Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 28.09.2018 Uruchomiony przez Bula (administrator) BULA-KOMPUTER (02-10-2018 14:42:59) Uruchomiony z C:\Users\Bula\Desktop Załadowane profile: Bula (Dostępne profile: Bula) Platform: Windows 7 Ultimate Service Pack 1 (X64) Język: Polski (Polska) Internet Explorer Wersja 11 (Domyślna przeglądarka: "D:\Programy\Firefox\firefox.exe" -osint -url "%1") Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe (Intel Corporation) C:\Windows\System32\igfxCUIService.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cistray.exe (Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe (COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe (Electronic Arts) D:\Programy\origin\OriginWebHelperService.exe (Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe () C:\Windows\SysWOW64\PnkBstrA.exe () C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE (Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe (Microsoft Corporation) C:\Program Files\Microsoft Xbox 360 Accessories\XBoxStat.exe (Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe () C:\Program Files (x86)\SteamServerBrowser\SteamServerBrowser.exe (Python Software Foundation) C:\Users\Bula\AppData\Roaming\Python\pythonw.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe (COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe (Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe (Intel) C:\Program Files (x86)\Intel Driver and Support Assistant\DSATray.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe (Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe (COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe (Malwarebytes) D:\Programy\Anti-Malware\MBAMService.exe (Malwarebytes) D:\Programy\Anti-Malware\mbamtray.exe (Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe () C:\Users\Bula\AppData\Roaming\Python\zm.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe (Mozilla Corporation) D:\Programy\Firefox\firefox.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13513288 2013-03-29] (Realtek Semiconductor) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [286704 2013-04-30] (Intel Corporation) HKLM\...\Run: [BCSSync] => D:\Programy\Office14\BCSSync.exe [112512 2010-03-13] (Microsoft Corporation) HKLM\...\Run: [COMODO Internet Security] => C:\Program Files\COMODO\COMODO Internet Security\cistray.exe [2208448 2018-03-13] (COMODO) HKLM\...\Run: [MouseDriver] => C:\Windows\system32\TiltWheelMouse.exe [241152 2017-02-11] (Pixart Imaging Inc) HKLM\...\Run: [XboxStat] => C:\Program Files\Microsoft Xbox 360 Accessories\XboxStat.exe [825184 2009-09-30] (Microsoft Corporation) HKLM-x32\...\Run: [USB3MON] => C:\Program Files (x86)\Intel\Intel(R) USB 3.0 eXtensible Host Controller Driver\Application\iusb3mon.exe [292848 2013-04-11] (Intel Corporation) HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [4072376 2018-01-17] (COMODO) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation) HKLM-x32\...\Run: [DSATray] => C:\Program Files (x86)\Intel Driver and Support Assistant\DsaTray.exe [131360 2017-12-19] (Intel) Winlogon\Notify\igfxcui: igfxdev.dll [X] HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8455960 2015-08-20] (Piriform Ltd) HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3696912 2014-03-04] (Disc Soft Ltd) HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\Run: [SteamServerBrowser] => C:\Program Files (x86)\SteamServerBrowser\SteamServerBrowser.exe [228352 2017-02-26] () HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\Run: [Python] => C:\Users\Bula\AppData\Roaming\Python\pythonw.exe [96408 2017-12-16] (Python Software Foundation) <==== UWAGA HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\MountPoints2: F - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\MountPoints2: {2ca853c7-830d-11e4-bd84-806e6f6e6963} - E:\ASRSetup.exe HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\MountPoints2: {57966ac1-1799-11e7-8b43-d050993d6b5d} - F:\HiSuiteDownLoader.exe HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\MountPoints2: {f0e1bcc0-83e6-11e4-b800-806e6f6e6963} - F:\Setup.exe HKU\S-1-5-21-557026980-2374518597-3869201236-1000\...\MountPoints2: {f97b85b6-edee-11e6-9cde-d050993d6b5d} - H:\HiSuiteDownLoader.exe ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{084E4505-7692-4B26-AA5B-8D0F9041C501}: [DhcpNameServer] 192.168.0.1 Tcpip\..\Interfaces\{3145A23F-5355-4D95-869B-42B58AE58EFB}: [DhcpNameServer] 192.168.42.129 Tcpip\..\Interfaces\{926ED426-758A-4368-BE5A-2FE7D744894E}: [DhcpNameServer] 194.204.152.34 194.204.159.1 Tcpip\..