Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 29-07-2017 Uruchomiony przez Giant (administrator) LAPTOP-OB03S7VI (30-07-2017 14:31:26) Uruchomiony z E:\Pobrane Załadowane profile: Giant (Dostępne profile: Giant & _ashbackuppb_) Platform: Windows 10 Home Wersja 1703 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: Chrome) Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Datpol) C:\Program Files (x86)\SpyShelter Firewall\SpyShelterSrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Intel Corporation) C:\Windows\System32\Intel\DPTF\esif_uf.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe () C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe (Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe (Intel Corporation) C:\Windows\Temp\DPTF\esif_assist_64.exe (Datpol) C:\Program Files (x86)\SpyShelter Firewall\SpyShelter.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvContainer\nvcontainer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\igfxEM.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe (Microsoft Corporation) C:\Windows\System32\InstallAgent.exe (Microsoft Corporation) C:\Windows\System32\InstallAgentUserBroker.exe (Dominik Reichl) C:\Program Files (x86)\KeePass Password Safe\KeePass.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieCtrl.exe (Sandboxie Holdings, LLC) C:\Program Files\Sandboxie\SbieSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe (Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Corporation) C:\Windows\System32\bcastdvr.exe ==================== Rejestr (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-1334912058-1624934052-3136465419-1001\...\Run: [KeePass Password Safe] => C:\Program Files (x86)\KeePass Password Safe\KeePass.exe [2175920 2017-06-02] (Dominik Reichl) HKU\S-1-5-21-1334912058-1624934052-3136465419-1001\...\MountPoints2: {916c61c3-607f-11e7-a82f-40b034500b4c} - "G:\HTC_Sync_Manager_PC.exe" ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 195.46.37.2 195.46.37.3 Tcpip\..\Interfaces\{18243668-4b92-4ad2-829b-fbb232af64e3}: [DhcpNameServer] 195.46.37.2 195.46.37.3 Tcpip\..\Interfaces\{416a62a9-9350-4701-8142-66109aaef1e5}: [DhcpNameServer] 195.46.37.2 195.46.37.3 Tcpip\..\Interfaces\{446d60e3-2788-4148-a1c8-43114f9aa707}: [DhcpNameServer] 195.46.37.2 195.46.37.3 Tcpip\..\Interfaces\{77ea9823-ea3a-4994-ad3f-1fbb4fb5ff40}: [NameServer] 208.67.222.222,208.67.220.220 Internet Explorer: ================== FireFox: ======== FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-03] (Google Inc.) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.5\npGoogleUpdate3.dll [2017-07-03] (Google Inc.) FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN) Chrome: ======= CHR HomePage: Default -> hxxps://duckduckgo.com/ CHR StartupUrls: Default -> "hxxps://www.giveawayoftheday.com/" CHR Profile: C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default [2017-07-28] CHR Extension: (Flash Video Downloader) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimdkdngfcipjohbjenkahhlhccpdbc [2017-07-03] CHR Extension: (Dysk Google) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2017-07-03] CHR Extension: (MEGA) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\bigefpfhnfcobdlfbedofhhaibnlghod [2017-07-28] CHR Extension: (YouTube) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2017-07-03] CHR Extension: (uBlock Origin) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2017-07-28] CHR Extension: (GG Plugin) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\khmcdkdpeihijgkgmmdkbccccjnonjie [2017-07-03] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-07-03] CHR Extension: (Gmail) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2017-07-03] CHR Extension: (Chrome Media Router) - C:\Users\Giant\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-07-15] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 cphs; C:\WINDOWS\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\IntelCpHeciSvc.exe [310240 2017-02-22] (Intel Corporation) S3 cplspcon; C:\WINDOWS\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\IntelCpHDCPSvc.exe [488928 2017-02-22] (Intel Corporation) S3 DSAService; C:\Program Files (x86)\Intel Driver Update Utility\DSAService.exe [21240 2017-05-18] (Intel) R2 esifsvc; C:\WINDOWS\system32\Intel\DPTF\esif_uf.exe [2211448 2017-07-18] (Intel Corporation) S3 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] () S4 hpsrv; C:\WINDOWS\system32\Hpservice.exe [38728 2016-10-12] (HP) R2 igfxCUIService2.0.0.0; C:\WINDOWS\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\igfxCUIService.exe [350688 2017-02-22] (Intel Corporation) S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [732448 2017-02-24] (Intel(R) Corporation) S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\iCLS Client\TPMProvisioningService.exe [548648 2017-02-24] (Intel(R) Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [197264 2017-05-28] (Intel Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [495224 2017-06-21] (NVIDIA Corporation) R2 NVDisplay.ContainerLocalSystem; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [462968 2017-06-27] (NVIDIA Corporation) S4 NvTelemetryContainer; C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe [450168 2017-06-21] (NVIDIA Corporation) R2 SbieSvc; C:\Program Files\Sandboxie\SbieSvc.exe [198792 2017-06-05] (Sandboxie Holdings, LLC) R2 SpyShelterSrv; C:\Program Files (x86)\SpyShelter Firewall\SpyShelterSrv.exe [61184 2017-07-10] (Datpol) R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe [157456 2017-03-07] () S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\esrv_svc.exe [824592 2017-03-07] () S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [342264 2017-03-18] (Microsoft Corporation) R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [102816 2017-03-18] (Microsoft Corporation) S4 ibtsiva; %SystemRoot%\system32\ibtsiva [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 Accelerometer; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [56128 2016-10-12] (HP) R3 dptf_cpu; C:\WINDOWS\System32\drivers\dptf_cpu.sys [67984 2017-07-18] (Intel Corporation) R3 esif_lf; C:\WINDOWS\system32\DRIVERS\esif_lf.sys [355216 2017-07-18] (Intel Corporation) R3 ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [32840 2017-07-18] (ELAN Microelectronic Corp.) R0 hpdskflt; C:\WINDOWS\System32\DRIVERS\hpdskflt.sys [42312 2016-10-12] (HP) R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2017-07-17] (REALiX(tm)) S4 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [252936 2017-07-18] (Intel Corporation) R3 igfx; C:\WINDOWS\System32\DriverStore\FileRepository\120322.inf_amd64_496b556827a662cb\igdkmd64.sys [11036640 2017-02-22] (Intel Corporation) R1 ISODrive; C:\Program Files (x86)\UltraISO\drivers\ISODrv64.sys [115448 2013-11-21] (EZB Systems, Inc.) R1 MpKsle144973d; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{06AC04AC-A4D1-4E26-9769-670E18F66F03}\MpKsle144973d.sys [44928 2017-07-30] (Microsoft Corporation) R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7218176 2017-03-18] (Intel Corporation) R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvhmi.inf_amd64_8cdb3dd1b0ca45cf\nvlddmkm.sys [15625336 2017-06-28] (NVIDIA Corporation) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30328 2017-06-21] (NVIDIA Corporation) S3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [48248 2017-06-21] (NVIDIA Corporation) R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [57976 2017-06-21] (NVIDIA Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [943112 2016-08-05] (Realtek ) S3 RTSPER; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [781792 2017-07-18] (Realsil Semiconductor Corporation) R3 SbieDrv; C:\Program Files\Sandboxie\SbieDrv.sys [207496 2017-06-05] (Sandboxie Holdings, LLC) S3 SDFRd; C:\WINDOWS\System32\drivers\SDFRd.sys [31128 2017-03-18] () R0 secnvme; C:\WINDOWS\System32\drivers\secnvme.sys [82136 2017-07-18] (Samsung Electronics Co., Ltd) R0 secnvmeF; C:\WINDOWS\System32\drivers\secnvmeF.sys [30672 2017-07-18] (Samsung Electronics Co., Ltd) S3 semav6msr64; C:\WINDOWS\system32\drivers\semav6msr64.sys [21984 2016-10-18] () R1 Spyshelter; C:\Program Files (x86)\SpyShelter Firewall\SpyShelter.sys [1877384 2017-07-10] (SpyShelter) S2 SpyshelterFw; C:\Program Files (x86)\SpyShelter Firewall\SpyshelterWFP.sys [75144 2017-04-10] (SpyShelter) R1 SpyshelterKb; C:\Program Files (x86)\SpyShelter Firewall\SpyshelterKb.sys [886152 2017-07-10] (SpyShelter) S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44632 2017-03-18] (Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [294816 2017-03-18] (Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [121248 2017-03-18] (Microsoft Corporation) S3 WirelessButtonDriver64; C:\WINDOWS\system32\DRIVERS\WirelessButtonDriver64.sys [32832 2017-07-18] (HP) R2 WiseFS; C:\WINDOWS\WiseFs64.sys [12328 2015-02-26] (WiseCleaner.com) [Brak podpisu cyfrowego] ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-07-30 14:31 - 2017-07-30 14:31 - 00000000 ____D C:\FRST 2017-07-27 23:36 - 2017-07-27 23:36 - 00003738 _____ C:\WINDOWS\System32\Tasks\Intel PTT EK Recertification 2017-07-27 23:34 - 2017-07-27 23:34 - 00000000 ____D C:\Users\Giant\Intel 2017-07-27 22:57 - 2017-07-27 22:57 - 00002426 _____ C:\WINDOWS\system32\default_error_stack-000000-000000.txt 2017-07-27 22:51 - 2017-07-27 22:51 - 00000000 ____D C:\ProgramData\IntelDLM 2017-07-27 22:03 - 2017-07-27 22:03 - 00000000 ____D C:\Users\Giant\AppData\Local\DriverToolkit 2017-07-26 22:50 - 2017-07-26 22:52 - 00000217 _____ C:\ProgramData\session-2017-07-26-22-50-55.xml 2017-07-26 19:41 - 2017-07-29 10:00 - 00217904 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2017-07-25 21:27 - 2017-07-25 21:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 2017-07-25 21:27 - 2017-07-25 21:27 - 00000000 ____D C:\Program Files\CCleaner 2017-07-20 19:47 - 2017-07-20 21:34 - 00091898 _____ C:\ProgramData\session-2017-07-20-19-47-15.xml 2017-07-20 07:56 - 2017-07-20 07:56 - 00000151 _____ C:\ProgramData\session-2017-07-20-07-56-47.xml 2017-07-19 22:33 - 2017-07-22 17:01 - 00000000 ____D C:\Users\Giant\AppData\Roaming\dvdcss 2017-07-19 19:26 - 2017-07-19 19:26 - 00000151 _____ C:\ProgramData\session-2017-07-19-19-26-44.xml 2017-07-18 19:33 - 2017-07-18 19:33 - 00000151 _____ C:\ProgramData\session-2017-07-18-19-33-37.xml 2017-07-18 19:31 - 2017-07-18 19:31 - 00000000 ____D C:\Program Files (x86)\Microsoft XNA 2017-07-18 19:31 - 2010-02-04 10:01 - 00528216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_6.dll 2017-07-18 19:31 - 2010-02-04 10:01 - 00238936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xactengine3_6.dll 