Rezultaty skanowania Farbar Recovery Scan Tool (FRST) (x64) Wersja: 19-10-2020 Uruchomiony przez dulte (administrator) LAPTOP-JV53B55O (HP HP Pavilion Laptop 15-cw1xxx) (23-10-2020 15:41:40) Uruchomiony z C:\Users\dulte\Downloads\FRST Załadowane profile: dulte Platform: Windows 10 Home Wersja 1909 18363.592 (X64) Język: Polski (Polska) Domyślna przeglądarka: Chrome Tryb startu: Normal Instrukcja obsługi Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/ ==================== Procesy (filtrowane) ================= (Załączenie wejścia w fixlist spowoduje zamknięcie procesu. Powiązany plik nie zostanie przeniesiony.) (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345797.inf_amd64_68e6bafc7561cf91\B345344\atieclxx.exe (Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0345797.inf_amd64_68e6bafc7561cf91\B345344\atiesrxx.exe (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\dulte\AppData\Local\WebEx\ciscowebexstart.exe (Cisco WebEx LLC -> Cisco Webex LLC) C:\Users\dulte\AppData\Local\WebEx\WebEx\Meetings\atmgr.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrl.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDCtrlHelper.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDService.exe (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ETDTouch.exe (Flexera Software LLC -> Flexera Software LLC) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe <2> (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <25> (Greatis Software LLC -> Greatis Software, LLC) C:\Windows\UPDATE\SU10Guard.exe (HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_714bb34a8e64bfef\x64\TouchpointAnalyticsClientService.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\AppHelperCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\NetworkCap.exe (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\SysInfoCap.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpjumpstarts_1.3.1040.0_x64__v10z8vjag6ke6\HP.JumpStarts.exe (HP Inc.) C:\Program Files\WindowsApps\ad2f1837.hpsystemeventutility_1.0.44.0_x64__v10z8vjag6ke6\SystemEventUtility\HPSystemEventUtilityHost.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbam.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe (McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\McAfee\AMCore\mcshield.exe (McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe (McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\CSP\3.8.106.0\McCSPServiceHost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHOST.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe <2> (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\ModuleCore\ProtectedModuleHost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\Common Files\McAfee\VSCore_20_6\mcapexe.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\MfeAV\MfeAVSvc.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\dulte\AppData\Local\Microsoft\OneDrive\20.169.0823.0008\FileCoAuth.exe (Microsoft Corporation -> Microsoft Corporation) C:\Users\dulte\AppData\Local\Microsoft\OneDrive\OneDrive.exe (Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11029.20108.0_x64__8wekyb3d8bbwe\HxOutlook.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.11029.20108.0_x64__8wekyb3d8bbwe\HxTsr.exe (Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_11811.1001.18.0_x64__8wekyb3d8bbwe\WinStore.App.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wscript.exe (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2> (Rockwell Automation -> Rockwell Automation Inc.) C:\Program Files (x86)\Common Files\Rockwell\RNADiagnosticsSrv.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\EventClientMultiplexer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\EventServer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAE_HistServ.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAEArchiver.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAECommandServer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAEHistorianDataProvider.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTLoginLogout.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTSysDiagSvcHost.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\NmspHost.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RdcyHost.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaAeServer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMux.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RNADirMultiplexor.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaDirServer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RsvcHost.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\flexsvr.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxSecurityServer.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG.exe (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG02.EXE (Rockwell Automation -> Rockwell Automation, Inc.) C:\Program Files\Rockwell Automation\UsbCipDriver\USBCIPHelper\UsbCipHelper.exe (Skype) C:\Program Files\WindowsApps\microsoft.skypeapp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeApp.exe (Skype) C:\Program Files\WindowsApps\microsoft.skypeapp_14.35.152.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe (Sound Research Corporation -> Sound Research, Corp.) C:\Windows\System32\SECOMN64.exe Brak dostępu do procesu -> FTActivationBoost.exe ==================== Rejestr (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje usunięcie obiektu z rejestru lub przywrócenie jego domyślnej postaci. Powiązany plik nie zostanie przeniesiony.) HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31072 2008-10-25] (Microsoft Corporation -> Microsoft Corporation) HKLM-x32\...\Run: [FactoryTalk Directory Information] => C:\Program Files (x86)\Common Files\Rockwell\FTLoginLogout.exe [407960 2019-02-15] (Rockwell Automation -> Rockwell Automation, Inc.) HKLM-x32\...\Run: [ActivationNotifier] => C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\Tools\ActivationNotifier.exe [142664 2018-09-12] (Rockwell Automation -> Rockwell Automation, Inc.) HKLM-x32\...\Run: [UsbCipHelper] => C:\Program Files\Rockwell Automation\UsbCipDriver\USBCIPHelper\UsbCipHelper.exe [2843664 2017-10-25] (Rockwell Automation -> Rockwell Automation, Inc.) HKLM\...\Policies\Explorer: [NoWindowsUpdate] 1 HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Ograniczenia <==== UWAGA HKU\S-1-5-21-3056494953-356578700-1541810083-1001\...\Run: [HPSEU_Host_Launcher] => C:\System.sav\util\HpseuHostLauncher.exe [5074472 2019-10-16] (HP Inc. -> HP Inc.) HKU\S-1-5-21-3056494953-356578700-1541810083-1001\...\Run: [CiscoMeetingDaemon] => C:\Users\dulte\AppData\Local\WebEx\ciscowebexstart.exe [2355008 2020-10-16] (Cisco WebEx LLC -> Cisco Webex LLC) HKU\S-1-5-21-3056494953-356578700-1541810083-1001\...\Run: [taskmgr] => wscript.exe //B "C:\Users\dulte\AppData\Roaming\taskmgr.js" HKU\S-1-5-21-3056494953-356578700-1541810083-1001\...\Policies\Explorer: [NoSecurityTab] 1 HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\86.0.4240.111\Installer\chrmstp.exe [2020-10-22] (Google LLC -> Google LLC) IFEO\dismHost.exe: [Debugger] * IFEO\EOSNOTIFY.EXE: [Debugger] * IFEO\InstallAgent.exe: [Debugger] * IFEO\MusNotification.exe: [Debugger] * IFEO\MUSNOTIFICATIONUX.EXE: [Debugger] * IFEO\remsh.exe: [Debugger] * IFEO\SIHClient.exe: [Debugger] * IFEO\UpdateAssistant.exe: [Debugger] * IFEO\UPFC.EXE: [Debugger] * IFEO\UsoClient.exe: [Debugger] * IFEO\WaaSMedic.exe: [Debugger] * IFEO\WaasMedicAgent.exe: [Debugger] * IFEO\Windows10Upgrade.exe: [Debugger] * IFEO\WINDOWS10UPGRADERAPP.EXE: [Debugger] * Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\rsiro.exe [2003-12-19] () [Brak podpisu cyfrowego] Startup: C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\taskmgr.js [2020-08-18] () [Brak podpisu cyfrowego] HKLM\SOFTWARE\Policies\Mozilla\Firefox: Ograniczenia <==== UWAGA ==================== Zaplanowane zadania (filtrowane) ============ (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) Task: {09AB0C46-BFF2-46BD-9374-AFEDD4575D38} - System32\Tasks\HP\Consent Manager Launcher => sc start hptouchpointanalyticsservice Task: {10764D0D-38F0-4CEE-B6A9-EF29B8DA2E9B} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe [764640 2020-06-09] (McAfee, LLC -> McAfee, LLC) Task: {2E766C51-D642-4188-B6FC-9A46FEE00B71} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22855048 2020-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {3ADF3D1E-7F65-4685-9E8D-6C4CD2651F44} - System32\Tasks\Opera scheduled assistant Autoupdate 1602939844 => C:\Users\dulte\AppData\Local\Programs\Opera\launcher.exe [1712152 2020-10-14] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\dulte\AppData\Local\Programs\Opera\assistant" $(Arg0) Task: {415D6D4C-B801-4B65-9B1E-60CDF2580A12} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe [4603200 2020-08-16] (McAfee, LLC -> McAfee, LLC) Task: {7AE6763C-575B-4796-A908-5E546AB3487F} - System32\Tasks\RtkAudUService64_BG => C:\windows\System32\RtkAudUService64.exe [971552 2019-09-26] (Realtek Semiconductor Corp. -> Realtek Semiconductor) Task: {7BB78C02-BAD2-440C-93E6-159B243CE05B} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144728 2020-10-21] (Microsoft Corporation -> Microsoft Corporation) Task: {89619018-F68A-4131-9B0A-9664003D2821} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-16] (Google LLC -> Google LLC) Task: {8E6F71DB-2C6B-4A57-B799-DC3C8A24F1A0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker_DeviceScan => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-12-02] (HP Inc. -> HP