Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 01-06-2019 Uruchomiony przez X (administrator) LAPTOP-SEI86GJ4 (LENOVO 80E5) (02-06-2019 16:23:39) Uruchomiony z C:\Users\X\AppData\Local\Temp\scoped_dir15092_19106 Załadowane profile: X & postgres (Dostępne profile: X & postgres) Platform: Windows 10 Home Wersja 1803 17134.765 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) () [Brak podpisu cyfrowego] C:\Program Files\ATI Technologies\ATI.ACE\a4\AdaptiveSleepService.exe () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19031.17720.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1904.31.0_x64__8wekyb3d8bbwe\Calculator.exe () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\Microsoft.XboxApp_48.53.29001.0_x64__8wekyb3d8bbwe\XboxApp.exe () [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19031.11411.0_x64__8wekyb3d8bbwe\Video.UI.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe (Adobe Systems Incorporated -> Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe (Conexant Systems, Inc. -> Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe (Conexant Systems, Inc. -> Conexant Systems, Inc.) C:\Windows\SysWOW64\SASrv.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler.exe (Google Inc -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.34.11\GoogleCrashHandler64.exe (Intel Corporation - Rapid Storage Technology -> Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe (Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe (LENOVO -> ) C:\Program Files\update\UpdateAgent.exe (LENOVO -> Lenovo) C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe (Lenovo) [Brak podpisu cyfrowego] C:\Program Files (x86)\Lenovo\LenovoPortal\FastBoot\FbService.exe (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\MsMpEng.exe (Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1904.1-0\NisSrv.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe\HxCalendarAppImm.exe (Microsoft Corporation) [Brak podpisu cyfrowego] C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11629.20174.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CastSrv.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera.exe (Opera Software AS -> Opera Software) C:\Users\X\AppData\Local\Programs\Opera\60.0.3255.109\opera_crashreporter.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe ==================== Rejestr (filtrowane) =========================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Run: [ForteConfig] => C:\Program Files\Conexant\ForteConfig\fmapp.exe [49056 2010-10-26] (Fortemedia Inc -> ) HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [919768 2014-11-20] (Conexant Systems, Inc. -> Conexant Systems, Inc.) HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [322472 2015-07-22] (Intel Corporation - Rapid Storage Technology -> Intel Corporation) HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [791848 2015-09-09] (LENOVO -> ) HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SAII\SACpl.exe [1830616 2014-04-10] (Conexant Systems, Inc. -> Conexant Systems, Inc.) HKLM\...\Run: [StartCN] => C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe [6613896 2016-06-28] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated) HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\Lenovo\Power2Go\CLMLSvc_P2G8.exe [110344 2014-09-09] (CyberLink Corp. -> CyberLink) HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\Lenovo\Power2Go\VirtualDrive.exe [492808 2014-09-09] (CyberLink Corp. -> CyberLink Corp.) HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2410968 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5890504 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645456 2019-04-01] (Oracle America, Inc. -> Oracle Corporation) HKLM Group Policy restriction on software: %systemroot%\system32\mrt.exe <==== UWAGA HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [PhotoMasterImportAgent] => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterImportAgent.exe [675608 2016-04-22] (CyberLink Corp. -> CyberLink Corp.) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [World of Tanks] => "C:\Games\World_of_Tanks\WargamingGameUpdater.exe" HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3114256 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3152160 2019-04-30] (Valve -> Valve Corporation) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [Spotify] => C:\Users\X\AppData\Roaming\Spotify\Spotify.exe [26118888 2019-03-03] (Spotify AB -> Spotify Ltd) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [Gaijin.Net Agent] => C:\Users\X\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [2125384 2018-11-02] (Gaijin Network LTD -> Gaijin Entertainment) HKU\S-1-5-21-3972574565-3296325426-389100488-1001\...\Run: [ImpulseFastStart] => "C:\Program Files (x86)\Stardock\Impulse\Impulse.exe" /fastload HKU\S-1-5-21-3972574565-3296325426-389100488-1004\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518144 2018-04-12] (Microsoft Windows -> Microsoft Corporation) HKLM\...\Drivers32: [msacm.voxacm160] => C:\WINDOWS\system32\vct3216.acm [82944 2003-05-21] (Voxware, Inc.) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [msacm.scg726] => C:\WINDOWS\system32\scg726.acm [13239 2000-03-14] (SHARP Corporation) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [msacm.alf2cd] => C:\WINDOWS\system32\alf2cd.acm [38912 2003-05-21] (NCT Company) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [msacm.ac3acm] => C:\WINDOWS\system32\AC3ACM.acm [81920 2004-02-04] (fccHandler) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [msacm.lame] => C:\WINDOWS\system32\lame.ax [245760 2005-08-01] () [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.dvsd] => C:\WINDOWS\system32\mcdvd_32.dll [261632 2003-05-21] (MainConcept) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.mpg4] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.mp42] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.mp43] => C:\WINDOWS\system32\mpg4c32.dll [413760 2002-08-19] (Microsoft Corporation) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.xvid] => C:\WINDOWS\system32\xvidvfw.dll [139264 2004-07-03] () [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.DIVX] => C:\WINDOWS\system32\DivX.dll [638976 2003-05-22] (DivXNetworks, Inc.) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.VP62] => C:\WINDOWS\system32\vp6vfw.dll [438272 2004-12-10] (On2.com) [Brak podpisu cyfrowego] HKLM\...