2017-07-18 19:31 - 2010-02-04 10:01 - 00074072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAPOFX1_4.dll 2017-07-18 19:31 - 2010-02-04 10:01 - 00022360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\X3DAudio1_7.dll 2017-07-18 19:31 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll 2017-07-18 19:31 - 2007-04-04 18:53 - 00081768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xinput1_3.dll 2017-07-18 19:31 - 2007-03-12 16:42 - 03495784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_33.dll 2017-07-18 19:30 - 2017-07-18 19:30 - 09891328 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll 2017-07-18 19:30 - 2017-07-18 19:30 - 04332032 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\RtCRU64.exe 2017-07-18 19:30 - 2017-07-18 19:30 - 00891392 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\iaStorA.sys 2017-07-18 19:30 - 2017-07-18 19:30 - 00781792 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsPer.sys 2017-07-18 19:30 - 2017-07-18 19:30 - 00378040 _____ (Intel Corporation) C:\WINDOWS\system32\ibtproppage.dll 2017-07-18 19:30 - 2017-07-18 19:30 - 00252936 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\ibtusb.sys 2017-07-18 19:30 - 2017-07-18 19:30 - 00183480 _____ (Intel Corporation) C:\WINDOWS\system32\ibtsiva.exe 2017-07-18 19:30 - 2017-07-18 19:30 - 00084480 _____ (Realtek Semiconductor.) C:\WINDOWS\system32\RtCRX64.dll 2017-07-18 19:30 - 2017-07-18 19:30 - 00067984 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\dptf_cpu.sys 2017-07-18 19:30 - 2017-07-18 19:30 - 00000000 ____D C:\WINDOWS\SysWOW64\sda 2017-07-18 19:30 - 2017-07-18 19:30 - 00000000 ____D C:\WINDOWS\LastGood.Tmp 2017-07-18 19:30 - 2017-05-26 08:02 - 00205952 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\TeeDriverW8x64.sys 2017-07-18 19:29 - 2017-07-18 19:30 - 01804680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll 2017-07-18 19:29 - 2017-07-18 19:29 - 00082136 _____ (Samsung Electronics Co., Ltd) C:\WINDOWS\system32\Drivers\secnvme.sys 2017-07-18 19:29 - 2017-07-18 19:29 - 00032840 _____ (ELAN Microelectronic Corp.) C:\WINDOWS\system32\Drivers\ETDSMBus.sys 2017-07-18 19:29 - 2017-07-18 19:29 - 00032832 _____ (HP) C:\WINDOWS\system32\Drivers\WirelessButtonDriver64.sys 2017-07-18 19:29 - 2017-07-18 19:29 - 00030672 _____ (Samsung Electronics Co., Ltd) C:\WINDOWS\system32\Drivers\secnvmeF.sys 2017-07-18 19:29 - 2017-07-18 19:29 - 00000000 ____D C:\Program Files (x86)\HP 2017-07-18 19:07 - 2017-07-18 19:07 - 00000000 ____D C:\Program Files\Reference Assemblies 2017-07-18 19:07 - 2017-07-18 19:07 - 00000000 ____D C:\Program Files\MSBuild 2017-07-18 19:07 - 2017-07-18 19:07 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies 2017-07-18 19:07 - 2017-07-18 19:07 - 00000000 ____D C:\Program Files (x86)\MSBuild 2017-07-18 19:06 - 2015-06-17 18:10 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll 2017-07-18 19:06 - 2015-06-17 18:10 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll 2017-07-18 19:06 - 2015-06-17 18:10 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe 2017-07-18 19:06 - 2015-05-29 21:07 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll 2017-07-18 19:06 - 2015-05-29 21:07 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll 2017-07-18 19:06 - 2015-05-29 21:07 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe 2017-07-18 18:42 - 2017-07-18 19:21 - 00000000 ____D C:\Users\Giant\AppData\Roaming\AirDroid 2017-07-18 18:42 - 2017-07-18 18:42 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AirDroid 2017-07-18 18:42 - 2017-07-18 18:42 - 00000000 ____D C:\ProgramData\AirDroid 2017-07-18 18:11 - 2017-07-18 18:11 - 00000151 _____ C:\ProgramData\session-2017-07-18-18-11-58.xml 2017-07-17 14:54 - 2017-07-30 14:09 - 00002628 _____ C:\WINDOWS\System32\Tasks\Driver Booster Scheduler 2017-07-17 14:54 - 2017-07-30 14:09 - 00002338 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Giant) 2017-07-17 14:54 - 2017-07-28 23:50 - 00000000 ____D C:\ProgramData\ProductData 2017-07-17 14:54 - 2017-07-17 14:55 - 00000000 ____D C:\Users\Giant\AppData\LocalLow\IObit 2017-07-17 14:54 - 2017-07-17 14:55 - 00000000 ____D C:\ProgramData\IObit 2017-07-17 14:54 - 2017-07-17 14:54 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS 2017-07-17 14:54 - 2017-07-17 14:54 - 00000000 ____D C:\WINDOWS\IObit 2017-07-17 14:54 - 2017-07-17 14:54 - 00000000 ____D C:\Users\Giant\AppData\Roaming\IObit 2017-07-17 14:54 - 2017-07-17 14:54 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Driver Booster 4 2017-07-17 14:54 - 2017-07-17 14:54 - 00000000 ____D C:\Program Files (x86)\IObit 2017-07-17 14:23 - 2017-07-17 14:23 - 00000151 _____ C:\ProgramData\session-2017-07-17-14-23-00.xml 2017-07-16 13:38 - 2017-07-16 13:38 - 00000000 ____D C:\ProgramData\Dell 2017-07-16 13:15 - 2017-07-16 13:23 - 00000000 ____D C:\Users\Giant\AppData\Local\Deployment 2017-07-16 13:15 - 2017-07-16 13:15 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell 2017-07-16 13:15 - 2017-07-16 13:15 - 00000000 ____D C:\Users\Giant\AppData\Local\Apps\2.0 2017-07-16 12:54 - 2017-07-16 12:54 - 00000151 _____ C:\ProgramData\session-2017-07-16-12-54-34.xml 2017-07-15 14:41 - 2017-07-15 14:41 - 00000151 _____ C:\ProgramData\session-2017-07-15-14-41-34.xml 2017-07-14 18:13 - 2017-07-15 