Inc.) Task: {A5E89C31-2312-4D83-8FE3-4BF197FEAD1A} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent => {ABCECA3B-EA5A-496B-A021-5C6BAB365E5C} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1090800 2020-08-14] (McAfee, LLC -> McAfee, LLC) Task: {AA56CBC2-D66E-47C2-9DB8-4B7BFBB6502A} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.4.160\DADUpdater.exe [4194672 2020-09-30] (McAfee, LLC -> McAfee, LLC) Task: {B272ACCF-740E-45E5-83E3-5D594212DB12} - System32\Tasks\McAfee\McAfee Idle Detection Task => {ABCDCA3B-DE6B-5A7C-B132-6D7CBA63E5C5} C:\Program Files\Common Files\McAfee\TaskScheduler\McAMTaskAgent.exe [1090800 2020-08-14] (McAfee, LLC -> McAfee, LLC) Task: {B7A19535-E571-46F8-95AD-CED4FF84CC54} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22855048 2020-10-08] (Microsoft Corporation -> Microsoft Corporation) Task: {C6052F35-EDBF-40D5-A097-A6C26559E620} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-10-16] (Google LLC -> Google LLC) Task: {C79161C9-0555-4890-88E6-96A098F24F1D} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe [1644472 2019-06-21] (HP Inc. -> HP Inc.) Task: {D17D8E51-5ACB-4CBD-B693-65E7A13157F8} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe Task: {D872C710-B690-4CF5-89BB-3E1FB5E3E4F1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\WarrantyChecker => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPWarrantyCheck\HPWarrantyChecker.exe [1094008 2019-12-02] (HP Inc. -> HP Inc.) Task: {EDB61FD0-40B7-46C3-B2ED-DCAF0F2C9483} - System32\Tasks\Opera scheduled Autoupdate 1602939765 => C:\Users\dulte\AppData\Local\Programs\Opera\launcher.exe [1712152 2020-10-14] (Opera Software AS -> Opera Software) Task: {F80490A8-362C-4CFF-A22F-5DAA7F7B54FF} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144728 2020-10-21] (Microsoft Corporation -> Microsoft Corporation) (Załączenie wejścia w fixlist spowoduje przesunięcie pliku zadania (.job). Plik uruchamiany docelowo przez zadanie nie zostanie przeniesiony.) ==================== Internet (filtrowane) ==================== (Załączenie wejścia w fixlist, w przypadku gdy jest to obiekt rejestru, spowoduje usunięcie go z rejestru lub przywrócenie jego domyślnej postaci.) Tcpip\Parameters: [DhcpNameServer] 178.214.0.16 178.214.0.14 Tcpip\..\Interfaces\{2b633939-cb88-40ad-9eae-d9bfd651a83e}: [DhcpNameServer] 8.8.8.8 Tcpip\..\Interfaces\{bb467604-06b4-4376-aba2-63cded2a2b06}: [DhcpNameServer] 178.214.0.16 178.214.0.14 FireFox: ======== FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => nie znaleziono FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2020-10-17] [Przestarzałe] [Brak podpisu cyfrowego] FF Plugin: @mcafee.com/MSC,version=10 -> C:\Program Files\McAfee\MSC\npMcSnFFPl64.dll [2020-08-21] (McAfee, LLC -> ) FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-10-21] (Microsoft Corporation -> Microsoft Corporation) FF Plugin-x32: @mcafee.com/MSC,version=10 -> C:\Program Files (x86)\McAfee\MSC\npMcSnFFPl.dll [2020-08-21] (McAfee, LLC -> ) FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-10-21] (Microsoft Corporation -> Microsoft Corporation) Chrome: ======= CHR Profile: C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default [2020-10-23] CHR Extension: (Prezentacje) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-10-23] CHR Extension: (Dokumenty) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-10-23] CHR Extension: (Dysk Google) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23] CHR Extension: (YouTube) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-10-23] CHR Extension: (Arkusze) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-10-23] CHR Extension: (McAfee® WebAdvisor) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2020-10-23] CHR Extension: (Dokumenty Google offline) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-23] CHR Extension: (Płatności w sklepie Chrome Web Store) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-10-23] CHR Extension: (Gmail) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23] CHR Extension: (Chrome Media Router) - C:\Users\dulte\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-23] CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho] ==================== Usługi (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8945512 2020-10-08] (Microsoft Corporation -> Microsoft Corporation) R2 FactoryTalk Activation Service; C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe [1396200 2018-09-12] (Flexera Software LLC -> Flexera Software LLC) S2 FTActivationBoost; C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\Tools\FTActivationBoost.exe [164168 2018-09-12] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTAECommandServer; C:\Program Files (x86)\Common Files\Rockwell\FTAECommandServer.exe [237464 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTAEHistorianDataProvider; C:\Program Files (x86)\Common Files\Rockwell\FTAEHistorianDataProvider.exe [691608 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTAE_Archiver; C:\Program Files (x86)\Common Files\Rockwell\FTAEArchiver.exe [150424 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTAE_HistServ; C:\Program Files (x86)\Common Files\Rockwell\FTAE_HistServ.exe [201112 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTLinxSecurityServer; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxSecurityServer.exe [428440 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 FTSysDiagSvcHost; C:\Program Files (x86)\Common Files\Rockwell\FTSysDiagSvcHost.exe [75672 2019-01-24] (Rockwell Automation -> Rockwell Automation, Inc.) R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1321096 2018-09-28] (HP Inc. -> HP Inc.) R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\AppHelperCap.exe [447248 2019-08-15] (HP Inc. -> HP Inc.) R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\NetworkCap.exe [445712 2019-08-15] (HP Inc. -> HP Inc.) R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_7898ab4dfb5a2c7b\x64\SysInfoCap.exe [449808 2019-08-15] (HP Inc. -> HP Inc.) R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_714bb34a8e64bfef\x64\TouchpointAnalyticsClientService.exe [429008 2019-10-07] (HP Inc. -> HP Inc.) S3 LogReceiver; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\LogReceiver.exe [96664 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [7185288 2020-10-22] (Malwarebytes Inc -> Malwarebytes) R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [953544 2020-10-17] (McAfee, LLC -> McAfee, LLC) R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_20_6\McApExe.exe [768256 2020-09-11] (McAfee, LLC -> McAfee, LLC) S3 McAWFwk; C:\Program Files\Common Files\McAfee\ActWiz\McAWFwk.exe [460704 2019-08-14] (McAfee, LLC. -> McAfee, Inc.) R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.8.106.0\\McCSPServiceHost.exe [2726312 2020-08-13] (McAfee, LLC -> McAfee, LLC) S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [644200 2020-06-02] (McAfee, Inc. -> McAfee, LLC) R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [644200 2020-06-02] (McAfee, Inc. -> McAfee, LLC) R3 mfevtp; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [644200 2020-06-02] (McAfee, Inc. -> McAfee, LLC) R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1745400 2020-08-14] (McAfee, LLC -> McAfee, LLC) S3 OpcEnum; C:\WINDOWS\SysWOW64\OpcEnum.exe [146432 2016-03-09] (OPC Foundation) [Brak podpisu cyfrowego] R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [4221040 2020-07-29] (McAfee, LLC -> McAfee, LLC) R2 RnaAeServer; C:\Program Files (x86)\Common Files\Rockwell\RnaAeServer.exe [222104 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 RnaAlarmMux; C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMux.exe [911256 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) S3 RnaUaClientDataProviderService; C:\Program Files (x86)\Common Files\Rockwell\OpcUaConnector\RnaUaClientDataProvider.exe [4602776 2019-03-01] (Rockwell Automation -> Rockwell Automation, Inc.) R2 RSLinxNG; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG.exe [540056 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 RSLinxNG02; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG02.EXE [422296 2019-02-16] (Rockwell Automation -> Rockwell Automation, Inc.) R2 SU10Guard; C:\Windows\UPDATE\SU10Guard.exe [72776 2020-09-14] (Greatis Software LLC -> Greatis Software, LLC) S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation) ===================== Sterowniki (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) R3 cfwids; C:\WINDOWS\System32\drivers\cfwids.sys [75704 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [153312 2020-10-22] (Malwarebytes Corporation -> Malwarebytes) S3 GeneStor; C:\WINDOWS\System32\drivers\GeneStor.sys [181072 2019-08-19] (GENESYS LOGIC, INC. -> Genesys Logic) S3 HipShieldK; C:\WINDOWS\System32\drivers\HipShieldK.sys [218960 2020-05-26] (McAfee, LLC -> McAfee, Inc.) R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1f5602eb8a12ac4c\x64\hpcustomcapdriver.sys [25024 2019-04-18] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.) R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [218112 2020-10-22] (Malwarebytes Inc -> Malwarebytes) S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [19912 2020-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes) R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [197280 2020-10-23] (Malwarebytes Inc -> Malwarebytes) R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [74936 2020-10-23] (Malwarebytes Inc -> Malwarebytes) R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [248968 2020-10-22] (Malwarebytes Inc -> Malwarebytes) R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [134304 2020-10-23] (Malwarebytes Inc -> Malwarebytes) R3 mfeaack; C:\WINDOWS\System32\drivers\mfeaack.sys [529848 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R3 mfeavfk; C:\WINDOWS\System32\drivers\mfeavfk.sys [382392 2020-06-09] (McAfee, Inc. -> McAfee, LLC) S0 mfeelamk; C:\WINDOWS\System32\drivers\mfeelamk.sys [85928 2020-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC) R3 mfefirek; C:\WINDOWS\System32\drivers\mfefirek.sys [521656 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R0 mfehidk; C:\WINDOWS\System32\drivers\mfehidk.sys [1006008 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R3 mfencbdc; C:\WINDOWS\System32\DRIVERS\mfencbdc.sys [595896 2020-06-07] (McAfee, Inc. -> McAfee LLC.) S3 mfencrk; C:\WINDOWS\System32\DRIVERS\mfencrk.sys [107960 2020-06-07] (McAfee, Inc. -> McAfee LLC.) R3 mfeplk; C:\WINDOWS\System32\drivers\mfeplk.sys [116664 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R0 mfewfpk; C:\WINDOWS\System32\drivers\mfewfpk.sys [252344 2020-06-09] (McAfee, Inc. -> McAfee, LLC) R1 VirtualBackplane; C:\WINDOWS\System32\drivers\VirtualBackplane.sys [70544 2018-08-28] (Rockwell Automation, Inc -> Rockwell Automation) S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation) S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation) S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation) R3 WinRing0_1_2_0; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_714bb34a8e64bfef\x64\OpenHardwareMonitorLib.sys [14544 2020-10-23] (Noriyuki MIYAZAKI -> OpenLibSys.org) R3 WirelessButtonDriver64; C:\WINDOWS\System32\drivers\WirelessButtonDriver64.sys [35392 2019-08-06] (HP Inc. -> HP) U3 aspnet_state; Brak ImagePath U3 aswbdisk; Brak ImagePath ==================== NetSvcs (filtrowane) =================== (Załączenie wejścia w fixlist spowoduje jego usunięcie z rejestru. Powiązany plik nie zostanie przeniesiony, o ile nie zostanie załączony z osobna.) ==================== Jeden miesiąc (utworzone) =================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-10-23 15:37 - 2020-10-23 15:37 - 015087296 _____ (Microsoft Corporation) C:\Users\dulte\Downloads\mseinstall.exe 2020-10-23 15:37 - 2020-10-23 15:37 - 000002259 _____ C:\WINDOWS\epplauncher.mif 2020-10-23 15:37 - 2020-10-23 15:37 - 000000000 ____D C:\66c55e913e0ec12d03472c0caba006 2020-10-23 15:21 - 2020-10-23 15:30 - 000000000 ____D C:\Users\dulte\AppData\Local\Google 2020-10-23 15:20 - 2020-10-23 15:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee 2020-10-23 15:18 - 2020-10-23 15:18 - 000197280 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys 2020-10-23 15:18 - 2020-10-23 15:18 - 000134304 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys 2020-10-23 15:18 - 2020-10-23 15:18 - 000074936 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys 2020-10-23 14:54 - 2020-10-23 15:42 - 000000000 ____D C:\FRST 2020-10-23 14:54 - 2020-10-23 15:16 - 000000000 ____D C:\Users\dulte\Downloads\FRST 2020-10-22 23:30 - 2020-10-22 23:30 - 000248968 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys 2020-10-22 23:30 - 2020-10-22 23:30 - 000218112 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys 2020-10-22 23:30 - 2020-10-22 23:30 - 000153312 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys 2020-10-22 23:30 - 2020-10-22 23:30 - 000019912 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamElam.sys 2020-10-22 23:30 - 2020-10-22 23:30 - 000002000 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk 2020-10-22 23:30 - 2020-10-22 23:30 - 000001988 _____ C:\ProgramData\Pulpit\Malwarebytes.lnk 2020-10-22 23:30 - 2020-10-22 23:30 - 000000000 ____D C:\Users\dulte\AppData\Local\mbam 2020-10-22 23:30 - 2020-10-22 23:30 - 000000000 ____D C:\ProgramData\Malwarebytes 2020-10-22 23:30 - 2020-10-22 23:30 - 000000000 ____D C:\Program Files\Malwarebytes 2020-10-22 23:26 - 2020-10-22 23:27 - 190553184 _____ (Malwarebytes) C:\Users\dulte\Downloads\mb4-setup-consumer-4.2.1.190-1.0.1070-1.0.31674.exe 2020-10-22 22:58 - 2020-10-22 22:58 - 000000000 ____D C:\ProgramData\FNP 2020-10-22 10:17 - 2020-10-22 10:17 - 000000000 ____D C:\Program Files (x86)\MSXML 4.0 2020-10-22 10:16 - 2020-10-17 15:05 - 000339552 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe 2020-10-22 10:15 - 2020-10-22 10:15 - 000000000 ____D C:\Users\dulte\AppData\Roaming\WinRAR 2020-10-22 10:14 - 2020-10-22 10:14 - 003483320 _____ (Alexander Roshal) C:\Users\dulte\Downloads\winrar-x64-591pl.exe 2020-10-22 10:14 - 2020-10-22 10:14 - 000518664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswd085caf95580f2fc.tmp 2020-10-22 10:14 - 2020-10-22 10:14 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-10-22 10:14 - 2020-10-22 10:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR 2020-10-22 10:14 - 2020-10-22 10:14 - 000000000 ____D C:\Program Files\WinRAR 2020-10-22 10:14 - 2020-10-17 15:05 - 000851608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswa9d5bb269e6fb346.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000470912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw1dd12ebac774cbbe.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000326928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw35ff0d91d0c9f8a1.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000236112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw98bef6ee954c502a.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000217336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswc991de03e0124b6a.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000206408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswb00d497827e03a43.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000195664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswb52ba094c045960b.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000175720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswf611f4c9e4bd7723.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000109280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw0d74e8bb403df276.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswf6191ac2baa7229d.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000060496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw04a84a162e94157d.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswd66310f1adc2fd8b.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000037152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswb19dc58bede7cc13.tmp 2020-10-22 10:14 - 2020-10-17 15:05 - 000016824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw043b171b90c10ea3.tmp 2020-10-21 18:49 - 2020-10-21 20:08 - 4217602048 ____R C:\Users\dulte\Downloads\RSL5K_v20.iso 2020-10-21 18:48 - 2020-10-21 18:48 - 000020598 _____ C:\Users\dulte\Downloads\RSLogix5000-V20.0.0-RSLinx-V2.59-RSNetworx-10.01.torrent 2020-10-21 18:42 - 2020-10-21 18:42 - 000002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000002417 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000002381 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000002380 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000002374 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000002368 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk 2020-10-21 18:42 - 2020-10-21 18:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools 2020-10-17 16:45 - 2020-10-17 16:47 - 000000000 ____D C:\Users\dulte\Downloads\simatic 2020-10-17 16:44 - 2014-08-19 04:00 - 000000000 ____D C:\Users\dulte\Downloads\2.43.01-RSLinx_Classic-CD 2020-10-17 16:43 - 2020-10-17 16:44 - 182862464 _____ C:\Users\dulte\Downloads\2.43.01-RSLinx_Classic-CD.exe 2020-10-17 16:17 - 2020-10-17 16:17 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Siemens AG 2020-10-17 16:07 - 2020-10-17 16:07 - 031467974 _____ C:\Users\dulte\Downloads\Micro_Lite_830.zip 2020-10-17 15:58 - 2020-10-17 16:14 - 3203936256 _____ C:\Users\dulte\Downloads\[plc4me.com]Step7_Pro_2017_v5.6(win10 Support).iso 2020-10-17 15:34 - 2020-10-23 15:23 - 000000000 ___HD C:\Users\dulte\Downloads\.opera 2020-10-17 15:34 - 2020-10-23 15:23 - 000000000 ___HD C:\Users\dulte\.opera 2020-10-17 15:34 - 2020-10-22 10:23 - 000000000 ____D C:\Users\dulte\AppData\LocalLow\uTorrent 2020-10-17 15:34 - 2020-10-21 18:26 - 000000000 ____D C:\Users\dulte\AppData\Local\BitTorrentHelper 2020-10-17 15:33 - 2020-10-17 15:33 - 000000000 ____D C:\Users\dulte\AppData\Roaming\webex 2020-10-17 15:32 - 2020-10-23 14:53 - 000000000 ____D C:\Users\dulte\AppData\Local\WebEx 2020-10-17 15:32 - 2020-10-22 22:59 - 000000000 ____D C:\Users\dulte\AppData\LocalLow\WebEx 2020-10-17 15:30 - 2020-10-23 15:18 - 000000000 ____D C:\Users\dulte\AppData\Local\CrashDumps 2020-10-17 15:07 - 2020-10-22 10:17 - 000002127 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk 2020-10-17 15:07 - 2020-10-17 15:07 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Avast Software 2020-10-17 15:05 - 2020-10-17 15:05 - 000851608 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw311d21b521a5247e.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000518664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw75fa9bc01c931c4f.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000470912 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswec298783e7e0e896.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000326928 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw1c6c4732730a3fed.