Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 22-04-2017 Uruchomiony przez Sayo (administrator) DESKTOP-621DJNQ (22-04-2017 17:11:05) Uruchomiony z C:\Users\Sayo\Desktop Załadowane profile: Sayo (Dostępne profile: defaultuser0 & Sayo & Użytkownik) Platform: Windows 10 Pro Wersja 1703 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (ESET) C:\Program Files\ESET\ESET Security\ekrn.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe (Intel Corporation) C:\Windows\System32\IntelSSTAPO\ParameterService\ParameterService.exe (Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe (Hi-Rez Studios) E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Microsoft Corporation) C:\Windows\System32\SecurityHealthService.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (ESET) C:\Program Files\ESET\ESET Security\egui.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxEM.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Flux Software LLC) C:\Users\Sayo\AppData\Local\FluxSoftware\Flux\flux.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16475392 2016-06-02] (Realtek Semiconductor) HKLM\...\Run: [RtHDVBg_TrueHarmony] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1454336 2016-06-02] (Realtek Semiconductor) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-27] (Microsoft Corporation) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-03-15] (Oracle Corporation) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [Steam] => E:\Gry\Steam\steam.exe [3019552 2017-03-23] (Valve Corporation) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [Discord] => C:\Users\Sayo\AppData\Local\Discord\app-0.0.297\Discord.exe [64290304 2017-01-04] (Hammer & Chisel, Inc.) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [Spotify Web Helper] => C:\Users\Sayo\AppData\Roaming\Spotify\SpotifyWebHelper.exe [1446000 2017-03-05] (Spotify Ltd) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [Spotify] => C:\Users\Sayo\AppData\Roaming\Spotify\Spotify.exe [7114352 2017-03-05] (Spotify Ltd) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [f.lux] => C:\Users\Sayo\AppData\Local\FluxSoftware\Flux\flux.exe [1017224 2013-10-24] (Flux Software LLC) HKU\S-1-5-21-16502099-2768771478-3928545113-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [27545048 2017-03-14] (Skype Technologies S.A.) ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> Brak pliku Startup: C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2016-11-09] ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 212.109.144.1 8.8.8.8 Tcpip\..\Interfaces\{3eed387f-0c04-4132-ae15-4d05f6940f2c}: [DhcpNameServer] 192.168.11.1 192.168.15.1 Tcpip\..\Interfaces\{b8cc3cbb-5c54-4b94-9e26-13feedebfe68}: [DhcpNameServer] 212.109.144.1 8.8.8.8 Internet Explorer: ================== BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_131\bin\ssv.dll [2017-04-20] (Oracle Corporation) BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_131\bin\jp2ssv.dll [2017-04-20] (Oracle Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-27] (Microsoft Corporation) FireFox: ======== FF Plugin: @java.com/DTPlugin,version=11.131.2 -> C:\Program Files\Java\jre1.8.0_131\bin\dtplugin\npDeployJava1.dll [2017-04-20] (Oracle Corporation) FF Plugin: @java.com/JavaPlugin,version=11.131.2 -> C:\Program Files\Java\jre1.8.0_131\bin\plugin2\npjp2.dll [2017-04-20] (Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-13] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.3\npGoogleUpdate3.dll [2017-04-13] (Google Inc.) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2017-04-05] (Adobe Systems Inc.) Chrome: ======= CHR Profile: C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default [2017-04-22] CHR Extension: (Prezentacje Google) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-09-08] CHR Extension: (Dokumenty Google) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-09-08] CHR Extension: (Dysk Google) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-09-08] CHR Extension: (Dimensions) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\baocaagndhipibgklemoalmkljaimfdj [2016-10-23] CHR Extension: (ColorZilla) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhlhnicpbhignbdhedgjhgdocnmhomnp [2016-12-27] CHR Extension: (YouTube) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-09-08] CHR Extension: (Arkusze Google) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-09-08] CHR Extension: (Dokumenty Google offline) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-09-08] CHR Extension: (AdBlock) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2017-04-13] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-03-09] CHR Extension: (Gmail) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-09-08] CHR Extension: (Chrome Media Router) - C:\Users\Sayo\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-04-06] CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2227312 2017-02-27] (Adobe Systems, Incorporated) R2 AtherosSvc; C:\WINDOWS\system32\AdminService.exe [355760 2016-06-26] (Windows (R) Win 7 DDK provider) S3 cphs; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHeciSvc.exe [310256 2017-02-07] (Intel