00:43 - 00087238 _____ C:\ProgramData\session-2017-07-14-18-13-01.xml 2017-07-13 21:01 - 2017-07-13 21:01 - 00000151 _____ C:\ProgramData\session-2017-07-13-21-01-23.xml 2017-07-13 19:17 - 2017-07-13 19:17 - 00000151 _____ C:\ProgramData\session-2017-07-13-19-17-56.xml 2017-07-12 18:31 - 2017-07-12 18:31 - 00000151 _____ C:\ProgramData\session-2017-07-12-18-31-34.xml 2017-07-11 19:11 - 2017-07-11 19:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SpyShelter 2017-07-11 19:10 - 2017-07-11 19:10 - 00000151 _____ C:\ProgramData\session-2017-07-11-19-10-29.xml 2017-07-11 13:42 - 2017-07-11 13:42 - 00000150 _____ C:\ProgramData\session-2017-07-11-13-42-33.xml 2017-07-10 17:34 - 2017-07-10 17:34 - 00000151 _____ C:\ProgramData\session-2017-07-10-17-34-11.xml 2017-07-09 12:00 - 2017-07-09 12:00 - 00000151 _____ C:\ProgramData\session-2017-07-09-12-00-11.xml 2017-07-08 12:35 - 2017-07-08 12:35 - 00000151 _____ C:\ProgramData\session-2017-07-08-12-35-01.xml 2017-07-07 18:53 - 2017-07-07 18:53 - 00000150 _____ C:\ProgramData\session-2017-07-07-18-53-35.xml 2017-07-06 23:49 - 2017-07-06 23:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID 2017-07-06 23:49 - 2017-07-06 23:49 - 00000000 ____D C:\Program Files\CPUID 2017-07-06 20:49 - 2017-07-06 20:49 - 00000151 _____ C:\ProgramData\session-2017-07-06-20-49-36.xml 2017-07-06 09:44 - 2017-07-06 09:44 - 00000151 _____ C:\ProgramData\session-2017-07-06-09-44-08.xml 2017-07-05 23:08 - 2017-07-05 23:08 - 00000784 _____ C:\Users\Giant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autoruns64.lnk 2017-07-05 12:28 - 2017-07-05 12:28 - 00000000 ____D C:\Users\Giant\AppData\Local\NetworkTiles 2017-07-05 09:45 - 2017-07-05 09:45 - 00000000 ____D C:\Users\Giant\AppData\Roaming\NVIDIA 2017-07-05 09:44 - 2017-07-05 09:44 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z 2017-07-05 09:44 - 2017-07-05 09:44 - 00000000 ____D C:\Program Files (x86)\GPU-Z 2017-07-05 09:27 - 2017-07-05 09:27 - 00000017 _____ C:\Users\Giant\AppData\Local\resmon.resmoncfg 2017-07-05 09:26 - 2017-07-05 09:26 - 00000151 _____ C:\ProgramData\session-2017-07-05-09-26-03.xml 2017-07-04 23:27 - 2017-07-04 23:27 - 00000000 _____ C:\WINDOWS\Bench32.INI 2017-07-04 23:18 - 2017-07-04 23:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune 2017-07-04 23:18 - 2017-07-04 23:18 - 00000000 ____D C:\Program Files (x86)\HD Tune 2017-07-04 22:12 - 2017-07-18 19:48 - 00003458 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-04 22:12 - 2017-07-18 19:48 - 00003236 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-04 22:12 - 2017-07-18 19:48 - 00003028 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-04 22:12 - 2017-07-04 22:12 - 00000000 ____D C:\Users\Giant\AppData\Local\NVIDIA 2017-07-04 22:12 - 2017-07-04 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2017-07-04 22:12 - 2017-06-21 08:03 - 01903224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll 2017-07-04 22:12 - 2017-06-21 08:03 - 01755256 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspbridge64.dll 2017-07-04 22:12 - 2017-06-21 08:03 - 01489528 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll 2017-07-04 22:12 - 2017-06-21 08:03 - 01317496 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspbridge.dll 2017-07-04 22:12 - 2017-06-21 08:02 - 00121464 _____ C:\WINDOWS\system32\NvRtmpStreamer64.dll 2017-07-04 22:03 - 2017-07-04 22:11 - 00086552 _____ C:\ProgramData\session-2017-07-04-22-03-44.xml 2017-07-04 21:56 - 2017-07-04 21:56 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Thinstall 2017-07-04 21:56 - 2017-07-04 21:56 - 00000000 ____D C:\Users\Giant\AppData\Local\Thinstall 2017-07-04 15:52 - 2017-07-04 15:52 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf 2017-07-04 10:08 - 2011-07-28 10:16 - 00000510 _____ C:\WINDOWS\Toggle_Show_All_Hidden_Files_On_Off.vbs 2017-07-04 09:30 - 2017-07-04 21:53 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Easeware 2017-07-04 08:08 - 2017-07-04 08:08 - 00000151 _____ C:\ProgramData\session-2017-07-04-08-08-37.xml 2017-07-04 02:36 - 2017-07-04 02:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo III 2017-07-04 00:12 - 2017-07-04 00:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wise Folder Hider Pro 2017-07-04 00:12 - 2017-07-04 00:12 - 00000000 ____D C:\Program Files (x86)\Wise 2017-07-04 00:12 - 2015-02-26 16:18 - 00012328 _____ (WiseCleaner.com) C:\WINDOWS\WiseFs64.sys 2017-07-04 00:12 - 2015-02-26 16:18 - 00010792 _____ (WiseCleaner.com) C:\WINDOWS\WiseFs32.sys 2017-07-04 00:01 - 2017-07-19 19:32 - 00000000 ____D C:\Program Files (x86)\Diablo III 2017-07-04 00:00 - 2017-07-04 00:00 - 00000000 ____D C:\ProgramData\Blizzard Entertainment 2017-07-03 23:59 - 2017-07-03 23:59 - 00000000 ____D C:\Users\Giant\AppData\Local\Blizzard Entertainment 2017-07-03 23:59 - 2017-07-03 23:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blizzard App 2017-07-03 23:55 - 2015-10-16 17:15 - 00000181 _____ C:\Users\Giant\AppData\Roaming\Config.ini 2017-07-03 23:51 - 2017-07-30 14:26 - 00000000 ____D C:\Users\Giant\AppData\Local\Battle.net 2017-07-03 23:51 - 2017-07-30 14:16 - 00000000 ____D C:\Program Files (x86)\Blizzard App 2017-07-03 23:50 - 2017-07-04 00:00 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Battle.net 2017-07-03 23:50 - 2017-07-03 23:50 - 00000000 ____D