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000236112 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw87b1c24cafe6e3e7.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000217336 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswdbe3d0d60e2684f4.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000206408 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswcf7e3bf596b0a258.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000195664 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswe3781b4f84a60180.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000175720 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswa58889e139e5e30d.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000109280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswd3642dc75e7d6237.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000084856 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw6bea353ce2c76db1.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000060496 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswd540ff2ebc45da87.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000042784 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw7ccbff9881dfb07f.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000037152 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\asw3919f586b6840678.tmp 2020-10-17 15:05 - 2020-10-17 15:05 - 000016824 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswfc7ef808bddc5f26.tmp 2020-10-17 15:04 - 2020-10-17 15:05 - 000000000 ____D C:\ProgramData\Avast Software 2020-10-17 15:04 - 2020-10-17 15:04 - 000004464 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1602939844 2020-10-17 15:04 - 2020-10-17 15:04 - 000000000 ____D C:\Program Files\Avast Software 2020-10-17 15:03 - 2020-10-22 10:23 - 000000000 ____D C:\Users\dulte\AppData\Roaming\uTorrent 2020-10-17 15:02 - 2020-10-17 15:04 - 000004252 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1602939765 2020-10-17 15:02 - 2020-10-17 15:02 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Opera Software 2020-10-17 15:02 - 2020-10-17 15:02 - 000000000 ____D C:\Users\dulte\AppData\Local\Opera Software 2020-10-17 14:47 - 2020-10-17 14:47 - 000000000 ____D C:\Users\dulte\AppData\Local\HP 2020-10-17 14:15 - 2020-10-23 15:17 - 000000000 ____D C:\WINDOWS\UPDATE 2020-10-17 14:15 - 2020-10-17 15:30 - 000000000 ____D C:\ProgramData\Rockwell Automation 2020-10-17 14:15 - 2020-10-17 14:15 - 000000000 ____D C:\Program Files\Rockwell Automation 2020-10-17 14:14 - 2020-10-17 16:54 - 000000068 __RSH C:\WINDOWS\system32\Drivers\WUDFPf.winsecurity 2020-10-17 14:14 - 2020-10-17 16:22 - 000000068 __RSH C:\WINDOWS\system32\Drivers\xboxgip.winsecurity 2020-10-17 14:14 - 2020-10-17 14:14 - 000000000 ____D C:\Program Files\Common Files\Rockwell 2020-10-17 14:06 - 2020-10-17 16:15 - 000000057 _____ C:\WINDOWS\rocksoft.ini 2020-10-17 14:06 - 2020-10-17 14:21 - 000000000 ____D C:\ProgramData\WFCU 2020-10-17 14:06 - 2020-10-17 14:15 - 000000225 _____ C:\WINDOWS\CommonEds.ini 2020-10-17 14:05 - 2020-10-17 16:54 - 000000000 ____D C:\ProgramData\CodeMeter 2020-10-17 14:05 - 2020-10-17 16:27 - 000000000 ____D C:\Program Files (x86)\Rockwell Software 2020-10-17 14:05 - 2020-10-17 16:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rockwell Software 2020-10-17 14:04 - 2020-10-17 14:05 - 000000000 ____D C:\WINDOWS\SysWOW64\1033 2020-10-17 14:04 - 2020-10-17 14:05 - 000000000 ____D C:\WINDOWS\system32\1033 2020-10-17 14:04 - 2020-10-17 14:05 - 000000000 ____D C:\Program Files\Microsoft SQL Server 2020-10-17 14:04 - 2020-10-17 14:05 - 000000000 ____D C:\Program Files (x86)\Microsoft SQL Server 2020-10-17 14:04 - 2020-10-17 14:04 - 000000000 ____D C:\ProgramData\Package Cache 2020-10-17 13:50 - 2020-10-17 16:52 - 000003584 _____ C:\WINDOWS\SysWOW64\PkgInst.dat 2020-10-17 13:48 - 2020-10-22 10:37 - 000000000 ____D C:\Program Files 2 2020-10-17 13:32 - 2020-10-17 14:21 - 000000000 ____D C:\ProgramData\Rockwell 2020-10-17 13:29 - 2020-10-17 13:29 - 000000000 ____D C:\ProgramData\Siemens 2020-10-16 18:58 - 2020-08-18 06:04 - 000728583 ___SH C:\Users\dulte\AppData\Roaming\taskmgr.js 2020-10-16 18:55 - 2020-10-16 19:01 - 000000000 ____D C:\Users\dulte\OneDrive\Dokumenty\Pakiet_Biurowy_MO_Enterprise_2007_SP2-PL 2020-10-16 18:36 - 2020-10-16 18:36 - 000000000 ____D C:\Users\dulte\AppData\Local\CEF 2020-10-16 18:33 - 2020-10-16 18:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2020-10-16 18:31 - 2020-10-16 18:31 - 000000000 ____D C:\Users\dulte\AppData\Local\OneDrive 2020-10-16 18:29 - 2020-10-16 18:40 - 000000000 ____D C:\Program Files (x86)\Microsoft Works 2020-10-16 18:29 - 2020-10-16 18:29 - 000000000 ____D C:\WINDOWS\PCHEALTH 2020-10-16 18:29 - 2020-10-16 18:29 - 000000000 ____D C:\Program Files (x86)\MSBuild 2020-10-16 18:29 - 2020-10-16 18:29 - 000000000 ____D C:\Program Files (x86)\Microsoft Visual Studio 2020-10-16 18:25 - 2020-10-17 16:15 - 000000000 ____D C:\Program Files (x86)\Microsoft Office 2020-10-16 18:25 - 2020-10-16 18:29 - 000000000 ____D C:\WINDOWS\SHELLNEW 2020-10-16 18:25 - 2020-10-16 18:25 - 000000000 __RHD C:\MSOCache 2020-10-16 18:25 - 2020-10-16 18:25 - 000000000 ____D C:\Users\dulte\AppData\Local\Microsoft Help 2020-10-16 18:14 - 2020-10-22 23:19 - 000002220 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk 2020-10-16 18:14 - 2020-10-22 23:19 - 000002179 _____ C:\ProgramData\Pulpit\Google Chrome.lnk 2020-10-16 18:14 - 2020-10-16 18:14 - 000000000 ____D C:\Users\dulte\AppData\LocalLow\AMD 2020-10-16 18:14 - 2020-10-16 18:14 - 000000000 ____D C:\Program Files\UNP 2020-10-16 18:14 - 2020-10-16 18:14 - 000000000 ____D C:\Program Files\Google 2020-10-16 18:13 - 2020-10-16 18:13 - 000003568 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA 2020-10-16 18:13 - 2020-10-16 18:13 - 000003444 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore 2020-10-16 18:13 - 2020-10-16 18:13 - 000000000 ____D C:\Program Files (x86)\Google 2020-10-15 12:39 - 2020-10-15 12:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\Hewlett-Packard 2020-10-15 12:39 - 2020-10-15 12:39 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Hewlett-Packard 2020-10-15 12:31 - 2020-10-16 18:39 - 000000000 ____D C:\Users\dulte\AppData\Local\Comms 2020-10-15 12:31 - 2019-03-18 15:20 - 007850496 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0015.dll 2020-10-15 10:23 - 2020-10-15 10:23 - 000000000 ___HD C:\OneDriveTemp 2020-10-15 10:22 - 2020-10-23 15:18 - 000000000 ___RD C:\Users\dulte\OneDrive 2020-10-15 10:22 - 2020-10-22 18:45 - 000000000 ____D C:\Users\dulte\AppData\Local\PlaceholderTileLogoFolder 2020-10-15 10:22 - 2020-10-21 18:25 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3056494953-356578700-1541810083-1001 2020-10-15 10:22 - 2020-10-15 10:22 - 000000000 ____D C:\ProgramData\Microsoft OneDrive 2020-10-15 10:21 - 2020-10-15 10:21 - 000000000 ___HD C:\Users\dulte\MicrosoftEdgeBackups 2020-10-15 10:21 - 2020-10-15 10:21 - 000000000 ____D C:\Users\dulte\AppData\Roaming\HP 2020-10-15 10:20 - 2020-10-22 10:37 - 000000000 ____D C:\Users\dulte\AppData\Local\D3DSCache 2020-10-15 10:20 - 2020-10-16 18:27 - 000000000 ____D C:\Users\dulte\AppData\Local\ConnectedDevicesPlatform 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ___RD C:\Users\dulte\3D Objects 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ____D C:\Users\dulte\AppData\Roaming\Adobe 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ____D C:\Users\dulte\AppData\Local\VirtualStore 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ____D C:\Users\dulte\AppData\Local\Publishers 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ____D C:\Users\dulte\AppData\Local\MicrosoftEdge 2020-10-15 10:20 - 2020-10-15 10:20 - 000000000 ____D C:\Users\dulte\AppData\Local\AMD 2020-10-15 10:16 - 2020-10-23 14:52 - 000000000 ____D C:\Users\dulte 2020-10-15 10:16 - 2020-10-21 18:25 - 000002414 _____ C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk 2020-10-15 10:16 - 2020-10-16 19:28 - 000000000 ____D C:\Users\dulte\AppData\Local\Packages 2020-10-15 10:16 - 2020-10-15 10:16 - 000000020 ___SH C:\Users\dulte\ntuser.ini 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\Ustawienia lokalne 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\Szablony 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\Moje dokumenty 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\Menu Start 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\Dane aplikacji 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\AppData\Local\Historia 2020-10-15 10:16 - 2020-10-15 10:16 - 000000000 _SHDL C:\Users\dulte\AppData\Local\Dane aplikacji 2020-10-06 01:14 - 2020-10-05 14:18 - 000000000 ___HD C:\system.sav 2020-10-06 01:14 - 2020-10-05 14:18 - 000000000 ____D C:\Program Files\HP 2020-10-06 01:13 - 2020-10-05 14:21 - 000000000 ____D C:\WINDOWS\Panther 2020-10-06 01:12 - 2020-10-06 01:12 - 000008192 _____ C:\WINDOWS\system32\config\userdiff 2020-10-06 01:11 - 2020-10-15 12:31 - 000000000 ____D C:\WINDOWS\OCR 2020-10-06 01:11 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\SysWOW64\MailContactsCalendarSync 2020-10-06 01:11 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\system32\OpenSSH 2020-10-06 01:11 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\system32\MailContactsCalendarSync 2020-10-06 01:11 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\Setup 2020-10-06 01:11 - 2020-10-05 14:16 - 000000000 ____D C:\WINDOWS\HoloShell 2020-10-06 01:10 - 2020-10-23 15:24 - 000753304 _____ C:\WINDOWS\system32\perfh015.dat 2020-10-06 01:10 - 2020-10-23 15:24 - 000148724 _____ C:\WINDOWS\system32\perfc015.dat 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\winrm 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\WCN 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\slmgr 2020-10-06 01:10 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts 2020-10-06 01:10 - 2020-10-06 01:10 - 000343212 _____ C:\WINDOWS\system32\perfi015.dat 2020-10-06 01:10 - 2020-10-06 01:10 - 000041370 _____ C:\WINDOWS\system32\perfd015.dat 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\SysWOW64\sysprep 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\SysWOW64\pl 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\SysWOW64\0409 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\system32\pl 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\system32\0409 2020-10-06 01:10 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\DigitalLocker 2020-10-06 01:09 - 2019-03-19 06:45 - 000835480 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe 2020-10-06 01:09 - 2019-03-19 06:45 - 000179608 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl 2020-10-06 01:08 - 2020-10-23 15:39 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft 2020-10-06 01:08 - 2020-10-22 23:30 - 000000000 ___RD C:\Program Files (x86) 2020-10-06 01:08 - 2020-10-22 23:30 - 000000000 ___HD C:\WINDOWS\ELAMBKUP 2020-10-06 01:08 - 2020-10-17 13:19 - 000000000 ____D C:\WINDOWS\appcompat 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ___SD C:\WINDOWS\system32\F12 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\SysWOW64\Com 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\Sysprep 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\oobe 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\migwiz 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\Dism 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\system32\Com 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\PolicyDefinitions 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\IME 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\Program Files\Windows Photo Viewer 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\Program Files\Windows Defender 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\Program Files\Common Files\System 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer 2020-10-06 01:08 - 2020-10-16 18:50 - 000000000 ____D C:\Program Files (x86)\Windows Defender 2020-10-06 01:08 - 2020-10-16 18:26 - 000000000 ____D C:\Program Files\Common Files\microsoft shared 2020-10-06 01:08 - 2020-10-16 18:14 - 000000000 ____D C:\WINDOWS\AppReadiness 2020-10-06 01:08 - 2020-10-15 12:39 - 000000000 ___HD C:\Program Files\WindowsApps 2020-10-06 01:08 - 2020-10-15 10:16 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase 2020-10-06 01:08 - 2020-10-06 01:13 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template 2020-10-06 01:08 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\SystemResources 2020-10-06 01:08 - 2020-10-06 01:11 - 000000000 ____D C:\WINDOWS\SystemApps 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ___SD C:\WINDOWS\system32\dsc 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\SysWOW64\setup 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\system32\setup 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\system32\MUI 2020-10-06 01:08 - 2020-10-06 01:10 - 000000000 ____D C:\WINDOWS\Help 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 __SHD C:\Program Files\Windows Sidebar 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 __RSD C:\WINDOWS\Media 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 __RHD C:\Users\Public\Libraries 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\SysWOW64\Nui 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\SysWOW64\Configuration 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\system32\UNP 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\system32\Nui 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\system32\Configuration 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___SD C:\WINDOWS\Downloaded Program Files 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___RD C:\WINDOWS\Offline Web Pages 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ___HD C:\WINDOWS\LanguageOverlayCache 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Web 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\WaaS 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Vss 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\tracing 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\TextInput 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\TAPI 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\SMI 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\ras 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\NDF 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\Msdtc 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\Ipmi 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\InputMethod 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\IME 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\icsxml 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicyUsers 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\FxsTmp 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\downlevel 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\Bthprops 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\AppLocker 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\WinMetadata 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\winevt 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ti-et 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ta-lk 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ta-in 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\si-lk 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Sgrm 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ras 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ProximityToast 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\PointOfService 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\osa-Osge-001 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\NDF 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\my-mm 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Macromed 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Keywords 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Ipmi 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\InputMethod 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\inetsrv 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\IME 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\icsxml 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ias 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Hydrogen 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\ff-Adlm-SN 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\DriverState 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Drivers\DriverData 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\downlevel 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\DDFs 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\config\TxR 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\config\systemprofile 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\config\RegBack 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\config\Journal 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\Bthprops 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\appraiser 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\AppLocker 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\am-et 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\System 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SKB 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\ShellExperiences 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\ShellComponents 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\security 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\schemas 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\SchCache 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Resources 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\rescache 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Provisioning 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\PLA 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Performance 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\ModemLogs 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\LiveKernelReports 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\L2Schemas 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\InputMethod 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\IdentityCRL 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Globalization 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\GameBarPresenceWriter 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\DiagTrack 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Cursors 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Containers 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\Branding 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\bcastdvr 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\addins 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\ProgramData\WindowsHolographicDevices 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\ProgramData\USOShared 