\Drivers32: [vidc.LAGS] => C:\WINDOWS\system32\lagarith.dll [216064 2011-12-07] ( ) [Brak podpisu cyfrowego] HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\74.0.3729.169\Installer\chrmstp.exe [2019-05-22] (Google LLC -> Google Inc.) GroupPolicy\User: Ograniczenia ? <==== UWAGA FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============= (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {00DE8F62-2513-4B57-9069-726FAF33413D} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2380088 2019-04-05] (AVAST Software s.r.o. -> AVAST Software) Task: {1A96D5DC-7414-43AA-9BD7-40D970B69FCC} - System32\Tasks\Lenovo\Experience Improvement Logon => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [287688 2017-10-24] (LENOVO -> Lenovo) Task: {1B2D8163-F319-4715-99BB-8B2C96E011E6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) Task: {2F4743AA-31E2-47CF-925D-04587BE35084} - System32\Tasks\Opera scheduled Autoupdate 1558704224 => C:\Users\X\AppData\Local\Programs\Opera\launcher.exe [1493592 2019-05-23] (Opera Software AS -> Opera Software) Task: {4043F3E1-35D5-4706-8D4A-05BC3150CB24} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => sc control iMControllerService 128 Task: {4643E492-39A9-4B92-BC87-18F7979402C1} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 => {429BC048-379E-45E0-80E4-EB1977941B5C} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [29360 2018-04-12] (Microsoft Corporation -> Microsoft Corporation) Task: {49D41DD4-ADD4-41BD-8EB1-D976DA6E19D7} - System32\Tasks\Lenovo\Experience Improvement => C:\Program Files\Lenovo\ExperienceImprovement\LenovoExperienceImprovement.exe [287688 2017-10-24] (LENOVO -> Lenovo) Task: {4BD5FA90-4C8C-4E79-ACBC-473E85AA5E31} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_TVSUUpdateTask => reg.exe add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32 Task: {6156DDC9-FA12-480C-BD88-FA651BF378C5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1195544 2018-12-16] (Adobe Systems, Incorporated -> Adobe Systems Incorporated) Task: {62573B62-C559-4528-9136-AA80E1ABCD40} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 => {84F0FAE1-C27B-4F6F-807B-28CF6F96287D} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [29360 2018-04-12] (Microsoft Corporation -> Microsoft Corporation) Task: {6B2410BA-4CCC-48F1-988A-C6D9A8E5D756} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) Task: {7307450D-1453-4227-9CFD-D4EAD7C8124E} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [552912 2015-02-09] (LENOVO -> Lenovo) Task: {83795B87-BDC9-4F80-A96D-48ED113712D9} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 Critical => {DE434264-8FE9-4C0B-A83B-89EBEEBFF78E} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [29360 2018-04-12] (Microsoft Corporation -> Microsoft Corporation) Task: {870C3FFB-A4CF-4225-8842-D0486F58E514} - System32\Tasks\Lenovo\LSC\LSCHardwareScan => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [9465280 2015-07-01] (LENOVO -> ) Task: {905B187A-63C2-4C02-A03A-8459A6F80FFB} - System32\Tasks\Lenovo\LSC\Lenovo Solution Center Notifications => C:\Program Files\Lenovo\Lenovo Solution Center\LSCNotify.exe [1320384 2015-07-01] (LENOVO -> Lenovo) Task: {9C4F4ACB-5122-40E1-9D7E-99555BC2F2C1} - System32\Tasks\Microsoft\Windows\.NET Framework\.NET Framework NGEN v4.0.30319 64 Critical => {613FBA38-A3DF-4AB8-9674-5604984A299A} C:\Windows\Microsoft.NET\Framework64\v4.0.30319\ngentasklauncher.dll [29360 2018-04-12] (Microsoft Corporation -> Microsoft Corporation) Task: {9EF2F4F3-DDCD-4628-AE6F-77B7D2157600} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-28] (Google Inc -> Google Inc.) Task: {A3BDFFE0-B6F5-4A76-B50C-DD3252BA6E6C} - System32\Tasks\PDVDServ12 Task => C:\Program Files (x86)\Lenovo\PowerDVD12\PDVD12Serv.exe [85432 2015-05-28] (CyberLink Corp. -> CyberLink Corp.) Task: {A83F1F08-D779-4873-916D-06558B08F77B} - System32\Tasks\Lenovo\LSC\LSCHardwareScanPostpone => C:\Program Files\Lenovo\Lenovo Solution Center\LSC.exe [9465280 2015-07-01] (LENOVO -> ) Task: {B10EB2CC-6792-4183-B526-E0BF394CEF5A} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\webAgent.exe [552912 2015-02-09] (LENOVO -> Lenovo) Task: {B6835DBB-9E54-457D-8402-3BF7A100BDA5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-07-28] (Google Inc -> Google Inc.) Task: {CB47EB98-CE1C-472D-BB81-791BECB8F423} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) Task: {D03B54A8-D5C2-4F50-A5FF-2A488F27883F} - System32\Tasks\Lenovo\Lenovo Solution Center Launcher => C:\Program Files\lenovo\lenovo solution center\App\LSCService.exe [270272 2015-07-01] (LENOVO -> Lenovo) Task: {D03E111A-3C7D-4282-BD15-D35AE674A5AA} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 35 => C:\Program Files (x86)\Lenovo\Customer Feedback Program 35\Lenovo.TVT.CustomerFeedback.Agent35.exe [16832 2015-07-06] (LENOVO -> Lenovo) Task: {D5A63AA0-DD43-47D9-A0E8-0515055D9E45} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MpCmdRun.exe [480352 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) Task: {D71132FE-A5F6-4969-B64F-40CB870A4003} - System32\Tasks\CyberLink\Photo Master Gadget startup => C:\Program Files (x86)\Lenovo\Lenovo Photo Master\PhotoMasterWorker.exe [745240 2016-04-22] (CyberLink Corp. -> CyberLink Corp.) Task: {D73753A4-BC50-4F6D-A6CA-FE5FBFCBCFEB} - System32\Tasks\Microsoft\Windows\PLA\LSC Memory => C:\Windows\system32\rundll32.exe C:\Windows\system32\pla.dll,PlaHost "LSC Memory" "$(Arg0)" Task: {DBFAD3DA-0B0D-4893-905C-C8D08DD66B29} - System32\Tasks\Lenovo\QuickOptimizer => C:\Program Files\lenovo\QuickOptimizer\QuickOptimizerIcon.exe [1149344 2015-07-10] (LENOVO -> Lenovo) Task: {DF81A3A6-1573-474B-BA69-27E0040F3E46} - System32\Tasks\AdobeGCInvoker-1.0-MicrosoftAccount-miloszsliwa2005@wp.pl => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2849872 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) Task: {FF7F4F64-1BBD-47D9-8048-B5B5A38C4950} - System32\Tasks\Lenovo\BatteryGauge => C:\Program Files\lenovo\BatteryGauge\BatteryGaugeIcon.exe [400800 2015-07-10] (LENOVO -> Lenovo) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\..\Interfaces\{2e7a254f-3512-46e2-921f-b0cec1c2946d}: [DhcpNameServer] 192.168.1.1 Tcpip\..\Interfaces\{a3756f83-ed51-4327-858b-03f6173567c0}: [DhcpNameServer] 150.206.1.2 Internet Explorer: ================== HKU\S-1-5-21-3972574565-3296325426-389100488-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://lenovo15.msn.com/?pc=LCTE HKU\S-1-5-21-3972574565-3296325426-389100488-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo15.msn.com/?pc=LCTE HKU\S-1-5-21-3972574565-3296325426-389100488-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com SearchScopes: HKU\S-1-5-21-3972574565-3296325426-389100488-1001 -> DefaultScope {793A68EC-6808-4F62-8B72-5559F283E79B} URL = SearchScopes: HKU\S-1-5-21-3972574565-3296325426-389100488-1001 -> {793A68EC-6808-4F62-8B72-5559F283E79B} URL = BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\ssv.dll [2019-06-02] (Oracle America, Inc. -> Oracle Corporation) BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\jp2ssv.dll [2019-06-02] (Oracle America, Inc. -> Oracle Corporation) FireFox: ======== FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-01-10] (VideoLAN -> VideoLAN) FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) FF Plugin-x32: @java.com/DTPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\dtplugin\npDeployJava1.dll [2019-06-02] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @java.com/JavaPlugin,version=11.211.2 -> C:\Program Files (x86)\Java\jre1.8.0_211\bin\plugin2\npjp2.dll [2019-06-02] (Oracle America, Inc. -> Oracle Corporation) FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-17] (Google Inc -> Google LLC) FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-17] (Google Inc -> Google LLC) FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-03-25] (Adobe Inc. -> Adobe Systems Inc.) FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2018-09-13] (Adobe Systems Incorporated -> Adobe Systems) Chrome: ======= CHR Profile: C:\Users\X\AppData\Local\Google\Chrome\User Data\Default [2019-06-01] CHR Extension: (Prezentacje) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-28] CHR Extension: (Dokumenty) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-28] CHR Extension: (Dysk Google) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-28] CHR Extension: (YouTube) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-28] CHR Extension: (Adblock Plus - darmowy adblocker) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2019-04-21] CHR Extension: (Arkusze) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-28] CHR Extension: (Dokumenty Google offline) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-16] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-28] CHR Extension: (Gmail) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-30] CHR Extension: (Chrome Media Router) - C:\Users\X\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-05-23] CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx ==================== Usługi (filtrowane) ==================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) HKLM\SYSTEM\CurrentControlSet\Services\aswSP <==== UWAGA (Rootkit!) HKLM\SYSTEM\CurrentControlSet\Services\aswMonFlt <==== UWAGA (Rootkit!) HKLM\SYSTEM\CurrentControlSet\Services\aswSnx <==== UWAGA (Rootkit!) R2 AdaptiveSleepService; C:\Program Files\ATI Technologies\ATI.ACE\A4\AdaptiveSleepService.exe [138752 2016-06-28] () [Brak podpisu cyfrowego] S2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [818136 2018-09-13] (Adobe Systems Incorporated -> Adobe Inc.) R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [3117648 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2888272 2019-05-04] (Adobe Inc. -> Adobe Systems, Incorporated) R2 AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [287264 2016-08-04] (Microsoft Windows Hardware Compatibility Publisher -> AMD) S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6875688 2018-12-31] (BattlEye Innovations e.K. -> ) R2 FastbootService; C:\Program Files (x86)\Lenovo\LenovoPortal\FastBoot\FbService.exe [288768 2015-09-10] (Lenovo) [Brak podpisu cyfrowego] S2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [3361736 2019-04-02] (LogMeIn, Inc. -> LogMeIn Inc.) S3 HnGSteamService; C:\Program Files (x86)\Steam\steamapps\common\Heroes & Generals\hngservice.exe [787240 2019-05-23] (Reto-Moto ApS -> Reto-Moto ApS) R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [18856 2015-07-22] (Intel Corporation - Rapid Storage Technology -> Intel Corporation) R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [541896 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [373680 2017-05-26] (Intel(R) pGFX -> Intel Corporation) S2 ImControllerService; c:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [30624 2015-07-15] (LENOVO -> ) R2 IpOverUsbSvc; C:\Program Files (x86)\Common Files\Microsoft Shared\Phone Tools\CoreCon\11.0\bin\IpOverUsbSvc.exe [21304 2017-09-28] (Microsoft Corporation -> Microsoft Corporation) S2 LenovoPortalService; C:\Program Files (x86)\Lenovo\LenovoPortal\LenovoPortalService.exe [24312 2015-09-10] (LENOVO -> ) R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.) S3 LSCWinService; C:\Program Files\Lenovo\Lenovo Solution Center\App\LSCWinService.exe [271296 2015-07-01] (LENOVO -> Lenovo) S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [268192 2015-06-12] (Intel Corporation-Wireless Connectivity Solutions -> ) S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2304304 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts) S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3175728 2019-04-09] (Electronic Arts, Inc. -> Electronic Arts) R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [255608 2016-06-01] (Synaptics Incorporated -> Synaptics Incorporated) S3 Te.Service; C:\Program Files (x86)\Windows Kits\10\Testing\Runtimes\TAEF\Wex.Services.exe [187904 2017-09-28] (Microsoft Corporation) [Brak podpisu cyfrowego] R2 UpdateAgentService; C:\Program Files\update\UpdateAgent.exe [226216 2015-09-10] (LENOVO -> ) S3 VSStandardCollectorService150; C:\Program Files (x86)\Microsoft Visual Studio\Shared\Common\DiagnosticsHub.Collection.Service\StandardCollector.Service.exe [145512 2018-01-23] (Microsoft Corporation -> Microsoft Corporation) R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\NisSrv.exe [3851264 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1904.1-0\MsMpEng.exe [118144 2019-05-24] (Microsoft Corporation -> Microsoft Corporation) R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3831200 2015-06-12] (Intel Corporation-Wireless Connectivity Solutions -> Intel® Corporation) S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [X] S2 PaceLicenseDServices; "C:\Program Files (x86)\Common Files\PACE\Services\LicenseServices\LDSvc.exe" -u https://activation.paceap.com/InitiateActivation [X] ===================== Sterowniki (filtrowane) ====================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [26706464 2016-08-04] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R3 amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [518176 2016-08-04] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) R0 Fastboot; C:\WINDOWS\System32\DRIVERS\Fastboot.sys [67608 2015-09-10] (New Horizon DataSys Inc. -> Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego] R0 FBFsmon; C:\WINDOWS\System32\DRIVERS\FBFsmon.sys [39448 2015-09-10] (New Horizon DataSys Inc. -> Windows (R) Win 7 DDK provider) [Brak podpisu cyfrowego] S3 Hamachi; C:\WINDOWS\System32\drivers\Hamdrv.sys [45680 2017-02-02] (Microsoft Windows Hardware Compatibility Publisher -> LogMeIn Inc.) R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [136720 2018-05-10] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation) S3 netr28ux; C:\WINDOWS\System32\drivers\netr28ux.sys [2224128 2018-04-12] (Microsoft Windows -> MediaTek Inc.) R3 NETwNb64; C:\WINDOWS\System32\drivers\Netwbw02.sys [3517200 2016-10-20] (Intel Corporation-Wireless Connectivity Solutions -> Intel Corporation) R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [886528 2015-07-22] (Realtek Semiconductor Corp -> Realtek ) R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [410880 2015-07-03] (Realtek Semiconductor Corp -> Realsil Semiconductor Corporation) S2 Sentinel64; C:\WINDOWS\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc. -> SafeNet, Inc.) R3 