021-05-12 21:07 - 2021-05-12 21:07 - 000008192 _____ C:\Windows\system32\config\userdiff 2021-05-12 21:07 - 2021-05-12 21:07 - 000000000 ____D C:\Windows\Setup 2021-05-12 21:06 - 2021-05-12 22:26 - 000000000 ____D C:\Windows\system32\FxsTmp 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\SysWOW64\MailContactsCalendarSync 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\SysWOW64\FxsTmp 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\system32\OpenSSH 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\system32\MailContactsCalendarSync 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\OCR 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\addins 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\ProgramData\ssh 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Program Files\Reference Assemblies 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Program Files\MSBuild 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies 2021-05-12 21:06 - 2021-05-12 21:06 - 000000000 ____D C:\Program Files (x86)\MSBuild 2021-05-12 21:05 - 2021-05-13 11:33 - 000784172 _____ C:\Windows\system32\perfh015.dat 2021-05-12 21:05 - 2021-05-13 11:33 - 000152068 _____ C:\Windows\system32\perfc015.dat 2021-05-12 21:05 - 2021-05-12 21:05 - 000343212 _____ C:\Windows\system32\perfi015.dat 2021-05-12 21:05 - 2021-05-12 21:05 - 000041370 _____ C:\Windows\system32\perfd015.dat 2021-05-12 21:05 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\pl 2021-05-12 21:05 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\pl 2021-05-12 21:02 - 2021-05-13 11:33 - 000732110 _____ C:\Windows\system32\perfh007.dat 2021-05-12 21:02 - 2021-05-13 11:33 - 000149510 _____ C:\Windows\system32\perfc007.dat 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\winrm 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\WCN 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\slmgr 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\winrm 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\WCN 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\slmgr 2021-05-12 21:02 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts 2021-05-12 21:02 - 2021-05-12 21:02 - 000306166 _____ C:\Windows\system32\perfi007.dat 2021-05-12 21:02 - 2021-05-12 21:02 - 000040520 _____ C:\Windows\system32\perfd007.dat 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\SysWOW64\sysprep 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\SysWOW64\de 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\SysWOW64\0409 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\system32\de 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\system32\0409 2021-05-12 21:02 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\DigitalLocker 2021-05-12 20:59 - 2021-05-12 20:55 - 000215943 _____ C:\Windows\SysWOW64\dssec.dat 2021-05-12 20:59 - 2021-05-12 20:55 - 000003103 _____ C:\Windows\SysWOW64\mmc.exe.config 2021-05-12 20:59 - 2021-05-12 20:55 - 000000741 _____ C:\Windows\SysWOW64\NOISE.DAT 2021-05-12 20:58 - 2021-05-13 13:49 - 000000000 ____D C:\Windows\AppReadiness 2021-05-12 20:58 - 2021-05-13 13:44 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2021-05-12 20:58 - 2021-05-13 13:36 - 000000000 ___HD C:\Program Files\WindowsApps 2021-05-12 20:58 - 2021-05-13 08:23 - 000000000 ___RD C:\Program Files (x86) 2021-05-12 20:58 - 2021-05-13 08:15 - 000000000 ___HD C:\Windows\ELAMBKUP 2021-05-12 20:58 - 2021-05-13 07:36 - 000000000 ____D C:\Windows\appcompat 2021-05-12 20:58 - 2021-05-13 01:48 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2021-05-12 20:58 - 2021-05-13 01:27 - 000000000 ____D C:\Program Files\Windows Defender 2021-05-12 20:58 - 2021-05-12 22:54 - 000000000 ___RD C:\Windows\PrintDialog 2021-05-12 20:58 - 2021-05-12 22:42 - 000028672 _____ C:\Windows\system32\config\BCD-Template 2021-05-12 20:58 - 2021-05-12 22:38 - 000000000 ___RD C:\Windows\ImmersiveControlPanel 2021-05-12 20:58 - 2021-05-12 22:36 - 000000000 ____D C:\Windows\system32\WinBioDatabase 2021-05-12 20:58 - 2021-05-12 22:26 - 000000000 ____D C:\Windows\system32\spool 2021-05-12 20:58 - 2021-05-12 22:25 - 000000000 ____D C:\Windows\ServiceState 2021-05-12 20:58 - 2021-05-12 22:25 - 000000000 ____D C:\ProgramData\USOPrivate 2021-05-12 20:58 - 2021-05-12 22:23 - 000000000 ____D C:\Program Files\Windows NT 2021-05-12 20:58 - 2021-05-12 22:14 - 000000000 ____D C:\Windows\system32\config\TxR 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\SysWOW64\MUI 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\SystemResources 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\system32\WinBioPlugIns 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\system32\setup 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\system32\MUI 2021-05-12 20:58 - 2021-05-12 21:06 - 000000000 ____D C:\Windows\PolicyDefinitions 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ___SD C:\Windows\SysWOW64\F12 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ___SD C:\Windows\system32\F12 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ___SD C:\Windows\system32\DiagSvcs 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\oobe 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\Dism 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\SysWOW64\Com 