Corporation) S3 cplspcon; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\IntelCpHDCPSvc.exe [488944 2017-02-07] (Intel Corporation) S3 DevicesFlowUserSvc; C:\WINDOWS\System32\DevicesFlowBroker.dll [689152 2017-03-18] (Microsoft Corporation) S3 DevicesFlowUserSvc_20d7a27; C:\WINDOWS\system32\svchost.exe [47664 2017-03-18] (Microsoft Corporation) S3 DevicesFlowUserSvc_20d7a27; C:\WINDOWS\SysWOW64\svchost.exe [40904 2017-03-18] (Microsoft Corporation) R2 DusmSvc; C:\WINDOWS\System32\dusmsvc.dll [302592 2017-03-18] (Microsoft Corporation) S3 EasyAntiCheat; C:\Windows\SysWOW64\EasyAntiCheat.exe [395024 2016-12-07] (EasyAntiCheat Ltd) R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2624856 2017-03-09] (ESET) U2 HiPatchService; E:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2017-02-24] (Hi-Rez Studios) [Brak podpisu cyfrowego] R2 igfxCUIService2.0.0.0; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igfxCUIService.exe [350704 2017-02-07] (Intel Corporation) R2 IntelSSTSvc; C:\WINDOWS\system32\IntelSSTAPO\ParameterService\ParameterService.exe [26592 2016-03-04] (Intel Corporation) S3 IpxlatCfgSvc; C:\WINDOWS\System32\IpxlatCfg.dll [64000 2017-03-18] (Microsoft Corporation) S3 NaturalAuthentication; C:\WINDOWS\System32\NaturalAuth.dll [723968 2017-03-18] (Microsoft Corporation) R2 SecurityHealthService; C:\WINDOWS\system32\SecurityHealthService.exe [335808 2017-03-18] (Microsoft Corporation) S3 SEMgrSvc; C:\WINDOWS\system32\SEMgrSvc.dll [1191424 2017-03-18] (Microsoft Corporation) S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [3913064 2017-03-20] (Microsoft Corporation) S3 spectrum; C:\WINDOWS\system32\spectrum.exe [891904 2017-03-18] (Microsoft Corporation) R3 TokenBroker; C:\WINDOWS\System32\TokenBroker.dll [1054720 2017-03-18] (Microsoft Corporation) R3 TokenBroker; C:\WINDOWS\SysWOW64\TokenBroker.dll [799232 2017-03-18] (Microsoft Corporation) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) S3 WFDSConMgrSvc; C:\WINDOWS\System32\wfdsconmgrsvc.dll [555008 2017-03-18] (Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) S3 wlpasvc; C:\WINDOWS\System32\lpasvc.dll [1295360 2017-03-18] (Microsoft Corporation) S3 xbgm; C:\WINDOWS\System32\xbgmsvc.dll [301216 2017-03-18] (Microsoft Corporation) S3 XboxGipSvc; C:\WINDOWS\System32\XboxGipSvc.dll [18944 2017-03-18] (Microsoft Corporation) ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AndnetBus; C:\WINDOWS\System32\drivers\lgandnetbus64.sys [29184 2015-05-12] (LG Electronics Inc.) S3 AndNetDiag; C:\WINDOWS\system32\DRIVERS\lgandnetdiag64.sys [30720 2015-05-12] (LG Electronics Inc.) S3 ANDNetModem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem64.sys [37376 2015-05-12] (LG Electronics Inc.) R3 CAD; C:\WINDOWS\System32\drivers\CAD.sys [53664 2017-03-18] (Microsoft Corporation) S2 CldFlt; C:\WINDOWS\System32\drivers\cldflt.sys [12288 2017-03-18] (Microsoft Corporation) R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [132848 2017-03-09] (ESET) R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [107344 2017-03-09] (ESET) S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14880 2017-03-09] (ESET) R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [178056 2017-03-09] (ESET) R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [50752 2017-03-09] (ESET) R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [78192 2017-03-09] (ESET) R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [101648 2017-03-09] (ESET) S3 iaLPSS2i_GPIO2_BXT_P; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [85504 2017-03-18] (Intel Corporation) S3 iaLPSS2i_I2C_BXT_P; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [168448 2017-03-18] (Intel Corporation) R3 igfx; C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_82119d956c80af5a\igdkmd64.sys [11041776 2017-02-07] (Intel Corporation) S3 mausbhost; C:\WINDOWS\System32\drivers\mausbhost.sys [405408 2017-03-18] (Microsoft Corporation) S3 mausbip; C:\WINDOWS\System32\drivers\mausbip.sys [51104 2017-03-18] (Microsoft Corporation) S3 NetAdapterCx; C:\WINDOWS\System32\drivers\NetAdapterCx.sys [122368 2017-03-18] (Microsoft Corporation) S3 nvdimmn; C:\WINDOWS\System32\drivers\nvdimmn.sys [80896 2017-03-18] (Microsoft Corporation) S3 pmem; C:\WINDOWS\System32\drivers\pmem.sys [101376 2017-03-18] (Microsoft Corporation) R3 Qcamain10x64; C:\WINDOWS\System32\drivers\Qcamain10x64.sys [2344448 2017-03-18] (Qualcomm Atheros, Inc.) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [604160 2017-03-18] (Realtek ) R3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [778496 2016-03-17] (Realsil Semiconductor Corporation) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () S3 SpatialGraphFilter; C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [40352 2017-03-20] (Microsoft Corporation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) S3 WinNat; C:\WINDOWS\System32\drivers\winnat.sys [217088 2017-03-18] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) NETSVCx32: TokenBroker -> C:\Windows\SysWOW64\TokenBroker.dll (Microsoft Corporation) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-22 17:11 - 2017-04-22 17:11 - 00016290 _____ C:\Users\Sayo\Desktop\FRST.txt 2017-04-22 17:10 - 2017-04-22 17:11 - 00000000 ____D C:\FRST 2017-04-22 17:10 - 2017-04-22 17:10 - 02425344 _____ (Farbar) C:\Users\Sayo\Desktop\FRST64.exe 2017-04-22 17:01 - 2017-04-22 17:01 - 00380928 _____ C:\Users\Sayo\Downloads\01k3jn1x.exe 2017-04-21 16:44 - 2017-04-21 16:44 - 04089296 _____ C:\Users\Sayo\Downloads\adwcleaner_6.045 (1).exe 2017-04-21 16:23 - 2017-04-21 16:23 - 00000000 ____D C:\Users\Sayo\Documents\Stronghold Crusader 2017-04-21 14:50 - 2017-04-21 14:50 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\MicrosoftEdge 2017-04-21 14:02 - 2017-04-21 14:02 - 00000000 ____D C:\Users\Użytkownik\Documents\Stronghold Crusader 2017-04-21 12:06 - 2017-04-21 12:06 - 00000017 _____ C:\Users\Sayo\AppData\Local\resmon.resmoncfg 2017-04-21 11:59 - 2017-04-21 11:59 - 00000017 _____ C:\Users\Użytkownik\AppData\Local\resmon.resmoncfg 2017-04-21 11:46 - 2017-04-21 11:46 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\Comms 2017-04-21 11:34 - 2017-04-21 11:35 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\Steam 2017-04-21 11:34 - 2017-04-21 11:34 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\CEF 2017-04-21 11:30 - 2017-04-21 11:30 - 00002422 _____ C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-04-21 11:30 - 2017-04-21 11:30 - 00001329 _____ C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Menedżer HD Audio.lnk 2017-04-21 11:30 - 2017-04-21 11:30 - 00000000 ___RD C:\Users\Użytkownik\OneDrive 2017-04-21 11:29 - 2017-04-22 16:06 - 00000000 __SHD C:\Users\Użytkownik\IntelGraphicsProfiles 2017-04-21 11:29 - 2017-04-21 15:15 - 00000000 ____D C:\Users\Użytkownik 2017-04-21 11:29 - 2017-04-21 13:42 - 00002338 _____ C:\Users\Użytkownik\Desktop\Google Chrome.lnk 2017-04-21 11:29 - 2017-04-21 13:28 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\Packages 2017-04-21 11:29 - 2017-04-21 11:45 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\Google 2017-04-21 11:29 - 2017-04-21 11:29 - 00000020 ___SH C:\Users\Użytkownik\ntuser.ini 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Ustawienia lokalne 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Szablony 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Moje dokumenty 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Menu Start 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Documents\Moje wideo 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Documents\Moje obrazy 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Documents\Moja muzyka 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\Dane aplikacji 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\AppData\Local\Historia 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 _SHDL C:\Users\Użytkownik\AppData\Local\Dane aplikacji 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Roaming\Adobe 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\VirtualStore 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\TileDataLayer 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\Publishers 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\ESET 2017-04-21 11:29 - 2017-04-21 11:29 - 00000000 ____D C:\Users\Użytkownik\AppData\Local\ConnectedDevicesPlatform 2017-04-21 11:05 - 2017-04-21 11:05 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\ESET 2017-04-21 10:59 - 2017-04-21 10:59 - 00002338 _____ C:\Users\Sayo\Desktop\Google Chrome.lnk 2017-04-21 06:55 - 2017-04-21 06:55 - 00000000 ____D C:\Users\Sayo\AppData\Local\ESET 2017-04-21 06:53 - 2017-04-21 06:53 - 00002058 _____ C:\Users\Public\Desktop\Ochrona bankowości internetowej.lnk 2017-04-21 06:53 - 2017-04-21 06:53 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET 2017-04-21 06:53 - 2017-04-21 06:53 - 00000000 ____D C:\ProgramData\ESET 2017-04-21 06:53 - 2017-04-21 06:53 - 00000000 ____D C:\Program Files\ESET 2017-04-21 06:47 - 2017-04-21 06:47 - 03138688 _____ (ESET) C:\Users\Sayo\Downloads\eset_smart_security_live_installer.exe 2017-04-20 17:57 - 2017-04-20 17:57 - 00024264 _____ C:\Users\Sayo\Downloads\oplataDS-30-04-2017.pdf 2017-04-19 20:18 - 2017-04-21 12:05 - 00000000 ____D C:\Users\Sayo\AppData\Local\CrashDumps 2017-04-19 17:46 - 2017-04-19 17:46 - 11347048 _____ (Datpol ) C:\Users\Sayo\Downloads\fwsetup.exe 2017-04-19 16:28 - 2017-04-19 16:28 - 60107896 _____ (Malwarebytes ) C:\Users\Sayo\Downloads\mb3-setup-consumer-3.0.6.1469-10103.exe 2017-04-19 15:26 - 2017-04-19 15:26 - 00000000 ____D C:\Users\Sayo\AppData\Local\DBG 2017-04-19 14:58 - 2017-04-19 14:58 - 00506236 _____ C:\Users\Sayo\Downloads\sprawozdanie_8_12infsp_mak_v2.pdf 2017-04-19 14:58 - 2017-04-19 14:58 - 00505965 _____ C:\Users\Sayo\Downloads\sprawozdanie_8_12infsp_mak_v2 (1).pdf 2017-04-18 15:17 - 2017-04-18 15:17 - 23680512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 23675392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 20505600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 19334144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 12787200 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 11869696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 08319392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2017-04-18 