SNP2UVC; C:\WINDOWS\system32\DRIVERS\snp2uvc.sys [3481696 2015-06-30] (Sonix Technology CO., LTD -> Sonix Co. Ltd.) S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-05-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [344544 2019-05-24] (Microsoft Windows -> Microsoft Corporation) R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [60896 2019-05-24] (Microsoft Windows -> Microsoft Corporation) S3 wsvd; C:\WINDOWS\system32\DRIVERS\wsvd.sys [102376 2012-06-13] (CyberLink -> "CyberLink) ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-06-02 16:23 - 2019-06-02 16:21 - 000886954 _____ C:\Users\X\Desktop\raport.html 2019-06-02 16:19 - 2019-06-02 16:23 - 000000000 ____D C:\FRST 2019-06-02 16:17 - 2019-06-02 16:17 - 002433536 _____ (Farbar) C:\Users\X\Downloads\FRST64.exe 2019-06-02 16:12 - 2019-06-02 16:12 - 000081148 _____ C:\Users\X\Downloads\Shortcut.txt 2019-06-02 16:02 - 2019-06-02 16:02 - 000000000 ____D C:\Users\X\AppData\Roaming\Sun 2019-06-02 16:02 - 2019-06-02 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java 2019-06-02 16:02 - 2019-06-02 16:01 - 000099192 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll 2019-06-02 16:01 - 2019-06-02 16:01 - 000000000 ____D C:\Program Files (x86)\Java 2019-05-31 23:18 - 2019-05-31 23:18 - 000000000 ____D C:\Users\X\IdeaProjects 2019-05-31 23:14 - 2019-05-31 23:15 - 000000000 ____D C:\Users\X\AppData\Roaming\JetBrains 2019-05-31 23:13 - 2019-05-31 23:13 - 000000000 ____D C:\Users\X\.IdeaIC2019.1 2019-05-31 23:12 - 2019-05-31 23:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\JetBrains 2019-05-31 23:06 - 2019-05-31 23:06 - 000000859 _____ C:\Users\Public\Desktop\IntelliJ IDEA Community Edition 2019.1.3 x64.lnk 2019-05-31 23:06 - 2019-05-31 23:06 - 000000000 ____D C:\Program Files\JetBrains 2019-05-31 22:50 - 2019-05-31 22:54 - 523544504 _____ C:\Users\X\Downloads\ideaIC-2019.1.3-jbr11.exe 2019-05-31 22:47 - 2019-05-31 22:50 - 225748832 _____ (Oracle Corporation) C:\Users\X\Downloads\jdk-8u211-windows-x64.exe 2019-05-29 20:26 - 2019-05-29 20:27 - 001305219 _____ C:\Users\X\Downloads\rekrutacja_2019_a06a7cdf8b83af67bdb1c7760f597911a54cabc73564b9c01211eebaa01d0fc6.pdf 2019-05-24 18:05 - 2019-05-24 18:05 - 000000000 ___HD C:\OneDriveTemp 2019-05-24 18:03 - 2019-05-24 18:03 - 000000000 ____D C:\Users\X\AppData\Local\OneDrive 2019-05-24 15:24 - 2019-05-24 15:24 - 000004256 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1558704224 2019-05-24 15:24 - 2019-05-24 15:24 - 000000000 ____D C:\Users\X\AppData\Local\Opera Software 2019-05-24 15:23 - 2019-05-24 15:23 - 000001463 _____ C:\Users\X\Desktop\Przeglądarka Opera.lnk 2019-05-24 15:23 - 2019-05-24 15:23 - 000001463 _____ C:\Users\X\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Przeglądarka Opera.lnk 2019-05-24 15:22 - 2019-05-24 15:22 - 002241096 _____ (Opera Software) C:\Users\X\Downloads\OperaSetup.exe 2019-05-24 15:22 - 2019-05-24 15:22 - 000000000 ____D C:\Users\X\AppData\Roaming\Opera Software 2019-05-24 14:54 - 2019-05-24 15:00 - 000000000 ____D C:\ESD 2019-05-24 14:49 - 2019-05-24 14:49 - 000000000 ____D C:\$WINDOWS.~BT 2019-05-24 14:45 - 2019-05-24 14:47 - 019256968 _____ (Microsoft Corporation) C:\Users\X\Downloads\MediaCreationTool1903.exe 2019-05-24 14:39 - 2019-05-24 14:39 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3972574565-3296325426-389100488-1009 2019-05-23 16:09 - 2019-05-23 16:09 - 000000222 _____ C:\Users\X\Desktop\Hearts of Iron IV.url 2019-05-20 20:59 - 2019-05-20 20:59 - 005512080 _____ C:\Users\X\Downloads\Faithful+1.13.2-rv2.zip 2019-05-20 20:53 - 2019-05-20 20:54 - 000606451 _____ C:\Users\X\Downloads\Trudny Parkour.rar 2019-05-20 19:51 - 2019-05-20 19:51 - 000000222 _____ C:\Users\X\Desktop\Company of Heroes 2.url 2019-05-20 18:05 - 2019-05-24 15:34 - 000000000 __HDC C:\ProgramData\~0 2019-05-20 18:05 - 2019-05-20 18:05 - 000000000 ____D C:\Users\X\AppData\Roaming\Stardock 2019-05-20 18:03 - 2019-05-20 18:04 - 000000000 ____D C:\ProgramData\Stardock 2019-05-20 18:02 - 2019-05-20 18:02 - 000000000 ____D C:\Program Files (x86)\Stardock Games 2019-05-20 17:55 - 2019-05-20 17:59 - 186505896 _____ C:\Users\X\Downloads\ThePoliticalMachine2008Express.zip 2019-05-19 20:29 - 2019-06-02 16:00 - 002043232 _____ (Oracle Corporation) C:\Users\X\Downloads\JavaSetup8u211.exe 2019-05-19 16:05 - 2019-05-19 16:05 - 000000000 ____D C:\Users\X\AppData\Local\ElevatedDiagnostics 2019-05-19 14:25 - 2019-05-19 14:26 - 015741494 _____ C:\Users\X\Downloads\Default 32x32.zip 2019-05-19 14:17 - 2019-05-19 14:17 - 005637149 _____ C:\Users\X\Downloads\dark-faithful-add-on-1558009967.zip 2019-05-17 22:35 - 2019-05-03 13:51 - 003613696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2019-05-17 22:35 - 2019-05-03 13:28 - 002882048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2019-05-17 22:35 - 2019-05-03 08:36 - 001035256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2019-05-17 22:35 - 2019-05-03 08:33 - 005625152 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2019-05-17 22:35 - 2019-05-03 08:33 - 001219896 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2019-05-17 22:35 - 2019-05-03 08:31 - 009084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2019-05-17 22:35 - 2019-05-03 08:31 - 007519888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2019-05-17 22:35 - 2019-05-03 08:31 - 007436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2019-05-17 22:35 - 2019-05-03 08:31 - 002811192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys 2019-05-17 22:35 - 2019-05-03 08:31 - 002771256 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll 2019-05-17 22:35 - 2019-05-03 08:19 - 006043712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2019-05-17 22:35 - 2019-05-03 08:18 - 006569344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2019-05-17 22:35 - 2019-05-03 08:18 - 002258640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll 2019-05-17 22:35 - 2019-05-03 08:12 - 025855488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2019-05-17 22:35 - 2019-05-03 08:10 - 022017024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2019-05-17 22:35 - 2019-05-03 08:05 - 022716416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2019-05-17 22:35 - 2019-05-03 08:02 - 019401216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2019-05-17 22:35 - 2019-05-03 08:02 - 004866048 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll 2019-05-17 22:35 - 2019-05-03 08:01 - 008189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2019-05-17 22:35 - 2019-05-03 08:00 - 003400192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2019-05-17 22:35 - 2019-05-03 07:59 - 007593472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2019-05-17 22:35 - 2019-05-03 07:59 - 005788672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2019-05-17 22:35 - 2019-05-03 07:57 - 001826816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2019-05-17 22:35 - 2019-05-03 07:56 - 