C:\ProgramData\Battle.net 2017-07-03 23:22 - 2017-07-03 23:22 - 00000000 ____D C:\WINDOWS\System32\Tasks\S-1-5-21-1334912058-1624934052-3136465419-1001 2017-07-03 23:05 - 2017-07-03 23:55 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Wise Folder Hider Pro 2017-07-03 22:48 - 2017-07-29 21:54 - 00000000 ____D C:\Users\Giant\AppData\Local\CrashDumps 2017-07-03 22:48 - 2017-07-04 15:50 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Creative 2017-07-03 22:37 - 2000-05-22 09:58 - 00647872 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Mscomct2.ocx 2017-07-03 22:37 - 1999-10-11 02:00 - 00041984 ____N (Creative Technology Ltd ) C:\WINDOWS\Ctregrun.exe 2017-07-03 22:36 - 2017-07-03 22:37 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Creative 2017-07-03 22:36 - 2017-07-03 22:37 - 00000000 ____D C:\Program Files (x86)\Creative 2017-07-03 22:31 - 2017-07-04 09:29 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2017-07-03 21:44 - 2017-07-29 12:05 - 00000000 ____D C:\Users\Giant\AppData\Roaming\vlc 2017-07-03 21:43 - 2017-07-03 21:43 - 00000000 ____D C:\Program Files (x86)\VideoLAN 2017-07-03 21:38 - 2017-07-03 21:38 - 00000020 ___SH C:\Users\_ashbackuppb_\ntuser.ini 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\Ustawienia lokalne 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\Szablony 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\Moje dokumenty 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\Menu Start 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\Dane aplikacji 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\AppData\Local\Historia 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 _SHDL C:\Users\_ashbackuppb_\AppData\Local\Dane aplikacji 2017-07-03 21:38 - 2017-07-03 21:38 - 00000000 ____D C:\Users\_ashbackuppb_ 2017-07-03 21:33 - 2017-07-24 22:21 - 00000000 ____D C:\Users\Giant\AppData\Local\NVIDIA Corporation 2017-07-03 21:30 - 2017-07-04 15:03 - 00000000 ____D C:\Users\Giant\AppData\Local\Ashampoo Backup PB 2017-07-03 21:29 - 2017-07-03 21:29 - 00000000 ____D C:\ProgramData\Ashampoo Backup PB 2017-07-03 21:29 - 2017-07-03 21:29 - 00000000 ____D C:\ProgramData\Ashampoo 2017-07-03 21:22 - 2017-07-03 21:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\UltraISO 2017-07-03 21:22 - 2017-07-03 21:22 - 00000000 ____D C:\Program Files (x86)\UltraISO 2017-07-03 21:18 - 2017-07-12 18:31 - 00000000 ____D C:\Program Files (x86)\SpyShelter Firewall 2017-07-03 21:18 - 2017-07-03 21:32 - 00000000 ____D C:\Users\Giant\AppData\Roaming\SpyShelter 2017-07-03 21:18 - 2016-09-01 16:26 - 00052992 _____ (Datpol) C:\WINDOWS\system32\SpyShelterShellExt.dll 2017-07-03 21:18 - 2016-09-01 16:26 - 00045824 _____ (Datpol) C:\WINDOWS\SysWOW64\SpyShelterShellExt.dll 2017-07-03 20:19 - 2017-07-17 14:49 - 00000000 ____D C:\Users\Giant\AppData\LocalLow\Mozilla 2017-07-03 20:19 - 2017-07-03 20:25 - 00000000 ____D C:\Users\Giant\AppData\Local\Thunderbird 2017-07-03 20:19 - 2017-07-03 20:19 - 00001289 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Thunderbird.lnk 2017-07-03 20:19 - 2017-07-03 20:19 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Thunderbird 2017-07-03 20:19 - 2017-07-03 20:19 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Mozilla 2017-07-03 20:19 - 2017-07-03 20:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Thunderbird 2017-07-03 20:19 - 2017-07-03 20:19 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2017-07-03 20:08 - 2017-07-30 12:19 - 00000000 ____D C:\ProgramData\NVIDIA 2017-07-03 20:08 - 2017-07-18 19:49 - 00003044 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-03 20:08 - 2017-07-18 19:49 - 00002898 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-03 20:08 - 2017-07-18 19:49 - 00002804 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-03 20:08 - 2017-07-15 00:32 - 00003016 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-03 20:08 - 2017-07-15 00:32 - 00002846 _____ C:\WINDOWS\System32\Tasks\NvTmRepOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2017-07-03 20:08 - 2017-07-03 20:08 - 00000000 ____D C:\Program Files (x86)\VulkanRT 2017-07-03 20:08 - 2017-06-27 22:03 - 06462400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 02478712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 01762936 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 00549312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 00392312 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 00082040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll 2017-07-03 20:08 - 2017-06-27 22:03 - 00069752 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll 2017-07-03 20:08 - 2017-06-22 21:30 - 08076177 _____ C:\WINDOWS\system32\nvcoproc.bin 2017-07-03 20:08 - 2017-06-20 21:58 - 00001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat 2017-07-03 20:08 - 2017-06-07 21:51 - 00001951 _____ C:\WINDOWS\NvContainerRecovery.bat 2017-07-03 20:08 - 2017-03-10 22:17 - 00536864 _____ C:\WINDOWS\system32\vulkan-1.dll 2017-07-03 20:08 - 2017-03-10 22:17 - 00525600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll 2017-07-03 20:08 - 2017-03-10 22:17 - 00254240 _____ C:\WINDOWS\system32\vulkaninfo.exe 2017-07-03 20:08 - 2017-03-10 22:17 - 00233760 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe 2017-07-03 20:07 - 2017-06-28 16:00 - 15625336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvlddmkm.sys 2017-07-03 20:07 - 2017-06-27 23:39 - 40239736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 35838912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv64.