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\SystemResetPlatform 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\Sysprep 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\PerceptionSimulation 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\oobe 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\migwiz 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\Dism 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\system32\Com 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Windows\IME 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Program Files\Common Files\System 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2021-05-12 20:58 - 2021-05-12 21:05 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2021-05-12 20:58 - 2021-05-12 21:03 - 000000000 ___SD C:\Windows\system32\dsc 2021-05-12 20:58 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\SysWOW64\setup 2021-05-12 20:58 - 2021-05-12 21:02 - 000000000 ____D C:\Windows\Help 2021-05-12 20:58 - 2021-05-12 21:02 - 000000000 ____D C:\Program Files (x86)\Windows NT 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ___SD C:\Windows\SysWOW64\Nui 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\migwiz 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\Keywords 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\icsxml 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\downlevel 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\Bthprops 2021-05-12 20:58 - 2021-05-12 20:59 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 __SHD C:\Program Files\Windows Sidebar 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 __RSD C:\Windows\Media 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 __RHD C:\Users\Public\Libraries 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___SD C:\Windows\SysWOW64\Configuration 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___SD C:\Windows\system32\UNP 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___SD C:\Windows\system32\Nui 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___SD C:\Windows\system32\Configuration 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___SD C:\Windows\Downloaded Program Files 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___RD C:\Windows\Offline Web Pages 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ___HD C:\Windows\LanguageOverlayCache 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Web 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\WaaS 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Vss 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\tracing 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\TAPI 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\SMI 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\ras 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\NDF 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\Msdtc 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\Ipmi 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\InputMethod 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\inetsrv 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\IME 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicyUsers 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\GroupPolicy 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SysWOW64\AppLocker 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SystemApps 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\WinMetadata 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\winevt 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ti-et 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ta-lk 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ta-in 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\si-lk 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ShellExperiences 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Sgrm 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\SecureBootUpdates 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ras 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ProximityToast 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\PointOfService 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\osa-Osge-001 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\NDF 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\my-mm 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\MsDtc 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Keywords 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Ipmi 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\InputMethod 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\inetsrv 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\IME 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\icsxml 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ias 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Hydrogen 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\GroupPolicyUsers 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\GroupPolicy 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ff-Adlm-SN 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\DriverState 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Drivers\DriverData 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\downlevel 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\DDFs 