005350912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll 2019-05-17 22:35 - 2019-05-03 07:55 - 003090432 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2019-05-17 22:35 - 2019-05-03 07:54 - 004929024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll 2019-05-17 22:35 - 2019-04-19 12:39 - 012754944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll 2019-05-17 22:35 - 2019-04-19 11:28 - 011940864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2019-05-17 22:35 - 2019-04-19 06:42 - 004384256 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll 2019-05-17 22:35 - 2019-04-19 06:35 - 001175552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll 2019-05-17 22:34 - 2019-05-03 14:14 - 000790208 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2019-05-17 22:34 - 2019-05-03 14:13 - 001376472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll 2019-05-17 22:34 - 2019-05-03 14:13 - 000396088 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll 2019-05-17 22:34 - 2019-05-03 13:55 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2019-05-17 22:34 - 2019-05-03 13:54 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2019-05-17 22:34 - 2019-05-03 13:52 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2019-05-17 22:34 - 2019-05-03 13:51 - 001364992 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll 2019-05-17 22:34 - 2019-05-03 13:50 - 004054528 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2019-05-17 22:34 - 2019-05-03 13:50 - 001663488 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2019-05-17 22:34 - 2019-05-03 13:49 - 001288704 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2019-05-17 22:34 - 2019-05-03 13:49 - 000488448 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2019-05-17 22:34 - 2019-05-03 13:49 - 000210944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2019-05-17 22:34 - 2019-05-03 13:43 - 001027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll 2019-05-17 22:34 - 2019-05-03 13:43 - 000662328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2019-05-17 22:34 - 2019-05-03 13:30 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2019-05-17 22:34 - 2019-05-03 13:30 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2019-05-17 22:34 - 2019-05-03 13:28 - 000089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll 2019-05-17 22:34 - 2019-05-03 13:27 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2019-05-17 22:34 - 2019-05-03 13:26 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2019-05-17 22:34 - 2019-05-03 13:25 - 004055040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2019-05-17 22:34 - 2019-05-03 13:25 - 001471488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2019-05-17 22:34 - 2019-05-03 08:43 - 000177128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys 2019-05-17 22:34 - 2019-05-03 08:34 - 000159864 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe 2019-05-17 22:34 - 2019-05-03 08:33 - 001027384 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2019-05-17 22:34 - 2019-05-03 08:33 - 000709720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys 2019-05-17 22:34 - 2019-05-03 08:33 - 000568104 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe 2019-05-17 22:34 - 2019-05-03 08:33 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2019-05-17 22:34 - 2019-05-03 08:33 - 000076088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2019-05-17 22:34 - 2019-05-03 08:33 - 000063072 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptdll.dll 2019-05-17 22:34 - 2019-05-03 08:32 - 000793640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys 2019-05-17 22:34 - 2019-05-03 08:32 - 000776784 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2019-05-17 22:34 - 2019-05-03 08:32 - 000493880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2019-05-17 22:34 - 2019-05-03 08:32 - 000438984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2019-05-17 22:34 - 2019-05-03 08:32 - 000209208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2019-05-17 22:34 - 2019-05-03 08:32 - 000170296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys 2019-05-17 22:34 - 2019-05-03 08:32 - 000164664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wfplwfs.sys 2019-05-17 22:34 - 2019-05-03 08:31 - 001459328 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2019-05-17 22:34 - 2019-05-03 08:31 - 001260480 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2019-05-17 22:34 - 2019-05-03 08:31 - 001141224 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2019-05-17 22:34 - 2019-05-03 08:31 - 001098064 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll 2019-05-17 22:34 - 2019-05-03 08:31 - 000983632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2019-05-17 22:34 - 2019-05-03 08:31 - 000545808 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll 2019-05-17 22:34 - 2019-05-03 08:31 - 000412984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys 2019-05-17 22:34 - 2019-05-03 08:31 - 000115728 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdnet.dll 2019-05-17 22:34 - 2019-05-03 08:20 - 000434704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2019-05-17 22:34 - 2019-05-03 08:20 - 000384976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2019-05-17 22:34 - 2019-05-03 08:20 - 000192016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2019-05-17 22:34 - 2019-05-03 08:20 - 000146920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe 2019-05-17 22:34 - 2019-05-03 08:19 - 000665224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2019-05-17 22:34 - 2019-05-03 08:19 - 000056288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptdll.dll 2019-05-17 22:34 - 2019-05-03 08:18 - 001130568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll 2019-05-17 22:34 - 2019-05-03 08:00 - 006661632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2019-05-17 22:34 - 2019-05-03 08:00 - 000120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-kernel-processor-power-events.dll 2019-05-17 22:34 - 2019-05-03 08:00 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll 2019-05-17 22:34 - 2019-05-03 07:59 - 003710976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll 2019-05-17 22:34 - 2019-05-03 07:59 - 001307648 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVPXENC.dll 2019-05-17 22:34 - 2019-05-03 07:59 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe 2019-05-17 22:34 - 2019-05-03 07:59 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2019-05-17 22:34 - 2019-05-03 07:59 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2019-05-17 22:34 - 2019-05-03 07:59 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 002175488 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSPhotography.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 001361408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSPhotography.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 000894464 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 000726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll 2019-05-17 22:34 - 2019-05-03 07:58 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe 2019-05-17 22:34 - 2019-05-03 07:58 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe 2019-05-17 22:34 - 2019-05-03 07:57 - 001560576 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2019-05-17 22:34 - 2019-05-03 07:57 - 001549824 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll 2019-05-17 22:34 - 2019-05-03 07:57 - 001295872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVPXENC.dll 2019-05-17 22:34 - 2019-05-03 07:57 - 000808448 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll 2019-05-17 22:34 - 2019-05-03 07:57 - 000608768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll 2019-05-17 22:34 - 2019-05-03 07:57 - 000561152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll 2019-05-17 22:34 - 2019-05-03 07:56 - 001803776 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll 2019-05-17 22:34 - 2019-05-03 07:56 - 000773632 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2019-05-17 22:34 - 2019-05-03 07:56 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll 2019-05-17 22:34 - 2019-05-03 07:56 - 000333824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll 2019-05-17 22:34 - 2019-05-03 07:55 - 002166784 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2019-05-17 22:34 - 2019-05-03 07:55 - 000659968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 001628672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 001097728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys 2019-05-17 22:34 - 2019-05-03 07:54 - 000961024 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000845824 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000778752 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL 2019-05-17 22:34 - 2019-05-03 07:54 - 000776192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000669184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000543744 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000535552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000507392 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll 2019-05-17 22:34 - 2019-05-03 07:54 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll 2019-05-17 22:34 - 2019-05-03 07:53 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys 2019-05-17 22:34 - 2019-05-03 07:53 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys 2019-05-17 22:34 - 2019-05-03 07:53 - 000184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys 2019-05-17 22:34 - 2019-05-03 07:53 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys 2019-05-17 22:34 - 2019-05-03 06:38 - 000001310 _____ C:\WINDOWS\system32\tcbres.wim 2019-05-17 22:34 - 2019-04-23 09:13 - 001008640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MixedRealityCapture.dll 2019-05-17 22:34 - 2019-04-23 08:14 - 000868864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MixedRealityCapture.dll 2019-05-17 22:34 - 2019-04-19 12:55 - 001634920 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2019-05-17 22:34 - 2019-04-19 12:54 - 000720200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll 2019-05-17 22:34 - 2019-04-19 12:40 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll 2019-05-17 22:34 - 2019-04-19 12:38 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDSPnf.exe 2019-05-17 22:34 - 2019-04-19 12:38 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\perfproc.dll 2019-05-17 22:34 - 2019-04-19 12:36 - 000346112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll 2019-05-17 22:34 - 2019-04-19 12:34 - 000522240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv 2019-05-17 22:34 - 2019-04-19 11:44 - 001454648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2019-05-17 22:34 - 2019-04-19 11:37 - 000607960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll 2019-05-17 22:34 - 2019-04-19 11:30 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\perfproc.dll 2019-05-17 22:34 - 2019-04-19 11:26 - 002405888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll 2019-05-17 22:34 - 2019-04-19 11:25 - 000423936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv 2019-05-17 22:34 - 2019-04-19 07:07 - 000985400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncHost.exe 2019-05-17 22:34 - 2019-04-19 07:06 - 002571632 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2019-05-17 22:34 - 2019-04-19 07:06 - 000798520 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll 2019-05-17 22:34 - 2019-04-19 07:06 - 000713264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVideoDSP.dll 2019-05-17 22:34 - 2019-04-19 07:06 - 000436024 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2019-05-17 22:34 - 2019-04-19 07:06 - 000274232 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll 2019-05-17 22:34 - 2019-04-19 07:02 - 000831800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncHost.exe 2019-05-17 22:34 - 2019-04-19 07:01 - 001982008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2019-05-17 22:34 - 2019-04-19 07:01 - 000581592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVideoDSP.dll 2019-05-17 22:34 - 2019-04-19 07:01 - 000576016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll 2019-05-17 22:34 - 2019-04-19 07:01 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2019-05-17 22:34 - 2019-04-19 06:43 - 000150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\fcon.dll 2019-05-17 22:34 - 2019-04-19 06:41 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll 2019-05-17 22:34 - 2019-04-19 06:41 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\EduPrintProv.exe 2019-05-17 22:34 - 2019-04-19 06:40 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserexport.exe 2019-05-17 22:34 - 2019-04-19 06:40 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpnServiceDS.dll 2019-05-17 22:34 - 2019-04-19 06:40 - 000172544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll 2019-05-17 22:34 - 2019-04-19 06:40 - 000167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll 2019-05-17 22:34 - 2019-04-19 06:40 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll 2019-05-17 22:34 - 2019-04-19 06:39 - 005307392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll 2019-05-17 22:34 - 2019-04-19 06:39 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\daxexec.dll 2019-05-17 22:34 - 2019-04-19 06:39 - 000425472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll 2019-05-17 22:34 - 2019-04-19 06:39 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingASDS.dll 2019-05-17 22:34 - 2019-04-19 06:39 - 000361472 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe 2019-05-17 22:34 - 2019-04-19 06:39 - 000204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 002368512 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 000593408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 000391680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\daxexec.