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files\Windows Security 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files\Windows Portable Devices 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files\Windows Multimedia Platform 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files\ModifiableWindowsApps 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files\Common Files\Services 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files (x86)\Windows Portable Devices 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files (x86)\Windows NT 2020-10-06 01:08 - 2020-10-06 01:08 - 000000000 ____D C:\Program Files (x86)\Windows Multimedia Platform 2020-10-06 01:08 - 2020-10-06 01:06 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll 2020-10-06 01:08 - 2020-10-06 01:06 - 000215943 _____ C:\WINDOWS\SysWOW64\dssec.dat 2020-10-06 01:08 - 2020-10-06 01:06 - 000215943 _____ C:\WINDOWS\system32\dssec.dat 2020-10-06 01:08 - 2020-10-06 01:06 - 000207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll 2020-10-06 01:08 - 2020-10-06 01:06 - 000021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll 2020-10-06 01:08 - 2020-10-06 01:06 - 000018903 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml 2020-10-06 01:08 - 2020-10-06 01:06 - 000003683 _____ C:\WINDOWS\system32\Drivers\etc\lmhosts.sam 2020-10-06 01:08 - 2020-10-06 01:06 - 000003103 _____ C:\WINDOWS\SysWOW64\mmc.exe.config 2020-10-06 01:08 - 2020-10-06 01:06 - 000003103 _____ C:\WINDOWS\system32\mmc.exe.config 2020-10-06 01:08 - 2020-10-06 01:06 - 000000858 _____ C:\WINDOWS\system32\DefaultQuestions.json 2020-10-06 01:08 - 2020-10-06 01:06 - 000000741 _____ C:\WINDOWS\SysWOW64\NOISE.DAT 2020-10-06 01:08 - 2020-10-06 01:06 - 000000741 _____ C:\WINDOWS\system32\NOISE.DAT 2020-10-06 01:08 - 2020-10-05 14:22 - 000000000 ____D C:\WINDOWS\system32\spool 2020-10-06 01:08 - 2020-10-05 14:22 - 000000000 ____D C:\WINDOWS\system32\FxsTmp 2020-10-06 01:08 - 2020-10-05 14:21 - 000000000 ____D C:\Program Files\Windows NT 2020-10-06 01:08 - 2020-10-05 14:20 - 000000000 ____D C:\WINDOWS\Registration 2020-10-06 01:08 - 2020-10-05 14:17 - 000000000 ____D C:\ProgramData\USOPrivate 2020-10-06 01:08 - 2020-10-05 14:16 - 000000000 ___RD C:\WINDOWS\PrintDialog 2020-10-06 01:08 - 2020-10-05 14:15 - 000000000 ____D C:\WINDOWS\ServiceState 2020-10-06 01:07 - 2020-10-23 15:24 - 000000000 ____D C:\WINDOWS\INF 2020-10-06 01:03 - 2020-10-23 15:17 - 100925440 _____ C:\WINDOWS\system32\config\SOFTWARE 2020-10-06 01:03 - 2020-10-23 15:17 - 027262976 _____ C:\WINDOWS\system32\config\SYSTEM 2020-10-06 01:03 - 2020-10-23 15:17 - 000786432 _____ C:\WINDOWS\system32\config\DEFAULT 2020-10-06 01:03 - 2020-10-23 15:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI 2020-10-06 01:03 - 2020-10-23 15:17 - 000065536 _____ C:\WINDOWS\system32\config\SECURITY 2020-10-06 01:03 - 2020-10-23 15:17 - 000065536 _____ C:\WINDOWS\system32\config\SAM 2020-10-06 01:03 - 2020-10-22 22:58 - 000008192 _____ C:\WINDOWS\system32\config\ELAM 2020-10-06 01:03 - 2020-10-22 11:14 - 000000000 ____D C:\WINDOWS\CbsTemp 2020-10-06 01:03 - 2020-10-16 18:50 - 000000000 ____D C:\WINDOWS\servicing 2020-10-06 01:03 - 2020-10-06 01:08 - 000000000 ____D C:\WINDOWS\system32\SMI 2020-10-06 01:03 - 2020-10-06 01:03 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer 2020-10-06 01:02 - 2020-10-06 01:15 - 000000000 ___HD C:\$SysReset 2020-10-05 14:24 - 2020-10-23 15:24 - 001720758 _____ C:\WINDOWS\system32\PerfStringBackup.INI 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\Ustawienia lokalne 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\Szablony 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\Moje dokumenty 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\Menu Start 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\Dane aplikacji 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\AppData\Local\Historia 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default\AppData\Local\Dane aplikacji 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\Ustawienia lokalne 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\Szablony 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\Moje dokumenty 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\Menu Start 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\Dane aplikacji 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Historia 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Dane aplikacji 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\Default User 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Users\All Users 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Szablony 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Pulpit 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Menu Start 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Dokumenty 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\ProgramData\Dane aplikacji 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 _SHDL C:\Documents and Settings 2020-10-05 14:21 - 2020-10-05 14:21 - 000000000 ____D C:\WINDOWS\minidump 2020-10-05 14:20 - 2020-10-23 15:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT 2020-10-05 14:20 - 2020-10-23 14:52 - 000000000 ____D C:\WINDOWS\system32\Tasks\McAfee 2020-10-05 14:20 - 2020-10-17 14:43 - 000003318 _____ C:\WINDOWS\system32\Tasks\McAfeeLogon 2020-10-05 14:20 - 2020-10-15 10:20 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP 2020-10-05 14:20 - 2020-10-05 14:20 - 000002848 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2245626183-448642780-264420925-500 2020-10-05 14:20 - 2020-10-05 14:20 - 000002766 _____ C:\WINDOWS\system32\Tasks\HPAudioSwitch 2020-10-05 14:20 - 2020-10-05 14:20 - 000002650 _____ C:\WINDOWS\system32\Tasks\McAfee Remediation (Prepare) 2020-10-05 14:20 - 2020-10-05 14:20 - 000002314 _____ C:\WINDOWS\system32\Tasks\RtkAudUService64_BG 2020-10-05 14:20 - 2019-12-02 01:44 - 000002856 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4141867162-3328231182-3508886224-500 2020-10-05 14:20 - 2019-04-15 17:41 - 000003390 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-913737145-1433743232-4147240673-500 2020-10-05 14:18 - 2019-12-02 12:37 - 002874368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll 2020-10-05 14:16 - 2020-10-15 10:21 - 000000000 ____D C:\ProgramData\HP 2020-10-05 14:16 - 2018-11-21 19:58 - 000014452 _____ C:\WINDOWS\system32\Drivers\Gen3pKey.dat 2020-10-05 14:15 - 2020-10-23 14:52 - 000000000 ____D C:\WINDOWS\system32\SleepStudy 2020-10-05 14:15 - 2020-10-23 00:02 - 000539568 _____ C:\WINDOWS\system32\FNTCACHE.DAT 2020-10-05 14:15 - 2020-10-05 14:15 - 000000000 ____D C:\WINDOWS\system32\AMD 2020-10-05 14:15 - 2020-10-05 14:15 - 000000000 ____D C:\WINDOWS\ServiceProfiles 2020-10-05 14:15 - 2020-10-05 14:15 - 000000000 ____D C:\ProgramData\Realtek 2020-09-24 12:07 - 2020-09-24 12:07 - 025900032 ____N (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 025444352 ____N (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 022627840 ____N (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 019849216 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 018020352 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 008012800 ____N (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 007754752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 007016448 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 006232576 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 005913600 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 004578816 ____N (Microsoft Corporation) C:\WINDOWS\system32\msi.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 004129416 ____N (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 003487232 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 002956472 ____N (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 002494464 ____N (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001866272 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001610752 ____N (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001539584 ____N (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001312256 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001283072 ____N (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001151816 ____N (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001106944 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001098720 ____N (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 001007616 ____N (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000852480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000842752 ____N (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000701440 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000689664 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000673792 ____N (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000671232 ____N (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000571392 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000516544 ____N (Microsoft Corporation) C:\WINDOWS\system32\mf.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000496640 ____N (Microsoft Corporation) C:\WINDOWS\system32\werui.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000432256 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000430080 ____N (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000429568 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000363840 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000342528 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys 2020-09-24 12:07 - 2020-09-24 12:07 - 000327680 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000321536 ____N (Microsoft Corporation) C:\WINDOWS\system32\sti.