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 35314296 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 28953536 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvoglv32.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 13559376 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 12337296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 12132272 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 11501776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 10381664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 09982456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 04208984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 04163008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 03709952 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 03595384 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 01988216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6438476.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 01597888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6438476.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 01278528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncMFTH264.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 01067128 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 01004664 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00996760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncMFTH264.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00972736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00924096 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00781728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00689808 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00617416 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00609728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00578056 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00499320 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll 2017-07-03 20:07 - 2017-06-27 23:39 - 00046373 _____ C:\WINDOWS\system32\nvinfo.pb 2017-07-03 20:07 - 2017-06-27 23:39 - 00000669 _____ C:\WINDOWS\SysWOW64\nv-vk32.json 2017-07-03 20:07 - 2017-06-27 23:39 - 00000669 _____ C:\WINDOWS\system32\nv-vk64.json 2017-07-03 19:54 - 2017-07-04 22:13 - 00000000 ____D C:\ProgramData\NVIDIA Corporation 2017-07-03 19:54 - 2017-07-04 22:12 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2017-07-03 19:54 - 2017-07-03 19:54 - 00000000 ____D C:\Users\Giant\AppData\Local\CEF 2017-07-03 19:54 - 2010-05-26 10:41 - 02401112 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_43.dll 2017-07-03 19:54 - 2010-05-26 10:41 - 01998168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_43.dll 2017-07-03 19:54 - 2010-05-26 10:41 - 00511328 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_43.dll 2017-07-03 19:54 - 2010-05-26 10:41 - 00470880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_43.dll 2017-07-03 19:54 - 2010-05-26 10:41 - 00276832 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx11_43.dll 2017-07-03 19:54 - 2010-05-26 10:41 - 00248672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx11_43.dll 2017-07-03 19:53 - 2017-07-04 22:12 - 00000000 ____D C:\Program Files\NVIDIA Corporation 2017-07-03 19:53 - 2017-06-21 08:02 - 00179320 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll 2017-07-03 19:53 - 2017-06-21 08:02 - 00146552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll 2017-07-03 19:53 - 2017-06-21 08:02 - 00057976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys 2017-07-03 19:53 - 2017-06-21 08:02 - 00048248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys 2017-07-03 19:49 - 2017-07-03 19:49 - 00000444 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics 2017-07-03 19:39 - 2017-07-29 23:00 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Intel 2017-07-03 19:39 - 2017-07-03 19:39 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles 2017-07-03 19:39 - 2017-07-03 19:39 - 00000000 ____D C:\Users\Giant\AppData\Local\DBG 2017-07-03 19:32 - 2017-07-29 21:46 - 00003228 _____ C:\WINDOWS\Sandboxie.ini 2017-07-03 19:32 - 2017-07-03 19:32 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sandboxie 2017-07-03 19:32 - 2017-07-03 19:32 - 00000000 ____D C:\Program Files\Sandboxie 2017-07-03 19:22 - 2017-07-03 19:22 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Google 2017-07-03 19:20 - 2017-07-03 19:20 - 00001183 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\KeePass.lnk 2017-07-03 19:20 - 2017-07-03 19:20 - 00000000 ____D C:\Users\Giant\AppData\Roaming\KeePass 2017-07-03 19:20 - 2017-07-03 19:20 - 00000000 ____D C:\Program Files (x86)\KeePass Password Safe 2017-07-03 19:17 - 2017-07-29 23:00 - 00000000 ____D C:\ProgramData\Intel 2017-07-03 19:17 - 2017-07-29 22:43 - 00000000 ____D C:\Program Files (x86)\Intel Driver Update Utility 2017-07-03 19:17 - 2017-07-18 19:49 - 00002584 _____ C:\WINDOWS\System32\Tasks\USER_ESRV_SVC_QUEENCREEK 2017-07-03 19:17 - 2017-07-03 19:17 - 00000000 ____D C:\WINDOWS\System32\Tasks\Intel 2017-07-03 19:17 - 2017-07-03 19:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver Update Utility 2017-07-03 19:17 - 2017-07-03 19:17 - 00000000 ____D C:\Program Files\Intel Driver Update Utility 2017-07-03 19:17 - 2016-10-18 16:14 - 00021984 _____ C:\WINDOWS\system32\Drivers\semav6msr64.sys 2017-07-03 19:16 - 2017-07-29 23:00 - 00000000 ____D C:\ProgramData\Package Cache 2017-07-03 18:53 - 2017-07-03 18:53 - 00008192 _____ C:\WINDOWS\system32\config\userdiff 2017-07-03 18:51 - 2017-07-03 18:51 - 00002361 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2017-07-03 18:48 - 2017-07-03 18:48 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_esif_umdf2_02_00_00.Wdf 2017-07-03 18:48 - 2017-07-03 18:48 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_esif_lf_01011.Wdf 2017-07-03 18:48 - 2017-07-03 18:48 - 00000000 ____D C:\WINDOWS\system32\Intel 2017-07-03 18:47 - 2017-07-29 23:00 - 00000000 ____D C:\Program Files (x86)\Intel 2017-07-03 18:47 - 2017-02-22 00:45 - 00122384 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL 2017-07-03 18:47 - 2017-02-22 00:45 - 00113168 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL 2017-07-03 18:46 - 2017-07-30 12:19 - 00000000 __SHD C:\Users\Giant\IntelGraphicsProfiles 2017-07-03 18:46 - 2017-07-29 23:00 - 00000000 ____D C:\Program Files\Intel 2017-07-03 18:46 - 2017-07-03 18:46 - 00000000 _____ C:\WINDOWS\system32\GfxValDisplayLog.bin 2017-07-03 18:24 - 2017-07-18 19:22 - 00003554 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2017-07-03 18:24 - 2017-07-18 19:22 - 00003330 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2017-07-03 18:24 - 2017-07-03 18:51 - 00000000 ____D C:\Users\Giant\AppData\Local\Google 2017-07-03 18:24 - 2017-07-03 18:51 - 00000000 ____D C:\Program Files (x86)\Google 2017-07-03 18:21 - 2017-07-03 18:21 - 00000000 ____D C:\Users\Giant\AppData\Local\MicrosoftEdge 2017-07-03 18:20 - 2017-07-03 18:20 - 00000000 ____D C:\Users\Giant\AppData\Local\Comms 2017-07-03 18:06 - 2017-07-03 18:06 - 00000000 ____D C:\ProgramData\USOShared 2017-07-03 18:00 - 2017-07-30 12:25 - 03514248 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2017-07-03 17:59 - 2017-07-03 18:01 - 00000000 __RHD C:\Users\Giant\OneDrive 2017-07-03 17:58 - 2017-07-03 17:58 - 00000000 ____D C:\ProgramData\Microsoft OneDrive 2017-07-03 17:58 - 2017-03-18 21:56 - 02233344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2017-07-03 17:57 - 2017-07-30 13:10 - 00000000 ____D C:\Users\Giant 2017-07-03 17:57 - 2017-07-05 09:31 - 00000000 __RHD C:\Users\Public\AccountPictures 2017-07-03 17:57 - 2017-07-04 15:10 - 00000000 ____D C:\Users\Giant\AppData\Local\Packages 2017-07-03 17:57 - 2017-07-03 22:35 - 00000000 ____D C:\Users\Giant\AppData\Local\VirtualStore 2017-07-03 17:57 - 2017-07-03 17:57 - 00000020 ___SH C:\Users\Giant\ntuser.ini 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\Ustawienia lokalne 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\Szablony 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\Moje dokumenty 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\Menu Start 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\Dane aplikacji 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\AppData\Local\Historia 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 _SHDL C:\Users\Giant\AppData\Local\Dane aplikacji 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 ____D C:\Users\Giant\AppData\Roaming\Adobe 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 ____D C:\Users\Giant\AppData\Local\TileDataLayer 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 ____D C:\Users\Giant\AppData\Local\Publishers 2017-07-03 17:57 - 2017-07-03 17:57 - 00000000 ____D C:\Users\Giant\AppData\Local\ConnectedDevicesPlatform 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\Ustawienia lokalne 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\Szablony 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\Moje dokumenty 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\Menu Start 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\Dane aplikacji 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\AppData\Local\Historia 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Szablony 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Pulpit 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Menu Start 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Dokumenty 2017-07-03 17:56 - 2017-07-03 17:56 - 00000000 _SHDL C:\ProgramData\Dane aplikacji 2017-07-03 17:54 - 2017-07-30 13:06 - 00000000 ____D C:\WINDOWS\system32\SleepStudy 2017-07-03 17:54 - 2017-07-30 12:19 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT 2017-07-03 17:54 - 2017-07-03 17:54 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf 2017-07-03 17:54 - 2017-07-03 17:54 - 00000000 ____D C:\WINDOWS\ServiceProfiles 2017-07-03 17:46 - 2017-07-25 21:28 - 00000000 ___DC C:\WINDOWS\Panther ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2017-07-30 12:25 - 2017-03-20 04:59 - 01652416 _____ C:\WINDOWS\system32\perfh015.dat 2017-07-30 12:25 - 2017-03-20 04:59 - 00405972 _____ C:\WINDOWS\system32\perfc015.dat 2017-07-30 01:23 - 2017-03-18 12:40 - 00524288 _____ C:\WINDOWS\system32\config\BBI 2017-07-29 16:07 - 2017-03-18 22:01 - 00000000 ____D C:\WINDOWS\INF 2017-07-23 22:00 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\system32\NDF 