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 000300544 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll 2019-05-17 22:34 - 2019-04-19 06:38 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000953856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000445952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll 2019-05-17 22:34 - 2019-04-19 06:37 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 002909696 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 001300992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AzureSettingSyncProvider.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 000827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 000814592 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll 2019-05-17 22:34 - 2019-04-19 06:36 - 000186368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 001938944 _____ (Microsoft Corporation) C:\WINDOWS\system32\AzureSettingSyncProvider.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 001156608 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 000784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 000607232 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneDriveSettingSyncProvider.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 000523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll 2019-05-17 22:34 - 2019-04-19 06:35 - 000312320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll 2019-05-17 22:34 - 2019-04-19 06:34 - 000935936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll 2019-05-17 22:34 - 2019-04-19 06:34 - 000899584 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll 2019-05-17 22:34 - 2019-04-19 06:34 - 000885760 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll 2019-05-17 22:34 - 2019-04-19 06:34 - 000778240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll 2019-05-17 22:34 - 2019-04-19 06:34 - 000653312 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll 2019-05-17 22:34 - 2019-04-19 05:18 - 000806360 _____ C:\WINDOWS\SysWOW64\locale.nls 2019-05-17 22:34 - 2019-04-19 05:18 - 000806360 _____ C:\WINDOWS\system32\locale.nls 2019-05-17 22:34 - 2019-04-09 03:48 - 001311744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2019-05-17 22:34 - 2019-04-09 03:48 - 000376320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mspbde40.dll 2019-05-17 22:34 - 2019-04-09 03:48 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll 2019-05-17 22:34 - 2019-04-09 03:48 - 000341504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll 2019-05-17 22:34 - 2019-04-09 03:48 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll 2019-05-17 20:11 - 2019-05-17 20:11 - 000001002 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk 2019-05-17 20:11 - 2019-05-17 20:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi 2019-05-17 20:11 - 2019-05-17 20:11 - 000000000 ____D C:\Program Files (x86)\LogMeIn Hamachi 2019-05-17 16:16 - 2019-02-13 07:47 - 001909560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcupdate_GenuineIntel.dll 2019-05-17 15:58 - 2019-04-24 15:34 - 000362888 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2019-05-13 19:58 - 2019-05-13 19:58 - 000203117 _____ C:\Users\X\Downloads\PART_1557767911109.jpeg 2019-05-13 19:34 - 2019-05-13 19:34 - 000210135 _____ C:\Users\X\Downloads\PART_1557767907561.jpeg 2019-05-11 20:30 - 2019-05-11 20:30 - 002393759 _____ C:\Users\X\Downloads\pch24-co-tydzien--numer-55.pdf 2019-05-11 16:16 - 2019-05-11 16:17 - 000000000 ____D C:\AdwCleaner 2019-05-11 14:44 - 2019-05-11 14:44 - 014776797 _____ C:\Users\X\Downloads\Jea Traditional 1.13.zip 2019-05-10 16:32 - 2019-05-10 16:32 - 004578039 _____ C:\Users\X\Downloads\forge-1.10.2-12.18.3.2185-installer.jar 2019-05-10 16:26 - 2019-05-10 16:26 - 004913086 _____ C:\Users\X\Downloads\forge-1.12.2-14.23.5.2768-installer.jar 2019-05-10 16:22 - 2019-05-10 16:22 - 000197528 _____ C:\Users\X\Downloads\XaerosWorldMap_1.3.4_Forge_1.10.2.jar 2019-05-10 16:17 - 2019-05-10 16:18 - 002238906 _____ C:\Users\X\Downloads\OptiFine_1.10.2_HD_U_E7.jar 2019-05-07 21:31 - 2019-05-07 21:31 - 000000000 ____D C:\Users\X\AppData\Roaming\.blazingpack 2019-05-06 19:23 - 2019-05-06 19:23 - 002444057 _____ C:\Users\X\Downloads\OptiFine_1.12.2_HD_U_E3.jar ==================== Jeden miesiąc (zmodyfikowane) ======== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2019-06-02 16:20 - 2018-04-12 01:38 - 000000000 ____D C:\PerfLogs 2019-06-02 15:48 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2019-06-02 15:02 - 2018-05-21 18:44 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2019-06-02 12:50 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\NDF 2019-06-01 23:01 - 2018-08-21 21:12 - 000000000 ____D C:\Users\X\AppData\Roaming\.minecraft 2019-06-01 23:01 - 2018-07-28 17:07 - 000000000 ____D C:\Users\X\AppData\Roaming\discord 2019-05-31 23:18 - 2018-05-21 18:51 - 000000000 ____D C:\Users\X 2019-05-31 23:16 - 2018-07-27 11:42 - 000000000 ____D C:\Users\X\.android 2019-05-31 12:12 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps 2019-05-31 12:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\AppReadiness 2019-05-31 11:58 - 2017-11-11 18:48 - 000000000 ____D C:\Users\X\AppData\Local\CrashDumps 2019-05-29 18:28 - 2019-01-29 14:38 - 000000000 ___RD C:\Users\X\Desktop\GŁÓWNY 2019-05-27 15:09 - 2017-10-24 16:53 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat 2019-05-26 10:48 - 2018-04-12 01:30 - 000000000 ____D C:\WINDOWS\CbsTemp 2019-05-25 17:42 - 2018-08-21 20:53 - 000000000 ____D C:\Program Files (x86)\Steam 2019-05-24 21:35 - 2018-05-18 14:45 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd 2019-05-24 18:06 - 2017-12-15 17:58 - 000000000 ____D C:\Users\X\AppData\Local\PlaceholderTileLogoFolder 2019-05-24 18:06 - 2017-12-11 18:34 - 000000000 ____D C:\Users\X\AppData\Local\Packages 2019-05-24 18:05 - 2016-06-17 19:26 - 000000000 ___RD C:\Users\X\OneDrive 2019-05-24 15:25 - 2019-01-21 22:58 - 000000000 ____D C:\Users\X\AppData\Local\FluxSoftware 2019-05-24 15:15 - 2018-05-21 19:24 - 000003380 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3972574565-3296325426-389100488-1001 2019-05-24 15:14 - 2018-12-20 14:15 - 000002417 _____ C:\Users\X\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2019-05-24 15:13 - 2017-10-25 16:15 - 000592616 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe 2019-05-24 15:00 - 2018-06-06 19:24 - 000000000 ____D C:\WINDOWS\Panther 2019-05-24 14:47 - 2018-06-21 12:49 - 000000000 ____D C:\ProgramData\Packages 2019-05-24 14:30 - 2015-07-16 17:49 - 000000000 __RHD C:\Users\Public\AccountPictures 2019-05-23 16:09 - 2018-08-21 21:39 - 000000000 ____D C:\Users\X\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam 2019-05-22 20:43 - 2018-05-21 18:51 - 000006952 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2019-05-22 20:43 - 2018-04-12 17:51 - 001640810 _____ C:\WINDOWS\system32\perfh015.dat 2019-05-22 20:43 - 2018-04-12 