15:17 - 2017-04-18 15:17 - 08247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 07904784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 06756920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 06296064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 05477088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 03672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2017-04-18 15:17 - 2017-04-18 15:17 - 02957824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2017-04-18 15:17 - 2017-04-18 15:17 - 02444184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2017-04-18 15:17 - 2017-04-18 15:17 - 02085280 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01760264 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01657344 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01605632 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01604312 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01518088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01506816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01411640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01356800 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01323880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01147296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2017-04-18 15:17 - 2017-04-18 15:17 - 01060352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsPrint.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 01024416 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2017-04-18 15:17 - 2017-04-18 15:17 - 00986592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00805376 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00750560 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2017-04-18 15:17 - 2017-04-18 15:17 - 00626520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2017-04-18 15:17 - 2017-04-18 15:17 - 00624640 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2017-04-18 15:17 - 2017-04-18 15:17 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2017-04-18 15:17 - 2017-04-18 15:17 - 00409504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2017-04-18 15:17 - 2017-04-18 15:17 - 00382368 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00364032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00354360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcryptprimitives.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00347136 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsDocumentTargetPrint.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00311192 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XpsDocumentTargetPrint.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00205728 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmjpegdec.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmjpegdec.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00047104 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2017-04-18 15:17 - 2017-04-18 15:17 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys 2017-04-18 15:17 - 2017-04-18 15:17 - 00032004 _____ C:\WINDOWS\system32\edgehtmlpluginpolicy.bin 2017-04-18 15:17 - 2017-04-18 15:17 - 00000000 ____D C:\Windows.old 2017-04-18 15:16 - 2017-04-18 15:16 - 00543648 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2017-04-18 15:16 - 2017-04-18 15:16 - 00388000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS 2017-04-18 15:16 - 2017-04-18 15:16 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2017-04-18 15:16 - 2017-04-18 14:19 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2017-04-18 15:15 - 2017-04-18 15:15 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2017-04-18 15:15 - 2017-04-18 15:15 - 00000000 ____D C:\Program Files\Reference Assemblies 2017-04-18 15:15 - 2017-04-18 15:15 - 00000000 ____D C:\Program Files\MSBuild 2017-04-18 15:15 - 2017-04-18 15:15 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-04-18 15:15 - 2017-04-18 14:23 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-04-18 15:14 - 2017-02-10 12:26 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2017-04-18 15:14 - 2017-02-10 12:26 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2017-04-18 15:14 - 2017-02-10 12:26 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2017-04-18 15:14 - 2017-02-10 12:21 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2017-04-18 15:14 - 2017-02-10 12:21 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-04-18 15:14 - 2017-02-10 12:21 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2017-04-18 15:12 - 2017-04-18 15:12 - 00000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER 2017-04-18 14:30 - 2017-04-18 14:30 - 00003310 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task v2 2017-04-18 14:30 - 2017-04-18 14:30 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-04-18 14:29 - 2017-04-18 14:29 - 00000000 ____D C:\ProgramData\USOShared 2017-04-18 14:28 - 2017-04-21 18:23 - 02118688 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-04-18 14:28 - 2017-04-18 14:28 - 00000020 ___SH C:\Users\Sayo\ntuser.ini 2017-04-18 14:26 - 2017-04-18 14:27 - 00011433 _____ C:\WINDOWS\diagwrn.xml 2017-04-18 14:26 - 2017-04-18 14:27 - 00011433 _____ C:\WINDOWS\diagerr.xml 2017-04-18 14:25 - 2017-04-21 11:29 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-04-18 14:25 - 2017-04-18 14:25 - 00023044 _____ C:\WINDOWS\system32\emptyregdb.dat 2017-04-18 14:25 - 2017-04-18 14:25 - 00003494 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-04-18 14:25 - 2017-04-18 14:25 - 00003482 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task 2017-04-18 14:25 - 2017-04-18 14:25 - 00003270 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-04-18 14:25 - 2017-04-18 14:25 - 00002790 _____ C:\WINDOWS\System32\Tasks\AdobeAAMUpdater-1.0-DESKTOP-621DJNQ-Sayo 2017-04-18 14:23 - 2017-04-18 14:23 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk 2017-04-18 14:21 - 2017-04-18 14:23 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate 2017-04-18 14:20 - 2017-04-18 19:52 - 00000000 ____D C:\Users\Sayo 2017-04-18 14:20 - 2017-04-18 14:25 - 00000000 ____D C:\Users\defaultuser0 2017-04-18 14:20 - 2017-04-18 14:20 - 01621874 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Ustawienia lokalne 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Szablony 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Moje dokumenty 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Menu Start 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Documents\Moje wideo 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Documents\Moje obrazy 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Documents\Moja muzyka 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\Dane aplikacji 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\AppData\Local\Historia 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\Sayo\AppData\Local\Dane aplikacji 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Ustawienia lokalne 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Szablony 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Moje dokumenty 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Menu Start 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Moje wideo 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Moje obrazy 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Documents\Moja muzyka 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\Dane aplikacji 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Historia 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _SHDL C:\Users\defaultuser0\AppData\Local\Dane aplikacji 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____H C:\ProgramData\DP45977C.lfl 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\WINDOWS\system32\IntelSSTAPO 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\WINDOWS\system32\DAX2 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\ProgramData\rtkSSTSetting 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\Program Files\Intel 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\Program Files\Common Files\Atheros 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 ____D C:\Program Files (x86)\Intel 2017-04-18 14:20 - 2017-04-18 14:20 - 00000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2017-04-18 14:20 - 2017-03-18 22:56 - 02233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-04-18 14:20 - 2017-02-07 22:47 - 00122384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2017-04-18 14:20 - 2016-06-02 10:35 - 03181209 _____ C:\WINDOWS\system32\Drivers\rtkSSTSetting.zip 2017-04-18 14:19 - 2017-04-22 15:28 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-04-18 14:19 - 2017-04-19 17:49 - 00484312 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-04-18 14:19 - 2017-04-18 14:19 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM 2017-04-18 14:19 - 2017-04-18 14:19 - 00000000 ____D C:\Program Files\Realtek 2017-04-18 13:43 - 2017-04-21 16:54 - 00000000 ____D C:\AdwCleaner 2017-04-18 13:43 - 2017-04-18 13:43 - 04089296 _____ C:\Users\Sayo\Downloads\adwcleaner_6.045.exe 2017-04-18 13:36 - 2017-04-18 13:36 - 00457629 _____ C:\Users\Sayo\Downloads\mat_dys_lista_zadan (1).pdf 2017-04-17 17:19 - 2017-04-18 14:28 - 00000000 ___DC C:\WINDOWS\Panther 2017-04-17 12:50 - 2017-04-18 14:21 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype 2017-04-17 12:50 - 2017-04-17 12:50 - 00002642 _____ C:\Users\Public\Desktop\Skype.lnk 2017-04-17 12:50 - 2017-04-17 12:50 - 00000000 ___RD C:\Program Files (x86)\Skype 2017-04-17 12:49 - 2017-04-17 12:49 - 01631704 _____ (Skype Technologies S.A.) C:\Users\Sayo\Downloads\SkypeSetup (1).exe 2017-04-17 12:33 - 2017-04-17 12:33 - 00000000 ____D C:\Users\Sayo\AppData\Local\UNP 2017-04-17 11:55 - 2017-04-17 11:55 - 00007795 _____ C:\Users\Sayo\Downloads\12INFSP.7z 2017-04-17 11:55 - 2017-04-17 11:55 - 00000000 ____D C:\Users\Sayo\Downloads\12INFSP 2017-04-17 11:36 - 2017-04-18 14:23 - 00000000 ____D C:\WINDOWS\system32\UNP 2017-04-17 11:36 - 2017-04-17 11:37 - 00000000 ____D C:\Program Files\UNP 2017-04-14 10:17 - 2017-04-14 10:17 - 03476883 _____ C:\Users\Sayo\Downloads\fizyka.rar 2017-04-14 10:17 - 2017-04-14 10:17 - 00000000 ____D C:\Users\Sayo\Downloads\fizyka 2017-04-13 21:35 - 2017-04-13 21:35 - 00041984 _____ C:\Users\Sayo\Downloads\tabele (4).xls 2017-04-12 09:25 - 2017-03-28 07:37 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DdcWnsListener.dll 2017-04-12 09:25 - 2017-03-28 07:28 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\indexeddbserver.dll 2017-04-11 10:22 - 2017-04-14 10:13 - 00000000 ____D C:\Users\Sayo\Desktop\fizyka2 2017-04-11 10:22 - 2017-04-11 10:22 - 13451605 _____ C:\Users\Sayo\Desktop\fizyka2.rar 2017-04-09 20:33 - 2017-04-09 20:33 - 00397618 _____ C:\Users\Sayo\Downloads\zad7_sprawozdanie_12infsp.pdf 2017-04-09 12:57 - 2017-04-09 12:57 - 11915550 _____ C:\Users\Sayo\Downloads\Wyklady_UC_w_grzyn.rar;filename-= UTF-8''Wyklady UC węgrzyn (1).rar 2017-04-09 12:57 - 2017-04-09 12:57 - 00000000 ____D C:\Users\Sayo\Downloads\Wyklady_UC_w_grzyn.rar;filename-= UTF-8''Wyklady UC węgrzyn (1) 2017-04-06 18:30 - 2017-04-06 18:30 - 00051660 _____ C:\Users\Sayo\Downloads\Grupa 13INF-SP_2017_wyniki kolokwium.pdf 2017-04-06 18:23 - 2017-04-06 18:23 - 00051927 _____ C:\Users\Sayo\Downloads\Grupa 11INF-SP_2017_wyniki kolokwium (1).pdf 2017-04-06 18:22 - 2017-04-06 18:22 - 00051447 _____ C:\Users\Sayo\Downloads\Grupa 14INF-SP_2017_wyniki kolokwium (1).pdf 2017-04-06 18:21 - 2017-04-06 18:21 - 00051447 _____ C:\Users\Sayo\Downloads\Grupa 14INF-SP_2017_wyniki kolokwium.pdf 2017-04-06 18:20 - 2017-04-06 18:20 - 00051927 _____ C:\Users\Sayo\Downloads\Grupa 11INF-SP_2017_wyniki kolokwium.pdf 2017-04-06 18:18 - 2017-04-06 18:18 - 00049812 _____ C:\Users\Sayo\Downloads\Grupa 12INF-SP_2017_wyniki kolokwium.pdf 2017-04-04 12:42 - 2017-04-04 12:42 - 00022934 _____ C:\Users\Sayo\Desktop\Book1.xlsx 2017-04-04 11:38 - 2017-04-04 11:38 - 00632995 _____ C:\Users\Sayo\Downloads\cw4_12INFSP (3).pdf 2017-04-04 11:35 - 2017-04-04 11:35 - 00632995 _____ C:\Users\Sayo\Downloads\cw4_12INFSP (2).pdf 2017-04-04 10:35 - 2017-04-04 10:35 - 00192908 _____ C:\Users\Sayo\Desktop\cw6a.pdf 2017-04-04 10:35 - 2017-04-04 10:35 - 00192777 _____ C:\Users\Sayo\Desktop\cw6b.pdf 2017-04-03 18:56 - 2017-04-03 18:56 - 00001203 _____ C:\Users\Sayo\Downloads\l4_prz1.asm 2017-04-03 08:55 - 2017-04-03 08:55 - 00000000 ____D C:\Users\Sayo\Downloads\K. A. Ross, C. R. B. Wright - Matematyka dyskretna 2017-04-03 08:50 - 2017-04-21 06:48 - 00000000 ____D C:\Program Files\Common Files\AV 2017-04-03 08:46 - 2017-04-21 06:48 - 00000000 ____D C:\ProgramData\AVAST Software 2017-04-03 08:45 - 2017-04-03 08:46 - 06654960 _____ (AVAST Software) C:\Users\Sayo\Downloads\avast_free_antivirus_setup_online.exe 2017-04-03 08:45 - 2017-04-03 08:45 - 72642075 _____ C:\Users\Sayo\Downloads\K. A. Ross, C. R. B. Wright - Matematyka dyskretna.rar 2017-04-02 17:25 - 2017-04-06 14:11 - 00001060 _____ C:\Users\Sayo\Desktop\Nowy dokument tekstowy.txt 2017-04-02 13:21 - 2017-04-02 13:21 - 11915550 _____ C:\Users\Sayo\Downloads\Wyklady_UC_w_grzyn.rar;filename-= UTF-8''Wyklady UC węgrzyn.rar 2017-04-02 13:21 - 2017-04-02 13:21 - 03439285 _____ C:\Users\Sayo\Downloads\Część 3 Układy i przyrządy.pdf 2017-04-02 13:21 - 2017-04-02 13:21 - 02921148 _____ C:\Users\Sayo\Downloads\Część 4 Czujniki pomiarowe.pdf 2017-04-02 13:21 - 2017-04-02 13:21 - 00789232 _____ C:\Users\Sayo\Downloads\Część 5 Systemy pomiarowe.pdf 2017-04-02 13:21 - 2017-04-02 13:21 - 00336881 _____ C:\Users\Sayo\Downloads\Część 0 Zakres, literatura_2017.pdf 2017-04-02 08:15 - 2017-04-02 08:15 - 00087904 _____ (Microsoft Corporation) C:\WINDOWS\system32\UNPUXWorker.exe 2017-03-30 20:03 - 2017-03-30 20:03 - 00000786 _____ C:\Users\Sayo\Downloads\class_lzes (1).cpp 2017-03-30 18:30 - 2017-03-30 18:30 - 00118034 _____ C:\Users\Sayo\Downloads\D_007_0013618 (1).pdf 2017-03-30 18:21 - 2017-03-30 18:21 - 00118034 _____ C:\Users\Sayo\Downloads\D_007_0013618.pdf 2017-03-30 17:49 - 2017-03-30 17:49 - 00000670 _____ C:\Users\Sayo\Downloads\main (3).cpp 2017-03-30 17:47 - 2017-03-30 17:47 - 00000960 _____ C:\Users\Sayo\Downloads\main (2).cpp 2017-03-28 22:51 - 2017-03-28 22:51 - 00087974 _____ C:\Users\Sayo\Downloads\zad5.7z 2017-03-28 10:21 - 2017-03-28 10:21 - 00471274 _____ C:\Users\Sayo\Desktop\cw5b.pdf 2017-03-28 10:21 - 2017-03-28 10:21 - 00197550 _____ C:\Users\Sayo\Desktop\cw5a.pdf 2017-03-28 10:13 - 2017-03-28 10:13 - 05298377 _____ C:\Users\Sayo\Downloads\termoelement.rar 2017-03-28 10:13 - 2017-03-28 10:13 - 00041984 _____ C:\Users\Sayo\Downloads\tabele (3).xls 2017-03-28 07:31 - 2017-03-28 07:31 - 00632995 _____ C:\Users\Sayo\Downloads\cw4_12INFSP.pdf 2017-03-28 07:31 - 2017-03-28 07:31 - 00632995 _____ C:\Users\Sayo\Downloads\cw4_12INFSP (1).pdf 2017-03-27 20:32 - 2017-03-27 20:32 - 00415336 _____ C:\Users\Sayo\Downloads\2,4,9-probabalistyka.pdf 2017-03-27 20:31 - 2017-03-27 20:31 - 00452883 _____ C:\Users\Sayo\Downloads\wzory.pdf 2017-03-27 17:24 - 2017-03-27 17:24 - 00673741 _____ C:\Users\Sayo\Downloads\raport1 (2).pdf 2017-03-27 17:23 - 2017-03-27 17:23 - 00000960 _____ C:\Users\Sayo\Downloads\main (1).cpp 2017-03-27 17:20 - 2017-03-27 17:20 - 00893920 _____ C:\Users\Sayo\Downloads\raport2v008 (2).pdf 2017-03-27 15:44 - 2017-03-27 15:44 - 00000000 ____D C:\Users\Sayo\AppData\Local\drmingw 2017-03-27 15:44 - 2017-03-27 15:44 - 00000000 ____D C:\ProgramData\dbg 2017-03-27 15:37 - 2017-04-20 07:43 - 00000000 ____D C:\Users\Sayo\Desktop\II Sem 2017-03-26 21:10 - 2017-03-30 20:50 - 00000000 ____D C:\Users\Sayo\Desktop\grebo 2017-03-26 14:22 - 2017-03-26 14:22 - 02314539 _____ C:\Users\Sayo\Downloads\Algorytmy i Struktury Danych.zip 2017-03-24 11:34 - 2017-03-24 11:34 - 00000712 _____ C:\Users\Sayo\Desktop\lzes.cpp 2017-03-23 22:13 - 2017-03-23 22:13 - 00054959 _____ C:\Users\Sayo\Downloads\wzór-indeks.pdf 2017-03-23 22:13 - 2017-03-23 22:13 - 00037253 _____ C:\Users\Sayo\Downloads\wzór-karta-osiągnięć-studenta.pdf ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-04-22 12:25 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-04-22 11:16 - 2016-10-03 12:14 - 00000753 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2017-04-22 08:42 - 2017-03-18 23:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-04-21 18:23 - 2017-03-20 05:58 - 00958446 _____ C:\WINDOWS\system32\perfh015.dat 2017-04-21 18:23 - 2017-03-20 05:58 - 00198754 _____ C:\WINDOWS\system32\perfc015.dat 2017-04-21 12:06 - 2017-03-18 23:01 - 00000000 ____D C:\WINDOWS\INF 2017-04-21 12:03 - 2016-09-08 13:23 - 00000000 __SHD C:\Users\Sayo\IntelGraphicsProfiles 2017-04-21 11:45 - 2017-03-18 23:03 - 00000000 ___RD C:\WINDOWS\PrintDialog 2017-04-21 11:45 - 2017-03-18 23:03 - 00000000 ___RD C:\WINDOWS\MiracastView 2017-04-21 11:29 - 2017-03-18 13:40 - 01048576 _____ C:\WINDOWS\system32\config\BBI 2017-04-21 11:29 - 2016-09-08 13:16 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-04-21 06:54 - 2017-03-18 23:03 - 00000000 ___HD C:\WINDOWS\ELAMBKUP 2017-04-21 06:52 - 2016-09-08 13:39 - 00532136 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2017-04-21 06:51 - 2017-03-18 13:40 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2017-04-20 11:02 - 2016-09-10 12:07 - 00000000 ____D C:\Users\Sayo\AppData\Local\Spotify 2017-04-20 11:02 - 2016-09-10 12:06 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Spotify 2017-04-20 07:44 - 2016-09-13 12:57 - 00000000 ____D C:\ProgramData\Oracle 2017-04-20 07:44 - 2016-09-13 12:57 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2017-04-20 07:44 - 2016-09-13 12:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit 2017-04-20 07:44 - 2016-09-13 12:54 - 00000000 ____D C:\Program Files\Java 2017-04-20 07:42 - 2016-09-13 12:57 - 00110144 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll 2017-04-19 17:42 - 2016-09-25 18:30 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\TS3Client 2017-04-19 06:42 - 2017-03-18 22:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-04-18 15:19 - 2017-03-18 23:03 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2017-04-18 15:17 - 2017-03-18 23:06 - 00000000 ____D C:\WINDOWS\Setup 2017-04-18 15:15 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI 2017-04-18 15:15 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\MUI 2017-04-18 15:15 - 2017-03-18 22:56 - 00389632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnet.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplayx.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnathlp.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00046592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpwsockx.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpmodemx.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnsvr.exe 2017-04-18 15:15 - 2017-03-18 22:56 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dplaysvr.exe 2017-04-18 15:15 - 2017-03-18 22:56 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhupnp.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnhpast.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnlobby.dll 2017-04-18 15:15 - 2017-03-18 22:56 - 00005120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dpnaddr.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00465408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnet.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnathlp.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnsvr.exe 2017-04-18 15:14 - 2017-03-18 22:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhupnp.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnhpast.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnlobby.dll 2017-04-18 15:14 - 2017-03-18 22:56 - 00006144 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpnaddr.dll 2017-04-18 14:44 - 2016-09-08 13:16 - 00000000 ____D C:\Users\Sayo\AppData\Local\Packages 2017-04-18 14:30 - 2016-09-08 13:17 - 00002437 _____ C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2017-04-18 14:30 - 2016-09-08 13:17 - 00000000 ___RD C:\Users\Sayo\OneDrive 2017-04-18 14:29 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\USOPrivate 2017-04-18 14:28 - 2017-03-18 23:03 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-04-18 14:28 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Windows NT 2017-04-18 14:27 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase 2017-04-18 14:27 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\Registration 2017-04-18 14:26 - 2017-03-18 23:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-04-18 14:26 - 2016-09-08 13:29 - 00002278 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-04-18 