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000227840 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000224768 ____N (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE 2020-09-24 12:07 - 2020-09-24 12:07 - 000206336 ____N (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000186880 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE 2020-09-24 12:07 - 2020-09-24 12:07 - 000155136 ____N (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000148992 ____N (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe 2020-09-24 12:07 - 2020-09-24 12:07 - 000145920 ____N (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000139776 ____N (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000126464 ____N (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000122880 ____N (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000119808 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000117248 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000105472 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000100352 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys 2020-09-24 12:07 - 2020-09-24 12:07 - 000097080 ____N (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000090624 ____N (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000083968 ____N (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000074240 ____N (Microsoft Corporation) C:\WINDOWS\system32\reg.exe 2020-09-24 12:07 - 2020-09-24 12:07 - 000070144 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000059392 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe 2020-09-24 12:07 - 2020-09-24 12:07 - 000058368 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000035328 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe 2020-09-24 12:07 - 2020-09-24 12:07 - 000032056 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys 2020-09-24 12:07 - 2020-09-24 12:07 - 000026112 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000026112 ____N (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000018432 ____N (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll 2020-09-24 12:07 - 2020-09-24 12:07 - 000015360 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 009928208 ____N (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 007905000 ____N (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 007600448 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 007278592 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 007263992 ____N (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 006520480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 006227104 ____N (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 006083832 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 005943296 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 005764664 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 003791360 ____N (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 003729408 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 003703296 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 003263488 ____N (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 003084800 ____N (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002988344 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 002870784 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002801152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 002762296 ____N (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002716672 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 002698768 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 002576384 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002561536 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002473976 ____N (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002305536 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002284544 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002147328 ____N (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002114048 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 002082208 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001985928 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001920512 ____N (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001835008 ____N (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001757304 ____N (Microsoft Corporation) C:\WINDOWS\system32\winload.efi 2020-09-24 12:06 - 2020-09-24 12:06 - 001748480 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001743888 ____N (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001697280 ____N (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001664896 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001655880 ____N (Microsoft Corporation) C:\WINDOWS\system32\user32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001647072 ____N (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001512528 ____N (Microsoft Corporation) C:\WINDOWS\system32\winload.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001458688 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001451520 ____N (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001413840 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001399096 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001366128 ____N (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi 2020-09-24 12:06 - 2020-09-24 12:06 - 001330952 ____N (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001261464 ____N (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001182448 ____N (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001171704 ____N (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001149712 ____N (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001072952 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 001066496 ____N (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001054864 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001051664 ____N (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001020032 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 001006904 ____N (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000986936 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000921600 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000896512 ____N (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000878080 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000874936 ____N (Microsoft Corporation) C:\WINDOWS\system32\wer.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000864256 ____N (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000851456 ____N (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000842552 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000832000 ____N (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000826368 ____N (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000822416 ____N (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000797112 ____N (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000774456 ____N (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000768488 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000765440 ____N (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000747320 ____N (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000679152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000678712 ____N (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000674280 ____N (Microsoft Corporation) C:\WINDOWS\system32\services.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000673456 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000670720 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000663552 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000646144 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000598016 ____N (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000595968 ____N (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000593128 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000578560 ____N (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000550400 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000542496 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000532480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000530944 ____N (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000524264 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000517432 ____N (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000513536 ____N (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000511000 ____N (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000477712 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS 2020-09-24 12:06 - 2020-09-24 12:06 - 000466928 ____N (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000465208 ____N (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000461320 ____N (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000457216 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000455168 ____N (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000452920 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000422712 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000406480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000404904 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000404480 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000401408 ____N (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000400696 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000392192 ____N (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000380944 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000379392 ____N (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000372752 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000368128 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000336384 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000329216 ____N (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000324096 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000317440 ____N (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000299520 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000294400 ____N (Microsoft Corporation) C:\WINDOWS\system32\provops.