\Interfaces\{A80961FD-6CAE-4C39-82B7-9C8DB462BCF3}: [DhcpNameServer] 192.168.42.129 Internet Explorer: ================== HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.interia.pl/#utm_source=instalki1&utm_medium=installer&utm_campaign=instalki1&iwa_source=installer_instalki HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.interia.pl/#utm_source=instalki1&utm_medium=installer&utm_campaign=instalki1&iwa_source=installer_instalki HKU\S-1-5-21-557026980-2374518597-3869201236-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/pl-pl/?ocid=iehp BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> D:\Programy\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> D:\Programy\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-25] (Oracle Corporation) BHO-x32: Pomocnik logowania za pomocą konta Microsoft -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2012-07-17] (Microsoft Corp.) BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-25] (Oracle Corporation) FireFox: ======== FF DefaultProfile: qnrqekc5.default FF ProfilePath: C:\Users\Bula\AppData\Roaming\Mozilla\Firefox\Profiles\qnrqekc5.default [2018-10-02] FF user.js: detected! => C:\Users\Bula\AppData\Roaming\Mozilla\Firefox\Profiles\qnrqekc5.default\user.js [2015-04-11] FF Homepage: Mozilla\Firefox\Profiles\qnrqekc5.default -> www.google.pl FF Extension: (Adblock Plus) - C:\Users\Bula\AppData\Roaming\Mozilla\Firefox\Profiles\qnrqekc5.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2018-08-31] FF Extension: (Firefox Monitor) - C:\Users\Bula\AppData\Roaming\Mozilla\Firefox\Profiles\qnrqekc5.default\features\{984f4e07-1330-4488-b545-9ee96304f0a6}\fxmonitor@mozilla.org.xpi [2018-09-24] FF Extension: (Telemetry coverage) - C:\Users\Bula\AppData\Roaming\Mozilla\Firefox\Profiles\qnrqekc5.default\features\{984f4e07-1330-4488-b545-9ee96304f0a6}\telemetry-coverage-bug1487578@mozilla.org.xpi [2018-09-24] [Przestarzałe] FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_108.dll [2018-09-11] () FF Plugin: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelogx64.dll [Brak pliku] FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> D:\Programy\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_108.dll [2018-09-11] () FF Plugin-x32: @esn/npbattlelog,version=2.7.1 -> C:\Program Files (x86)\Battlelog Web Plugins\2.7.1\npbattlelog.dll [Brak pliku] FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=3.0.72 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-03-12] (Intel Corporation) FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-25] (Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-25] (Oracle Corporation) FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50901.0\npctrl.dll [2016-08-31] ( Microsoft Corporation) FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation) FF Plugin-x32: @nullsoft.com/winampDetector;version=1 -> D:\Programy\Winamp Detect\npwachk.dll [2013-12-13] (Nullsoft, Inc.) FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-09-25] (NVIDIA Corporation) FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-09-25] (NVIDIA Corporation) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.) StartMenuInternet: FIREFOX.EXE - D:\Programy\Firefox\firefox.exe Chrome: ======= CHR DefaultProfile: Default CHR Profile: C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default [2018-10-02] CHR Extension: (Prezentacje) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13] CHR Extension: (Dokumenty) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13] CHR Extension: (Dysk Google) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-18] CHR Extension: (YouTube) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-18] CHR Extension: (Google Search) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-18] CHR Extension: (Arkusze) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13] CHR Extension: (Dokumenty Google offline) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-20] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03] CHR Extension: (TunnelBear VPN) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\omdakjcmkglenbhjadbccaookpfjihpa [2018-09-20] CHR Extension: (Gmail) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-04-04] CHR Extension: (Chrome Media Router) - C:\Users\Bula\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-12] ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7206312 2018-07-19] () R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11395096 2018-03-13] (COMODO) S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2876096 2018-03-13] (COMODO) R2 DSAService; C:\Program Files (x86)\Intel Driver and Support Assistant\DSAService.exe [22304 2017-12-19] (Intel) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [776832 2018-05-06] (EasyAntiCheat Ltd) S2 ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [885992 2017-12-08] () S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6943800 2015-09-15] (GOG.com) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15344 2013-04-30] (Intel Corporation) R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [344184 2017-01-24] (Intel Corporation) R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [731648 2013-02-13] (Intel(R) Corporation) [Brak podpisu cyfrowego] S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [820184 2013-02-13] (Intel(R) Corporation) R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [131544 2013-03-12] (Intel Corporation) S3 Intel(R) SUR QC SAM; C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [18168 2017-07-13] (Intel Corporation) R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1199544 2018-01-17] (COMODO) S3 iumsvc; C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe [177376 2016-08-12] (Intel Corporation) R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-03-12] (Intel Corporation) S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2016-12-03] () [Brak podpisu cyfrowego] R2 MBAMService; D:\Programy\Anti-Malware\mbamservice.exe [6541008 2018-05-09] (Malwarebytes) S3 Microsoft SharePoint Workspace Audit Service; D:\Programy\Office14\GROOVE.EXE [51456888 2010-03-25] (Microsoft Corporation) R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [772976 2018-09-25] (NVIDIA Corporation) S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [772976 2018-09-25] (NVIDIA Corporation) S3 Origin Client Service; D:\Programy\origin\OriginClientService.exe [2201920 2018-06-12] (Electronic Arts) R2 Origin Web Helper Service; D:\Programy\origin\OriginWebHelperService.exe [3072328 2018-06-12] (Electronic Arts) R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2017-01-31] () R2 SystemUsageReportSvc_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe [181992 2017-12-08] () S3 USER_ESRV_SVC_QUEENCREEK; C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe [885992 2017-12-08] () S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2014-10-17] (Microsoft Corporation) R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000 R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) S3 AtiHDAudioService; C:\Windows\System32\drivers\AtihdW76.sys [96256 2017-09-02] (Advanced Micro Devices) [Brak podpisu cyfrowego] R1 cmderd; C:\Windows\System32\DRIVERS\cmderd.sys [34280 2018-02-01] (COMODO) R1 cmdGuard; C:\Windows\System32\DRIVERS\cmdguard.sys [846624 2018-02-01] (COMODO) R1 cmdHlp; C:\Windows\System32\DRIVERS\cmdhlp.sys [59096 2018-02-01] (COMODO) S3 dg_ssudbus; C:\Windows\System32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd.) R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2014-12-16] (Disc Soft Ltd) R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152184 2018-04-26] (Malwarebytes) R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28656 2013-04-30] (Intel Corporation) R1 inspect; C:\Windows\System32\DRIVERS\inspect.sys [123544 2018-02-01] (COMODO) R1 isedrv; C:\Windows\system32\drivers\isedrv.sys [50576 2018-01-17] (COMODO) R3 L1C; C:\Windows\System32\DRIVERS\L1C62x64.sys [118504 2012-12-19] (Qualcomm Atheros Co., Ltd.) R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [190696 2018-10-02] (Malwarebytes) R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [112864 2018-10-02] (Malwarebytes) R3 MBAMProtection; C:\Windows\System32\DRIVERS\mbam.sys [44768 2018-10-02] (Malwarebytes) R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [253664 2018-10-02] (Malwarebytes) R3 MBAMWebProtection; C:\Windows\System32\DRIVERS\mwac.sys [94328 2018-10-02] (Malwarebytes) S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30792 2018-09-25] (NVIDIA Corporation) R3 nvvad_WaveExtensible; C:\Windows\System32\drivers\nvvad64v.sys [69544 2018-09-25] (NVIDIA Corporation) R3 nvvhci; C:\Windows\System32\DRIVERS\nvvhci.sys [65792 2018-09-25] (NVIDIA Corporation) S3 RT61; C:\Windows\System32\DRIVERS\RT61.sys [322560 2005-07-01] (Ralink Technology Inc.) S3 RTL8023x64; C:\Windows\System32\DRIVERS\Rtnic64.sys [51712 2009-06-10] (Realtek Semiconductor Corporation ) S3 semav6msr64; C:\Windows\system32\drivers\semav6msr64.sys [41512 2017-12-08] () S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd.) S3 ssudserd; C:\Windows\System32\DRIVERS\ssudserd.sys [203320 2012-06-04] (DEVGURU Co., LTD.