17:51 - 000420968 _____ C:\WINDOWS\system32\perfc015.dat 2019-05-22 13:48 - 2018-07-28 15:03 - 000002314 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2019-05-20 18:03 - 2018-10-03 21:21 - 000000000 ____D C:\Users\X\Documents\My Games 2019-05-19 15:54 - 2018-05-21 19:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2019-05-17 23:26 - 2018-04-12 01:36 - 000000000 ____D C:\WINDOWS\INF 2019-05-17 23:16 - 2018-05-21 18:43 - 000234616 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2019-05-17 23:14 - 2018-06-05 16:44 - 000000000 ____D C:\Users\Default\AppData\Local\LogMeIn Hamachi 2019-05-17 23:14 - 2018-06-05 16:44 - 000000000 ____D C:\Users\Default User\AppData\Local\LogMeIn Hamachi 2019-05-17 23:14 - 2018-04-11 23:04 - 000786432 _____ C:\WINDOWS\system32\config\BBI 2019-05-17 23:13 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2019-05-17 23:13 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\TextInput 2019-05-17 23:13 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellExperiences 2019-05-17 23:13 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\bcastdvr 2019-05-17 22:33 - 2017-10-25 16:13 - 000000000 ____D C:\WINDOWS\system32\MRT 2019-05-17 22:29 - 2017-10-25 16:12 - 132445408 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe 2019-05-17 22:12 - 2018-11-16 18:34 - 000000000 ____D C:\Program Files\rempl 2019-05-17 16:03 - 2018-07-28 15:02 - 000003568 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA 2019-05-17 16:03 - 2018-07-28 15:02 - 000003444 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore 2019-05-17 15:58 - 2018-04-12 01:38 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2019-05-17 15:48 - 2018-05-21 18:51 - 000000000 ____D C:\Users\postgres 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\vi-VN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ur-PK 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ug-CN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tt-RU 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\tk-TM 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\te-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sw-KE 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\sq-AL 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\quz-PE 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\prs-AF 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\pa-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\or-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\nn-NO 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ne-NP 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mt-MT 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mr-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mn-MN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ml-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mk-MK 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\mi-NZ 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lo-LA 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\lb-LU 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ky-KG 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kok-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kn-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\km-KH 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\kk-KZ 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ka-GE 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\is-IS 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\id-ID 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\hy-AM 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gu-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gd-GB 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ga-IE 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fil-PH 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\fa-IR 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\cy-GB 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\bn-BD 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\be-BY 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\as-IN 2019-05-17 15:48 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\af-ZA 2019-05-17 15:48 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2019-05-17 15:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ta-in 2019-05-17 15:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\si-lk 2019-05-17 15:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\oobe 2019-05-17 15:48 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\am-et 2019-05-17 15:48 - 2015-09-10 00:20 - 000000000 ___HD C:\WINDOWS\system32\WLANProfiles 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\hi-IN 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\gl-ES 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\eu-ES 2019-05-17 15:47 - 2018-04-12 17:53 - 000000000 ____D C:\WINDOWS\system32\ca-ES 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\UNP 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ___SD C:\WINDOWS\system32\F12 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ___RD C:\WINDOWS\PrintDialog 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\setup 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lv-LV 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\lt-LT 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\et-EE 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\system32\es-MX 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\ShellComponents 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2019-05-17 15:47 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2019-05-17 15:47 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2019-05-17 15:47 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\system32\Dism 2019-05-17 15:47 - 2018-04-11 23:04 - 000000000 ____D C:\WINDOWS\servicing 2019-05-17 15:12 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\InfusedApps 2019-05-17 14:56 - 2018-04-12 01:38 - 000000000 ____D C:\WINDOWS\registration 2019-05-17 14:46 - 2015-09-09 23:12 - 000000000 ____D C:\ProgramData\Lenovo 2019-05-11 16:09 - 2018-02-14 16:40 - 000000000 ____D C:\Users\X\AppData\Local\AVAST Software 2019-05-04 01:53 - 2018-04-12 01:41 - 000835688 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2019-05-04 01:53 - 2018-04-12 01:41 - 000179816 _____ (Adobe) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl ==================== Pliki w katalogu głównym wybranych folderów ======= 2018-05-02 12:23 - 2018-05-02 12:23 - 000003584 _____ () C:\Users\X\main.exe 2019-04-27 22:26 - 2019-04-27 22:26 - 000001608 _____ () C:\Users\X\AppData\Local\recently-used.xbel 2018-07-26 16:54 - 2018-07-26 16:54 - 000007605 _____ () C:\Users\X\AppData\Local\Resmon.ResmonCfg ==================== SigCheck =============================== (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) UWAGA: ==> Nie można uzyskać dostępu do BCD. ==================== Koniec FRST.txt ============================