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000283648 ____N (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000283136 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000271872 ____N (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000247856 ____N (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000240640 ____N (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000236032 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000233472 ____N (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000232448 ____N (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000225280 ____N (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000220472 ____N (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000211968 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000210744 ____N (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000204800 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000201728 ____N (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000199480 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000193800 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000179712 ____N (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000162696 ____N (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000160768 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000154112 ____N (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000147456 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000138752 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000132608 ____N (Microsoft Corporation) C:\WINDOWS\splwow64.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000128512 ____N (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000128512 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000127520 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000127064 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000125952 ____N (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000123904 ____N (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000120320 ____N (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000113152 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000111104 ____N (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000108032 ____N (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000102400 ____N (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000099328 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000097280 ____N (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000093496 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000092160 ____N (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000091136 ____N (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000089536 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000088576 ____N (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000087552 ____N (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000084488 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000084488 ____N (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys 2020-09-24 12:06 - 2020-09-24 12:06 - 000084480 ____N (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000083456 ____N (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000083456 ____N (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000079360 ____N (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000077824 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000077824 ____N (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000076288 ____N (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000071480 ____N (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000070656 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000068096 ____N (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000068096 ____N (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000067112 ____N (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000066560 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000066048 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000066048 ____N (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000064512 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000061952 ____N (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000061240 ____N (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000060416 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000060416 ____N (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000047616 ____N (Adobe Systems) C:\WINDOWS\system32\atmlib.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000046592 ____N (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000046080 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000044544 ____N (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000040960 ____N (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000039936 ____N (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000038912 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000034816 ____N (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000033792 ____N (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000025600 ____N (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000021304 ____N (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000014336 ____N (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000013824 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL 2020-09-24 12:06 - 2020-09-24 12:06 - 000013312 ____N (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe 2020-09-24 12:06 - 2020-09-24 12:06 - 000011776 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000010752 ____N (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000007680 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000007680 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000003072 ____N (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll 2020-09-24 12:06 - 2020-09-24 12:06 - 000002560 ____N (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll ==================== Jeden miesiąc (zmodyfikowane) ================== (Załączenie wejścia w fixlist spowoduje przeniesienie pliku/folderu.) 2020-10-21 18:41 - 2019-12-02 01:53 - 000000000 ____D C:\Program Files\Microsoft Office 2020-10-17 15:12 - 2020-08-17 20:59 - 000000000 ____D C:\Program Files (x86)\McAfee 2020-10-17 15:02 - 2020-08-17 20:59 - 000000000 ____D C:\Program Files\McAfee 2020-10-17 15:01 - 2020-08-17 20:59 - 000000000 ____D C:\ProgramData\McAfee 2020-10-17 14:45 - 2020-08-17 20:59 - 000000000 ____D C:\Program Files\Common Files\McAfee 2020-10-16 18:33 - 2019-03-19 06:49 - 000000199 _____ C:\WINDOWS\win.ini 2020-10-15 12:39 - 2020-08-17 20:51 - 000000000 ____D C:\ProgramData\Packages 2020-10-15 12:39 - 2019-12-02 01:53 - 000000000 ____D C:\ProgramData\Hewlett-Packard 2020-10-15 10:20 - 2019-04-15 17:39 - 000000000 __RHD C:\Users\Public\AccountPictures 2020-10-05 14:20 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated 2020-10-05 14:18 - 2020-08-17 21:04 - 000000000 ____D C:\ProgramData\McInstTemp0003031597691069 2020-10-05 14:18 - 2020-08-17 20:59 - 000000000 ____D C:\Program Files\McAfee.com 2020-10-05 14:18 - 2020-08-17 20:59 - 000000000 ____D C:\Program Files\Common Files\AV 2020-10-05 14:18 - 2020-08-17 20:56 - 000000000 ____D C:\WINDOWS\HP 2020-10-05 14:18 - 2020-08-17 20:52 - 000000000 ____D C:\Program Files (x86)\Realtek 2020-10-05 14:18 - 2019-12-02 01:53 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information 2020-10-05 14:18 - 2019-12-02 01:53 - 000000000 ____D C:\Program Files\Microsoft Office 15 2020-10-05 14:18 - 2019-12-02 01:53 - 000000000 ____D C:\Program Files\HPCommRecovery 2020-10-05 14:18 - 2019-12-02 01:53 - 000000000 ____D C:\Program Files\Common Files\DESIGNER 2020-10-05 14:18 - 2019-12-02 01:52 - 000000000 ___RD C:\Program Files\Online Services 2020-10-05 14:18 - 2019-12-02 01:52 - 000000000 ___RD C:\Program Files (x86)\Online Services 2020-10-05 14:18 - 2019-12-02 01:51 - 000000000 ____D C:\Program Files (x86)\HP 2020-10-05 14:18 - 2019-10-29 20:52 - 000000000 ___HD C:\hp 2020-10-05 14:17 - 2020-08-17 20:57 - 000000000 ____D C:\Users\Default\AppData\Local\Packages 2020-10-05 14:17 - 2020-08-17 20:57 - 000000000 ____D C:\Users\Default User\AppData\Local\Packages 2020-10-05 14:17 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc ==================== Pliki w katalogu głównym wybranych folderów ======== 2020-10-16 18:58 - 2020-08-18 06:04 - 000728583 ___SH () C:\Users\dulte\AppData\Roaming\taskmgr.js ==================== SigCheck ============================ (Brak automatycznej naprawy dla plików które nie przeszły weryfikacji.) ==================== Koniec FRST.txt ========================