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\ContainerSettingsProviders 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\config\systemprofile 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\config\RegBack 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\config\Journal 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\Bthprops 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\appraiser 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\AppLocker 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\am-et 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\AdvancedInstallers 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\System 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SKB 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\ShellExperiences 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\ShellComponents 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\security 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\schemas 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\SchCache 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Resources 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\rescache 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Registration 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Provisioning 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\PLA 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Performance 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\ModemLogs 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\LiveKernelReports 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\L2Schemas 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\InputMethod 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\IdentityCRL 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Globalization 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\GameBarPresenceWriter 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\DiagTrack 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Cursors 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Containers 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\Branding 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\bcastdvr 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\ProgramData\USOShared 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files\Windows Security 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files\Windows Portable Devices 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files\Common Files\Services 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2021-05-12 20:58 - 2021-05-12 20:58 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2021-05-12 20:58 - 2021-05-12 20:55 - 000215943 _____ C:\Windows\system32\dssec.dat 2021-05-12 20:58 - 2021-05-12 20:55 - 000020908 _____ C:\Windows\system32\OEMDefaultAssociations.xml 2021-05-12 20:58 - 2021-05-12 20:55 - 000017635 _____ C:\Windows\system32\Drivers\etc\services 2021-05-12 20:58 - 2021-05-12 20:55 - 000003683 _____ C:\Windows\system32\Drivers\etc\lmhosts.sam 2021-05-12 20:58 - 2021-05-12 20:55 - 000003103 _____ C:\Windows\system32\mmc.exe.config 2021-05-12 20:58 - 2021-05-12 20:55 - 000001358 _____ C:\Windows\system32\Drivers\etc\protocol 2021-05-12 20:58 - 2021-05-12 20:55 - 000000858 _____ C:\Windows\system32\DefaultQuestions.json 2021-05-12 20:58 - 2021-05-12 20:55 - 000000741 _____ C:\Windows\system32\NOISE.DAT 2021-05-12 20:58 - 2021-05-12 20:55 - 000000407 _____ C:\Windows\system32\Drivers\etc\networks 2021-05-12 20:58 - 2021-05-12 20:55 - 000000219 _____ C:\Windows\system.ini 2021-05-12 20:58 - 2021-05-12 20:55 - 000000092 _____ C:\Windows\win.ini 2021-05-12 20:56 - 2021-05-13 11:33 - 000000000 ____D C:\Windows\INF 2021-05-12 20:50 - 2021-05-13 09:50 - 000000000 ____D C:\Windows\CbsTemp 2021-05-12 20:41 - 2021-05-13 09:40 - 095158272 _____ C:\Windows\system32\config\SOFTWARE 2021-05-12 20:41 - 2021-05-13 01:16 - 014155776 _____ C:\Windows\system32\config\SYSTEM 2021-05-12 20:41 - 2021-05-13 01:16 - 000786432 _____ C:\Windows\system32\config\DEFAULT 2021-05-12 20:41 - 2021-05-13 01:16 - 000524288 _____ C:\Windows\system32\config\BBI 2021-05-12 20:41 - 2021-05-13 01:16 - 000131072 _____ C:\Windows\system32\config\SAM 2021-05-12 20:41 - 2021-05-13 01:16 - 000032768 _____ C:\Windows\system32\config\SECURITY 2021-05-12 20:41 - 2021-05-12 22:45 - 000000000 ____D C:\Windows\servicing 2021-05-12 20:41 - 2021-05-12 22:39 - 000032768 _____ C:\Windows\system32\config\ELAM 2021-05-12 20:41 - 2021-05-12 20:58 - 000000000 ____D C:\Windows\system32\SMI 2021-05-12 19:08 - 2021-05-12 23:13 - 000000000 ___HD C:\$SysReset 2021-04-14 16:01 - 2021-04-14 16:01 - 001823304 ____N (Microsoft Corporation) C:\Windows\system32\winload.efi 2021-04-14 16:01 - 2021-04-14 16:01 - 000231248 ____N C:\Windows\system32\containerdevicemanagement.dll 2021-04-14 16:01 - 2021-04-14 16:01 - 000011357 ____N C:\Windows\system32\DrtmAuthTxt.wim ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2021-05-12 20:55 - 2020-10-08 16:11 - 000307712 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys 2021-05-12 20:54 - 2019-12-07 11:10 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\browser.dll ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================