2017-07-21 18:20 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\rescache 2017-07-18 19:31 - 2017-03-18 22:03 - 00000000 ____D C:\Program Files\Common Files\microsoft shared 2017-07-18 19:30 - 2016-12-29 07:52 - 00984040 _____ (Realtek ) C:\WINDOWS\system32\Drivers\SETA451.tmp 2017-07-18 19:30 - 2016-08-12 23:40 - 00355216 _____ (Intel Corporation) C:\WINDOWS\system32\Drivers\esif_lf.sys 2017-07-18 19:07 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\LiveKernelReports 2017-07-18 19:07 - 2017-03-18 21:51 - 00000000 ____D C:\WINDOWS\CbsTemp 2017-07-17 14:28 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\AppReadiness 2017-07-04 15:10 - 2017-03-18 22:03 - 00000000 ___HD C:\Program Files\WindowsApps 2017-07-03 20:08 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\Help 2017-07-03 18:54 - 2017-03-18 22:03 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template 2017-07-03 18:53 - 2017-03-18 22:06 - 00000000 ____D C:\WINDOWS\Setup 2017-07-03 18:46 - 2016-12-29 07:43 - 00000000 ____D C:\Intel 2017-07-03 18:06 - 2017-03-18 22:03 - 00000000 ____D C:\ProgramData\USOPrivate 2017-07-03 17:58 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\system32\spool 2017-07-03 17:58 - 2017-03-18 22:03 - 00000000 ____D C:\WINDOWS\system32\FxsTmp 2017-07-03 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2017-07-03 17:56 - 2017-03-18 22:03 - 00000000 ____D C:\Program Files\Windows NT 2017-07-03 17:55 - 2017-03-20 05:01 - 00000000 ____D C:\WINDOWS\HoloShell 2017-07-03 17:55 - 2017-03-18 22:03 - 00000000 ___RD C:\WINDOWS\PrintDialog 2017-07-03 17:55 - 2017-03-18 22:03 - 00000000 ___RD C:\WINDOWS\MiracastView 2017-07-03 17:55 - 2017-03-18 22:03 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2017-07-03 17:55 - 2017-03-18 12:40 - 00000000 ____D C:\WINDOWS\system32\Sysprep 2017-07-03 17:54 - 2017-03-18 12:40 - 00032768 _____ C:\WINDOWS\system32\config\ELAM 2017-07-03 14:23 - 2016-07-20 01:09 - 00000000 ___HD C:\SYSTEM.SAV ==================== Pliki w katalogu głównym wybranych folderów ======= 2017-07-03 23:55 - 2015-10-16 17:15 - 0000181 _____ () C:\Users\Giant\AppData\Roaming\Config.ini 2017-07-05 09:27 - 2017-07-05 09:27 - 0000017 _____ () C:\Users\Giant\AppData\Local\resmon.resmoncfg 2017-07-04 22:03 - 2017-07-26 22:51 - 0000238 _____ () C:\ProgramData\debugFile.log 2017-07-04 08:08 - 2017-07-04 08:08 - 0000151 _____ () C:\ProgramData\session-2017-07-04-08-08-37.xml 2017-07-04 22:03 - 2017-07-04 22:11 - 0086552 _____ () C:\ProgramData\session-2017-07-04-22-03-44.xml 2017-07-05 09:26 - 2017-07-05 09:26 - 0000151 _____ () C:\ProgramData\session-2017-07-05-09-26-03.xml 2017-07-06 09:44 - 2017-07-06 09:44 - 0000151 _____ () C:\ProgramData\session-2017-07-06-09-44-08.xml 2017-07-06 20:49 - 2017-07-06 20:49 - 0000151 _____ () C:\ProgramData\session-2017-07-06-20-49-36.xml 2017-07-07 18:53 - 2017-07-07 18:53 - 0000150 _____ () C:\ProgramData\session-2017-07-07-18-53-35.xml 2017-07-08 12:35 - 2017-07-08 12:35 - 0000151 _____ () C:\ProgramData\session-2017-07-08-12-35-01.xml 2017-07-09 12:00 - 2017-07-09 12:00 - 0000151 _____ () C:\ProgramData\session-2017-07-09-12-00-11.xml 2017-07-10 17:34 - 2017-07-10 17:34 - 0000151 _____ () C:\ProgramData\session-2017-07-10-17-34-11.xml 2017-07-11 13:42 - 2017-07-11 13:42 - 0000150 _____ () C:\ProgramData\session-2017-07-11-13-42-33.xml 2017-07-11 19:10 - 2017-07-11 19:10 - 0000151 _____ () C:\ProgramData\session-2017-07-11-19-10-29.xml 2017-07-12 18:31 - 2017-07-12 18:31 - 0000151 _____ () C:\ProgramData\session-2017-07-12-18-31-34.xml 2017-07-13 19:17 - 2017-07-13 19:17 - 0000151 _____ () C:\ProgramData\session-2017-07-13-19-17-56.xml 2017-07-13 21:01 - 2017-07-13 21:01 - 0000151 _____ () C:\ProgramData\session-2017-07-13-21-01-23.xml 2017-07-14 18:13 - 2017-07-15 00:43 - 0087238 _____ () C:\ProgramData\session-2017-07-14-18-13-01.xml 2017-07-15 14:41 - 2017-07-15 14:41 - 0000151 _____ () C:\ProgramData\session-2017-07-15-14-41-34.xml 2017-07-16 12:54 - 2017-07-16 12:54 - 0000151 _____ () C:\ProgramData\session-2017-07-16-12-54-34.xml 2017-07-17 14:23 - 2017-07-17 14:23 - 0000151 _____ () C:\ProgramData\session-2017-07-17-14-23-00.xml 2017-07-18 18:11 - 2017-07-18 18:11 - 0000151 _____ () C:\ProgramData\session-2017-07-18-18-11-58.xml 2017-07-18 19:33 - 2017-07-18 19:33 - 0000151 _____ () C:\ProgramData\session-2017-07-18-19-33-37.xml 2017-07-19 19:26 - 2017-07-19 19:26 - 0000151 _____ () C:\ProgramData\session-2017-07-19-19-26-44.xml 2017-07-20 07:56 - 2017-07-20 07:56 - 0000151 _____ () C:\ProgramData\session-2017-07-20-07-56-47.xml 2017-07-20 19:47 - 2017-07-20 21:34 - 0091898 _____ () C:\ProgramData\session-2017-07-20-19-47-15.xml 2017-07-26 22:50 - 2017-07-26 22:52 - 0000217 _____ () C:\ProgramData\session-2017-07-26-22-50-55.xml ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\WINDOWS\system32\winlogon.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\wininit.exe => Plik podpisany cyfrowo C:\WINDOWS\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\services.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\WINDOWS\system32\rpcss.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\WINDOWS\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2017-07-28 18:53 ==================== Koniec FRST.txt ============================