14:26 - 2016-07-16 13:47 - 00000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2017-04-18 14:25 - 2017-03-20 06:00 - 00000000 ____D C:\WINDOWS\HoloShell 2017-04-18 14:25 - 2017-03-18 23:03 - 00000000 __RHD C:\Users\Public\Libraries 2017-04-18 14:23 - 2017-03-21 15:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zaokrąglanie wyniku pomiaru 2017-04-18 14:23 - 2017-02-27 18:07 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Aldec 2017-04-18 14:23 - 2017-02-19 22:48 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hi-Rez Studios 2017-04-18 14:23 - 2016-12-17 22:20 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2017-04-18 14:23 - 2016-12-17 22:18 - 00000000 ____D C:\WINDOWS\SHELLNEW 2017-04-18 14:23 - 2016-11-28 10:00 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nexus Mod Manager 2017-04-18 14:23 - 2016-11-21 19:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOSBox-0.74 2017-04-18 14:23 - 2016-11-11 18:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 5.2 2017-04-18 14:23 - 2016-10-23 17:57 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2017-04-18 14:23 - 2016-10-18 15:15 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-04-18 14:23 - 2016-10-12 08:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CodeBlocks 2017-04-18 14:23 - 2016-10-04 22:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ShareX 2017-04-18 14:23 - 2016-09-22 22:50 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Flux 2017-04-18 14:23 - 2016-09-15 13:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2017-04-18 14:23 - 2016-09-13 14:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2017-04-18 14:23 - 2016-09-13 12:55 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Notepad++ 2017-04-18 14:23 - 2016-09-08 13:56 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2017-04-18 14:23 - 2016-09-08 13:38 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-04-18 14:23 - 2016-09-08 13:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2017-04-18 14:23 - 2016-09-08 13:33 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam 2017-04-18 14:22 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\spool 2017-04-18 14:22 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-04-18 14:22 - 2016-10-18 15:14 - 00000000 ____D C:\WINDOWS\SysWOW64\AGEIA 2017-04-18 14:21 - 2017-03-18 23:03 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2017-04-18 14:21 - 2017-03-18 23:03 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-04-18 14:21 - 2016-09-08 14:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2017-04-18 14:21 - 2016-09-08 13:42 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Hammer & Chisel, Inc 2017-04-18 14:21 - 2016-09-08 13:14 - 00000000 ____D C:\Users\defaultuser0\AppData\Local\Packages 2017-04-18 14:20 - 2017-03-18 13:40 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2017-04-18 14:10 - 2016-09-08 14:07 - 00008192 __RSH C:\BOOTSECT.BAK 2017-04-18 14:07 - 2017-03-20 06:23 - 00000000 ___HD C:\$WINDOWS.~BT 2017-04-17 13:09 - 2016-10-02 21:59 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\Skype 2017-04-17 12:50 - 2016-10-02 21:58 - 00000000 ____D C:\ProgramData\Skype 2017-04-17 12:49 - 2016-09-15 20:01 - 00000000 ____D C:\ProgramData\Package Cache 2017-04-13 14:31 - 2016-09-08 13:37 - 00000000 ____D C:\WINDOWS\system32\MRT 2017-04-13 14:28 - 2016-09-08 13:37 - 148601744 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2017-04-11 22:46 - 2016-09-08 13:41 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2017-04-03 18:56 - 2017-03-18 23:06 - 00835576 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2017-04-03 18:56 - 2017-03-18 23:06 - 00177656 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2017-03-31 00:05 - 2016-10-17 09:44 - 00000000 ____D C:\Users\Sayo\AppData\Roaming\CodeBlocks 2017-03-28 10:43 - 2016-10-05 08:16 - 00000000 ____D C:\Users\Sayo\Documents\ShareX 2017-03-26 11:20 - 2016-12-17 22:18 - 00000000 ____D C:\Users\Sayo\AppData\Local\Microsoft Help 2017-03-23 22:59 - 2016-11-13 13:58 - 00000000 ____D C:\Users\Sayo\Desktop\Studia ==================== Pliki w katalogu głównym wybranych folderów ======= 2016-09-22 22:27 - 2016-09-22 22:27 - 0000803 _____ () C:\Users\Sayo\AppData\Roaming\qnapi.ini 2017-04-21 12:06 - 2017-04-21 12:06 - 0000017 _____ () C:\Users\Sayo\AppData\Local\resmon.resmoncfg 2016-12-12 07:57 - 2016-12-12 07:57 - 0219344 _____ () C:\ProgramData\1481522238.bdinstall.bin 2017-03-06 17:14 - 2017-03-06 17:14 - 0029214 _____ () C:\ProgramData\agent.1488813272.bdinstall.bin 2016-12-12 08:08 - 2016-12-12 08:08 - 0397170 _____ () C:\ProgramData\cl.1481522458.bdinstall.bin 2017-03-05 12:58 - 2017-03-05 12:58 - 0218666 _____ () C:\ProgramData\cl.uninstall.1488711193.bdinstall.bin 2017-04-18 14:20 - 2017-04-18 14:20 - 0000000 ____H () C:\ProgramData\DP45977C.lfl Niektóre pliki w TEMP: ==================== 2017-04-20 07:40 - 2017-04-20 07:40 - 0739904 _____ (Oracle Corporation) C:\Users\Sayo\AppData\Local\Temp\jre-8u131-windows-au.exe ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-04-18 14:19 ==================== Koniec FRST.txt ============================