(www.devguru.co.kr)) S3 t_mouse.sys; C:\Windows\System32\DRIVERS\t_mouse.sys [6144 2017-02-11] () U5 VWiFiFlt; C:\Windows\System32\Drivers\VWiFiFlt.sys [59904 2009-07-14] (Microsoft Corporation) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc - utworzone pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-10-02 14:42 - 2018-10-02 14:43 - 000022011 _____ C:\Users\Bula\Desktop\FRST.txt 2018-10-02 14:41 - 2018-10-02 14:41 - 002414080 _____ (Farbar) C:\Users\Bula\Desktop\FRST64.exe 2018-10-02 13:11 - 2018-10-02 14:14 - 000094328 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys 2018-10-02 13:11 - 2018-10-02 13:11 - 000190696 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys 2018-10-02 13:11 - 2018-10-02 13:11 - 000112864 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys 2018-10-02 13:11 - 2018-10-02 13:11 - 000044768 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys 2018-10-02 13:10 - 2018-10-02 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes 2018-10-02 13:00 - 2018-10-02 13:00 - 000003909 _____ C:\Windows\system32\default_error_stack-000291-000000.txt 2018-10-01 22:28 - 2018-10-01 22:28 - 000003210 _____ C:\Users\Bula\Desktop\GameUserSettings.ini 2018-10-01 20:18 - 2018-10-01 20:18 - 000000000 ____D C:\Users\Bula\AppData\Local\NVIDIA 2018-10-01 19:44 - 2018-10-01 19:44 - 000000000 ____D C:\Users\Bula\ansel 2018-10-01 19:39 - 2018-10-01 19:39 - 000003909 _____ C:\Windows\system32\default_error_stack-000290-000000.txt 2018-10-01 19:37 - 2018-10-01 19:37 - 000000000 ____D C:\Users\Bula\AppData\Roaming\NVIDIA 2018-10-01 19:36 - 2018-10-01 19:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation 2018-10-01 19:36 - 2018-10-01 19:36 - 000004146 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003940 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003798 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003792 _____ C:\Windows\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003792 _____ C:\Windows\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003792 _____ C:\Windows\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003790 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003738 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003738 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003730 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-10-01 19:36 - 000003494 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} 2018-10-01 19:36 - 2018-09-25 22:12 - 002621808 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll 2018-10-01 19:36 - 2018-09-25 22:12 - 002249072 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll 2018-10-01 19:36 - 2018-09-25 22:12 - 001311600 _____ (NVIDIA Corporation) C:\Windows\system32\NvRtmpStreamer64.dll 2018-10-01 19:35 - 2018-09-25 22:12 - 000001951 _____ C:\Windows\NvTelemetryContainerRecovery.bat 2018-10-01 19:35 - 2018-09-25 19:59 - 000131952 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe 2018-10-01 19:35 - 2018-09-25 19:49 - 005949832 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 002613616 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 001767816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 000634680 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 000450416 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 000124400 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll 2018-10-01 19:35 - 2018-09-25 19:49 - 000083256 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll 2018-10-01 19:35 - 2018-09-14 14:25 - 008336292 _____ C:\Windows\system32\nvcoproc.bin 2018-10-01 19:34 - 2018-10-01 19:34 - 000000000 ____D C:\Windows\system32\unknown 2018-10-01 19:34 - 2018-10-01 19:34 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation 2018-10-01 19:34 - 2018-09-25 22:12 - 000001951 _____ C:\Windows\NvContainerRecovery.bat 2018-10-01 19:33 - 2018-09-26 15:44 - 035296816 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 029973104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 028974128 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 025855464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 015562680 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 012935304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 001159720 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000907480 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000547320 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000505696 _____ (NVIDIA Corporation) C:\Windows\system32\nvumdshimx.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000465344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000420144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvumdshim.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000182552 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000165088 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglshim64.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000160384 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll 2018-10-01 19:33 - 2018-09-26 15:44 - 000142584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglshim32.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 020893648 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 019705368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 017399936 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 016984336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 004688416 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll 2018-10-01 19:33 - 2018-09-26 15:43 - 004146424 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll 2018-10-01 19:33 - 2018-09-26 12:46 - 000978096 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll 2018-10-01 19:33 - 2018-09-26 12:46 - 000978096 _____ C:\Windows\system32\vulkan-1.dll 2018-10-01 19:33 - 2018-09-26 12:46 - 000844976 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll 2018-10-01 19:33 - 2018-09-26 12:46 - 000844976 _____ C:\Windows\SysWOW64\vulkan-1.dll 2018-10-01 19:33 - 2018-09-26 12:46 - 000267952 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe 2018-10-01 19:33 - 2018-09-26 12:46 - 000267952 _____ C:\Windows\system32\vulkaninfo.exe 2018-10-01 19:33 - 2018-09-26 12:46 - 000243376 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe 2018-10-01 19:33 - 2018-09-26 12:46 - 000243376 _____ C:\Windows\SysWOW64\vulkaninfo.exe 2018-10-01 19:33 - 2018-09-26 12:45 - 048343456 _____ (NVIDIA Corp.) C:\Windows\system32\nvoptix.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 039413672 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 029361608 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 020021296 _____ (NVIDIA Corporation) C:\Windows\system32\nvrtum64.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 019898800 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys 2018-10-01 19:33 - 2018-09-26 12:45 - 001444912 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 001115080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 000629008 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll 2018-10-01 19:33 - 2018-09-26 12:45 - 000518928 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 040439016 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 035312760 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 004393320 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 003925736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 002018048 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6441170.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 001941680 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 001467808 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6441170.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 001457408 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll 2018-10-01 19:33 - 2018-09-26 12:44 - 000489360 _____ (NVIDIA Corporation) C:\Windows\system32\nvcbl64.dll 2018-10-01 19:33 - 2018-09-25 22:12 - 001675096 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll 2018-10-01 19:33 - 2018-09-25 22:12 - 000218968 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys 2018-10-01 19:33 - 2018-09-25 22:12 - 000069544 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys 2018-10-01 19:33 - 2018-09-25 22:12 - 000065792 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvhci.sys 2018-10-01 19:33 - 2018-09-25 22:12 - 000044159 _____ C:\Windows\system32\nvinfo.pb 2018-10-01 19:33 - 2018-09-25 22:12 - 000038232 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll 2018-10-01 19:33 - 2018-09-25 22:12 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json 2018-10-01 19:33 - 2018-09-25 22:12 - 000000669 _____ C:\Windows\system32\nv-vk64.json 2018-10-01 19:29 - 2018-10-01 19:29 - 000003909 _____ C:\Windows\system32\default_error_stack-000289-000000.txt 2018-10-01 19:28 - 2018-10-01 19:36 - 000000000 ____D C:\Program Files\NVIDIA Corporation 2018-10-01 19:03 - 2018-10-01 19:03 - 000003909 _____ C:\Windows\system32\default_error_stack-000288-000000.txt 2018-10-01 13:28 - 2018-10-01 13:28 - 000003909 _____ C:\Windows\system32\default_error_stack-000287-000000.txt 2018-09-30 13:41 - 2018-09-30 13:41 - 000003909 _____ C:\Windows\system32\default_error_stack-000286-000000.txt 2018-09-29 09:51 - 2018-09-29 09:51 - 000003909 _____ C:\Windows\system32\default_error_stack-000285-000000.txt 2018-09-28 08:10 - 2018-09-28 08:10 - 000003909 _____ C:\Windows\system32\default_error_stack-000284-000000.txt 2018-09-27 10:44 - 2018-09-27 10:44 - 000003909 _____ C:\Windows\system32\default_error_stack-000283-000000.txt 2018-09-26 09:39 - 2018-09-26 09:39 - 000003909 _____ C:\Windows\system32\default_error_stack-000282-000000.txt 2018-09-25 14:35 - 2018-09-25 14:35 - 000003909 _____ C:\Windows\system32\default_error_stack-000281-000000.txt 2018-09-24 11:32 - 2018-09-24 11:32 - 000003909 _____ C:\Windows\system32\default_error_stack-000280-000000.txt 2018-09-23 10:05 - 2018-09-23 10:05 - 000003909 _____ C:\Windows\system32\default_error_stack-000279-000000.txt 2018-09-23 01:11 - 2018-09-23 01:11 - 000003909 _____ C:\Windows\system32\default_error_stack-000278-000000.txt 2018-09-22 09:08 - 2018-09-22 09:08 - 000003909 _____ C:\Windows\system32\default_error_stack-000277-000000.txt 2018-09-21 17:28 - 2018-09-28 20:50 - 000000017 _____ C:\Users\Bula\Desktop\asd.txt 2018-09-21 09:41 - 2018-09-21 09:41 - 000003909 _____ C:\Windows\system32\default_error_stack-000276-000000.txt 2018-09-20 10:45 - 2018-09-20 10:45 - 000094855 _____ C:\Users\Bula\Desktop\przesylka.pdf 2018-09-20 10:39 - 2018-09-20 10:39 - 000090101 _____ C:\Users\Bula\Desktop\19068379378.pdf 2018-09-20 07:49 - 2018-09-20 07:49 - 000003909 _____ C:\Windows\system32\default_error_stack-000275-000000.txt 2018-09-19 12:55 - 2018-09-19 12:55 - 000040235 _____ C:\Users\Bula\Desktop\Wniosek_o_wydanie_zaświadczenia_o_dochodach_(pobrano_z_Biurokrata.pl).pdf 2018-09-19 10:28 - 2018-09-19 10:28 - 000003909 _____ C:\Windows\system32\default_error_stack-000274-000000.txt 2018-09-18 09:33 - 2018-09-18 09:33 - 000003909 _____ C:\Windows\system32\default_error_stack-000273-000000.txt 2018-09-17 14:14 - 2018-09-20 10:21 - 000000000 ____D C:\Users\Bula\Desktop\zim 2018-09-17 09:50 - 2018-09-17 09:50 - 000003909 _____ C:\Windows\system32\default_error_stack-000272-000000.txt 2018-09-16 16:26 - 2018-09-16 16:26 - 000000650 _____ C:\Users\Public\Desktop\Acquisition.lnk 2018-09-16 16:26 - 2018-09-16 16:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acquisition 2018-09-16 16:05 - 2018-09-16 16:05 - 000001041 _____ C:\Users\Bula\Desktop\acquisition.exe — skrót.lnk 2018-09-16 11:40 - 2018-09-16 11:40 - 000003909 _____ C:\Windows\system32\default_error_stack-000271-000000.txt 2018-09-15 20:55 - 2018-09-15 20:55 - 000003909 _____ C:\Windows\system32\default_error_stack-000270-000000.txt 2018-09-15 10:46 - 2018-09-15 10:46 - 000003909 _____ C:\Windows\system32\default_error_stack-000269-000000.txt 2018-09-14 09:13 - 2018-09-14 09:13 - 000003909 _____ C:\Windows\system32\default_error_stack-000268-000000.txt 2018-09-13 10:26 - 2018-09-13 10:26 - 000003909 _____ C:\Windows\system32\default_error_stack-000267-000000.txt 2018-09-12 20:53 - 2018-09-12 20:53 - 000000543 _____ C:\Users\Bula\Desktop\Path of Building.exe — skrót.lnk 2018-09-12 10:40 - 2018-09-12 10:40 - 000003909 _____ C:\Windows\system32\default_error_stack-000266-000000.txt 2018-09-11 21:53 - 2018-09-11 21:53 - 000001532 _____ C:\Users\Public\Desktop\Path of Exile.lnk 2018-09-11 07:51 - 2018-09-11 07:51 - 000003909 _____ C:\Windows\system32\default_error_stack-000265-000000.txt 2018-09-11 06:05 - 2018-09-11 06:05 - 000003909 _____ C:\Windows\system32\default_error_stack-000264-000000.txt 2018-09-10 14:09 - 2018-09-10 14:09 - 000003909 _____ C:\Windows\system32\default_error_stack-000263-000000.txt 2018-09-09 09:16 - 2018-09-09 09:16 - 000003909 _____ C:\Windows\system32\default_error_stack-000262-000000.txt 2018-09-08 15:42 - 2018-09-08 15:42 - 000003909 _____ C:\Windows\system32\default_error_stack-000261-000000.txt 2018-09-07 15:12 - 2018-09-07 15:12 - 000003909 _____ C:\Windows\system32\default_error_stack-000260-000000.txt 2018-09-07 01:53 - 2018-09-07 01:53 - 000003909 _____ C:\Windows\system32\default_error_stack-000259-000000.txt 2018-09-06 19:23 - 2018-09-06 19:23 - 000003909 _____ C:\Windows\system32\default_error_stack-000258-000000.txt 2018-09-06 09:34 - 2018-09-06 09:34 - 000003909 _____ C:\Windows\system32\default_error_stack-000257-000000.txt 2018-09-05 13:37 - 2018-09-05 13:37 - 000003909 _____ C:\Windows\system32\default_error_stack-000256-000000.txt 2018-09-04 11:27 - 2018-09-04 11:27 - 000003909 _____ C:\Windows\system32\default_error_stack-000255-000000.txt 2018-09-03 13:39 - 2018-09-03 13:39 - 000003909 _____ C:\Windows\system32\default_error_stack-000254-000000.txt 2018-09-02 09:08 - 2018-09-02 09:08 - 000003909 _____ C:\Windows\system32\default_error_stack-000253-000000.txt 2018-09-02 06:24 - 2018-09-02 06:24 - 000003909 _____ C:\Windows\system32\default_error_stack-000252-000000.txt ==================== Jeden miesiąc - zmodyfikowane pliki i foldery ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2018-10-02 14:42 - 2018-01-05 17:01 - 000000000 ____D C:\FRST 2018-10-02 14:38 - 2016-11-16 21:38 - 000000000 ____D C:\Users\Bula\AppData\LocalLow\Mozilla 2018-10-02 14:38 - 2014-12-15 21:03 - 000000000 ____D C:\Users\Bula\AppData\Roaming\uTorrent 2018-10-02 14:37 - 2018-06-27 22:33 - 000000000 ____D C:\Users\Bula\AppData\Local\CrashDumps 2018-10-02 14:37 - 2016-12-19 01:19 - 001474832 _____ C:\Windows\system32\Drivers\sfi.dat 2018-10-02 14:37 - 2015-01-06 01:17 - 000000000 ____D C:\Users\Bula\AppData\Roaming\MPC-HC 2018-10-02 14:37 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\inf 2018-10-02 14:34 - 2017-04-12 14:38 - 000000000 ____D C:\Users\Bula\Documents\The Witcher 3 2018-10-02 14:13 - 2009-07-14 06:45 - 000016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0 2018-10-02 14:13 - 2009-07-14 06:45 - 000016640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0 2018-10-02 13:30 - 2015-09-18 21:23 - 000000000 ____D C:\Users\Bula\Documents\Euro Truck Simulator 2 2018-10-02 13:10 - 2018-08-13 19:11 - 000253664 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys 2018-10-02 13:10 - 2017-10-31 21:53 - 000000729 _____ C:\Users\Public\Desktop\Malwarebytes.lnk 2018-10-02 13:09 - 2018-06-02 16:43 - 000000000 ____D C:\ProgramData\NVIDIA 2018-10-02 13:03 - 2011-04-12 15:21 - 000963868 _____ C:\Windows\system32\perfh015.dat 2018-10-02 13:03 - 2011-04-12 15:21 - 000357800 _____ C:\Windows\system32\perfc015.dat 2018-10-02 13:03 - 2009-07-14 07:13 - 000006770 _____ C:\Windows\system32\PerfStringBackup.INI 2018-10-02 12:57 - 2009-07-14 07:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT 2018-10-01 22:35 - 2009-07-14 05:20 - 000000000 __SHD C:\PerfLogs 2018-10-01 20:18 - 2018-06-02 16:41 - 000000000 ____D C:\ProgramData\NVIDIA Corporation 2018-10-01 20:18 - 2018-01-20 01:30 - 000000000 ____D C:\Users\Bula\AppData\Local\NVIDIA Corporation 2018-10-01 19:44 - 2014-12-13 23:15 - 000000000 ____D C:\Users\Bula 2018-10-01 19:36 - 2015-02-03 15:14 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation 2018-10-01 19:35 - 2009-07-14 05:20 - 000000000 ____D C:\Windows\Help 2018-09-30 13:39 - 2018-01-05 16:08 - 000000000 ____D C:\Program Files (x86)\Intel Driver and Support Assistant 2018-09-30 02:36 - 2014-12-15 00:09 - 000000000 ____D C:\Windows\SysWOW64\Macromed 2018-09-28 14:07 - 2015-02-05 04:55 - 000000000 ____D C:\Users\Bula\AppData\Local\screenSHU 2018-09-25 22:12 - 2018-06-02 16:39 - 000208936 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll 2018-09-25 22:12 - 2018-06-02 16:39 - 000186920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll 2018-09-25 14:33 - 2015-01-14 15:16 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service 2018-09-24 20:48 - 2015-01-08 17:50 - 000000000 ____D C:\Users\Bula\Desktop\pre 2018-09-22 19:09 - 2018-03-13 20:38 - 000000000 ____D C:\Users\Bula\AppData\Local\acquisition 2018-09-22 09:17 - 2018-07-17 18:22 - 000004476 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task 2018-09-22 09:17 - 2018-07-17 18:22 - 000002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk 2018-09-11 21:53 - 2018-01-06 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Grinding Gear Games 2018-09-11 21:53 - 2014-12-15 19:09 - 000000000 ____D C:\ProgramData\Package Cache 2018-09-11 19:29 - 2018-03-14 06:29 - 000004570 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier 2018-09-11 19:29 - 2014-12-15 00:16 - 000004412 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater 2018-09-11 19:29 - 2014-12-15 00:09 - 000842240 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe 2018-09-11 19:29 - 2014-12-15 00:09 - 000175104 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl 2018-09-11 19:29 - 2014-12-15 00:09 - 000000000 ____D C:\Windows\system32\Macromed 2018-09-11 10:18 - 2016-08-05 00:13 - 000001723 _____ C:\Users\Bula\Desktop\skype.txt 2018-09-09 09:14 - 2009-07-14 07:08 - 000032608 _____ C:\Windows\Tasks\SCHEDLGU.TXT ==================== Pliki w katalogu głównym wybranych folderów ======= 2012-02-22 07:55 - 2012-02-22 07:55 - 000021243 _____ () C:\Program Files (x86)\ssudadb.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000004047 _____ () C:\Program Files (x86)\ssudadb.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020233 _____ () C:\Program Files (x86)\ssudbus.cat 2012-02-16 00:21 - 2012-02-16 00:21 - 000007144 _____ () C:\Program Files (x86)\ssudbus.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020233 _____ () C:\Program Files (x86)\ssudcdf.cat 2012-02-16 00:23 - 2012-02-16 00:23 - 000003624 _____ () C:\Program Files (x86)\ssudcdf.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020239 _____ () C:\Program Files (x86)\ssuddmgr.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000005603 _____ () C:\Program Files (x86)\ssuddmgr.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021209 _____ () C:\Program Files (x86)\ssudeadb.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000005030 _____ () C:\Program Files (x86)\ssudeadb.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021245 _____ () C:\Program Files (x86)\ssudmarv.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000003735 _____ () C:\Program Files (x86)\ssudmarv.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020233 _____ () C:\Program Files (x86)\ssudmdm.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000050022 _____ () C:\Program Files (x86)\ssudmdm.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000019311 _____ () C:\Program Files (x86)\ssudmtp.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000001774 _____ () C:\Program Files (x86)\ssudmtp.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021203 _____ () C:\Program Files (x86)\ssudnd5.cat 2012-02-16 00:23 - 2012-02-16 00:23 - 000008164 _____ () C:\Program Files (x86)\ssudnd5.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020239 _____ () C:\Program Files (x86)\ssudobex.cat 2012-02-16 00:23 - 2012-02-16 00:23 - 000005693 _____ () C:\Program Files (x86)\ssudobex.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021215 _____ () C:\Program Files (x86)\ssudrmnet.cat 2012-02-16 00:23 - 2012-02-16 00:23 - 000004820 _____ () C:\Program Files (x86)\ssudrmnet.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021227 _____ () C:\Program Files (x86)\ssudrmnetmp.cat 2012-02-16 00:24 - 2012-02-16 00:24 - 000005559 _____ () C:\Program Files (x86)\ssudrmnetmp.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000019313 _____ () C:\Program Files (x86)\ssudrnds.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000004303 _____ () C:\Program Files (x86)\ssudrnds.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000021243 _____ () C:\Program Files (x86)\ssudsdb.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000003493 _____ () C:\Program Files (x86)\ssudsdb.inf 2012-02-22 07:55 - 2012-02-22 07:55 - 000020239 _____ () C:\Program Files (x86)\ssudserd.cat 2012-02-16 00:22 - 2012-02-16 00:22 - 000005706 _____ () C:\Program Files (x86)\ssudserd.inf 2015-12-10 04:13 - 2015-11-19 16:27 - 000000428 _____ () C:\Users\Bula\AppData\Roaming\book.txt 2015-12-10 04:13 - 2015-11-19 16:26 - 000004134 _____ () C:\Users\Bula\AppData\Roaming\pic.jpg 2015-12-10 04:13 - 2015-11-19 16:26 - 000004134 _____ () C:\Users\Bula\AppData\Roaming\pic1.jpg 2016-12-19 01:05 - 2016-11-03 09:32 - 002594688 _____ (COMODO) C:\Users\Bula\AppData\Roaming\temp~ccavstart.exe 2016-12-19 01:05 - 2016-11-03 09:32 - 003856048 _____ (Terra Informatica Software, Inc.) C:\Users\Bula\AppData\Roaming\temp~cmdhtml.dll 2015-07-20 13:08 - 2018-04-22 23:36 - 000013312 _____ () C:\Users\Bula\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini 2017-04-04 02:33 - 2017-04-04 02:33 - 000000092 _____ () C:\Users\Bula\AppData\Local\fusioncache.dat 2015-02-04 18:01 - 2015-02-04 18:01 - 000000000 ___SH () C:\Users\Bula\AppData\Local\LumaEmu 2015-07-02 22:39 - 2018-05-09 22:44 - 000007597 _____ () C:\Users\Bula\AppData\Local\resmon.resmoncfg 2017-01-03 11:32 - 2017-01-03 11:32 - 000000000 _____ () C:\Users\Bula\AppData\Local\{F9861C58-0412-4513-BA08-16CAA4E28004} Pliki do przeniesienia lub usunięcia: ==================== C:\Users\Bula\AppData\Roaming\Python\pythonw.exe Niektóre pliki w TEMP: ==================== 2018-10-01 19:07 - 2016-11-14 11:45 - 000834104 _____ (NVIDIA Corporation) C:\Users\Bula\AppData\Local\Temp\nvStInst.exe 2018-08-13 19:14 - 2018-10-02 00:50 - 000192512 _____ () C:\Users\Bula\AppData\Local\Temp\sfamcc00001.dll ==================== Bamital & volsnap ====================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) C:\Windows\system32\winlogon.exe => Plik podpisany cyfrowo C:\Windows\system32\wininit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\wininit.exe => Plik podpisany cyfrowo C:\Windows\explorer.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\explorer.exe => Plik podpisany cyfrowo C:\Windows\system32\svchost.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\svchost.exe => Plik podpisany cyfrowo C:\Windows\system32\services.exe => Plik podpisany cyfrowo C:\Windows\system32\User32.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\User32.dll => Plik podpisany cyfrowo C:\Windows\system32\userinit.exe => Plik podpisany cyfrowo C:\Windows\SysWOW64\userinit.exe => Plik podpisany cyfrowo C:\Windows\system32\rpcss.dll => Plik podpisany cyfrowo C:\Windows\system32\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\SysWOW64\dnsapi.dll => Plik podpisany cyfrowo C:\Windows\system32\Drivers\volsnap.sys => Plik podpisany cyfrowo LastRegBack: 2018-09-27 11:55 ==================== Koniec FRST.txt ============================